Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu asi vir : )

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Jan55
Návštěvník
Návštěvník
Příspěvky: 174
Registrován: 14 kvě 2007 16:15
Kontaktovat uživatele:

Prosím o kontrolu logu asi vir : )

#1 Příspěvek od Jan55 »

Zdravím,
pc má zpomalenou odezvu při spouštění aplikací a chová se celkově divně...

Logfile of random's system information tool 1.10 (written by random/random)
Run by Honza at 2014-10-07 20:37:28
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 682 GB (72%) free of 954 GB
Total RAM: 8120 MB (68% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:37:33, on 7.10.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16561)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\MSI\SUPER CHARGER\SUPER CHARGER.exe
C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Client Utility\ZDWlan.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\PROGRA~2\Raptr\raptr.exe
C:\PROGRA~2\Raptr\raptr_im.exe
C:\Users\Honza\AppData\Roaming\uTorrent\utorrent.exe
C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe
C:\Program Files (x86)\Battle.net\Battle.net.5115\Battle.net.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Honza.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [SUPER CHARGER] C:\Program Files (x86)\MSI\SUPER CHARGER\SUPER CHARGER.exe
O4 - HKLM\..\Run: [ZDWlan.EXE] "C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Client Utility\ZDWlan.EXE"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: Canon LBP2900 Status Window.lnk = C:\Windows\System32\spool\drivers\x64\3\CNAB4LAD.EXE
O4 - Global Startup: SolidWorks 2014 Rychlé spuštění.lnk = ?
O4 - Global Startup: SolidWorks Nástroj pro stahování na pozadí.lnk = ?
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ACP User Service (amdacpusrsvc) - Unknown owner - C:\AMD\amdacpusrsvc.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: SW Distributed TS Coordinator Service (CoordinatorServiceHost) - Dassault Systemes SolidWorks Corp. - C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: SolidWorks Electrical Collaborative Server (ewserver) - Trace Software International - C:\Program Files\SolidWorks Corp\SolidWorks Electrical\server\EwServer.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MSI_SuperCharger - MSI - C:\Program Files (x86)\MSI\SUPER CHARGER\ChargeService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Solver for Flow Simulation 2014 (RemoteSolverDispatcher) - Mentor Graphics Corporation - C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\remotesolverdispatcherservice.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SetupARService - Realtek Semiconductor. - C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: SolidWorks Licensing Service - SolidWorks - C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10292 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
C:\Windows\system32\CNAB4RPD.EXE
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\MSI\SUPER CHARGER\SUPER CHARGER.exe"
"C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Client Utility\ZDWlan.exe"
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files\SolidWorks Corp\SolidWorks\sldworks_fs.exe"
C:\AMD\amdacpusrsvc.exe
"C:\Program Files\SolidWorks Corp\SolidWorks Electrical\server\EwServer.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\MSI\SUPER CHARGER\ChargeService.exe"
"c:\ProgramData\SolidWorks Electrical\MSSQL11.TEW_SQLEXPRESS\MSSQL\Binn\sqlservr.exe" -sTEW_SQLEXPRESS
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\remotesolverdispatcherservice.exe" "SOFTWARE\SRAC\COSMOS_FloWorks 2014"
"C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\dispatcher.exe"
\??\C:\Windows\system32\conhost.exe "1621665941-179567883105992824711364357343322671251546611132191457545326403391
"c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe"
"c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\PROGRA~2\Raptr\raptr.exe" --log_to_file --from_stub --startup
raptr_im.exe
"C:\Program Files (x86)\Raptr\raptr_ep64.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" -startup
"C:\Windows\system32\wuauclt.exe"
"C:\Users\Honza\AppData\Roaming\uTorrent\utorrent.exe"
"C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe" --locale=enGB --session=11374619278042294175
\??\C:\Windows\system32\conhost.exe "-973215699-11772938061065702599116174983416984919223888247201163418382-2096242152
"C:\Program Files (x86)\Battle.net\Battle.net.5115\Battle.net.exe" "--gamepath=C:\Program Files (x86)\Diablo III" --game=diablo3_engb
"C:\Program Files (x86)\Internet Explorer\IELowutil.exe" -embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --remote-debugging-port=9223
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5292.0.1933905840\2033437397" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,17 --gpu-vendor-id=0x1002 --gpu-device-id=0x67b1 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=14.301.1001.0 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_71/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="5292.1.367488713\1107655685" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_71/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="5292.2.452175022\420701435" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_71/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="5292.4.2129882289\1337671142" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_71/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="5292.5.91542862\1692596066" /prefetch:673131151

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_71/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="5292.27.586172789\520478001" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/ChromeSuggestions/Most Likely with Kodachrome/EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionInstallVerification/Enforce/GoogleNow/Enable/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/Disabled/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-1-Percent/group_71/UMA-Uniformity-Trial-10-Percent/group_04/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_01/UMA-Uniformity-Trial-5-Percent/group_19/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --renderer-print-preview --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-threaded-compositing --enable-delegated-renderer --channel="5292.30.13077422\687802919" /prefetch:673131151
"C:\Users\Honza\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\af6a76ca-8044-46bc-bf6e-e07fcacdcb36-4.job - C:\Program Files (x86)\HD-V2.2V05.10\af6a76ca-8044-46bc-bf6e-e07fcacdcb36-4.exe /rawdata=VE15XHalSHCtzVsMr8BPrXFX3c61vsSVbHzGr8HS+cQZIdJdzbdNrI62XCuhvEiahs7enjlsG6us7vP4fJhMExA9ZDk/Fg1WAn6+v2WdWct1ATTVYhMeHPIzwB06JABJHbSBz9pwXpARHE1Blbii+tsV+k2OmClm0djdJidoTzF4/BzAtJT3G9EasYOz7PfG1xlOQR2MVR3Bt1SAKz0fRU38EJBPByrsiDXQI7WAK6oqWydbsejFuQEql3zQs577zjRhvNenj4m8YI1FQQRnGbq7cm+tJ2ROzd9/6+GSVouieDx0gFuSvbcIFRHNRcHicJfQrb8FZ85wgocnG3XXcxtmPxflHxhLIGJrVsU+SIVsBWTAn5OF+A1ICwG5YunqzSkoKmvySdl3yA2Tlj/Uh0eohQJG3eNEVg2xZRmjRBPPoEggePZcCLW05XAjg69yCMLO4oQEyWe4RjasTt4WZT+QwJvXqFFdZEMsHc/KyL0KWTNTDG9U1wRXIMA4C21HesEd8sezveB16Np+PMpf3hk6yZZlUs7/pyuC6iDQ7JuhcM9rDr9cesXBeziN2RQ1vsj/TkvLyYfMBFRj6I/8WgykD/tCHlXkCR3f+CvQz+HYt+bN6t7TLQGS24omIHmt0au6S5ht+U216yj8mapwYmTO/TGYcaTfSxltzprTIGlTa6n0+VtbIOMJH3jABwxRfPbnp1z9nYyUZyE4YmfINyfEw2wobEf6d2QnCV7nBjmsePyE6l/oMVXTVrsbcUEaUUuYmlwCdnpWVdJ/Y010FyajOdZFcyebWuPB8PHUSHPm2gPA+dQ3UGmaaqPLj2DSQmUqoMstVhDZ1QS67zhRaFfzg6nzMFjzbXI/pHcCz8Rn2ws/mgA9D7ewB4amTvIWJukA+5BKHE4DrYg2dSiaGkWg8DhY5Kf1s9RYx4LXPVAgeTh6Ctkkq4+w1MTvYIl8L+EGVQ5TgE7cGTRak9MwkP5+Ej0LpyLWZZ27ZJFHYk7xHvxo7uYp43kGapY5vDWkgAXpxTCHFMUkhIQOwCLXF40vDTdQdEQ+15kMNMHd/K/ihNgUQ0NcyjdqmAGmMO4CLT1M7Z+hdzBAcnc8gBv1V/rPNbJOuMMCna1XkD/zY3bHHh8rmAWzgKgudXjg3JRz+z6nx3regTtCZ9yaSCrjwNZsEHcqBWiVjjaxhC6KvZEVmYWpIN9GiUZVkwiPKqSLjXyA3C532fM6JEsCRX/8B2X2ywwiMgalkdFWC/dChPiZyTONH0Px4rpRfqkOM+2GHvEzB2u1VPYA5Ws94aTpP7ZQz1IpsLng1CIin+a1AbWuJMzh4m34lSNmnyYQo2w9V6GQFMczIQ0NoORhQKdhvKc9PpWe8/+PtpcHQFftmmUaf0RVyzzEhtIND7+DYIesS1rH5tBynuQ9KldsSDgmxmcurY6CvlKnu6GJViC7VUyZJT1sOvnK3+OTwSjCKdLmm3VQn0RGtxh2DZPgDByUXfz4m77bi29x3lwpBTUF7s0rHZ9tT4/43svw9mDiw/XkRFkqWkualqM7YdHOWsW59vVU7E/wgGjBpgsuQ0ePSvoDzKdmTYf+JlY7K/j54Xz4EAihWrB3W9AfgWgK3Z+jEqdzAYjFccOip6rxNWHBIId+KUoKMu+uuquFLry7FFzRslvMSH8+/ytfc11pwfxwN+4L68W1LD/xiu/8C46WjtIv43DFZVshnGVrGHy8sMEPYRGukBoMfXi/GnJLykKBx/qG07eqGyt6i5nX5PXpR/rsiePS1/V8l/SR/oa1ra7FI+TNeyKd56/avTvzBiRG2EE5f+Tg1V+Fz0zxwz7bQruw0hLSIuUFC5D6/MeZ/4tjub69JeMs0p6zfvZlriq1ImuYkR8DN6GFcJ3+gUdiFovW+As3STXCp8rlBfRO5TRRuCA05YKYZDivaPG8+hgCGUz2kuX1u/D1ieAx+d5d1vqiTge++/iODieRVFYz+r1yaH3HzCmRvu/KjbqaGUubDer2+IPuBnm4zwbEEPcdbPlqi1bAgHAAvDQSD+xe0ris
C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /c
C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\LXMZJKC.job - C:\Users\Honza\AppData\Roaming\LXMZJKC.exe /infocmdline=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

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-09-06 612248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-09-06 457712]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1832760]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Raptr"=C:\PROGRA~2\Raptr\raptrstub.exe [2014-08-20 55568]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2013-04-26 292848]
"IMSS"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [2013-09-16 134616]
"SUPER CHARGER"=C:\Program Files (x86)\MSI\SUPER CHARGER\SUPER CHARGER.exe [2014-02-21 1047536]
"ZDWlan.EXE"=C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Client Utility\ZDWlan.EXE [2009-01-14 491520]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-09-06 4085896]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-09-15 767200]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Canon LBP2900 Status Window.lnk - C:\Windows\System32\spool\drivers\x64\3\CNAB4LAD.EXE
SolidWorks 2014 Rychlé spuštění.lnk - C:\Windows\Installer\{4FFA60C4-9A8B-4C9E-8265-2241B266304C}\NewShortcut2_87EDF6C81D0A4B7B84F42FE0C6A9D608.exe
SolidWorks Nástroj pro stahování na pozadí.lnk - C:\Program Files (x86)\Common Files\Manažer instalací SolidWorks\BackgroundDownloading\sldBgDwld.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.RTV1"=rtvcvfw64.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-10-07 20:37:28 ----D---- C:\rsit
2014-10-07 20:37:28 ----D---- C:\Program Files\trend micro
2014-10-07 17:25:26 ----D---- C:\Program Files (x86)\Doctor PC
2014-10-07 17:25:21 ----D---- C:\Users\Honza\AppData\Roaming\Doctor PC
2014-10-07 17:24:58 ----D---- C:\Program Files (x86)\doctorpclab.com
2014-10-07 00:44:11 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2014-10-06 15:15:27 ----A---- C:\Windows\system32\drivers\aswKbd.sys
2014-10-06 15:15:14 ----A---- C:\Windows\system32\drivers\aswNdisFlt.sys
2014-10-06 14:50:43 ----D---- C:\ProgramData\ATI
2014-10-06 14:50:42 ----D---- C:\Program Files (x86)\AMD AVT
2014-10-06 14:49:24 ----D---- C:\Program Files (x86)\ATI Technologies
2014-10-05 23:14:36 ----A---- C:\Users\Honza\AppData\Roaming\LXMZJKC.exe
2014-10-05 23:14:31 ----D---- C:\Program Files (x86)\globalUpdate
2014-09-24 01:58:41 ----D---- C:\Users\Honza\AppData\Roaming\SolidWorks 2014
2014-09-23 23:01:08 ----D---- C:\Users\Honza\AppData\Roaming\vlc
2014-09-23 23:00:52 ----D---- C:\Program Files (x86)\VideoLAN
2014-09-21 23:44:54 ----D---- C:\Users\Honza\AppData\Roaming\Luxology
2014-09-21 23:44:54 ----D---- C:\Users\Honza\AppData\Roaming\Kits
2014-09-21 23:07:58 ----D---- C:\ProgramData\Simpoe
2014-09-21 23:06:47 ----D---- C:\ProgramData\COSMOS Applications
2014-09-21 23:06:32 ----D---- C:\ProgramData\SolidWorks Flow Simulation
2014-09-21 23:05:13 ----D---- C:\Users\Honza\AppData\Roaming\pdfforge
2014-09-21 23:05:12 ----A---- C:\Windows\system32\pdfcmnnt.dll
2014-09-21 23:05:11 ----D---- C:\Program Files (x86)\PDFCreator
2014-09-21 23:05:11 ----A---- C:\Windows\SYSWOW64\MSMPIDE.DLL
2014-09-21 23:02:25 ----A---- C:\Windows\eDrawingOfficeAutomator.INI
2014-09-21 23:02:22 ----D---- C:\Users\Honza\AppData\Roaming\help_images_otherUI
2014-09-21 23:01:14 ----D---- C:\Users\Honza\AppData\Roaming\DassaultSystemes
2014-09-21 23:01:14 ----D---- C:\ProgramData\DassaultSystemes
2014-09-21 22:34:25 ----D---- C:\ProgramData\SolidWorks
2014-09-21 22:34:25 ----D---- C:\Program Files\SolidWorks Corp
2014-09-21 22:34:25 ----D---- C:\Program Files\Common Files\SolidWorks Shared
2014-09-21 22:34:12 ----D---- C:\Program Files\Common Files\Macrovision Shared
2014-09-21 22:33:58 ----D---- C:\Program Files\Microsoft Visual Studio 8
2014-09-21 22:33:08 ----A---- C:\Windows\SYSWOW64\perf-MSSQL11.TEW_SQLEXPRESS-sqlagtctr.dll
2014-09-21 22:33:08 ----A---- C:\Windows\system32\perf-MSSQL11.TEW_SQLEXPRESS-sqlagtctr.dll
2014-09-21 22:32:56 ----A---- C:\Windows\SYSWOW64\perf-MSSQL$TEW_SQLEXPRESS-sqlctr11.0.2100.60.dll
2014-09-21 22:32:56 ----A---- C:\Windows\system32\perf-MSSQL$TEW_SQLEXPRESS-sqlctr11.0.2100.60.dll
2014-09-21 22:32:48 ----A---- C:\Windows\system32\hadrres.dll
2014-09-21 22:32:48 ----A---- C:\Windows\system32\fssres.dll
2014-09-21 22:32:17 ----D---- C:\Program Files\Microsoft Visual Studio 10.0
2014-09-21 22:32:11 ----D---- C:\Windows\system32\RsFx
2014-09-21 22:31:58 ----D---- C:\Program Files\Microsoft.NET
2014-09-21 22:30:58 ----D---- C:\Windows\SYSWOW64\1033
2014-09-21 22:30:58 ----D---- C:\Windows\system32\1033
2014-09-21 22:30:19 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2014-09-21 22:29:52 ----D---- C:\Program Files\Microsoft SQL Server
2014-09-21 22:29:06 ----D---- C:\ProgramData\Apple
2014-09-21 22:28:17 ----D---- C:\ProgramData\Microsoft Help
2014-09-21 22:28:17 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2014-09-21 22:27:56 ----D---- C:\Program Files (x86)\Microsoft Office
2014-09-21 22:27:53 ----D---- C:\Program Files (x86)\MSECache
2014-09-21 22:27:45 ----D---- C:\ProgramData\SolidWorks Electrical
2014-09-21 22:27:30 ----D---- C:\SolidWorks Data
2014-09-21 22:07:51 ----D---- C:\Windows\SolidWorks
2014-09-19 21:16:57 ----D---- C:\Users\Honza\AppData\Roaming\EDrawings
2014-09-19 21:16:45 ----D---- C:\ProgramData\FLEXnet
2014-09-19 21:09:55 ----D---- C:\Program Files (x86)\SolidWorks Corp
2014-09-19 21:00:54 ----D---- C:\Users\Honza\AppData\Roaming\SolidWorks
2014-09-19 10:44:53 ----A---- C:\Windows\system32\CNAB4SMD.DLL
2014-09-19 10:44:53 ----A---- C:\Windows\system32\CNAB4RPD.EXE
2014-09-19 10:44:53 ----A---- C:\Windows\system32\CNAB4PTD.DLL
2014-09-19 10:44:53 ----A---- C:\Windows\system32\CNAB4LMD.DLL
2014-09-19 10:44:53 ----A---- C:\Windows\system32\CNAB4EMD.DLL
2014-09-19 10:44:39 ----D---- C:\Program Files\Canon
2014-09-16 02:54:50 ----D---- C:\Program Files (x86)\OCCTPT
2014-09-16 00:32:04 ----A---- C:\Windows\SYSWOW64\amdhcp32.dll
2014-09-16 00:32:04 ----A---- C:\Windows\system32\amdhcp64.dll
2014-09-16 00:32:00 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2014-09-16 00:32:00 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2014-09-16 00:32:00 ----A---- C:\Windows\system32\atimpc64.dll
2014-09-16 00:32:00 ----A---- C:\Windows\system32\amdpcom64.dll
2014-09-16 00:31:48 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2014-09-16 00:31:30 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2014-09-16 00:29:04 ----A---- C:\Windows\system32\drivers\amdacpksd.sys
2014-09-16 00:26:58 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2014-09-16 00:18:06 ----A---- C:\Windows\system32\clinfo.exe
2014-09-16 00:18:00 ----A---- C:\Windows\system32\OpenVideo64.dll
2014-09-16 00:17:58 ----A---- C:\Windows\SYSWOW64\OpenVideo.dll
2014-09-16 00:17:56 ----A---- C:\Windows\SYSWOW64\OVDecode.dll
2014-09-16 00:17:56 ----A---- C:\Windows\system32\OVDecode64.dll
2014-09-16 00:17:54 ----A---- C:\Windows\system32\amdocl64.dll
2014-09-16 00:17:04 ----A---- C:\Windows\SYSWOW64\amdocl.dll
2014-09-16 00:16:18 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-09-16 00:16:18 ----A---- C:\Windows\system32\OpenCL.dll
2014-09-16 00:14:54 ----A---- C:\Windows\SYSWOW64\amdhsasc.dll
2014-09-16 00:14:54 ----A---- C:\Windows\system32\amdhsasc64.dll
2014-09-16 00:13:24 ----A---- C:\Windows\system32\atio6axx.dll
2014-09-16 00:09:38 ----A---- C:\Windows\system32\amdmmcl6.dll
2014-09-16 00:09:36 ----A---- C:\Windows\SYSWOW64\amdmmcl.dll
2014-09-16 00:09:10 ----A---- C:\Windows\system32\mantle64.dll
2014-09-16 00:09:04 ----A---- C:\Windows\SYSWOW64\mantle32.dll
2014-09-16 00:09:00 ----A---- C:\Windows\system32\amdmantle64.dll
2014-09-16 00:08:08 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2014-09-16 00:07:48 ----A---- C:\Windows\system32\atiapfxx.exe
2014-09-16 00:07:46 ----A---- C:\Windows\system32\aticalrt64.dll
2014-09-16 00:07:44 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2014-09-16 00:07:42 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2014-09-16 00:07:42 ----A---- C:\Windows\system32\aticalcl64.dll
2014-09-16 00:07:36 ----A---- C:\Windows\system32\aticaldd64.dll
2014-09-16 00:06:46 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2014-09-16 00:05:52 ----A---- C:\Windows\SYSWOW64\amdmantle32.dll
2014-09-16 00:03:26 ----A---- C:\Windows\system32\atimuixx.dll
2014-09-16 00:03:24 ----A---- C:\Windows\system32\atieclxx.exe
2014-09-16 00:03:18 ----A---- C:\Windows\system32\atiesrxx.exe
2014-09-16 00:03:12 ----A---- C:\Windows\system32\mantleaxl64.dll
2014-09-16 00:03:08 ----A---- C:\Windows\SYSWOW64\mantleaxl32.dll
2014-09-16 00:03:04 ----A---- C:\Windows\system32\atitmm64.dll
2014-09-16 00:00:04 ----A---- C:\Windows\system32\amdave64.dll
2014-09-15 23:59:50 ----A---- C:\Windows\system32\atisamu64.dll
2014-09-15 23:59:46 ----A---- C:\Windows\SYSWOW64\atisamu32.dll
2014-09-15 23:59:40 ----A---- C:\Windows\system32\coinst_14.30.dll
2014-09-15 23:59:16 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2014-09-15 23:59:14 ----A---- C:\Windows\system32\atig6pxx.dll
2014-09-15 23:59:12 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2014-09-15 23:59:12 ----A---- C:\Windows\system32\atiglpxx.dll
2014-09-15 23:59:12 ----A---- C:\Windows\system32\atig6txx.dll
2014-09-15 23:59:08 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2014-09-15 23:59:06 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2014-09-15 23:58:54 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2014-09-15 18:21:34 ----A---- C:\Windows\system32\kdbsdk64.dll
2014-09-15 18:19:58 ----A---- C:\Windows\SYSWOW64\kdbsdk32.dll
2014-09-15 03:20:47 ----D---- C:\Program Files (x86)\SpeedFan
2014-09-13 18:41:15 ----D---- C:\Program Files (x86)\Diablo III
2014-09-13 18:22:32 ----D---- C:\Users\Honza\AppData\Roaming\Battle.net
2014-09-13 18:22:27 ----D---- C:\ProgramData\Blizzard Entertainment
2014-09-13 18:22:27 ----D---- C:\Program Files (x86)\Battle.net
2014-09-13 18:21:43 ----D---- C:\ProgramData\Battle.net
2014-09-12 08:06:37 ----D---- C:\ProgramData\ALI213
2014-09-12 06:59:09 ----D---- C:\ProgramData\Orbit
2014-09-11 07:57:04 ----A---- C:\Windows\SYSWOW64\Msvcr71.dll
2014-09-11 07:57:04 ----A---- C:\Windows\SYSWOW64\mfc71.dll
2014-09-11 07:57:04 ----A---- C:\Windows\SYSWOW64\gdiplus.dll
2014-09-08 05:32:50 ----D---- C:\ProgramData\Ubisoft
2014-09-08 05:15:16 ----A---- C:\Windows\system32\binkw32.dll
2014-09-08 04:57:48 ----D---- C:\Users\Honza\AppData\Roaming\PunkBuster
2014-09-08 04:28:18 ----RHD---- C:\Users\Honza\AppData\Roaming\SecuROM
2014-09-08 04:26:51 ----A---- C:\Windows\SYSWOW64\CmdLineExt_x64.dll
2014-09-08 04:25:31 ----D---- C:\Windows\SYSWOW64\xlive
2014-09-08 04:25:30 ----D---- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2014-09-08 00:43:42 ----D---- C:\ProgramData\Steam
2014-09-08 00:12:31 ----D---- C:\Program Files (x86)\Call of Duty Ghosts

