
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Preventivka
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Preventivka
Poprosil bych o kontrolu logu. Vše je hodně zpomalené a pří spuštění správce úloh procesor pracuje na 100%, ačkoliv žádná náročnější aplikace neběží.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Honza at 2015-02-04 04:26:59
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 58 GB (24%) free of 238 GB
Total RAM: 6006 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 4:27:15, on 4.2.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17496)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Honza.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [Ttesports] C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [Bloody2] "C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe" Minimum
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-18\..\Run: [AviraSpeedup] "C:\Program Files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe" -autorun (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AviraSpeedup] "C:\Program Files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe" -autorun (User 'Default user')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Startup: Dropbox.lnk = Honza\AppData\Roaming\Dropbox\bin\Dropbox.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MIF5BA~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MIF5BA~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MIF5BA~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: pcdservice - Phantombility, Inc - C:\Program Files\Phantombility\Phantom CD\pcdservice.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
O23 - Service: Ochrana HDD TOSHIBA (Thpsrv) - Unknown owner - C:\Windows\system32\ThpSrv.exe (file missing)
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle1\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\system32\vmnetdhcp.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\system32\vmnat.exe
O23 - Service: VMware Workstation Server (VMwareHostd) - Unknown owner - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11336 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sECSQLEXPRESS
"C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe" -sSONY_MEDIAMGR
"c:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\RocketDock\RocketDock.exe"
"C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe" Minimum
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe"
"C:\Program Files\Phantombility\Phantom CD\pcdservice.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe"
C:\Windows\system32\ThpSrv.exe
C:\Windows\system32\TODDSrv.exe
"C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe"
"C:\Program Files\TOSHIBA\TECO\TecoService.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 3336
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000740
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "-215548650-446229185-10490485401933208574-4291211198775498691628449808594843519
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
taskmgr.exe /3
"C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exe"
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" -- "http://rustmapmarks.com/RustLocalizer.php"
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="980.0.511092691\1608091231" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,39,47 --gpu-vendor-id=0x10de --gpu-device-id=0x0a29 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.4052 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/QUIC/Control/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_88/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="980.1.294634405\486202152" /prefetch:673131151
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/QUIC/Control/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_88/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="980.2.2142902131\1975019059" /prefetch:673131151
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Control/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_88/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="980.11.1125373849\444688517" /prefetch:673131151
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Control/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_88/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="980.16.1868721468\1194596920" /prefetch:673131151
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Control/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_88/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="980.17.383384624\838495161" /prefetch:673131151
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
"C:\Users\Honza\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore1ce7ebbcc676fbd.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1345737615-2917888567-741485270-1001Core1cfacee79f75900.job - C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\SidebarExecute.job - C:\Program Files\Windows Sidebar\sidebar.exe /stopHidingGadgets
C:\Windows\tasks\User_Feed_Synchronization-{B17F4266-6AB9-411A-AA11-2BD24C93D766}.job - C:\Windows\system32\msfeedssync.exe sync
C:\Windows\tasks\{2C53C194-5D1B-48DE-AF9F-73041E9D6762}.job - c:\users\honza\appdata\local\google\chrome\application\chrome.exe http://ui.skype.com/ui/0/6.18.0.106/cs/ ... rogressBar
=========Mozilla firefox=========
ProfilePath - C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.msn.com/?pc=U270&ocid=U270DHP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.31211.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll
C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\extensions\
abs@avira.com
safesearch@avira.com
C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\searchplugins\
avira-safesearch.xml