======List of files/folders modified in the last 1 month======

2014-10-07 20:37:33 ----D---- C:\Windows\Prefetch
2014-10-07 20:37:31 ----D---- C:\Windows\Temp
2014-10-07 20:37:28 ----D---- C:\Program Files
2014-10-07 20:34:46 ----D---- C:\Users\Honza\AppData\Roaming\uTorrent
2014-10-07 20:18:56 ----D---- C:\Windows\system32\config
2014-10-07 17:34:30 ----D---- C:\Users\Honza\AppData\Roaming\DAEMON Tools Lite
2014-10-07 17:33:31 ----D---- C:\Hry
2014-10-07 17:26:50 ----D---- C:\Windows\System32
2014-10-07 17:26:50 ----D---- C:\Windows\inf
2014-10-07 17:26:50 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-10-07 17:25:39 ----D---- C:\Windows\system32\Tasks
2014-10-07 17:25:34 ----SHD---- C:\Windows\Installer
2014-10-07 17:25:26 ----RD---- C:\Program Files (x86)
2014-10-07 17:25:10 ----D---- C:\Windows\Tasks
2014-10-07 17:23:34 ----D---- C:\Users\Honza\AppData\Roaming\Raptr
2014-10-07 17:21:22 ----D---- C:\Windows
2014-10-07 16:49:54 ----D---- C:\Windows\SysWOW64
2014-10-07 16:49:43 ----SHD---- C:\System Volume Information
2014-10-07 16:30:36 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2014-10-07 16:11:37 ----RSD---- C:\Windows\assembly
2014-10-07 16:10:49 ----D---- C:\Windows\Logs
2014-10-07 15:07:58 ----D---- C:\Windows\Microsoft.NET
2014-10-06 15:15:57 ----D---- C:\Windows\system32\drivers
2014-10-06 15:15:55 ----D---- C:\Windows\system32\catroot
2014-10-06 15:15:54 ----D---- C:\Windows\system32\DriverStore
2014-10-06 14:50:43 ----HD---- C:\ProgramData
2014-10-06 14:50:42 ----D---- C:\ProgramData\AMD
2014-10-06 14:48:25 ----D---- C:\Program Files\ATI Technologies
2014-10-06 14:47:48 ----D---- C:\Windows\system32\catroot2
2014-10-06 14:46:23 ----D---- C:\ProgramData\Package Cache
2014-10-06 14:44:37 ----D---- C:\AMD
2014-10-05 17:42:26 ----D---- C:\Windows\system32\wdi
2014-09-21 23:01:19 ----SD---- C:\Users\Honza\AppData\Roaming\Microsoft
2014-09-21 22:35:37 ----RSD---- C:\Windows\Fonts
2014-09-21 22:34:25 ----D---- C:\Program Files\Common Files
2014-09-21 22:33:58 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-09-21 22:31:58 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-09-21 22:31:44 ----D---- C:\Windows\winsxs
2014-09-21 22:28:41 ----SD---- C:\ProgramData\Microsoft
2014-09-21 22:28:23 ----D---- C:\Program Files (x86)\Common Files
2014-09-19 10:36:35 ----D---- C:\Windows\system32\drivers\UMDF
2014-09-16 19:45:46 ----D---- C:\Windows\LiveKernelReports
2014-09-16 02:58:35 ----D---- C:\Windows\SYSWOW64\directx
2014-09-16 02:58:32 ----HD---- C:\Windows\msdownld.tmp
2014-09-16 00:31:50 ----A---- C:\Windows\system32\atiuxp64.dll
2014-09-16 00:31:46 ----A---- C:\Windows\system32\atiu9p64.dll
2014-09-16 00:31:44 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2014-09-16 00:31:42 ----A---- C:\Windows\system32\aticfx64.dll
2014-09-16 00:31:40 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2014-09-16 00:31:34 ----A---- C:\Windows\system32\atidxx64.dll
2014-09-16 00:31:22 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2014-09-16 00:31:16 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2014-09-16 00:31:06 ----A---- C:\Windows\system32\atiumd6a.dll
2014-09-16 00:31:02 ----A---- C:\Windows\system32\atiumd64.dll
2014-09-16 00:03:28 ----A---- C:\Windows\system32\atidemgy.dll
2014-09-16 00:00:00 ----A---- C:\Windows\SYSWOW64\amdave32.dll
2014-09-15 23:59:20 ----A---- C:\Windows\system32\atiadlxx.dll
2014-09-12 06:59:50 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2014-09-12 06:43:20 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-09-08 17:01:18 ----D---- C:\Windows\rescache
2014-09-08 05:16:27 ----D---- C:\Windows\SYSWOW64\sk-SK
2014-09-08 05:16:27 ----D---- C:\Windows\SYSWOW64\en-US
2014-09-08 05:16:27 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-09-08 05:16:27 ----D---- C:\Windows\system32\sk-SK
2014-09-08 05:16:27 ----D---- C:\Windows\system32\cs-CZ
2014-09-08 05:16:26 ----D---- C:\Windows\system32\en-US
2014-09-08 03:03:56 ----D---- C:\ProgramData\Origin

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswNdisFlt;Avast! Firewall Driver; C:\Windows\system32\DRIVERS\aswNdisFlt.sys [2014-10-06 448400]
R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2014-09-06 65776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2014-09-06 224896]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2013-04-26 20464]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2012-12-29 28664]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2014-10-06 28184]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2014-09-06 93568]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2014-09-06 1041168]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2014-09-06 427360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R2 amdacpksd;ACP Kernel Service Driver; \??\C:\Windows\system32\drivers\amdacpksd.sys [2014-09-16 293088]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2014-09-06 29208]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2014-09-06 79184]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2014-09-06 92008]
R2 mi2c;mi2c; \??\C:\Windows\system32\drivers\mi2c.sys [2014-09-05 20784]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2014-09-16 16750080]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2014-09-15 576000]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2014-06-21 94720]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-09-06 283064]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2013-04-26 368112]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2013-04-26 786416]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [2013-09-16 99288]
R3 NTIOLib_1_0_3;NTIOLib_1_0_3; \??\C:\Program Files (x86)\MSI\SUPER CHARGER\NTIOLib_X64.sys [2012-10-25 13368]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2013-11-26 888536]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
S3 MBfilt;MBfilt; C:\Windows\system32\drivers\MBfilt64.sys []
S3 MSICDSetup;MSICDSetup; \??\D:\CDriver64.sys []
S3 NTIOLib_1_0_C;NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys []
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 ZD1211BU(TP-LINK);TP-LINK Wireless USB Adapter Driver(TP-LINK); C:\Windows\system32\DRIVERS\zd1211Bu.sys [2009-01-05 602880]
S4 RsFx0200;RsFx0200 Driver; C:\Windows\system32\DRIVERS\RsFx0200.sys [2012-02-11 334936]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2014-09-16 239616]
R2 amdacpusrsvc;ACP User Service; C:\AMD\amdacpusrsvc.exe [2014-04-17 82432]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-09-06 50344]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2014-10-06 106488]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 ewserver;SolidWorks Electrical Collaborative Server; C:\Program Files\SolidWorks Corp\SolidWorks Electrical\server\EwServer.exe [2013-09-20 201072]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-09-16 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-09-16 390616]
R2 MSI_SuperCharger;MSI_SuperCharger; C:\Program Files (x86)\MSI\SUPER CHARGER\ChargeService.exe [2014-02-21 162800]
R2 MSSQL$TEW_SQLEXPRESS;SQL Server (TEW_SQLEXPRESS); c:\ProgramData\SolidWorks Electrical\MSSQL11.TEW_SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2012-02-11 191064]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-09-12 76888]
R2 RemoteSolverDispatcher;Remote Solver for Flow Simulation 2014; C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\remotesolverdispatcherservice.exe [2013-09-20 235656]
R2 SQLBrowser;SQL Server Browser; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2012-02-11 269912]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2012-02-11 129624]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-10-05 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-05 116648]
S2 SetupARService;SetupARService; C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe [2014-09-06 24576]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 CoordinatorServiceHost;SW Distributed TS Coordinator Service; C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe [2013-09-21 76328]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-09-21 1431888]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-09-21 1044816]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-10-05 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-05 116648]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SolidWorks Licensing Service;SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [2014-09-21 79360]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
S4 SQLAgent$TEW_SQLEXPRESS;SQL Server Agent (TEW_SQLEXPRESS); c:\ProgramData\SolidWorks Electrical\MSSQL11.TEW_SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2012-02-11 597080]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119547
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu asi vir : )

#2 Příspěvek od Rudy »

Zdravím!
Jak je na tom váš oper. systém s legalitou?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Jan55
Návštěvník
Návštěvník
Příspěvky: 174
Registrován: 14 kvě 2007 16:15
Kontaktovat uživatele:

Re: Prosím o kontrolu logu asi vir : )

#3 Příspěvek od Jan55 »

Já myslím, že dobře.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119547
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu asi vir : )

#4 Příspěvek od Rudy »

OK. Stáhněte a spusťte OTL: http://oldtimer.geekstogo.com/OTL.exe . Spusťte, zaškrněte "Pro všechny uživatele", Kontrola na havěť LOP" a Kontrola na hvěť PURITY" a do dolního bílého okna zkopírujte:
CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
atapi.sys
autochk.exe
cdrom.sys
explorer.exe
hal.dll
scecli.dll
services.exe
svchost.exe
tcpip.sys
userinit.exe
winlogon.exe
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s

%PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5
%PROGRAMFILES%\Internet Explorer\iexplore.exe /md5
%PROGRAMFILES%\Opera\opera.exe /md5
%PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5

%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*loader* /s
a klikněte na >Prohledat<. Dejte oba logy.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Jan55
Návštěvník
Návštěvník
Příspěvky: 174
Registrován: 14 kvě 2007 16:15
Kontaktovat uživatele:

Re: Prosím o kontrolu logu asi vir : )

#5 Příspěvek od Jan55 »

OTL Extras logfile created on: 7.10.2014 20:59:16 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Honza\Downloads
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

7,93 Gb Total Physical Memory | 5,35 Gb Available Physical Memory | 67,43% Memory free
15,86 Gb Paging File | 12,27 Gb Available in Paging File | 77,39% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931,41 Gb Total Space | 666,44 Gb Free Space | 71,55% Space Free | Partition Type: NTFS

Computer Name: HONZA-PC | User Name: Honza | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = OperaStable] -- Reg Error: Key error. File not found
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = OperaStable] -- Reg Error: Key error. File not found

[HKEY_USERS\S-1-5-21-3599238740-2346632114-2589644761-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1"
https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1"
https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{EC996790-0897-4FF1-B8A6-2EEEDD6F756E}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01D88EB9-26EA-475A-9660-A0475A121F7E}" = protocol=17 | dir=in | app=c:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{09A83DB5-F08F-4AC6-B033-DF259AAE119D}" = protocol=17 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{11E85D0A-4821-42F6-BB61-BB0EDFF2D1AC}" = protocol=17 | dir=in | app=c:\program files\solidworks corp\solidworks\swscheduler\dtscoordinatorservice.exe |
"{19C33D71-BFF3-4D7D-9977-A61C0F22005A}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{1A6D4566-327F-4489-9E03-8604AF0036DC}" = protocol=6 | dir=in | app=c:\program files\solidworks corp\solidworks\photoview\photoview360.exe |
"{24114E7A-D84D-465B-A031-38E3B775A19D}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3427\agent.exe |
"{2C10E317-5A6E-48DF-BC79-3B7A96F35ADE}" = protocol=17 | dir=in | app=c:\program files\solidworks corp\solidworks\photoview\photoview360.exe |
"{4EBC01C3-F51E-4BD9-8A25-21EC4C9A4294}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3372\agent.exe |
"{54C62FBC-322F-458C-BDD6-4CAD4D5D8DC6}" = protocol=6 | dir=in | app=c:\program files (x86)\raptr\raptr_im.exe |
"{575B9692-32B7-45D7-86EA-7012CEB1B7B0}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3372\agent.exe |
"{5A503922-D774-40A4-9FFD-2AEB270B3C6E}" = protocol=17 | dir=in | app=c:\program files\solidworks corp\solidworks\photoview\photoview360_cl.exe |
"{5E36B21F-38B4-4C59-B45D-866FD922082D}" = protocol=6 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{69ABDC5F-CC48-48C7-BDAE-17A0BC3F2B22}" = protocol=6 | dir=in | app=c:\program files\solidworks corp\solidworks\swscheduler\dtscoordinatorservice.exe |
"{6EB84377-EEA7-468D-86FF-DDD071BA15EF}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{800484FD-D4A1-406A-934A-6F4D0E718610}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{90913429-F4B6-4D9D-9923-D255FC0CC7A6}" = protocol=6 | dir=in | app=c:\program files\solidworks corp\solidworks\photoview\photoview360_cl.exe |
"{9AE0719B-A694-4BB5-A06D-9C691505B032}" = protocol=6 | dir=in | app=c:\program files (x86)\raptr\raptr.exe |
"{9E2E4398-BD4E-4DFE-8893-9ED8B3AE932B}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{AA4FF08D-5FFA-43A0-86EA-36B5683B9D0B}" = protocol=6 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe |
"{B0E98525-373F-42DD-822D-2A99C436CC3F}" = protocol=6 | dir=in | app=c:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{C93A72AF-6F6D-4550-9739-3C1A6BA4647D}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3427\agent.exe |
"{D14F9A5C-E2D8-445D-B26B-CACA06CE7F88}" = protocol=17 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe |
"{D38A8522-EA03-465D-8F00-4E5F5EDE556D}" = protocol=17 | dir=in | app=c:\program files (x86)\raptr\raptr_im.exe |
"{E022AC4E-FC34-4813-B533-81B1D806E5FF}" = protocol=17 | dir=in | app=c:\windows\system32\cnab4rpd.exe |
"{E5865AFC-9EA8-4F91-AA46-BA497D74019E}" = protocol=6 | dir=in | app=c:\windows\system32\cnab4rpd.exe |
"{F07ECF09-39BE-4A1A-B4C9-BF6D14DA3966}" = protocol=17 | dir=in | app=c:\program files (x86)\raptr\raptr.exe |
"TCP Query User{3D90A8FD-7C35-4541-A3F2-A76E473E5356}C:\hry\far cry 3\bin\farcry3_d3d11.exe" = protocol=6 | dir=in | app=c:\hry\far cry 3\bin\farcry3_d3d11.exe |
"TCP Query User{74F54A3C-68EE-4F2D-9B6C-C34B23497893}C:\hry\far cry 3\bin\farcry3.exe" = protocol=6 | dir=in | app=c:\hry\far cry 3\bin\farcry3.exe |
"TCP Query User{9F60C294-8F9A-45BD-843C-34A9CACC645F}C:\program files\solidworks corp\solidworks electrical\bin\solidworkselectrical.exe" = protocol=6 | dir=in | app=c:\program files\solidworks corp\solidworks electrical\bin\solidworkselectrical.exe |
"TCP Query User{BFAF2138-5289-45CF-A955-1B0600EC7D95}C:\users\honza\appdata\roaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\honza\appdata\roaming\utorrent\utorrent.exe |
"TCP Query User{D72A1AB4-9DD4-4E4F-9D0B-1555E70BE4F7}C:\users\honza\appdata\roaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\honza\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{0231D435-D571-4E1A-AB11-0056839675F3}C:\hry\far cry 3\bin\farcry3.exe" = protocol=17 | dir=in | app=c:\hry\far cry 3\bin\farcry3.exe |
"UDP Query User{123C4E3D-8810-4EA3-9B3D-E9B021D5DCED}C:\program files\solidworks corp\solidworks electrical\bin\solidworkselectrical.exe" = protocol=17 | dir=in | app=c:\program files\solidworks corp\solidworks electrical\bin\solidworkselectrical.exe |
"UDP Query User{8CE8F424-18F9-4AFD-8FAF-A3D496EE8054}C:\users\honza\appdata\roaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\honza\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{A6FE9011-23EC-4464-841C-C142ECCFDED1}C:\hry\far cry 3\bin\farcry3_d3d11.exe" = protocol=17 | dir=in | app=c:\hry\far cry 3\bin\farcry3_d3d11.exe |
"UDP Query User{AA09A104-C0B8-4620-AFAA-7E10170AB4D9}C:\users\honza\appdata\roaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\honza\appdata\roaming\utorrent\utorrent.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0A2E1907-D0DE-0D01-CA64-CB0AB0BFE539}" = AMD Wireless Display v3.0
"{0C10FAF1-35D5-416A-B7C1-4168ED9485FA}" = SolidWorks Explorer 2014 SP0 x64 Edition
"{0E8670B8-3965-4930-ADA6-570348B67153}" = Microsoft SQL Server 2012 Transact-SQL ScriptDom
"{104E8BAF-2E2A-4467-A5C0-92ED92F26547}" = SolidWorks Plastics 2014 SP0 x64 Edition
"{18B2A97C-92C3-4AC7-BE72-F823E0BC895B}" = SQL Server 2012 Database Engine Services
"{1AD147D0-BE0E-3D6C-AC11-64F6DC4163F1}" = Microsoft .NET Framework 4.5
"{1D411379-9CE0-4B13-A19B-72D3222DD620}" = SQL Server 2012 Common Files
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{202AAF1F-69AA-442A-B59F-6B54B1AD07C6}" = SQL Server 2012 Common Files
"{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610
"{3412473A-6242-C8D1-DF14-DC22AF6AB178}" = AMD Drag and Drop Transcoding
"{3E0DD83F-BE4C-4478-86A0-AD0D79D1353E}" = Microsoft VSS Writer for SQL Server 2012
"{3F08399F-67CD-4950-AED0-64A9590FE626}" = SolidWorks Electrical 2014 SP0 x64 Edition
"{49D665A2-4C2A-476E-9AB8-FCC425F526FC}" = Microsoft SQL Server 2012 Native Client
"{4DC5DE7E-E67D-4A2B-8E67-EB7B28045247}" = SolidWorks Flow Simulation 2014 SP0 x64 Edition
"{4FFA60C4-9A8B-4C9E-8265-2241B266304C}" = SolidWorks 2014 x64 Edition SP0
"{5082D598-71D5-920A-E6BF-44F54AD910A7}" = AMD Media Foundation Decoders
"{542DDF04-9F91-4F36-B2F4-2638B788A4C8}" = Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU
"{54FF8FAB-DE27-4187-82F1-EBAE6AEE869A}" = SQL Server 2012 Database Engine Shared
"{5B09B029-2003-68CB-4918-D36567A244BC}" = ACP Application
"{5DDC2234-4B37-45BC-AD33-41F1469B4D83}" = Microsoft SQL Server 2012 Setup (English)
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6603C2CE-3C54-4F1D-92F9-8390CD4CCCA8}" = SQL Server 2012 Database Engine Shared
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{7273387F-793D-43F9-BAF7-7E05F53CFB8D}" = COSMOSM 2014 x64 Edition (2010/290)
"{73D93E65-16D1-48EE-865E-6C666CB9964E}" = SolidWorks 2014 x64 Czech Resources
"{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{83561930-B86E-416B-ADF2-E4EA2199BA6D}" = Photoview 360 Network Render Client 2014 SP0 x64 Edition
"{84FBCA4A-D650-4B0D-8094-EC0671FA9B91}" = SQL Server 2012 Database Engine Services
"{8A66D41F-61C1-4DBE-9C27-F663C4ADE9A8}" = SolidWorks eDrawings 2014 x64 Edition SP0
"{90120064-0070-0000-0000-4000000FF1CE}" = Microsoft Visual Basic for Applications 7.1 (x64)
"{90F60409-7000-11D3-8CFE-0150048383C9}" = Microsoft Visual Basic for Applications 7.1 (x64) English
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5
"{A0F05048-7653-4FCD-9F3A-C740E4052ACE}" = Microsoft SQL Server 2012 RsFx Driver
"{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727
"{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727
"{B40EE88B-400A-4266-A17B-E3DE64E94431}" = Microsoft SQL Server 2008 Setup Support Files
"{B5E06417-A4AC-4225-B36E-7E34C91616E7}" = Intel® Trusted Connect Service Client
"{BED1EA3D-592D-4305-9D1F-20F03726EFC1}" = Sql Server Customer Experience Improvement Program
"{C16CD4C0-48EE-0F40-C9FD-0778EAF73FBD}" = AMD Wireless Display v3.0
"{C2956908-53A3-88FC-B795-B16508296FC4}" = AMD Catalyst Install Manager
"{C79A7EAB-9D6F-4072-8A6D-F8F54957CD93}" = Microsoft SQL Server 2008 Native Client
"{CB8B2273-EEE7-03ED-D92F-953F801C5AFF}" = AMD Wireless Display v3.0
"{EB45AA0F-96A7-4583-9E6F-6CA4DCFE67CE}" = SolidWorks Composer 2014 SP0 x64 Edition
"{EF6D8BBE-1B53-0041-4B72-29E752EFF7E3}" = AMD Wireless Display v3.0
"{F7CD07B2-565B-D770-0388-9C16A8FA5B1D}" = AMD Accelerated Video Transcoding
"Canon LBP2900" = Canon LBP2900
"CCleaner" = CCleaner
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft SQL Server 11" = Microsoft SQL Server 2012 (64-bit)
"Microsoft SQL Server SQLServer2012" = Microsoft SQL Server 2012 (64-bit)
"Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU" = Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU
"WinRAR archiver" = WinRAR 5.11 beta 1 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator
"{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR
"{0121C0BD-363C-4B1D-8B64-FE7681A37D0A}_is1" = i-Menu version 4.0.8
"{14B16FB5-2012-46A8-BB09-93FD3C384044}" = System Requirements Lab Detection
"{15134cb0-b767-4960-a911-f2d16ae54797}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
"{151AE945-AA23-3834-D5C7-C60832B71B15}" = CCC Help Czech
"{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
"{240C3DDD-C5E9-4029-9DF7-95650D040CF2}" = Intel(R) USB 3.0 eXtensible Host Controller Driver
"{25A3B953-1423-3F15-640E-B620DD0F419A}" = Catalyst Control Center - Branding
"{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727
"{3BD98AAF-61B5-46E0-A6C8-593C242C7C48}" = TP-LINK Wireless Client Utility
"{3D6AD258-61EA-35F5-812C-B7A02152996E}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610
"{44A6C11C-D744-6B2C-D5A1-E32CB1DB0088}" = AMD Catalyst Control Center
"{4AA3D64E-9EC3-4B0F-AB91-5885AC55641F}" = Microsoft Games for Windows - LIVE
"{4B9E6EB0-0EED-4E74-9479-F982C3254F71}" = SQL Server Browser for SQL Server 2012
"{4DC7C1AB-4389-B736-082D-1BFA6BC10293}" = CCC Help Greek
"{51307F85-BD05-1938-8440-E88FD13585CA}" = CCC Help Chinese Traditional
"{5565E164-9928-CEDD-5011-9EE073D797B9}" = CCC Help Japanese
"{5947D004-A315-F50D-D24F-4C9D5B8413A5}" = CCC Help Spanish
"{5AAF27C9-51C1-DEF1-230F-9F348E2DF885}" = CCC Help Russian
"{5BBF2F0E-8891-0E74-83D3-0DBDB750EDC6}" = CCC Help Norwegian
"{5C89D6B4-C8C4-08B9-4381-4E6C9BA3C094}" = CCC Help Italian
"{64A47A55-1E5E-82F1-26A6-8157D34739A4}" = CCC Help Chinese Standard
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{755C6015-01B7-475D-448A-CE4D35E68F38}" = CCC Help Dutch
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1" = SUPER CHARGER
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86CF0325-7921-55A6-16B2-254E77C40FE4}" = CCC Help French
"{877AB8B2-9D11-D640-7B11-730699E0C9A2}" = CCC Help Swedish
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{90120000-00A4-0409-0000-0000000FF1CE}" = Microsoft Office 2003 Web Components
"{95716cce-fc71-413f-8ad5-56c2892d4b3a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9A974568-D4D5-EED2-1976-132C28211A82}" = CCC Help Korean
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A0ED9B46-5B37-616A-FDCC-3F713BC2972D}" = CCC Help German
"{A11D86BF-B950-759B-3DBF-1575B76BF974}" = CCC Help Polish
"{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA14530E-3EF6-92AB-B39F-DB96F852BBBC}" = CCC Help Portuguese
"{ABAD2544-D794-E1B1-2763-55A9BB811D5A}" = CCC Help Thai
"{AC76BA86-7AD7-1033-7B44-A90000000001}" = Adobe Reader 9
"{B3BE2947-BB03-6079-60DD-41B388BBC74A}" = Catalyst Control Center Graphics Previews Common
"{B89357B0-C12E-F21E-7E8D-CA13BFED19C7}" = CCC Help Hungarian
"{C1EB6825-9339-4B18-99B0-C455B2288FF9}" = TP-LINK Wireless Client Utility
"{C5BE5386-0A43-32DD-9F2B-934B8CCCAC41}" = Catalyst Control Center Localization All
"{C70E8FBB-10F3-1DFF-E35F-6D62264D7A80}" = CCC Help Finnish
"{D481EA96-2313-4A7C-98EE-710D1AF884AC}" = Microsoft Visual Studio 2005 Tools for Applications - ENU
"{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1" = MSI GamingApp
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{E7D4E834-93EB-351F-B8FB-82CDAE623003}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610
"{EC43C902-EF4F-0BF6-FA5F-897D2E450858}" = CCC Help Turkish
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F2AB797F-31A3-A376-736B-9E0533BAB530}" = CCC Help English
"{F3220B5E-9395-F557-8DB9-1E0F29D32026}" = CCC Help Danish
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"{F9835182-794B-4F24-902A-E2CA9D43380F}" = NVIDIA PhysX
"{FD052FB9-FE90-4438-B355-15EDC89D8FB1}" = Microsoft Games for Windows - LIVE Redistributable
"{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727
"Adobe AIR" = Adobe AIR
"Afterburner" = MSI Afterburner 2.3.1
"Avast" = avast! Internet Security
"Battle.net" = Battle.net
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"DAEMON Tools Lite" = DAEMON Tools Lite
"Diablo III" = Diablo III
"Far Cry 3_is1" = Far Cry 3 v1.01
"Google Chrome" = Google Chrome
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"Microsoft Visual Studio 2005 Tools for Applications - ENU" = Microsoft Visual Studio 2005 Tools for Applications - ENU
"OCCT" = OCCT 4.4.1
"PunkBusterSvc" = PunkBuster Services
"Q2FsbG9mRHV0eUdob3N0cw==_is1" = Call of Duty Ghosts
"Raptr" = Raptr
"Screen+_is1" = Screen+ 1.0
"Sniper Elite III_is1" = Sniper Elite III
"SolidWorks Installation Manager 20140-40000-1100-100" = SolidWorks 2014 x64 Edition SP0
"SpeedFan" = SpeedFan (remove only)
"VLC media player" = VLC media player

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 7.10.2014 8:19:19 | Computer Name = Honza-PC | Source = amdacpusrsvc | ID = 0
Description =

Error - 7.10.2014 8:20:56 | Computer Name = Honza-PC | Source = Application Hang | ID = 1002
Description = Program AC4BFSP.exe verze 0.0.0.0 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
174c Čas spuštění: 01cfe228d168e270 Čas ukončení: 207 Cesta k aplikaci: C:\Hry\Assassins
Creed IV - Black Flag\AC4BFSP.exe ID hlášení:

Error - 7.10.2014 9:30:56 | Computer Name = Honza-PC | Source = SideBySide | ID = 16842815
Description = Generování kontextu aktivace pro C:\Program Files (x86)\Common Files\Adobe
AIR\Versions\1.0\Adobe AIR.dll se nezdařilo. Chyba v souboru manifestu nebo zásady
C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll na řádku
3. Hodnota MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR atributu
version v prvku assemblyIdentity je neplatná.

Error - 7.10.2014 10:05:33 | Computer Name = Honza-PC | Source = amdacpusrsvc | ID = 0
Description =

Error - 7.10.2014 10:05:55 | Computer Name = Honza-PC | Source = Application Hang | ID = 1002
Description = Program AC4BFSP.exe verze 0.0.0.0 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
500 Čas spuštění: 01cfe2379f2825dd Čas ukončení: 206 Cesta k aplikaci: C:\Hry\Assassins
Creed IV - Black Flag\AC4BFSP.exe ID hlášení:

Error - 7.10.2014 10:12:57 | Computer Name = Honza-PC | Source = Application Hang | ID = 1002
Description = Program Setup.tmp verze 51.1052.0.0 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
d08 Čas spuštění: 01cfe238695e7660 Čas ukončení: 7 Cesta k aplikaci: C:\Users\Honza\AppData\Local\Temp\is-AGMQQ.tmp\Setup.tmp

ID
hlášení:

Error - 7.10.2014 11:21:51 | Computer Name = Honza-PC | Source = amdacpusrsvc | ID = 0
Description =

Error - 7.10.2014 11:22:11 | Computer Name = Honza-PC | Source = SetupARService | ID = 0
Description = Službu nelze spustit. System.NullReferenceException: Odkaz na objekt
není nastaven na instanci objektu. v SetupAfterRebootService.SetupARService.OnStart(String[]
args) v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error - 7.10.2014 11:32:18 | Computer Name = Honza-PC | Source = amdacpusrsvc | ID = 0
Description =

Error - 7.10.2014 11:33:04 | Computer Name = Honza-PC | Source = Application Hang | ID = 1002
Description = Program AC4BFSP.exe verze 0.0.0.0 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
7e4 Čas spuštění: 01cfe243c1300dc6 Čas ukončení: 9139 Cesta k aplikaci: C:\Hry\Assassins
Creed IV - Black Flag\AC4BFSP.exe ID hlášení:

[ System Events ]
Error - 4.10.2014 21:52:42 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 5.10.2014 7:56:10 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 5.10.2014 8:58:18 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 5.10.2014 20:53:33 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 6.10.2014 6:54:39 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7009
Description = Při čekání na připojení služby SQL Server (TEW_SQLEXPRESS) bylo dosaženo
časového limitu (30000 ms).

Error - 6.10.2014 6:54:39 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7000
Description = Služba SQL Server (TEW_SQLEXPRESS) neuspěla při spuštění v důsledku
následující chyby: %%1053

Error - 6.10.2014 9:08:30 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 6.10.2014 9:24:20 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 6.10.2014 19:38:40 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 7.10.2014 10:54:45 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.


< End of report >

Jan55
Návštěvník
Návštěvník
Příspěvky: 174
Registrován: 14 kvě 2007 16:15
Kontaktovat uživatele:

Re: Prosím o kontrolu logu asi vir : )

#6 Příspěvek od Jan55 »

OTL Extras logfile created on: 7.10.2014 20:59:16 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Honza\Downloads
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

7,93 Gb Total Physical Memory | 5,35 Gb Available Physical Memory | 67,43% Memory free
15,86 Gb Paging File | 12,27 Gb Available in Paging File | 77,39% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931,41 Gb Total Space | 666,44 Gb Free Space | 71,55% Space Free | Partition Type: NTFS

Computer Name: HONZA-PC | User Name: Honza | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = OperaStable] -- Reg Error: Key error. File not found
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = OperaStable] -- Reg Error: Key error. File not found