bingp.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-02-24 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-02-24 171944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"TPwrMain"=C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [2009-11-05 505696]
"TosWaitSrv"=C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [2010-02-05 705368]
"TosSENotify"=C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [2010-02-05 709976]
"00TCrdMain"=C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [2009-11-10 910136]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"RocketDock"=C:\Program Files (x86)\RocketDock\RocketDock.exe [2007-09-02 495616]
"Bloody2"=C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe [2014-09-13 13969920]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-09-26 6482200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccleaner]
C:\Program Files\CCleaner\CCleaner64.exe [2014-09-26 6482200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe [2014-09-26 6482200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Connectify]
C:\Program Files (x86)\Connectify\Connectify.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FlashPlayerUpdate]
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_8_800_94_Plugin.exe [2013-08-08 814984]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-31 136176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDMICtrlMan]
C:\Program Files\TOSHIBA\HDMICtrlMan\HDMICtrlMan.exe [2009-10-23 1032536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HSON]
C:\Program Files\TOSHIBA\TBS\HSON.exe [2009-03-09 52600]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HWSetup]
C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [2009-06-02 423936]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware]
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /starttray []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-07-25 2403104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\routercmd]
C:\Program Files (x86)\Router Commander\routercmd.exe --s []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-08-31 8095776]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll [2014-07-25 1283136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21444224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SmoothView]
C:\Program Files\Toshiba\SmoothView\SmoothView.exe [2009-08-13 570680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Teco]
C:\Program Files\TOSHIBA\TECO\Teco.exe [2009-09-28 1482592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ThpSrv]
C:\Windows\system32\thpsrv /logon []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vmware-tray.exe]
C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [2013-06-12 104088]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"KeNotify"=C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [2009-01-13 34088]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2009-10-02 284696]
"Ttesports"=C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe [2010-06-20 1671680]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2014-12-17 702768]
"Avira Systray"=C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [2014-11-20 126200]
C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Honza\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll [2014-02-24 275360]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\18072472.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\18072472.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SMPCHelper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\tvnserver]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"mtxk_hidefastuserswitching"=1
"SoftwareSASGeneration"=3
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2015-11-01 20:01:34 ----A---- C:\Windows\system32\drivers\mutenx.sys
2015-02-04 04:26:59 ----D---- C:\rsit
2015-01-30 20:48:45 ----D---- C:\Users\Honza\AppData\Roaming\Dropbox
2015-01-29 00:10:49 ----A---- C:\Windows\SYSWOW64\Access.dat
2015-01-29 00:10:16 ----D---- C:\ProgramData\Tunngle
2015-01-29 00:10:15 ----D---- C:\Program Files (x86)\Tunngle1
2015-01-29 00:02:48 ----D---- C:\Users\Honza\AppData\Roaming\Tunngle
2015-01-29 00:02:31 ----A---- C:\Windows\system32\drivers\tap0901t.sys
2015-01-29 00:02:29 ----D---- C:\Program Files (x86)\Tunngle
2015-01-29 00:00:15 ----D---- C:\Program Files (x86)\7 Days to die 9.3 Ramnet (7days.wz.sk)
2015-01-14 11:46:07 ----A---- C:\Windows\system32\profsvc.dll
2015-01-14 11:46:04 ----A---- C:\Windows\system32\nlasvc.dll
2015-01-14 11:46:03 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2015-01-14 11:46:03 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2015-01-14 11:46:01 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-01-14 11:45:59 ----A---- C:\Windows\system32\TSWbPrxy.exe
2015-01-14 11:45:39 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-01-14 11:45:38 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-01-14 11:45:38 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-01-14 11:45:38 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-01-14 11:45:38 ----A---- C:\Windows\system32\srcore.dll
2015-01-14 11:45:38 ----A---- C:\Windows\system32\srclient.dll
2015-01-14 11:45:38 ----A---- C:\Windows\system32\rstrui.exe
======List of files/folders modified in the last 1 month======
2015-11-01 19:54:24 ----A---- C:\Windows\win.ini
2015-02-04 04:27:06 ----D---- C:\Windows\temp
2015-02-04 04:27:01 ----D---- C:\Program Files\trend micro
2015-02-04 03:35:33 ----D---- C:\Users\Honza\AppData\Roaming\TS3Client
2015-02-04 01:34:17 ----D---- C:\Windows\tracing
2015-02-03 23:18:57 ----D---- C:\Windows\system32\config
2015-02-03 23:07:11 ----D---- C:\Windows\System32
2015-02-03 23:07:10 ----D---- C:\Windows\inf