[HKEY_USERS\S-1-5-21-3599238740-2346632114-2589644761-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1"
https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1"
https [open] -- "C:\Program Files (x86)\Opera\launcher.exe" -noautoupdate -- "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{EC996790-0897-4FF1-B8A6-2EEEDD6F756E}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01D88EB9-26EA-475A-9660-A0475A121F7E}" = protocol=17 | dir=in | app=c:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{09A83DB5-F08F-4AC6-B033-DF259AAE119D}" = protocol=17 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{11E85D0A-4821-42F6-BB61-BB0EDFF2D1AC}" = protocol=17 | dir=in | app=c:\program files\solidworks corp\solidworks\swscheduler\dtscoordinatorservice.exe |
"{19C33D71-BFF3-4D7D-9977-A61C0F22005A}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{1A6D4566-327F-4489-9E03-8604AF0036DC}" = protocol=6 | dir=in | app=c:\program files\solidworks corp\solidworks\photoview\photoview360.exe |
"{24114E7A-D84D-465B-A031-38E3B775A19D}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3427\agent.exe |
"{2C10E317-5A6E-48DF-BC79-3B7A96F35ADE}" = protocol=17 | dir=in | app=c:\program files\solidworks corp\solidworks\photoview\photoview360.exe |
"{4EBC01C3-F51E-4BD9-8A25-21EC4C9A4294}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3372\agent.exe |
"{54C62FBC-322F-458C-BDD6-4CAD4D5D8DC6}" = protocol=6 | dir=in | app=c:\program files (x86)\raptr\raptr_im.exe |
"{575B9692-32B7-45D7-86EA-7012CEB1B7B0}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.3372\agent.exe |
"{5A503922-D774-40A4-9FFD-2AEB270B3C6E}" = protocol=17 | dir=in | app=c:\program files\solidworks corp\solidworks\photoview\photoview360_cl.exe |
"{5E36B21F-38B4-4C59-B45D-866FD922082D}" = protocol=6 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe |
"{69ABDC5F-CC48-48C7-BDAE-17A0BC3F2B22}" = protocol=6 | dir=in | app=c:\program files\solidworks corp\solidworks\swscheduler\dtscoordinatorservice.exe |
"{6EB84377-EEA7-468D-86FF-DDD071BA15EF}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{800484FD-D4A1-406A-934A-6F4D0E718610}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{90913429-F4B6-4D9D-9923-D255FC0CC7A6}" = protocol=6 | dir=in | app=c:\program files\solidworks corp\solidworks\photoview\photoview360_cl.exe |
"{9AE0719B-A694-4BB5-A06D-9C691505B032}" = protocol=6 | dir=in | app=c:\program files (x86)\raptr\raptr.exe |
"{9E2E4398-BD4E-4DFE-8893-9ED8B3AE932B}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{AA4FF08D-5FFA-43A0-86EA-36B5683B9D0B}" = protocol=6 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe |
"{B0E98525-373F-42DD-822D-2A99C436CC3F}" = protocol=6 | dir=in | app=c:\program files (x86)\activision\call of duty 4 - modern warfare\iw3mp.exe |
"{C93A72AF-6F6D-4550-9739-3C1A6BA4647D}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.3427\agent.exe |
"{D14F9A5C-E2D8-445D-B26B-CACA06CE7F88}" = protocol=17 | dir=in | app=c:\program files (x86)\diablo iii\diablo iii.exe |
"{D38A8522-EA03-465D-8F00-4E5F5EDE556D}" = protocol=17 | dir=in | app=c:\program files (x86)\raptr\raptr_im.exe |
"{E022AC4E-FC34-4813-B533-81B1D806E5FF}" = protocol=17 | dir=in | app=c:\windows\system32\cnab4rpd.exe |
"{E5865AFC-9EA8-4F91-AA46-BA497D74019E}" = protocol=6 | dir=in | app=c:\windows\system32\cnab4rpd.exe |
"{F07ECF09-39BE-4A1A-B4C9-BF6D14DA3966}" = protocol=17 | dir=in | app=c:\program files (x86)\raptr\raptr.exe |
"TCP Query User{3D90A8FD-7C35-4541-A3F2-A76E473E5356}C:\hry\far cry 3\bin\farcry3_d3d11.exe" = protocol=6 | dir=in | app=c:\hry\far cry 3\bin\farcry3_d3d11.exe |
"TCP Query User{74F54A3C-68EE-4F2D-9B6C-C34B23497893}C:\hry\far cry 3\bin\farcry3.exe" = protocol=6 | dir=in | app=c:\hry\far cry 3\bin\farcry3.exe |
"TCP Query User{9F60C294-8F9A-45BD-843C-34A9CACC645F}C:\program files\solidworks corp\solidworks electrical\bin\solidworkselectrical.exe" = protocol=6 | dir=in | app=c:\program files\solidworks corp\solidworks electrical\bin\solidworkselectrical.exe |
"TCP Query User{BFAF2138-5289-45CF-A955-1B0600EC7D95}C:\users\honza\appdata\roaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\honza\appdata\roaming\utorrent\utorrent.exe |
"TCP Query User{D72A1AB4-9DD4-4E4F-9D0B-1555E70BE4F7}C:\users\honza\appdata\roaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\honza\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{0231D435-D571-4E1A-AB11-0056839675F3}C:\hry\far cry 3\bin\farcry3.exe" = protocol=17 | dir=in | app=c:\hry\far cry 3\bin\farcry3.exe |
"UDP Query User{123C4E3D-8810-4EA3-9B3D-E9B021D5DCED}C:\program files\solidworks corp\solidworks electrical\bin\solidworkselectrical.exe" = protocol=17 | dir=in | app=c:\program files\solidworks corp\solidworks electrical\bin\solidworkselectrical.exe |
"UDP Query User{8CE8F424-18F9-4AFD-8FAF-A3D496EE8054}C:\users\honza\appdata\roaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\honza\appdata\roaming\utorrent\utorrent.exe |
"UDP Query User{A6FE9011-23EC-4464-841C-C142ECCFDED1}C:\hry\far cry 3\bin\farcry3_d3d11.exe" = protocol=17 | dir=in | app=c:\hry\far cry 3\bin\farcry3_d3d11.exe |
"UDP Query User{AA09A104-C0B8-4620-AFAA-7E10170AB4D9}C:\users\honza\appdata\roaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\honza\appdata\roaming\utorrent\utorrent.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0A2E1907-D0DE-0D01-CA64-CB0AB0BFE539}" = AMD Wireless Display v3.0
"{0C10FAF1-35D5-416A-B7C1-4168ED9485FA}" = SolidWorks Explorer 2014 SP0 x64 Edition
"{0E8670B8-3965-4930-ADA6-570348B67153}" = Microsoft SQL Server 2012 Transact-SQL ScriptDom
"{104E8BAF-2E2A-4467-A5C0-92ED92F26547}" = SolidWorks Plastics 2014 SP0 x64 Edition
"{18B2A97C-92C3-4AC7-BE72-F823E0BC895B}" = SQL Server 2012 Database Engine Services
"{1AD147D0-BE0E-3D6C-AC11-64F6DC4163F1}" = Microsoft .NET Framework 4.5
"{1D411379-9CE0-4B13-A19B-72D3222DD620}" = SQL Server 2012 Common Files
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{202AAF1F-69AA-442A-B59F-6B54B1AD07C6}" = SQL Server 2012 Common Files
"{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610
"{3412473A-6242-C8D1-DF14-DC22AF6AB178}" = AMD Drag and Drop Transcoding
"{3E0DD83F-BE4C-4478-86A0-AD0D79D1353E}" = Microsoft VSS Writer for SQL Server 2012
"{3F08399F-67CD-4950-AED0-64A9590FE626}" = SolidWorks Electrical 2014 SP0 x64 Edition
"{49D665A2-4C2A-476E-9AB8-FCC425F526FC}" = Microsoft SQL Server 2012 Native Client
"{4DC5DE7E-E67D-4A2B-8E67-EB7B28045247}" = SolidWorks Flow Simulation 2014 SP0 x64 Edition
"{4FFA60C4-9A8B-4C9E-8265-2241B266304C}" = SolidWorks 2014 x64 Edition SP0
"{5082D598-71D5-920A-E6BF-44F54AD910A7}" = AMD Media Foundation Decoders
"{542DDF04-9F91-4F36-B2F4-2638B788A4C8}" = Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU
"{54FF8FAB-DE27-4187-82F1-EBAE6AEE869A}" = SQL Server 2012 Database Engine Shared
"{5B09B029-2003-68CB-4918-D36567A244BC}" = ACP Application
"{5DDC2234-4B37-45BC-AD33-41F1469B4D83}" = Microsoft SQL Server 2012 Setup (English)
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6603C2CE-3C54-4F1D-92F9-8390CD4CCCA8}" = SQL Server 2012 Database Engine Shared
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{7273387F-793D-43F9-BAF7-7E05F53CFB8D}" = COSMOSM 2014 x64 Edition (2010/290)
"{73D93E65-16D1-48EE-865E-6C666CB9964E}" = SolidWorks 2014 x64 Czech Resources
"{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{83561930-B86E-416B-ADF2-E4EA2199BA6D}" = Photoview 360 Network Render Client 2014 SP0 x64 Edition
"{84FBCA4A-D650-4B0D-8094-EC0671FA9B91}" = SQL Server 2012 Database Engine Services
"{8A66D41F-61C1-4DBE-9C27-F663C4ADE9A8}" = SolidWorks eDrawings 2014 x64 Edition SP0
"{90120064-0070-0000-0000-4000000FF1CE}" = Microsoft Visual Basic for Applications 7.1 (x64)
"{90F60409-7000-11D3-8CFE-0150048383C9}" = Microsoft Visual Basic for Applications 7.1 (x64) English
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5
"{A0F05048-7653-4FCD-9F3A-C740E4052ACE}" = Microsoft SQL Server 2012 RsFx Driver
"{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727
"{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727
"{B40EE88B-400A-4266-A17B-E3DE64E94431}" = Microsoft SQL Server 2008 Setup Support Files
"{B5E06417-A4AC-4225-B36E-7E34C91616E7}" = Intel® Trusted Connect Service Client
"{BED1EA3D-592D-4305-9D1F-20F03726EFC1}" = Sql Server Customer Experience Improvement Program
"{C16CD4C0-48EE-0F40-C9FD-0778EAF73FBD}" = AMD Wireless Display v3.0
"{C2956908-53A3-88FC-B795-B16508296FC4}" = AMD Catalyst Install Manager
"{C79A7EAB-9D6F-4072-8A6D-F8F54957CD93}" = Microsoft SQL Server 2008 Native Client
"{CB8B2273-EEE7-03ED-D92F-953F801C5AFF}" = AMD Wireless Display v3.0
"{EB45AA0F-96A7-4583-9E6F-6CA4DCFE67CE}" = SolidWorks Composer 2014 SP0 x64 Edition
"{EF6D8BBE-1B53-0041-4B72-29E752EFF7E3}" = AMD Wireless Display v3.0
"{F7CD07B2-565B-D770-0388-9C16A8FA5B1D}" = AMD Accelerated Video Transcoding
"Canon LBP2900" = Canon LBP2900
"CCleaner" = CCleaner
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft SQL Server 11" = Microsoft SQL Server 2012 (64-bit)
"Microsoft SQL Server SQLServer2012" = Microsoft SQL Server 2012 (64-bit)
"Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU" = Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU
"WinRAR archiver" = WinRAR 5.11 beta 1 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator
"{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR
"{0121C0BD-363C-4B1D-8B64-FE7681A37D0A}_is1" = i-Menu version 4.0.8
"{14B16FB5-2012-46A8-BB09-93FD3C384044}" = System Requirements Lab Detection
"{15134cb0-b767-4960-a911-f2d16ae54797}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
"{151AE945-AA23-3834-D5C7-C60832B71B15}" = CCC Help Czech
"{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
"{240C3DDD-C5E9-4029-9DF7-95650D040CF2}" = Intel(R) USB 3.0 eXtensible Host Controller Driver
"{25A3B953-1423-3F15-640E-B620DD0F419A}" = Catalyst Control Center - Branding
"{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727
"{3BD98AAF-61B5-46E0-A6C8-593C242C7C48}" = TP-LINK Wireless Client Utility
"{3D6AD258-61EA-35F5-812C-B7A02152996E}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610
"{44A6C11C-D744-6B2C-D5A1-E32CB1DB0088}" = AMD Catalyst Control Center
"{4AA3D64E-9EC3-4B0F-AB91-5885AC55641F}" = Microsoft Games for Windows - LIVE
"{4B9E6EB0-0EED-4E74-9479-F982C3254F71}" = SQL Server Browser for SQL Server 2012
"{4DC7C1AB-4389-B736-082D-1BFA6BC10293}" = CCC Help Greek
"{51307F85-BD05-1938-8440-E88FD13585CA}" = CCC Help Chinese Traditional
"{5565E164-9928-CEDD-5011-9EE073D797B9}" = CCC Help Japanese
"{5947D004-A315-F50D-D24F-4C9D5B8413A5}" = CCC Help Spanish
"{5AAF27C9-51C1-DEF1-230F-9F348E2DF885}" = CCC Help Russian
"{5BBF2F0E-8891-0E74-83D3-0DBDB750EDC6}" = CCC Help Norwegian
"{5C89D6B4-C8C4-08B9-4381-4E6C9BA3C094}" = CCC Help Italian
"{64A47A55-1E5E-82F1-26A6-8157D34739A4}" = CCC Help Chinese Standard
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{755C6015-01B7-475D-448A-CE4D35E68F38}" = CCC Help Dutch
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1" = SUPER CHARGER
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86CF0325-7921-55A6-16B2-254E77C40FE4}" = CCC Help French
"{877AB8B2-9D11-D640-7B11-730699E0C9A2}" = CCC Help Swedish
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{90120000-00A4-0409-0000-0000000FF1CE}" = Microsoft Office 2003 Web Components
"{95716cce-fc71-413f-8ad5-56c2892d4b3a}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9A974568-D4D5-EED2-1976-132C28211A82}" = CCC Help Korean
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A0ED9B46-5B37-616A-FDCC-3F713BC2972D}" = CCC Help German
"{A11D86BF-B950-759B-3DBF-1575B76BF974}" = CCC Help Polish
"{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA14530E-3EF6-92AB-B39F-DB96F852BBBC}" = CCC Help Portuguese
"{ABAD2544-D794-E1B1-2763-55A9BB811D5A}" = CCC Help Thai
"{AC76BA86-7AD7-1033-7B44-A90000000001}" = Adobe Reader 9
"{B3BE2947-BB03-6079-60DD-41B388BBC74A}" = Catalyst Control Center Graphics Previews Common
"{B89357B0-C12E-F21E-7E8D-CA13BFED19C7}" = CCC Help Hungarian
"{C1EB6825-9339-4B18-99B0-C455B2288FF9}" = TP-LINK Wireless Client Utility
"{C5BE5386-0A43-32DD-9F2B-934B8CCCAC41}" = Catalyst Control Center Localization All
"{C70E8FBB-10F3-1DFF-E35F-6D62264D7A80}" = CCC Help Finnish
"{D481EA96-2313-4A7C-98EE-710D1AF884AC}" = Microsoft Visual Studio 2005 Tools for Applications - ENU
"{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1" = MSI GamingApp
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{E7D4E834-93EB-351F-B8FB-82CDAE623003}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610
"{EC43C902-EF4F-0BF6-FA5F-897D2E450858}" = CCC Help Turkish
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F2AB797F-31A3-A376-736B-9E0533BAB530}" = CCC Help English
"{F3220B5E-9395-F557-8DB9-1E0F29D32026}" = CCC Help Danish
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"{F9835182-794B-4F24-902A-E2CA9D43380F}" = NVIDIA PhysX
"{FD052FB9-FE90-4438-B355-15EDC89D8FB1}" = Microsoft Games for Windows - LIVE Redistributable
"{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727
"Adobe AIR" = Adobe AIR
"Afterburner" = MSI Afterburner 2.3.1
"Avast" = avast! Internet Security
"Battle.net" = Battle.net
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"DAEMON Tools Lite" = DAEMON Tools Lite
"Diablo III" = Diablo III
"Far Cry 3_is1" = Far Cry 3 v1.01
"Google Chrome" = Google Chrome
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"Microsoft Visual Studio 2005 Tools for Applications - ENU" = Microsoft Visual Studio 2005 Tools for Applications - ENU
"OCCT" = OCCT 4.4.1
"PunkBusterSvc" = PunkBuster Services
"Q2FsbG9mRHV0eUdob3N0cw==_is1" = Call of Duty Ghosts
"Raptr" = Raptr
"Screen+_is1" = Screen+ 1.0
"Sniper Elite III_is1" = Sniper Elite III
"SolidWorks Installation Manager 20140-40000-1100-100" = SolidWorks 2014 x64 Edition SP0
"SpeedFan" = SpeedFan (remove only)
"VLC media player" = VLC media player

========== Last 20 Event Log Errors ==========

[ Application Events ]
Error - 7.10.2014 8:19:19 | Computer Name = Honza-PC | Source = amdacpusrsvc | ID = 0
Description =

Error - 7.10.2014 8:20:56 | Computer Name = Honza-PC | Source = Application Hang | ID = 1002
Description = Program AC4BFSP.exe verze 0.0.0.0 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
174c Čas spuštění: 01cfe228d168e270 Čas ukončení: 207 Cesta k aplikaci: C:\Hry\Assassins
Creed IV - Black Flag\AC4BFSP.exe ID hlášení:

Error - 7.10.2014 9:30:56 | Computer Name = Honza-PC | Source = SideBySide | ID = 16842815
Description = Generování kontextu aktivace pro C:\Program Files (x86)\Common Files\Adobe
AIR\Versions\1.0\Adobe AIR.dll se nezdařilo. Chyba v souboru manifestu nebo zásady
C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll na řádku
3. Hodnota MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR atributu
version v prvku assemblyIdentity je neplatná.

Error - 7.10.2014 10:05:33 | Computer Name = Honza-PC | Source = amdacpusrsvc | ID = 0
Description =

Error - 7.10.2014 10:05:55 | Computer Name = Honza-PC | Source = Application Hang | ID = 1002
Description = Program AC4BFSP.exe verze 0.0.0.0 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
500 Čas spuštění: 01cfe2379f2825dd Čas ukončení: 206 Cesta k aplikaci: C:\Hry\Assassins
Creed IV - Black Flag\AC4BFSP.exe ID hlášení:

Error - 7.10.2014 10:12:57 | Computer Name = Honza-PC | Source = Application Hang | ID = 1002
Description = Program Setup.tmp verze 51.1052.0.0 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
d08 Čas spuštění: 01cfe238695e7660 Čas ukončení: 7 Cesta k aplikaci: C:\Users\Honza\AppData\Local\Temp\is-AGMQQ.tmp\Setup.tmp

ID
hlášení:

Error - 7.10.2014 11:21:51 | Computer Name = Honza-PC | Source = amdacpusrsvc | ID = 0
Description =

Error - 7.10.2014 11:22:11 | Computer Name = Honza-PC | Source = SetupARService | ID = 0
Description = Službu nelze spustit. System.NullReferenceException: Odkaz na objekt
není nastaven na instanci objektu. v SetupAfterRebootService.SetupARService.OnStart(String[]
args) v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error - 7.10.2014 11:32:18 | Computer Name = Honza-PC | Source = amdacpusrsvc | ID = 0
Description =

Error - 7.10.2014 11:33:04 | Computer Name = Honza-PC | Source = Application Hang | ID = 1002
Description = Program AC4BFSP.exe verze 0.0.0.0 přestal spolupracovat se systémem
Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto
problému, vyhledejte historii problému v ovládacím panelu Centrum akcí. ID procesu:
7e4 Čas spuštění: 01cfe243c1300dc6 Čas ukončení: 9139 Cesta k aplikaci: C:\Hry\Assassins
Creed IV - Black Flag\AC4BFSP.exe ID hlášení:

[ System Events ]
Error - 4.10.2014 21:52:42 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 5.10.2014 7:56:10 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 5.10.2014 8:58:18 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 5.10.2014 20:53:33 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 6.10.2014 6:54:39 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7009
Description = Při čekání na připojení služby SQL Server (TEW_SQLEXPRESS) bylo dosaženo
časového limitu (30000 ms).

Error - 6.10.2014 6:54:39 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7000
Description = Služba SQL Server (TEW_SQLEXPRESS) neuspěla při spuštění v důsledku
následující chyby: %%1053

Error - 6.10.2014 9:08:30 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 6.10.2014 9:24:20 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 6.10.2014 19:38:40 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.

Error - 7.10.2014 10:54:45 | Computer Name = Honza-PC | Source = Service Control Manager | ID = 7016
Description = Služba SolidWorks Electrical Collaborative Server ohlásila neplatný
současný stav 0.