2015-02-03 23:07:10 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-02-03 17:00:24 ----SHD---- C:\System Volume Information
2015-02-03 10:06:46 ----D---- C:\Windows\system32\NDF
2015-02-02 13:44:14 ----D---- C:\Windows
2015-02-01 14:00:58 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-02-01 14:00:57 ----D---- C:\Program Files (x86)\Ubisoft
2015-01-31 13:54:04 ----SHD---- C:\Windows\Installer
2015-01-29 11:45:25 ----D---- C:\Windows\Minidump
2015-01-29 00:10:49 ----D---- C:\Windows\SysWOW64
2015-01-29 00:10:16 ----D---- C:\ProgramData
2015-01-29 00:10:15 ----RD---- C:\Program Files (x86)
2015-01-29 00:05:50 ----D---- C:\Windows\system32\drivers
2015-01-29 00:05:41 ----D---- C:\Windows\system32\DriverStore
2015-01-29 00:02:31 ----RSD---- C:\Windows\Fonts
2015-01-22 21:21:13 ----D---- C:\Users\Honza\AppData\Roaming\Skype
2015-01-15 10:16:22 ----D---- C:\Windows\Microsoft.NET
2015-01-15 08:51:43 ----D---- C:\Windows\debug
2015-01-15 02:46:23 ----D---- C:\Windows\winsxs
2015-01-15 02:42:32 ----RD---- C:\Program Files
2015-01-14 22:17:27 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-01-14 22:10:40 ----D---- C:\Windows\system32\MRT
2015-01-14 22:01:46 ----A---- C:\Windows\system32\MRT.exe
2015-01-06 04:36:02 ----N---- C:\Windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-10-02 537112]
R0 LPCFilter;LPC Lower Filter Driver; C:\Windows\system32\DRIVERS\LPCFilter.sys [2009-07-30 44912]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 phmcd;phmcd; C:\Windows\system32\DRIVERS\phmcd.sys [2010-06-14 53328]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2013-12-31 381440]
R0 Thpdrv;TOSHIBA HDD Protection Driver; C:\Windows\system32\DRIVERS\thpdrv.sys [2009-06-29 34880]
R0 Thpevm;TOSHIBA HDD Protection - Shock Sensor Driver; C:\Windows\system32\DRIVERS\Thpevm.SYS [2009-06-29 14784]
R0 tos_sps64;TOSHIBA tos_sps64 Service; C:\Windows\system32\DRIVERS\tos_sps64.sys [2009-07-24 482384]
R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\Windows\system32\DRIVERS\TVALZ_O.SYS [2009-07-14 26840]
R0 vmci;VMware VMCI Bus Driver; C:\Windows\system32\DRIVERS\vmci.sys [2012-10-24 85104]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2014-10-09 131608]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2013-11-19 28600]
R1 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2010-02-17 308296]
R1 SamsungMonitorFirmware;SamsungMonitorFirmware; C:\Windows\system32\drivers\MFWCtwl.sys [2011-12-26 21360]
R1 Tosrfcom;Bluetooth RFCOMM; C:\Windows\System32\Drivers\tosrfcom.sys [2009-07-28 81768]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2011-01-18 314016]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2014-10-09 119272]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2011-01-18 43680]
R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-06-25 35344]
R2 regi;regi; C:\Windows\system32\drivers\regi.sys [2007-04-16 14112]
R2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver; C:\Windows\system32\DRIVERS\TVALZFL.sys [2009-06-19 14472]
R2 VMnetBridge;VMware Bridge Protocol; C:\Windows\system32\DRIVERS\vmnetbridge.sys [2012-11-01 45720]
R2 VMnetuserif;VMware Network Application Interface; \??\C:\Windows\system32\drivers\vmnetuserif.sys [2012-11-01 30360]
R3 Afc;PPdus ASPI Shell; C:\Windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-02-15 283064]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2009-10-26 151936]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-08-31 1992352]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2014-08-11 197408]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-07-25 20256]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 PGEffect;Pangu effect driver; C:\Windows\system32\DRIVERS\pgeffect.sys [2009-06-22 35008]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2009-07-14 11264]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-11-05 291328]
R3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver; C:\Windows\system32\DRIVERS\rtl8192se.sys [2011-06-20 1225832]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle); C:\Windows\system32\DRIVERS\tap0901t.sys [2009-09-16 31232]
R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\Windows\system32\DRIVERS\tdcmdpst.sys [2009-07-30 27784]
R3 tosporte;Bluetooth COM Port; C:\Windows\system32\DRIVERS\tosporte.sys [2009-06-17 54664]
R3 tosrfec;Bluetooth ACPI; C:\Windows\system32\DRIVERS\tosrfec.sys [2009-07-13 19824]
S0 giveio;giveio; C:\Windows\syswow64\giveio.sys [1996-04-03 5248]
S2 Hardlock;Hardlock; \??\C:\Windows\system32\drivers\hardlock.sys []
S2 Sentinel64;Sentinel64; C:\Windows\System32\Drivers\Sentinel64.sys [2009-09-17 145448]
S3 athr;Atheros – ovladač pro zařízení pro rozšiřitelnou bezdrátovou síť LAN; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 Bridge;@%SystemRoot%\system32\bridgeres.dll,-3; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 cpuz130;cpuz130; \??\C:\Users\Honza\AppData\Local\Temp\cpuz130\cpuz_x64.sys []
S3 cpuz135;cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys []
S3 esgiguard;esgiguard; \??\C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys []
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files (x86)\Garena\safedrv.sys []
S3 GUKBFLTR;Gaming Keyboard; C:\Windows\system32\drivers\GUKBFLTR.sys [2010-02-05 29440]
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2011-04-15 33344]
S3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-09-23 144496]
S3 KMWDFILTER;HIDServiceDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2009-04-29 30208]
S3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2010-02-17 102472]
S3 mferkdk;McAfee Inc. mferkdk; C:\Windows\system32\drivers\mferkdk.sys [2010-02-17 40904]
S3 mfesmfk;McAfee Inc. mfesmfk; C:\Windows\system32\drivers\mfesmfk.sys [2010-02-17 49480]
S3 MUTENX_SERVICE;MUTENX_SERVICE; C:\