< End of report >

Jan55
Návštěvník
Návštěvník
Příspěvky: 174
Registrován: 14 kvě 2007 16:15
Kontaktovat uživatele:

Re: Prosím o kontrolu logu asi vir : )

#7 Příspěvek od Jan55 »

OTL logfile created on: 7.10.2014 20:59:16 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Honza\Downloads
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

7,93 Gb Total Physical Memory | 5,35 Gb Available Physical Memory | 67,43% Memory free
15,86 Gb Paging File | 12,27 Gb Available in Paging File | 77,39% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931,41 Gb Total Space | 666,44 Gb Free Space | 71,55% Space Free | Partition Type: NTFS

Computer Name: HONZA-PC | User Name: Honza | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014.10.07 20:58:19 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Honza\Downloads\OTL.exe
PRC - [2014.10.06 15:15:14 | 000,106,488 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\afwServ.exe
PRC - [2014.10.04 00:01:00 | 009,987,120 | ---- | M] (Blizzard Entertainment) -- C:\Program Files (x86)\Battle.net\Battle.net.5115\Battle.net.exe
PRC - [2014.10.04 00:00:07 | 010,552,880 | ---- | M] (Blizzard Entertainment) -- C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe
PRC - [2014.09.23 06:07:06 | 000,852,808 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2014.09.12 06:59:50 | 000,076,888 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2014.09.06 20:26:39 | 004,085,896 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\avastui.exe
PRC - [2014.09.06 20:26:17 | 000,050,344 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2014.08.20 03:36:38 | 000,045,840 | ---- | M] (Raptr, Inc) -- C:\Program Files (x86)\Raptr\raptr_im.exe
PRC - [2014.08.20 03:36:34 | 000,066,832 | ---- | M] (Raptr, Inc) -- C:\Program Files (x86)\Raptr\raptr.exe
PRC - [2014.04.14 00:00:00 | 000,398,760 | ---- | M] (BitTorrent, Inc.) -- C:\Users\Honza\AppData\Roaming\uTorrent\utorrent.exe
PRC - [2014.02.21 10:42:40 | 001,047,536 | ---- | M] (MSI) -- C:\Program Files (x86)\MSI\SUPER CHARGER\SUPER CHARGER.exe
PRC - [2014.02.21 10:18:52 | 000,162,800 | ---- | M] (MSI) -- C:\Program Files (x86)\MSI\SUPER CHARGER\ChargeService.exe
PRC - [2013.09.16 21:19:26 | 000,390,616 | R--- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2013.09.16 21:19:22 | 000,169,432 | R--- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
PRC - [2013.04.26 04:25:54 | 000,292,848 | R--- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
PRC - [2009.01.14 17:50:20 | 000,491,520 | ---- | M] (TP-LINK TECHNOLOGIES CO., LTD.) -- C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Client Utility\ZDWlan.exe


========== Modules (No Company Name) ==========

MOD - [2014.10.04 00:00:59 | 026,065,408 | ---- | M] () -- C:\Program Files (x86)\Battle.net\Battle.net.5115\libcef.dll
MOD - [2014.10.04 00:00:59 | 000,905,216 | ---- | M] () -- C:\Program Files (x86)\Battle.net\Battle.net.5115\platforms\qwindows.dll
MOD - [2014.10.04 00:00:59 | 000,739,840 | ---- | M] () -- C:\Program Files (x86)\Battle.net\Battle.net.5115\libGLESv2.dll
MOD - [2014.10.04 00:00:59 | 000,130,048 | ---- | M] () -- C:\Program Files (x86)\Battle.net\Battle.net.5115\libEGL.dll
MOD - [2014.10.04 00:00:59 | 000,054,272 | ---- | M] () -- C:\Program Files (x86)\Battle.net\Battle.net.5115\qml\QtQuick\Layouts\qquicklayoutsplugin.dll
MOD - [2014.10.04 00:00:59 | 000,010,240 | ---- | M] () -- C:\Program Files (x86)\Battle.net\Battle.net.5115\qml\QtQuick.2\qtquick2plugin.dll
MOD - [2014.10.04 00:00:59 | 000,010,240 | ---- | M] () -- C:\Program Files (x86)\Battle.net\Battle.net.5115\qml\QtQml\Models.2\modelsplugin.dll
MOD - [2014.10.04 00:00:58 | 000,312,832 | ---- | M] () -- C:\Program Files (x86)\Battle.net\Battle.net.5115\imageformats\qtiff.dll
MOD - [2014.10.04 00:00:58 | 000,225,792 | ---- | M] () -- C:\Program Files (x86)\Battle.net\Battle.net.5115\imageformats\qmng.dll
MOD - [2014.10.04 00:00:58 | 000,205,312 | ---- | M] () -- C:\Program Files (x86)\Battle.net\Battle.net.5115\imageformats\qjpeg.dll
MOD - [2014.10.04 00:00:58 | 000,020,992 | ---- | M] () -- C:\Program Files (x86)\Battle.net\Battle.net.5115\imageformats\qico.dll
MOD - [2014.10.04 00:00:58 | 000,020,992 | ---- | M] () -- C:\Program Files (x86)\Battle.net\Battle.net.5115\imageformats\qgif.dll
MOD - [2014.09.23 06:07:05 | 000,331,592 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\ppgooglenaclpluginchrome.dll
MOD - [2014.09.23 06:07:02 | 008,577,864 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\pdf.dll
MOD - [2014.09.23 06:06:58 | 001,098,056 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\libglesv2.dll
MOD - [2014.09.23 06:06:56 | 000,174,408 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\libegl.dll
MOD - [2014.09.23 06:06:55 | 001,660,232 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\ffmpegsumo.dll
MOD - [2014.09.06 20:26:17 | 019,329,904 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll
MOD - [2014.09.06 20:26:17 | 000,301,152 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\aswProperty.dll
MOD - [2014.08.20 03:34:54 | 000,031,488 | ---- | M] () -- C:\Program Files (x86)\Raptr\ltc_host_ex.dll
MOD - [2014.06.18 02:56:00 | 002,717,595 | ---- | M] () -- C:\Program Files (x86)\Raptr\heliotrope._purple.pyd
MOD - [2014.05.14 01:26:54 | 001,662,464 | ---- | M] () -- C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd
MOD - [2014.05.14 01:26:54 | 000,494,592 | ---- | M] () -- C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd
MOD - [2014.05.14 01:26:52 | 005,812,736 | ---- | M] () -- C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd
MOD - [2014.05.14 01:26:52 | 000,313,856 | ---- | M] () -- C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd
MOD - [2014.05.14 01:26:40 | 000,067,584 | ---- | M] () -- C:\Program Files (x86)\Raptr\sip.pyd
MOD - [2013.11.21 02:05:26 | 000,256,000 | ---- | M] () -- C:\Program Files (x86)\Raptr\amd_ags.dll
MOD - [2013.05.10 01:52:58 | 001,183,699 | ---- | M] () -- C:\Program Files (x86)\Raptr\liboscar.dll
MOD - [2013.05.10 01:52:58 | 000,483,306 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libicq.dll
MOD - [2013.05.10 01:52:56 | 000,495,680 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libaim.dll
MOD - [2013.05.03 20:57:16 | 001,640,221 | ---- | M] () -- C:\Program Files (x86)\Raptr\libjabber.dll
MOD - [2013.05.03 20:57:14 | 001,053,730 | ---- | M] () -- C:\Program Files (x86)\Raptr\libymsg.dll
MOD - [2013.05.03 20:57:06 | 000,655,356 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libirc.dll
MOD - [2013.05.03 20:57:04 | 000,603,326 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll
MOD - [2013.05.03 20:57:02 | 000,474,199 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\ssl.dll
MOD - [2013.05.03 20:57:00 | 000,497,782 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll
MOD - [2013.05.03 20:56:50 | 001,306,387 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libmsn.dll
MOD - [2013.05.03 20:56:46 | 000,565,461 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libxmpp.dll
MOD - [2013.05.03 20:56:44 | 000,506,276 | ---- | M] () -- C:\Program Files (x86)\Raptr\plugins\libyahoo.dll
MOD - [2011.02.15 20:17:28 | 001,213,633 | ---- | M] () -- C:\Program Files (x86)\Raptr\libxml2-2.dll
MOD - [2011.02.15 20:17:28 | 000,417,501 | ---- | M] () -- C:\Program Files (x86)\Raptr\sqlite3.dll
MOD - [2010.11.23 01:06:22 | 000,055,808 | ---- | M] () -- C:\Program Files (x86)\Raptr\zlib1.dll
MOD - [2010.11.23 00:57:34 | 000,167,936 | ---- | M] () -- C:\Program Files (x86)\Raptr\win32gui.pyd
MOD - [2010.11.23 00:57:34 | 000,111,104 | ---- | M] () -- C:\Program Files (x86)\Raptr\win32file.pyd
MOD - [2010.11.23 00:57:34 | 000,096,256 | ---- | M] () -- C:\Program Files (x86)\Raptr\win32api.pyd
MOD - [2010.11.23 00:57:34 | 000,036,352 | ---- | M] () -- C:\Program Files (x86)\Raptr\win32process.pyd
MOD - [2010.11.23 00:57:34 | 000,016,384 | ---- | M] () -- C:\Program Files (x86)\Raptr\win32trace.pyd
MOD - [2010.11.23 00:57:18 | 000,141,312 | ---- | M] () -- C:\Program Files (x86)\Raptr\gobject._gobject.pyd
MOD - [2010.11.23 00:57:06 | 000,263,168 | ---- | M] () -- C:\Program Files (x86)\Raptr\win32com.shell.shell.pyd
MOD - [2010.11.23 00:56:56 | 000,354,304 | ---- | M] () -- C:\Program Files (x86)\Raptr\pythoncom26.dll
MOD - [2010.11.23 00:56:56 | 000,110,592 | ---- | M] () -- C:\Program Files (x86)\Raptr\pywintypes26.dll
MOD - [2010.11.23 00:56:26 | 000,324,608 | ---- | M] () -- C:\Program Files (x86)\Raptr\PIL._imaging.pyd
MOD - [2010.11.23 00:56:02 | 000,805,376 | ---- | M] () -- C:\Program Files (x86)\Raptr\_ssl.pyd
MOD - [2010.11.23 00:56:02 | 000,583,680 | ---- | M] () -- C:\Program Files (x86)\Raptr\unicodedata.pyd
MOD - [2010.11.23 00:56:02 | 000,356,864 | ---- | M] () -- C:\Program Files (x86)\Raptr\_hashlib.pyd
MOD - [2010.11.23 00:56:02 | 000,127,488 | ---- | M] () -- C:\Program Files (x86)\Raptr\pyexpat.pyd
MOD - [2010.11.23 00:56:02 | 000,087,040 | ---- | M] () -- C:\Program Files (x86)\Raptr\_ctypes.pyd
MOD - [2010.11.23 00:56:02 | 000,044,544 | ---- | M] () -- C:\Program Files (x86)\Raptr\_sqlite3.pyd
MOD - [2010.11.23 00:56:02 | 000,043,008 | ---- | M] () -- C:\Program Files (x86)\Raptr\_socket.pyd
MOD - [2010.11.23 00:56:02 | 000,010,240 | ---- | M] () -- C:\Program Files (x86)\Raptr\select.pyd
MOD - [2010.11.23 00:56:02 | 000,009,216 | ---- | M] () -- C:\Program Files (x86)\Raptr\winsound.pyd
MOD - [2009.01.05 14:54:54 | 000,045,056 | ---- | M] () -- C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Client Utility\ZDWlan.dll
MOD - [2009.01.05 14:54:52 | 000,212,992 | ---- | M] () -- C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Client Utility\dot1x_dll.dll


========== Services (SafeList) ==========

SRV:64bit: - File not found [Auto | Running] -- C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\remotesolverdispatcherservice.exe SOFTWARE\SRAC\COSMOS_FloWorks 2014 -- (RemoteSolverDispatcher)
SRV:64bit: - [2014.10.06 15:15:14 | 000,106,488 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\afwServ.exe -- (avast! Firewall)
SRV:64bit: - [2014.09.21 22:34:12 | 001,431,888 | ---- | M] (Flexera Software, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe -- (FLEXnet Licensing Service 64)
SRV:64bit: - [2014.09.16 00:03:18 | 000,239,616 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2014.09.06 20:26:17 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2013.09.21 09:46:02 | 000,076,328 | ---- | M] (Dassault Systèmes SolidWorks Corp.) [On_Demand | Stopped] -- C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe -- (CoordinatorServiceHost)
SRV:64bit: - [2013.09.20 21:40:30 | 000,201,072 | ---- | M] (Trace Software International) [Auto | Running] -- C:\Program Files\SolidWorks Corp\SolidWorks Electrical\server\EwServer.exe -- (ewserver)
SRV:64bit: - [2013.08.27 14:32:30 | 000,828,376 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R)
SRV:64bit: - [2013.08.27 14:32:14 | 000,747,520 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV:64bit: - [2009.07.14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009.07.14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2014.10.05 23:14:30 | 000,068,608 | ---- | M] (globalUpdate) [On_Demand | Stopped] -- C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe -- (globalUpdatem)
SRV - [2014.10.05 23:14:30 | 000,068,608 | ---- | M] (globalUpdate) [Auto | Stopped] -- C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe -- (globalUpdate)
SRV - [2014.09.21 22:27:35 | 000,079,360 | ---- | M] (SolidWorks) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe -- (SolidWorks Licensing Service)
SRV - [2014.09.21 22:27:34 | 001,044,816 | ---- | M] (Flexera Software, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2014.09.12 06:59:50 | 000,076,888 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2014.09.06 19:41:13 | 000,024,576 | ---- | M] (Realtek Semiconductor.) [Auto | Stopped] -- C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe -- (SetupARService)
SRV - [2014.04.17 21:55:42 | 000,082,432 | ---- | M] () [Auto | Running] -- C:\AMD\amdacpusrsvc.exe -- (amdacpusrsvc)
SRV - [2014.02.21 10:18:52 | 000,162,800 | ---- | M] (MSI) [Auto | Running] -- C:\Program Files (x86)\MSI\SUPER CHARGER\ChargeService.exe -- (MSI_SuperCharger)
SRV - [2013.09.16 21:19:26 | 000,390,616 | R--- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2013.09.16 21:19:22 | 000,169,432 | R--- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe -- (jhi_service)
SRV - [2012.07.09 00:40:10 | 000,104,912 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2012.02.11 08:55:18 | 000,597,080 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- c:\ProgramData\SolidWorks Electrical\MSSQL11.TEW_SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE -- (SQLAgent$TEW_SQLEXPRESS)
SRV - [2012.02.11 08:55:16 | 000,191,064 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\ProgramData\SolidWorks Electrical\MSSQL11.TEW_SQLEXPRESS\MSSQL\Binn\sqlservr.exe -- (MSSQL$TEW_SQLEXPRESS)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2014.10.06 15:15:16 | 000,028,184 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswKbd.sys -- (aswKbd)
DRV:64bit: - [2014.10.06 15:15:14 | 000,448,400 | ---- | M] (AVAST Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswNdisFlt.sys -- (aswNdisFlt)
DRV:64bit: - [2014.09.16 00:29:04 | 000,293,088 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\amdacpksd.sys -- (amdacpksd)
DRV:64bit: - [2014.09.16 00:26:58 | 016,750,080 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2014.09.15 23:59:06 | 000,576,000 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2014.09.06 20:26:38 | 000,427,360 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsp.sys -- (aswSP)
DRV:64bit: - [2014.09.06 20:26:18 | 000,224,896 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
DRV:64bit: - [2014.09.06 20:26:18 | 000,092,008 | ---- | M] (AVAST Software) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswStm.sys -- (aswStm)
DRV:64bit: - [2014.09.06 20:26:17 | 001,041,168 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2014.09.06 20:26:17 | 000,093,568 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2014.09.06 20:26:17 | 000,079,184 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2014.09.06 20:26:17 | 000,065,776 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
DRV:64bit: - [2014.09.06 20:26:17 | 000,029,208 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid)
DRV:64bit: - [2014.09.06 20:01:47 | 000,283,064 | ---- | M] (Disc Soft Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2014.09.05 22:22:32 | 000,020,784 | ---- | M] (Nicomsoft Ltd.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\mi2c.sys -- (mi2c)
DRV:64bit: - [2014.06.21 19:01:22 | 000,094,720 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2013.11.26 09:49:44 | 000,888,536 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2013.09.16 21:19:22 | 000,099,288 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TeeDriverx64.sys -- (MEIx64)
DRV:64bit: - [2013.04.26 04:24:58 | 000,020,464 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iusb3hcs.sys -- (iusb3hcs)
DRV:64bit: - [2013.04.26 04:24:56 | 000,786,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3xhc.sys -- (iusb3xhc)
DRV:64bit: - [2013.04.26 04:24:56 | 000,368,112 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3hub.sys -- (iusb3hub)
DRV:64bit: - [2012.02.11 07:59:34 | 000,334,936 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\Windows\SysNative\drivers\RsFx0200.sys -- (RsFx0200)
DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 15:32:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.11.20 15:32:46 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2010.11.20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 13:03:42 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:47:48 | 000,023,104 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.01.05 14:54:56 | 000,602,880 | ---- | M] (Atheros Technology Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ZD1211BU.sys -- (ZD1211BU(TP-LINK)
DRV - [2012.10.25 19:45:52 | 000,013,368 | ---- | M] (MSI) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\MSI\SUPER CHARGER\NTIOLib_X64.sys -- (NTIOLib_1_0_3)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-3599238740-2346632114-2589644761-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3599238740-2346632114-2589644761-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
IE - HKU\S-1-5-21-3599238740-2346632114-2589644761-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:32.0
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF - HKLM\Software\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.5: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2014.10.06 15:15:17 | 000,000,000 | ---D | M]

[2014.09.06 09:12:30 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Honza\AppData\Roaming\Mozilla\Extensions
[2014.10.05 23:15:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\1ak53qy8.default\extensions
[2014.10.05 23:15:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\1ak53qy8.default\extensions\0cd1569197354ecf9be03@d3ee3bc4210848f7b5a58324f064f.com

========== Chrome ==========

CHR - plugin: Error reading preferences file
CHR - Extension: No name found = C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.8_0\
CHR - Extension: No name found = C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\
CHR - Extension: No name found = C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: No name found = C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: No name found = C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.0_0\
CHR - Extension: No name found = C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.9.3_0\
CHR - Extension: No name found = C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdcjmllhmhnnadianfhhnoefgcdbpdap\1.1.1_0\
CHR - Extension: No name found = C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij\5.4.0_0\
CHR - Extension: No name found = C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: No name found = C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O4:64bit: - HKLM..\Run: [Logitech Download Assistant] C:\Windows\SysNative\LogiLDA.dll (Logitech, Inc.)
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [IMSS] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe (Intel Corporation)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [SUPER CHARGER] C:\Program Files (x86)\MSI\SUPER CHARGER\SUPER CHARGER.exe (MSI)
O4 - HKLM..\Run: [USB3MON] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation)
O4 - HKLM..\Run: [ZDWlan.EXE] C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Client Utility\ZDWlan.EXE (TP-LINK TECHNOLOGIES CO., LTD.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-3599238740-2346632114-2589644761-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
O4 - HKU\S-1-5-21-3599238740-2346632114-2589644761-1000..\Run: [Raptr] C:\Program Files (x86)\Raptr\raptrstub.exe (Raptr, Inc)
O4 - HKU\.DEFAULT..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 File not found
O4 - HKU\S-1-5-18..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.10.10
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3DC4C774-5896-4B81-AA4B-7BC0BD70F362}: DhcpNameServer = 192.168.10.10
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{56E85C7A-5981-42C6-933C-42F0710B3BB3}: DhcpNameServer = 192.168.100.252
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{193e21d1-3533-11e4-b236-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{193e21d1-3533-11e4-b236-806e6f6e6963}\Shell\AutoRun\command - "" = "D:\Diablo III Setup.exe"
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)

Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:64bit: VIDC.RTV1 - rtvcvfw64.dll ()
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: VIDC.RTV1 - C:\Windows\SysWow64\rtvcvfw32.dll ()
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2014.10.07 20:37:28 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2014.10.07 20:37:28 | 000,000,000 | ---D | C] -- C:\rsit
[2014.10.07 17:25:34 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Local\Doctor_PC
[2014.10.07 17:25:30 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\DoctorPC
[2014.10.07 00:44:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SystemRequirementsLab
[2014.10.06 15:15:27 | 000,028,184 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswKbd.sys
[2014.10.06 15:15:14 | 000,448,400 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswNdisFlt.sys
[2014.10.06 14:50:43 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2014.10.06 14:50:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD AVT
[2014.10.06 14:50:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
[2014.10.06 14:49:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Technologies
[2014.10.05 23:14:36 | 002,015,640 | ---- | C] (InfoHD-V2.2V05.10) -- C:\Users\Honza\AppData\Roaming\LXMZJKC.exe
[2014.10.05 23:14:31 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Local\globalUpdate
[2014.10.05 23:14:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\globalUpdate
[2014.10.05 23:11:13 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\FIFA 15
[2014.09.24 23:14:29 | 000,000,000 | ---D | C] -- C:\Users\Honza\Solid
[2014.09.24 01:58:41 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\SolidWorks 2014
[2014.09.23 23:01:08 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\vlc
[2014.09.23 23:00:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2014.09.23 23:00:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN
[2014.09.21 23:44:54 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\Luxology
[2014.09.21 23:44:54 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\Kits
[2014.09.21 23:41:57 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\SW Log Files
[2014.09.21 23:16:52 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Local\TempAdresářZálohySW
[2014.09.21 23:16:17 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Local\SolidWorks
[2014.09.21 23:07:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Simpoe
[2014.09.21 23:06:47 | 000,000,000 | ---D | C] -- C:\ProgramData\COSMOS Applications
[2014.09.21 23:06:32 | 000,000,000 | ---D | C] -- C:\ProgramData\SolidWorks Flow Simulation
[2014.09.21 23:05:13 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\pdfforge
[2014.09.21 23:05:12 | 000,137,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSMAPI32.OCX
[2014.09.21 23:05:11 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSMPIDE.DLL
[2014.09.21 23:05:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PDFCreator
[2014.09.21 23:02:22 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\help_images_otherUI
[2014.09.21 23:01:19 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\SolidWorks Visual Studio Tools for Applications
[2014.09.21 23:01:14 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\DassaultSystemes
[2014.09.21 23:01:14 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Local\DassaultSystemes
[2014.09.21 23:01:14 | 000,000,000 | ---D | C] -- C:\ProgramData\DassaultSystemes
[2014.09.21 22:37:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SolidWorks 2014
[2014.09.21 22:34:25 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SolidWorks Shared
[2014.09.21 22:34:25 | 000,000,000 | ---D | C] -- C:\Program Files\SolidWorks Corp
[2014.09.21 22:34:25 | 000,000,000 | ---D | C] -- C:\ProgramData\SolidWorks
[2014.09.21 22:34:12 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Macrovision Shared
[2014.09.21 22:33:58 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 8
[2014.09.21 22:33:08 | 000,054,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perf-MSSQL11.TEW_SQLEXPRESS-sqlagtctr.dll
[2014.09.21 22:33:08 | 000,045,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perf-MSSQL11.TEW_SQLEXPRESS-sqlagtctr.dll
[2014.09.21 22:32:56 | 000,095,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perf-MSSQL$TEW_SQLEXPRESS-sqlctr11.0.2100.60.dll
[2014.09.21 22:32:56 | 000,082,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\perf-MSSQL$TEW_SQLEXPRESS-sqlctr11.0.2100.60.dll
[2014.09.21 22:32:48 | 000,180,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hadrres.dll
[2014.09.21 22:32:48 | 000,082,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fssres.dll
[2014.09.21 22:32:17 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 10.0
[2014.09.21 22:32:11 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\RsFx
[2014.09.21 22:31:58 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2014.09.21 22:31:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008
[2014.09.21 22:30:58 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\1033
[2014.09.21 22:30:58 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\1033
[2014.09.21 22:30:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2012
[2014.09.21 22:30:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server
[2014.09.21 22:29:52 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server
[2014.09.21 22:29:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2014.09.21 22:28:41 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\Visual Studio 2005
[2014.09.21 22:28:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2005
[2014.09.21 22:28:28 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Local\Microsoft Help
[2014.09.21 22:28:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Designer
[2014.09.21 22:28:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio 8
[2014.09.21 22:28:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2014.09.21 22:27:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2014.09.21 22:27:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSECache
[2014.09.21 22:27:45 | 000,000,000 | ---D | C] -- C:\ProgramData\SolidWorks Electrical
[2014.09.21 22:27:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\SolidWorks Shared
[2014.09.21 22:27:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Macrovision Shared
[2014.09.21 22:27:30 | 000,000,000 | ---D | C] -- C:\SolidWorks Data
[2014.09.21 22:25:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Manažer instalací SolidWorks
[2014.09.21 22:25:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Manažer instalací SolidWorks
[2014.09.21 22:07:51 | 000,000,000 | ---D | C] -- C:\Windows\SolidWorks
[2014.09.19 21:16:57 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\EDrawings
[2014.09.19 21:16:45 | 000,000,000 | ---D | C] -- C:\ProgramData\FLEXnet
[2014.09.19 21:11:02 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\SolidWorksComposer
[2014.09.19 21:09:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SolidWorks Corp
[2014.09.19 21:00:55 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\SolidWorks Downloads
[2014.09.19 21:00:54 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\SolidWorks
[2014.09.19 10:45:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Printer Uninstaller
[2014.09.19 10:44:53 | 000,221,696 | ---- | C] (CANON INC.) -- C:\Windows\SysNative\CNAB4EMD.DLL
[2014.09.19 10:44:53 | 000,126,464 | ---- | C] (CANON INC.) -- C:\Windows\SysNative\CNAB4SMD.DLL
[2014.09.19 10:44:53 | 000,063,936 | ---- | C] (CANON INC.) -- C:\Windows\SysNative\CNAB4RPD.EXE
[2014.09.19 10:44:53 | 000,062,464 | ---- | C] (CANON INC.) -- C:\Windows\SysNative\CNAB4PTD.DLL
[2014.09.19 10:44:53 | 000,058,880 | ---- | C] (CANON INC.) -- C:\Windows\SysNative\CNAB4LMD.DLL
[2014.09.19 10:44:39 | 000,000,000 | ---D | C] -- C:\Program Files\Canon
[2014.09.16 02:57:43 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\OCCT
[2014.09.16 02:55:15 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me
[2014.09.16 02:54:52 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OCCT
[2014.09.16 02:54:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OCCT
[2014.09.16 02:54:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OCCTPT
[2014.09.16 00:32:04 | 000,128,384 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\amdhcp64.dll
[2014.09.16 00:32:04 | 000,118,096 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\amdhcp32.dll
[2014.09.16 00:32:00 | 000,078,432 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atimpc64.dll
[2014.09.16 00:32:00 | 000,078,432 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdpcom64.dll
[2014.09.16 00:32:00 | 000,071,704 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atimpc32.dll
[2014.09.16 00:32:00 | 000,071,704 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdpcom32.dll
[2014.09.16 00:31:48 | 000,126,848 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiuxpag.dll
[2014.09.16 00:31:30 | 009,254,184 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atidxx32.dll
[2014.09.16 00:29:04 | 000,293,088 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdacpksd.sys
[2014.09.16 00:26:58 | 016,750,080 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmdag.sys
[2014.09.16 00:18:00 | 000,098,816 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\OpenVideo64.dll
[2014.09.16 00:17:58 | 000,083,456 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\OpenVideo.dll
[2014.09.16 00:17:56 | 000,086,528 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\OVDecode64.dll
[2014.09.16 00:17:56 | 000,073,216 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\OVDecode.dll
[2014.09.16 00:17:54 | 033,867,264 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\amdocl64.dll
[2014.09.16 00:17:04 | 028,770,304 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\amdocl.dll
[2014.09.16 00:16:18 | 000,065,024 | ---- | C] (Khronos Group) -- C:\Windows\SysNative\OpenCL.dll
[2014.09.16 00:16:18 | 000,058,880 | ---- | C] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll
[2014.09.16 00:14:54 | 005,316,096 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\amdhsasc64.dll
[2014.09.16 00:14:54 | 004,335,616 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\amdhsasc.dll
[2014.09.16 00:13:24 | 027,918,336 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atio6axx.dll
[2014.09.16 00:09:38 | 000,048,128 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdmmcl6.dll
[2014.09.16 00:09:36 | 000,037,888 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdmmcl.dll
[2014.09.16 00:09:10 | 000,127,488 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\mantle64.dll
[2014.09.16 00:09:04 | 000,113,664 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\mantle32.dll
[2014.09.16 00:09:00 | 005,639,168 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdmantle64.dll
[2014.09.16 00:08:08 | 023,375,360 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atioglxx.dll
[2014.09.16 00:07:48 | 000,367,104 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiapfxx.exe
[2014.09.16 00:07:46 | 000,062,464 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalrt64.dll
[2014.09.16 00:07:44 | 000,052,224 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalrt.dll
[2014.09.16 00:07:42 | 000,055,808 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalcl64.dll
[2014.09.16 00:07:42 | 000,049,152 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalcl.dll
[2014.09.16 00:07:36 | 015,716,352 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticaldd64.dll
[2014.09.16 00:06:46 | 014,302,208 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticaldd.dll
[2014.09.16 00:05:52 | 004,480,000 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdmantle32.dll
[2014.09.16 00:03:26 | 000,031,232 | ---- | C] (AMD) -- C:\Windows\SysNative\atimuixx.dll
[2014.09.16 00:03:24 | 000,619,008 | ---- | C] (AMD) -- C:\Windows\SysNative\atieclxx.exe
[2014.09.16 00:03:18 | 000,239,616 | ---- | C] (AMD) -- C:\Windows\SysNative\atiesrxx.exe
[2014.09.16 00:03:12 | 000,091,648 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\mantleaxl64.dll
[2014.09.16 00:03:08 | 000,085,504 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\mantleaxl32.dll
[2014.09.16 00:03:04 | 000,190,976 | ---- | C] (AMD) -- C:\Windows\SysNative\atitmm64.dll
[2014.09.16 00:00:04 | 000,095,744 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdave64.dll
[2014.09.15 23:59:50 | 000,089,088 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atisamu64.dll
[2014.09.15 23:59:46 | 000,080,896 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atisamu32.dll
[2014.09.15 23:59:40 | 000,827,392 | ---- | C] (AMD) -- C:\Windows\SysNative\coinst_14.30.dll
[2014.09.15 23:59:16 | 000,900,608 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atiadlxy.dll
[2014.09.15 23:59:14 | 000,075,264 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6pxx.dll
[2014.09.15 23:59:12 | 000,146,944 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6txx.dll
[2014.09.15 23:59:12 | 000,069,632 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiglpxx.dll
[2014.09.15 23:59:12 | 000,069,632 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiglpxx.dll
[2014.09.15 23:59:08 | 000,133,632 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atigktxx.dll
[2014.09.15 23:59:06 | 000,576,000 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmpag.sys
[2014.09.15 23:58:54 | 000,043,520 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\ati2erec.dll
[2014.09.15 03:20:47 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan
[2014.09.15 03:20:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedFan
[2014.09.15 03:20:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SpeedFan
[2014.09.13 19:25:03 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\Diablo III
[2014.09.13 18:41:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
[2014.09.13 18:41:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Diablo III
[2014.09.13 18:22:38 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Local\Blizzard Entertainment
[2014.09.13 18:22:32 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\Battle.net
[2014.09.13 18:22:32 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Local\Battle.net
[2014.09.13 18:22:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Blizzard Entertainment
[2014.09.13 18:22:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Blizzard Entertainment
[2014.09.13 18:22:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
[2014.09.13 18:22:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Battle.net
[2014.09.13 18:21:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Battle.net
[2014.09.12 08:06:45 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Local\Sniper3
[2014.09.12 08:06:37 | 000,000,000 | ---D | C] -- C:\ProgramData\ALI213
[2014.09.12 06:59:29 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Local\PunkBuster
[2014.09.12 06:59:10 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\My Games
[2014.09.12 06:59:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Orbit
[2014.09.11 07:57:04 | 001,700,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2014.09.11 07:57:04 | 001,060,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[2014.09.11 06:54:32 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\Assassin's Creed IV Black Flag
[2014.09.11 06:51:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hry
[2014.09.08 05:32:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Ubisoft
[2014.09.08 05:32:50 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\Assassin's Creed Revelations
[2014.09.08 05:15:16 | 000,174,080 | ---- | C] (RAD Game Tools, Inc.) -- C:\Windows\SysNative\binkw32.dll
[2014.09.08 04:57:48 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\PunkBuster
[2014.09.08 04:41:08 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\Rockstar Games
[2014.09.08 04:37:43 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\microsoft
[2014.09.08 04:35:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows - LIVE
[2014.09.08 04:28:18 | 000,000,000 | RH-D | C] -- C:\Users\Honza\AppData\Roaming\SecuROM
[2014.09.08 04:27:38 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Local\Rockstar Games
[2014.09.08 04:26:51 | 000,178,800 | ---- | C] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll
[2014.09.08 04:25:31 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\xlive
[2014.09.08 04:25:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
[2014.09.08 00:43:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Steam
[2014.09.08 00:12:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Call of Duty Ghosts
[2014.09.07 23:59:40 | 000,000,000 | ---D | C] -- C:\Users\Honza\Documents\FIFA 14
[2014.09.07 23:55:17 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\WinRAR
[2014.09.07 23:54:38 | 000,000,000 | ---D | C] -- C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014.09.07 23:54:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014.09.07 23:54:36 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2014.10.07 21:01:20 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014.10.07 20:49:00 | 000,000,950 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014.10.07 17:28:51 | 000,010,208 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014.10.07 17:28:51 | 000,010,208 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014.10.07 17:26:50 | 001,827,132 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014.10.07 17:26:50 | 000,754,116 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2014.10.07 17:26:50 | 000,739,504 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014.10.07 17:26:50 | 000,175,054 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2014.10.07 17:26:50 | 000,155,654 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014.10.07 17:21:54 | 000,000,946 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014.10.07 17:21:52 | 000,001,684 | ---- | M] () -- C:\Windows\tasks\LXMZJKC.job
[2014.10.07 17:21:42 | 000,000,970 | ---- | M] () -- C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job
[2014.10.07 17:21:40 | 000,004,478 | ---- | M] () -- C:\Windows\tasks\af6a76ca-8044-46bc-bf6e-e07fcacdcb36-4.job
[2014.10.07 17:21:18 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014.10.07 16:55:31 | 2090,860,543 | -HS- | M] () -- C:\hiberfil.sys
[2014.10.07 16:54:53 | 000,065,536 | ---- | M] () -- C:\Windows\SysNative\spu_storage.bin
[2014.10.07 16:30:36 | 000,281,688 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2014.10.07 16:30:36 | 000,281,688 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2014.10.07 16:23:20 | 000,281,688 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.ex0
[2014.10.06 23:19:08 | 000,000,974 | ---- | M] () -- C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job
[2014.10.06 15:16:04 | 000,001,972 | ---- | M] () -- C:\Users\Public\Desktop\avast! Internet Security.lnk
[2014.10.06 15:15:16 | 000,028,184 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswKbd.sys
[2014.10.06 15:15:14 | 000,448,400 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswNdisFlt.sys
[2014.10.05 23:14:50 | 000,002,241 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014.10.05 23:14:36 | 002,015,640 | ---- | M] (InfoHD-V2.2V05.10) -- C:\Users\Honza\AppData\Roaming\LXMZJKC.exe
[2014.09.23 23:00:59 | 000,001,070 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2014.09.22 18:28:03 | 000,292,664 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014.09.21 23:54:58 | 000,000,000 | ---- | M] () -- C:\Users\Honza\AppData\Local\Temptable.xml
[2014.09.21 23:06:09 | 000,002,389 | ---- | M] () -- C:\Users\Public\Desktop\SolidWorks Composer Player 2014 - x64 Edition.lnk
[2014.09.21 23:06:09 | 000,002,251 | ---- | M] () -- C:\Users\Public\Desktop\SolidWorks Composer 2014 - vydání x64.lnk
[2014.09.21 23:06:09 | 000,002,205 | ---- | M] () -- C:\Users\Public\Desktop\SolidWorks Composer Sync.lnk
[2014.09.21 23:04:42 | 000,002,388 | ---- | M] () -- C:\Users\Public\Desktop\SolidWorks Electrical.lnk
[2014.09.21 23:03:03 | 000,003,059 | ---- | M] () -- C:\Users\Public\Desktop\Průzkumník SolidWorks 2014.lnk
[2014.09.21 23:03:03 | 000,002,060 | ---- | M] () -- C:\Users\Public\Desktop\eDrawings 2014.lnk
[2014.09.21 23:02:25 | 000,000,000 | ---- | M] () -- C:\Windows\eDrawingOfficeAutomator.INI
[2014.09.21 23:02:22 | 000,002,162 | ---- | M] () -- C:\Users\Public\Desktop\eDrawings 2014 x64 Edition.lnk
[2014.09.21 22:37:34 | 000,002,745 | ---- | M] () -- C:\Users\Public\Desktop\SolidWorks 2014 x64 Edition.lnk
[2014.09.21 22:37:33 | 000,002,753 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SolidWorks 2014 Rychlé spuštění.lnk
[2014.09.21 22:25:51 | 000,001,344 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SolidWorks Nástroj pro stahování na pozadí.lnk
[2014.09.19 10:50:24 | 000,001,215 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Canon LBP2900 Status Window.lnk
[2014.09.19 10:36:39 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2014.09.16 02:58:35 | 000,000,971 | ---- | M] () -- C:\Users\Honza\Desktop\OCCT.lnk
[2014.09.16 00:32:04 | 000,128,384 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\amdhcp64.dll
[2014.09.16 00:32:04 | 000,118,096 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\amdhcp32.dll
[2014.09.16 00:32:00 | 000,078,432 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atimpc64.dll
[2014.09.16 00:32:00 | 000,078,432 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdpcom64.dll
[2014.09.16 00:32:00 | 000,071,704 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atimpc32.dll
[2014.09.16 00:32:00 | 000,071,704 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdpcom32.dll
[2014.09.16 00:31:50 | 000,144,328 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiuxp64.dll
[2014.09.16 00:31:48 | 000,126,848 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiuxpag.dll
[2014.09.16 00:31:46 | 000,118,096 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiu9p64.dll
[2014.09.16 00:31:44 | 000,100,032 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiu9pag.dll
[2014.09.16 00:31:42 | 001,335,544 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\aticfx64.dll
[2014.09.16 00:31:40 | 001,113,576 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\aticfx32.dll
[2014.09.16 00:31:34 | 010,826,488 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atidxx64.dll
[2014.09.16 00:31:30 | 009,254,184 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atidxx32.dll
[2014.09.16 00:31:22 | 007,207,592 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiumdva.dll
[2014.09.16 00:31:16 | 007,028,336 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiumdag.dll
[2014.09.16 00:31:06 | 008,044,976 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiumd6a.dll
[2014.09.16 00:31:02 | 008,296,296 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiumd64.dll
[2014.09.16 00:29:04 | 000,293,088 | ---- | M] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdacpksd.sys
[2014.09.16 00:26:58 | 016,750,080 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmdag.sys
[2014.09.16 00:18:06 | 000,235,008 | ---- | M] () -- C:\Windows\SysNative\clinfo.exe
[2014.09.16 00:18:00 | 000,098,816 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\OpenVideo64.dll
[2014.09.16 00:17:58 | 000,083,456 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\OpenVideo.dll
[2014.09.16 00:17:56 | 000,086,528 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\OVDecode64.dll
[2014.09.16 00:17:56 | 000,073,216 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\OVDecode.dll
[2014.09.16 00:17:54 | 033,867,264 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\amdocl64.dll
[2014.09.16 00:17:04 | 028,770,304 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\amdocl.dll
[2014.09.16 00:16:18 | 000,065,024 | ---- | M] (Khronos Group) -- C:\Windows\SysNative\OpenCL.dll
[2014.09.16 00:16:18 | 000,058,880 | ---- | M] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll
[2014.09.16 00:14:54 | 005,316,096 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\amdhsasc64.dll
[2014.09.16 00:14:54 | 004,335,616 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\amdhsasc.dll
[2014.09.16 00:13:24 | 027,918,336 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atio6axx.dll
[2014.09.16 00:09:38 | 000,048,128 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdmmcl6.dll
[2014.09.16 00:09:36 | 000,037,888 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdmmcl.dll
[2014.09.16 00:09:10 | 000,127,488 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\mantle64.dll
[2014.09.16 00:09:04 | 000,113,664 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\mantle32.dll
[2014.09.16 00:09:00 | 005,639,168 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdmantle64.dll
[2014.09.16 00:08:08 | 023,375,360 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atioglxx.dll
[2014.09.16 00:07:54 | 000,609,272 | ---- | M] () -- C:\Windows\SysWow64\atiapfxx.blb
[2014.09.16 00:07:54 | 000,609,272 | ---- | M] () -- C:\Windows\SysNative\atiapfxx.blb
[2014.09.16 00:07:48 | 003,437,632 | ---- | M] () -- C:\Windows\SysNative\atiumd6a.cap
[2014.09.16 00:07:48 | 000,367,104 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiapfxx.exe
[2014.09.16 00:07:46 | 000,062,464 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalrt64.dll
[2014.09.16 00:07:44 | 000,052,224 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalrt.dll
[2014.09.16 00:07:42 | 000,055,808 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticalcl64.dll
[2014.09.16 00:07:42 | 000,049,152 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticalcl.dll
[2014.09.16 00:07:36 | 015,716,352 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\aticaldd64.dll
[2014.09.16 00:06:46 | 014,302,208 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\SysWow64\aticaldd.dll
[2014.09.16 00:05:52 | 004,480,000 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdmantle32.dll
[2014.09.16 00:03:28 | 000,442,368 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atidemgy.dll
[2014.09.16 00:03:26 | 000,031,232 | ---- | M] (AMD) -- C:\Windows\SysNative\atimuixx.dll
[2014.09.16 00:03:24 | 000,619,008 | ---- | M] (AMD) -- C:\Windows\SysNative\atieclxx.exe
[2014.09.16 00:03:22 | 003,471,376 | ---- | M] () -- C:\Windows\SysWow64\atiumdva.cap
[2014.09.16 00:03:18 | 000,239,616 | ---- | M] (AMD) -- C:\Windows\SysNative\atiesrxx.exe
[2014.09.16 00:03:12 | 000,091,648 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\mantleaxl64.dll
[2014.09.16 00:03:08 | 000,085,504 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\mantleaxl32.dll
[2014.09.16 00:03:04 | 000,190,976 | ---- | M] (AMD) -- C:\Windows\SysNative\atitmm64.dll
[2014.09.16 00:00:04 | 000,095,744 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\amdave64.dll
[2014.09.16 00:00:00 | 000,090,112 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\amdave32.dll
[2014.09.15 23:59:50 | 000,089,088 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atisamu64.dll
[2014.09.15 23:59:46 | 000,080,896 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atisamu32.dll
[2014.09.15 23:59:40 | 000,827,392 | ---- | M] (AMD) -- C:\Windows\SysNative\coinst_14.30.dll
[2014.09.15 23:59:20 | 001,210,880 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\atiadlxx.dll
[2014.09.15 23:59:16 | 000,900,608 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysWow64\atiadlxy.dll
[2014.09.15 23:59:14 | 000,075,264 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6pxx.dll
[2014.09.15 23:59:12 | 000,146,944 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atig6txx.dll
[2014.09.15 23:59:12 | 000,069,632 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atiglpxx.dll
[2014.09.15 23:59:12 | 000,069,632 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysNative\atiglpxx.dll
[2014.09.15 23:59:08 | 000,133,632 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWow64\atigktxx.dll
[2014.09.15 23:59:06 | 000,576,000 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\atikmpag.sys
[2014.09.15 23:58:54 | 000,043,520 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Windows\SysNative\drivers\ati2erec.dll
[2014.09.15 18:21:34 | 000,051,200 | ---- | M] () -- C:\Windows\SysNative\kdbsdk64.dll
[2014.09.15 18:19:58 | 000,038,912 | ---- | M] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2014.09.15 03:20:47 | 000,001,011 | ---- | M] () -- C:\Users\Honza\Desktop\SpeedFan.lnk
[2014.09.15 03:20:47 | 000,000,045 | ---- | M] () -- C:\Windows\SysWow64\initdebug.nfo
[2014.09.13 18:49:22 | 000,001,142 | ---- | M] () -- C:\Users\Public\Desktop\Diablo III.lnk
[2014.09.13 18:22:29 | 000,001,148 | ---- | M] () -- C:\Users\Public\Desktop\Battle.net.lnk
[2014.09.12 08:02:35 | 000,001,796 | ---- | M] () -- C:\Users\Public\Desktop\Sniper Elite III.lnk
[2014.09.12 06:59:50 | 000,076,888 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2014.09.12 06:58:34 | 000,000,860 | ---- | M] () -- C:\Users\Public\Desktop\Far Cry 3 DX11.lnk
[2014.09.12 06:58:34 | 000,000,828 | ---- | M] () -- C:\Users\Public\Desktop\Far Cry 3 DX9.lnk
[2014.09.11 07:57:04 | 001,700,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\gdiplus.dll
[2014.09.11 07:57:04 | 001,060,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[2014.09.08 04:26:51 | 000,178,800 | ---- | M] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll
[2014.09.08 00:38:22 | 000,000,890 | ---- | M] () -- C:\Users\Public\Desktop\Call of Duty Ghosts.lnk
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2014.10.07 21:01:20 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014.10.06 15:16:04 | 000,001,972 | ---- | C] () -- C:\Users\Public\Desktop\avast! Internet Security.lnk
[2014.10.05 23:15:05 | 000,004,478 | ---- | C] () -- C:\Windows\tasks\af6a76ca-8044-46bc-bf6e-e07fcacdcb36-4.job
[2014.10.05 23:14:40 | 000,000,974 | ---- | C] () -- C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job
[2014.10.05 23:14:38 | 000,000,970 | ---- | C] () -- C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job
[2014.10.05 23:14:37 | 000,001,684 | ---- | C] () -- C:\Windows\tasks\LXMZJKC.job
[2014.09.23 23:00:59 | 000,001,070 | ---- | C] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2014.09.21 23:54:58 | 000,000,000 | ---- | C] () -- C:\Users\Honza\AppData\Local\Temptable.xml
[2014.09.21 23:06:09 | 000,002,389 | ---- | C] () -- C:\Users\Public\Desktop\SolidWorks Composer Player 2014 - x64 Edition.lnk
[2014.09.21 23:06:09 | 000,002,251 | ---- | C] () -- C:\Users\Public\Desktop\SolidWorks Composer 2014 - vydání x64.lnk
[2014.09.21 23:06:09 | 000,002,205 | ---- | C] () -- C:\Users\Public\Desktop\SolidWorks Composer Sync.lnk
[2014.09.21 23:05:12 | 000,087,040 | ---- | C] () -- C:\Windows\SysNative\pdfcmnnt.dll
[2014.09.21 23:04:42 | 000,002,388 | ---- | C] () -- C:\Users\Public\Desktop\SolidWorks Electrical.lnk
[2014.09.21 23:03:03 | 000,003,059 | ---- | C] () -- C:\Users\Public\Desktop\Průzkumník SolidWorks 2014.lnk
[2014.09.21 23:03:03 | 000,002,060 | ---- | C] () -- C:\Users\Public\Desktop\eDrawings 2014.lnk
[2014.09.21 23:02:25 | 000,000,000 | ---- | C] () -- C:\Windows\eDrawingOfficeAutomator.INI
[2014.09.21 23:02:22 | 000,002,162 | ---- | C] () -- C:\Users\Public\Desktop\eDrawings 2014 x64 Edition.lnk
[2014.09.21 22:37:34 | 000,002,745 | ---- | C] () -- C:\Users\Public\Desktop\SolidWorks 2014 x64 Edition.lnk
[2014.09.21 22:37:33 | 000,002,753 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SolidWorks 2014 Rychlé spuštění.lnk
[2014.09.21 22:25:51 | 000,001,344 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SolidWorks Nástroj pro stahování na pozadí.lnk
[2014.09.19 10:45:55 | 000,001,215 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Canon LBP2900 Status Window.lnk
[2014.09.19 10:36:39 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2014.09.16 02:54:54 | 000,000,971 | ---- | C] () -- C:\Users\Honza\Desktop\OCCT.lnk
[2014.09.16 00:18:06 | 000,235,008 | ---- | C] () -- C:\Windows\SysNative\clinfo.exe
[2014.09.16 00:07:54 | 000,609,272 | ---- | C] () -- C:\Windows\SysWow64\atiapfxx.blb
[2014.09.16 00:07:54 | 000,609,272 | ---- | C] () -- C:\Windows\SysNative\atiapfxx.blb
[2014.09.16 00:07:48 | 003,437,632 | ---- | C] () -- C:\Windows\SysNative\atiumd6a.cap
[2014.09.16 00:03:22 | 003,471,376 | ---- | C] () -- C:\Windows\SysWow64\atiumdva.cap
[2014.09.15 18:21:34 | 000,051,200 | ---- | C] () -- C:\Windows\SysNative\kdbsdk64.dll
[2014.09.15 18:19:58 | 000,038,912 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2014.09.15 03:20:47 | 000,001,011 | ---- | C] () -- C:\Users\Honza\Desktop\SpeedFan.lnk
[2014.09.15 03:20:46 | 000,000,045 | ---- | C] () -- C:\Windows\SysWow64\initdebug.nfo
[2014.09.13 18:49:21 | 000,001,142 | ---- | C] () -- C:\Users\Public\Desktop\Diablo III.lnk
[2014.09.13 18:22:29 | 000,001,148 | ---- | C] () -- C:\Users\Public\Desktop\Battle.net.lnk
[2014.09.12 08:02:35 | 000,001,796 | ---- | C] () -- C:\Users\Public\Desktop\Sniper Elite III.lnk
[2014.09.12 06:59:34 | 000,281,688 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2014.09.12 06:58:34 | 000,000,860 | ---- | C] () -- C:\Users\Public\Desktop\Far Cry 3 DX11.lnk
[2014.09.12 06:58:34 | 000,000,828 | ---- | C] () -- C:\Users\Public\Desktop\Far Cry 3 DX9.lnk
[2014.09.08 00:27:47 | 000,000,902 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Ghosts.lnk
[2014.09.08 00:27:47 | 000,000,890 | ---- | C] () -- C:\Users\Public\Desktop\Call of Duty Ghosts.lnk
[2014.09.07 14:10:31 | 000,281,688 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2014.09.07 14:10:23 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2014.09.07 14:10:23 | 000,000,331 | ---- | C] () -- C:\Windows\game.ini
[2014.09.05 22:32:35 | 000,028,672 | ---- | C] () -- C:\Windows\SysWow64\InsDrvZD.dll
[2014.09.05 22:32:35 | 000,024,576 | ---- | C] () -- C:\Windows\SysWow64\ZyDelReg.exe
[2014.09.05 22:32:35 | 000,015,872 | ---- | C] () -- C:\Windows\SysWow64\InsDrvZD64.DLL
[2014.09.05 22:10:22 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2014.09.05 21:57:41 | 000,995,342 | ---- | C] () -- C:\Windows\SysWow64\amdocl_as32.exe
[2014.09.05 21:57:41 | 000,798,734 | ---- | C] () -- C:\Windows\SysWow64\amdocl_ld32.exe
[2014.09.05 21:57:41 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2014.09.05 21:57:41 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2014.09.05 21:57:41 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2014.09.05 21:56:24 | 001,557,208 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014.09.01 10:18:44 | 000,001,248 | ---- | C] () -- C:\Users\Honza\AppData\Roaming\LXMZJKC
[2014.04.17 21:54:28 | 000,242,688 | ---- | C] () -- C:\Windows\SysWow64\amdacpusl.dll
[2014.03.31 16:40:28 | 000,059,160 | ---- | C] () -- C:\Windows\SysWow64\zlib.dll
[2013.08.27 14:00:08 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll

========== ZeroAccess Check ==========

[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2010.11.20 15:27:25 | 014,174,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2010.11.20 14:21:19 | 012,872,192 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2014.09.06 20:26:51 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\AVAST Software
[2014.09.06 20:04:27 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\AVG
[2014.09.13 18:40:51 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Battle.net
[2014.10.07 17:34:30 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\DAEMON Tools Lite
[2014.09.21 23:01:14 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\DassaultSystemes
[2014.09.19 21:16:57 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\EDrawings
[2014.09.06 23:02:40 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\EZDownloader
[2014.09.21 23:44:54 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Kits
[2014.09.06 19:48:09 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\library_dir
[2014.09.21 23:54:44 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Luxology
[2014.09.06 20:01:44 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\OpenCandy
[2014.09.06 22:21:04 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Opera Software
[2014.09.06 22:05:15 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Origin
[2014.09.21 23:05:13 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\pdfforge
[2014.09.08 04:57:48 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\PunkBuster
[2014.10.07 17:23:34 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Raptr
[2014.09.06 20:04:45 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\RHEng
[2014.09.06 23:02:20 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Systweak
[2014.10.07 21:00:55 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\uTorrent

========== Purity Check ==========

Jan55
Návštěvník
Návštěvník
Příspěvky: 174
Registrován: 14 kvě 2007 16:15
Kontaktovat uživatele:

Re: Prosím o kontrolu logu asi vir : )

#8 Příspěvek od Jan55 »

========== Custom Scans ==========

< >
[2009.07.14 07:08:49 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2009.07.14 07:08:49 | 000,013,208 | ---- | C] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2014.09.05 22:44:51 | 000,000,946 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2014.09.05 22:44:53 | 000,000,950 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2014.10.05 23:14:37 | 000,001,684 | ---- | C] () -- C:\Windows\Tasks\LXMZJKC.job
[2014.10.05 23:14:38 | 000,000,970 | ---- | C] () -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
[2014.10.05 23:14:40 | 000,000,974 | ---- | C] () -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
[2014.10.05 23:15:05 | 000,004,478 | ---- | C] () -- C:\Windows\Tasks\af6a76ca-8044-46bc-bf6e-e07fcacdcb36-4.job

< >

< MD5 for: ATAPI.SYS >
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
[2009.07.14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\SysNative\autochk.exe
[2010.11.20 15:24:26 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=3B536A8BEC3B4F23FFDFD78B11A2AB93 -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_4019f2b8d860ad30\autochk.exe
[2009.07.14 03:14:12 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=41E4C8EBA464E7D6A5BA5E8827732AEB -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe
[2009.07.14 03:38:56 | 000,777,728 | ---- | M] (Microsoft Corporation) MD5=8B7F8E882A649D81CEA1EDE9BBB68FFF -- C:\Windows\winsxs\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_3de8def0db722996\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\SysWOW64\autochk.exe
[2010.11.20 14:16:54 | 000,668,160 | ---- | M] (Microsoft Corporation) MD5=F88A52EB62019D6A62FDD9E08034DBD8 -- C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7601.17514_none_e3fb573520033bfa\autochk.exe

< MD5 for: CDROM.SYS >
[2009.07.14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\drivers\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_0b3d0d1942ab684b\cdrom.sys
[2010.11.20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=F036CE71586E93D94DAB220D7BDF4416 -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7601.17514_none_bdcf6151ba66f48b\cdrom.sys

< MD5 for: EXPLORER.EXE >
[2009.07.14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2009.10.31 07:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\SoftwareDistribution\Download\8e6eb2a788000c45cd8086e621526778\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2010.11.20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\SysWOW64\explorer.exe
[2010.11.20 14:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2009.08.03 08:19:07 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2009.10.31 08:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\SoftwareDistribution\Download\8e6eb2a788000c45cd8086e621526778\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2009.08.03 07:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010.11.20 15:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\explorer.exe
[2010.11.20 15:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2009.10.31 08:38:38 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\SoftwareDistribution\Download\8e6eb2a788000c45cd8086e621526778\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2009.08.03 07:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009.07.14 03:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2009.10.31 08:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\SoftwareDistribution\Download\8e6eb2a788000c45cd8086e621526778\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2009.08.03 08:17:37 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe

< MD5 for: HAL.DLL >
[2009.07.14 03:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\SysNative\hal.dll
[2010.11.20 15:33:34 | 000,263,040 | ---- | M] (Microsoft Corporation) MD5=CFB8C673F9188F99466E76C6972191E0 -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7601.17514_none_094ef8137049c196\hal.dll

< MD5 for: SCECLI.DLL >
[2009.07.14 03:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009.07.14 03:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
[2010.11.20 14:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
[2010.11.20 15:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll

< MD5 for: SERVICES.EXE >
[2009.07.14 03:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\SysNative\services.exe
[2009.07.14 03:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe

< MD5 for: SVCHOST.EXE >
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 03:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: TCPIP.SYS >
[2011.04.25 07:28:24 | 001,893,248 | ---- | M] (Microsoft Corporation) MD5=1F748D5439B65E0BEBD92F65048F030D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20951_none_0fb918de99201ffb\tcpip.sys
[2010.11.20 15:33:57 | 001,924,480 | ---- | M] (Microsoft Corporation) MD5=509383E505C973ED7534A06B3D19688D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17514_none_114417c17d05cb37\tcpip.sys
[2012.03.30 12:19:17 | 001,877,872 | ---- | M] (Microsoft Corporation) MD5=5EFD096DEF47F8B88EF591DA92143440 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.21178_none_0faa5514992a39a7\tcpip.sys
[2011.04.25 07:32:22 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=61DC720BB065D607D5823F13D2A64321 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16802_none_0f668bf97fd90dd3\tcpip.sys
[2012.03.30 13:09:53 | 001,895,280 | ---- | M] (Microsoft Corporation) MD5=624C5B3AA4C99B3184BB922D9ECE3FF0 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16986_none_0f140fa780164fde\tcpip.sys
[2012.03.30 12:26:36 | 001,901,424 | ---- | M] (Microsoft Corporation) MD5=885B202006EE17AE99B9FBCEC9AF88C9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21954_none_11a27a8e9643d23a\tcpip.sys
[2009.07.14 03:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys
[2011.04.25 07:33:51 | 001,923,968 | ---- | M] (Microsoft Corporation) MD5=92CE29D95AC9DD2D0EE9061D551BA250 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17603_none_114de9497cfe9316\tcpip.sys
[2012.03.30 13:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\SysNative\drivers\tcpip.sys
[2012.03.30 13:35:47 | 001,918,320 | ---- | M] (Microsoft Corporation) MD5=ACB82BDA8F46C84F465C1AFA517DC4B9 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.17802_none_114ceccb7cff740d\tcpip.sys
[2011.04.25 08:16:34 | 001,927,552 | ---- | M] (Microsoft Corporation) MD5=B77977AEB2FF159D01DB08A309989C5F -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7601.21712_none_11cbb5de9625357a\tcpip.sys

< MD5 for: USERINIT.EXE >
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010.11.20 14:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009.07.14 03:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 03:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010.11.20 15:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe

< MD5 for: WINLOGON.EXE >
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\SysNative\winlogon.exe
[2010.11.20 15:25:30 | 000,390,656 | ---- | M] (Microsoft Corporation) MD5=1151B1BAA6F350B1DB6598E0FEA7C457 -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_cde90685eb910636\winlogon.exe
[2009.07.14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009.10.28 09:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\SoftwareDistribution\Download\8e6eb2a788000c45cd8086e621526778\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009.10.28 08:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\SoftwareDistribution\Download\8e6eb2a788000c45cd8086e621526778\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

< >

< %systemroot%*.* /U /s >
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_32\Temp\*.tmp -> ]
[2 C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp files -> C:\Windows\assembly\NativeImages_v2.0.50727_64\Temp\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2014.09.05 22:21:12 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Adobe
[2014.09.05 22:11:31 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\ATI
[2014.09.06 20:26:51 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\AVAST Software
[2014.09.06 20:04:27 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\AVG
[2014.09.13 18:40:51 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Battle.net
[2014.10.07 17:34:30 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\DAEMON Tools Lite
[2014.09.21 23:01:14 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\DassaultSystemes
[2014.09.19 21:16:57 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\EDrawings
[2014.09.06 23:02:40 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\EZDownloader
[2014.09.21 23:02:22 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\help_images_otherUI
[2014.09.05 21:39:59 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Identities
[2014.09.21 23:44:54 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Kits
[2014.09.06 19:48:09 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\library_dir
[2014.09.21 23:54:44 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Luxology
[2014.09.05 22:01:09 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Macromedia
[2009.07.14 09:45:14 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Media Center Programs
[2014.09.21 23:01:19 | 000,000,000 | --SD | M] -- C:\Users\Honza\AppData\Roaming\Microsoft
[2014.09.06 09:12:30 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Mozilla
[2014.09.06 20:01:44 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\OpenCandy
[2014.09.06 22:21:04 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Opera Software
[2014.09.06 22:05:15 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Origin
[2014.09.21 23:05:13 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\pdfforge
[2014.09.08 04:57:48 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\PunkBuster
[2014.10.07 17:23:34 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Raptr
[2014.09.06 20:04:45 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\RHEng
[2014.09.08 04:28:18 | 000,000,000 | RH-D | M] -- C:\Users\Honza\AppData\Roaming\SecuROM
[2014.09.24 01:58:41 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\SolidWorks
[2014.09.24 01:58:41 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\SolidWorks 2014
[2014.09.06 23:02:20 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\Systweak
[2014.10.07 21:00:55 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\uTorrent
[2014.10.07 01:28:58 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\vlc
[2014.09.07 23:55:17 | 000,000,000 | ---D | M] -- C:\Users\Honza\AppData\Roaming\WinRAR

< %APPDATA%\*.exe /s >
[2014.10.05 23:14:36 | 002,015,640 | ---- | M] (InfoHD-V2.2V05.10) -- C:\Users\Honza\AppData\Roaming\LXMZJKC.exe
[2011.11.23 18:38:29 | 003,123,272 | R--- | M] () -- C:\Users\Honza\AppData\Roaming\PunkBuster\pbsetup\pbsvc.exe
[2014.05.16 19:38:52 | 000,881,328 | ---- | M] (Opera Software) -- C:\Users\Honza\AppData\Roaming\RHEng\A903E4E0E09D4D0F94BF28565CE57AB9\Opera_NI_stable.exe
[2014.09.06 20:02:30 | 027,826,600 | ---- | M] (AVG) -- C:\Users\Honza\AppData\Roaming\RHEng\B561435E29F6405CA81ABB9ECE17C5C4\AVG-PC-TuneUp2014-cz-CZ-p4v1.exe
[2014.04.14 00:00:00 | 000,042,496 | ---- | M] () -- C:\Users\Honza\AppData\Roaming\uTorrent\uninstall.exe
[2014.04.14 00:00:00 | 000,398,760 | ---- | M] (BitTorrent, Inc.) -- C:\Users\Honza\AppData\Roaming\uTorrent\utorrent.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\Tasks\*.job >
[2014.10.07 17:21:40 | 000,004,478 | ---- | M] () -- C:\Windows\Tasks\af6a76ca-8044-46bc-bf6e-e07fcacdcb36-4.job
[2014.10.07 17:21:42 | 000,000,970 | ---- | M] () -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
[2014.10.06 23:19:08 | 000,000,974 | ---- | M] () -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
[2014.10.07 17:21:54 | 000,000,946 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2014.10.07 20:49:00 | 000,000,950 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2014.10.07 17:21:52 | 000,001,684 | ---- | M] () -- C:\Windows\Tasks\LXMZJKC.job

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2014.10.06 14:50:34 | 000,056,376 | ---- | M] () -- C:\Windows\system32\CCCInstall_201410061450344310.log
[2014.10.07 16:23:20 | 000,281,688 | ---- | M] () -- C:\Windows\system32\PnkBstrB.ex0
[2014.10.07 16:30:36 | 000,281,688 | ---- | M] () -- C:\Windows\system32\PnkBstrB.exe
[2014.10.07 16:30:36 | 000,281,688 | ---- | M] () -- C:\Windows\system32\PnkBstrB.xtr

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"Raptr" = C:\PROGRA~2\Raptr\raptrstub.exe --startup -- [2014.08.20 03:36:38 | 000,055,568 | ---- | M] (Raptr, Inc)
"DAEMON Tools Lite" = "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun -- [2014.03.04 11:19:52 | 003,696,912 | ---- | M] (Disc Soft Ltd)
"Sidebar" = C:\Program Files\Windows Sidebar\sidebar.exe /autoRun -- [2010.11.20 15:25:17 | 001,475,584 | ---- | M] (Microsoft Corporation)

< >

< %PROGRAMFILES%\Mozilla Firefox\firefox.exe /md5 >

< %PROGRAMFILES%\Internet Explorer\iexplore.exe /md5 >
[2014.09.06 09:20:35 | 000,758,000 | ---- | M] (Microsoft Corporation) MD5=08ED70F000508724BAF881AA07C21BE1 -- C:\Program Files (x86)\Internet Explorer\iexplore.exe

< %PROGRAMFILES%\Opera\opera.exe /md5 >

< %PROGRAMFILES%\Google\Chrome\Application\chrome.exe /md5 >
[2014.09.23 06:07:06 | 000,852,808 | ---- | M] (Google Inc.) MD5=5AB8DB8F9CADBFBB3C132E8316FE337E -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

< >

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2014.10.07 21:01:20 | 000,000,512 | ---- | M] () MD5=725E2070D401C647DF5D7E5A98468FA9 -- C:\PhysicalMBR.bin

< >

< *crack* /s >
[2014.09.07 10:46:20 | 000,032,648 | ---- | M] () -- \Users\Honza\AppData\Roaming\uTorrent\Call of Duty4-Razor1911+Keygen and Crack.torrent
[2014.09.07 18:57:19 | 000,019,825 | ---- | M] () -- \Users\Honza\AppData\Roaming\uTorrent\FIFA 14 Ultimate Edition [MULTI14][PCDVD][FULL UNLOCKED][WAIT CRACK][3DM][WwW.GamesTorrents.CoM].torrent
[2014.10.05 23:22:14 | 000,000,682 | ---- | M] () -- \Users\Honza\AppData\Roaming\uTorrent\Fifa 15 Ultimate CRACK.torrent
[2014.09.08 01:37:32 | 000,045,303 | ---- | M] () -- \Users\Honza\AppData\Roaming\uTorrent\FIFA.14-ULTIMIATE.EDITION-SKIDROWCRACK.torrent
[2014.10.05 22:06:16 | 000,000,036 | ---- | M] () -- \Users\Honza\Downloads\Hry\FIFA 15-ULTIMATE TEAM EDITION-SC\SKIDROWCRACK.COM.txt
[2014.10.05 22:06:16 | 000,000,113 | ---- | M] () -- \Users\Honza\Downloads\Hry\FIFA 15-ULTIMATE TEAM EDITION-SC\WWW.SKIDROWCRACK.COM.url

< *keygen* /s >
[2014.09.07 10:46:20 | 000,032,648 | ---- | M] () -- \Users\Honza\AppData\Roaming\uTorrent\Call of Duty4-Razor1911+Keygen and Crack.torrent

< *loader* /s >
[2012.11.28 15:24:29 | 000,067,584 | ---- | M] () -- \Hry\Far Cry 3\bin\ubiorbitapi_r2_loader.dll
[2012.11.28 23:54:12 | 000,003,072 | ---- | M] () -- \Hry\Far Cry 3\bin\uplay_r1_loader.dll
[2013.09.21 13:17:06 | 004,179,496 | ---- | M] () -- \Program Files (x86)\Common Files\Manažer instalací SolidWorks\22.0\sldimdownloader.exe
[2005.09.23 04:24:22 | 000,061,440 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader80.dll
[2005.09.22 23:23:44 | 000,004,608 | ---- | M] () -- \Program Files (x86)\Common Files\microsoft shared\VS7Debug\coloader80.tlb
[2012.02.11 10:00:10 | 000,026,200 | ---- | M] () -- \Program Files (x86)\Microsoft SQL Server\110\Tools\Binn\SqlResourceLoader.dll
[2009.05.31 03:21:00 | 000,071,008 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
[2009.05.31 03:21:00 | 000,073,568 | ---- | M] () -- \Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader64.dll
[2010.11.23 00:57:34 | 000,009,216 | ---- | M] () -- \Program Files (x86)\Raptr\_win32sysloader.pyd
[2010.08.24 17:23:59 | 000,071,008 | ---- | M] () -- \Program Files\2K Games\Mafia 2\pc\PhysXLoader.dll
[2014.09.06 20:26:17 | 000,071,968 | ---- | M] () -- \Program Files\AVAST Software\Avast\aswWrcIELoader32.exe
[2014.09.06 20:26:17 | 000,085,376 | ---- | M] () -- \Program Files\AVAST Software\Avast\aswWrcIELoader64.exe
[2014.09.21 22:33:40 | 000,000,109 | ---- | M] () -- \Program Files\Microsoft SQL Server\110\Setup Bootstrap\Log\20140921_222933\Datastore\_Extension_Agent_SqlResourceLoaderPath.xml
[2012.02.11 08:43:56 | 000,034,904 | ---- | M] () -- \Program Files\Microsoft SQL Server\110\Tools\Binn\SqlResourceLoader.dll
[2013.09.20 21:30:00 | 000,446,240 | ---- | M] () -- \Program Files\SolidWorks Corp\Photoview 360 Network Render Client\extra\audioloader.lx
[2013.09.20 22:18:54 | 007,951,360 | ---- | M] () -- \Program Files\SolidWorks Corp\SolidWorks\photoview\swkloader64_libFNP.dll
[2013.09.20 21:29:48 | 000,446,240 | ---- | M] () -- \Program Files\SolidWorks Corp\SolidWorks\photoview\extra\audioLoader.lx
[2013.09.20 22:18:54 | 003,156,992 | ---- | M] () -- \Program Files\SolidWorks Corp\SolidWorks\photoview\extra\swkloader64.lx
[2013.09.20 21:29:02 | 000,014,398 | ---- | M] () -- \Program Files\SolidWorks Corp\SolidWorks\photoview\extra\scripts\pv_envloader.py
[2013.09.21 05:03:52 | 000,126,976 | ---- | M] () -- \Program Files\SolidWorks Corp\SolidWorks\sld3DViaUploader\sld3dViaUploader.exe
[2013.09.21 09:43:38 | 000,635,432 | ---- | M] () -- \Program Files\SolidWorks Corp\SolidWorks\sldutils\SwLoaderSw.dll
[2013.09.21 09:44:04 | 000,134,696 | ---- | M] () -- \Program Files\SolidWorks Corp\SolidWorks\sldutils\lang\czech\SwLoaderSwResu.dll
[2013.09.21 09:44:12 | 000,134,696 | ---- | M] () -- \Program Files\SolidWorks Corp\SolidWorks\sldutils\lang\English\SwLoaderSwResu.dll
[2014.08.06 19:53:56 | 000,061,528 | ---- | M] () -- \Program Files\WinRAR\Ace32Loader.exe
[2012.02.11 08:43:56 | 000,034,904 | ---- | M] () -- \ProgramData\SolidWorks Electrical\MSSQL11.TEW_SQLEXPRESS\MSSQL\Binn\SqlResourceLoader.dll
[2012.02.11 08:43:56 | 000,034,904 | ---- | M] () -- \Users\All Users\SolidWorks Electrical\MSSQL11.TEW_SQLEXPRESS\MSSQL\Binn\SqlResourceLoader.dll
[2014.08.13 13:14:30 | 000,009,418 | ---- | M] () -- \Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.9.3_0\img\gifloader.gif
[2014.09.21 22:25:48 | 000,001,100 | ---- | M] () -- \Users\Honza\AppData\Roaming\SolidWorks\Installation Logs\2014 SP0\Other Logs\IMDownloaderVersion.xml
[2014.09.19 21:36:45 | 000,001,100 | ---- | M] () -- \Users\Honza\AppData\Roaming\SolidWorks\Installation Logs\2014 SP3.0\Other Logs\IMDownloaderVersion.xml
[2014.09.19 21:03:59 | 000,001,618 | ---- | M] () -- \Users\Honza\AppData\Roaming\SolidWorks\Installation Logs\Misc Logs\sldIMDownloaderLog_00001.txt
[2014.09.19 21:19:23 | 000,001,618 | ---- | M] () -- \Users\Honza\AppData\Roaming\SolidWorks\Installation Logs\Misc Logs\sldIMDownloaderLog_00002.txt
[2014.09.19 21:36:47 | 000,001,618 | ---- | M] () -- \Users\Honza\AppData\Roaming\SolidWorks\Installation Logs\Misc Logs\sldIMDownloaderLog_00003.txt
[2014.09.19 21:42:20 | 000,001,618 | ---- | M] () -- \Users\Honza\AppData\Roaming\SolidWorks\Installation Logs\Misc Logs\sldIMDownloaderLog_00004.txt
[2014.09.21 22:25:51 | 000,001,618 | ---- | M] () -- \Users\Honza\AppData\Roaming\SolidWorks\Installation Logs\Misc Logs\sldIMDownloaderLog_00005.txt
[2010.08.30 10:07:04 | 000,072,544 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\4C06AFF4B8A9E9C4285622142B6603C4\22.100.5018\PhysXLoader64.dll.72AC20DB_37D3_1016_B346_A7FD958F5C39
[2014.10.07 17:31:24 | 000,052,388 | ---- | M] () -- \Windows\Prefetch\DOWNLOADER.EXE-F0424CC7.pf
[2012.08.20 19:32:13 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\System32\dmloader.dll
[2012.08.20 19:32:13 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2009.07.14 03:40:31 | 000,047,616 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_a1e90d98a953d601\dmloader.dll
[2009.07.14 03:24:53 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:04:54 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_66c2596d956d1920\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.18 17:22:27 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17107_none_66ff46fd953e6c5c\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:06:43 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_67770e0aae6a7c68\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 20:46:36 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21306_none_6787e564ae5ceff6\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:21:03 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_68a9b6bd92929e63\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 20:38:32 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17932_none_68c05c919281774d\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 07:12:44 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_691eb3faabbf8f66\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 20:09:47 | 000,003,584 | ---- | M] () -- \Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22091_none_6907efc6abd0db81\api-ms-win-core-libraryloader-l1-1-0.dll
[2009.07.26 20:40:31 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.26 20:40:31 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.efi.mui_35ee487d
[2009.07.26 20:40:31 | 000,034,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winload.exe.mui_3bc5b827
[2009.07.26 20:40:31 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.efi.mui_f412814e
[2009.07.26 20:40:31 | 000,030,288 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc_winresume.exe.mui_ff8b5358
[2009.07.14 07:37:37 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a.manifest
[2009.07.14 07:37:37 | 000,033,360 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a_winload.efi.mui_35ee487d
[2009.07.14 07:37:37 | 000,033,344 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a_winload.exe.mui_3bc5b827
[2009.07.14 07:37:37 | 000,029,776 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a_winresume.efi.mui_f412814e
[2009.07.14 07:37:37 | 000,029,760 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a_winresume.exe.mui_ff8b5358
[2014.09.06 19:50:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2014.09.06 19:50:44 | 000,642,944 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89_winload.efi_75834aa0
[2014.09.06 19:50:44 | 000,605,552 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89_winload.exe_75835076
[2014.09.06 19:50:44 | 000,566,208 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89_winresume.efi_85cd069f
[2014.09.06 19:50:44 | 000,518,672 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89_winresume.exe_85cd1215
[2009.07.14 04:57:50 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 04:57:50 | 000,019,008 | ---- | M] () -- \Windows\winsxs\Backup\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59_spldr.sys_98bd87a0
[2009.07.26 20:38:16 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_cs-cz_8f37605116ba80bc.manifest
[2009.07.14 04:44:20 | 000,004,431 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.1.7600.16385_en-us_d28dabacfdb4dd1a.manifest
[2009.07.14 04:13:42 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7600.16385_none_b71babd98657e6ef.manifest
[2010.11.20 06:12:44 | 000,005,745 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.1.7601.17514_none_b94cbfa183466a89.manifest
[2009.07.14 04:18:27 | 000,002,896 | ---- | M] () -- \Windows\winsxs\Manifests\amd64_microsoft-windows-s..ive-blackbox-loader_31bf3856ad364e35_6.1.7600.16385_none_c72819e06acceb59.manifest
[2009.07.14 03:15:12 | 000,038,400 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.1.7600.16385_none_45ca7214f0f664cb\dmloader.dll
[2009.07.14 03:03:49 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:19:58 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16850_none_0aa3bde9dd0fa7ea\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.18 13:09:17 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.17107_none_0ae0ab79dce0fb26\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:12:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21010_none_0b587286f60d0b32\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:42:56 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.21306_none_0b6949e0f5ff7ec0\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:15:45 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17651_none_0c8b1b39da352d2d\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:32:13 | 000,003,584 | -H-- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.17932_none_0ca1c10dda240617\api-ms-win-core-libraryloader-l1-1-0.dll
[2011.07.16 06:36:48 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.21772_none_0d001876f3621e30\api-ms-win-core-libraryloader-l1-1-0.dll
[2012.08.20 19:23:16 | 000,003,584 | ---- | M] () -- \Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7601.22091_none_0ce95442f3736a4b\api-ms-win-core-libraryloader-l1-1-0.dll

< End of report >

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119547
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu asi vir : )

#9 Příspěvek od Rudy »

Znovu spustte OTL jako spravce
Do spodniho okna vlozte nasledujici text:
:OTL
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-3599238740-2346632114-2589644761-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3599238740-2346632114-2589644761-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE8SRC
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O33 - MountPoints2\{193e21d1-3533-11e4-b236-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{193e21d1-3533-11e4-b236-806e6f6e6963}\Shell\AutoRun\command - "" = "D:\Diablo III Setup.exe"

:files
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\LXMZJKC.job
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
C:\Windows\Tasks\af6a76ca-8044-46bc-bf6e-e07fcacdcb36-4.job
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Jan55
Návštěvník
Návštěvník
Příspěvky: 174
Registrován: 14 kvě 2007 16:15
Kontaktovat uživatele:

Re: Prosím o kontrolu logu asi vir : )

#10 Příspěvek od Jan55 »

All processes killed
========== OTL ==========
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
HKEY_USERS\S-1-5-21-3599238740-2346632114-2589644761-1000\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-3599238740-2346632114-2589644761-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ms-help\ deleted successfully.
File Protocol\Handler\ms-help - No CLSID value found not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\mso-offdap11\ deleted successfully.
File Protocol\Handler\mso-offdap11 - No CLSID value found not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{193e21d1-3533-11e4-b236-806e6f6e6963}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{193e21d1-3533-11e4-b236-806e6f6e6963}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{193e21d1-3533-11e4-b236-806e6f6e6963}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{193e21d1-3533-11e4-b236-806e6f6e6963}\ not found.
File "D:\Diablo III Setup.exe" not found.
========== FILES ==========
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job moved successfully.
File\Folder C:\Windows\Tasks\LXMZJKC.job not found.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job moved successfully.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job moved successfully.
C:\Windows\Tasks\af6a76ca-8044-46bc-bf6e-e07fcacdcb36-4.job moved successfully.
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
C:\Windows\msdownld.tmp folder moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Honza
->Temp folder emptied: 12906207 bytes
->Temporary Internet Files folder emptied: 5862855 bytes
->FireFox cache emptied: 4002329 bytes
->Google Chrome cache emptied: 256688472 bytes
->Flash cache emptied: 503 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1192 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 36163718 bytes
RecycleBin emptied: 30706578768 bytes

Total Files Cleaned = 29 585,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: Honza
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0,00 mb

Restore point Set: OTL Restore Point

OTL by OldTimer - Version 3.2.69.0 log created on 10072014_215948

Files\Folders moved on Reboot...
C:\Users\Honza\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File move failed. C:\Windows\temp\_avast_\AvastLock.txt scheduled to be moved on reboot.
File move failed. C:\Windows\temp\ngp.log scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119547
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu asi vir : )

#11 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Jan55
Návštěvník
Návštěvník
Příspěvky: 174
Registrován: 14 kvě 2007 16:15
Kontaktovat uživatele:

Re: Prosím o kontrolu logu asi vir : )

#12 Příspěvek od Jan55 »

Určitě nastala, zase šlape jako hodinky : ),

Děkuji moc

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119547
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu asi vir : )

#13 Příspěvek od Rudy »

To jsem rád a nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno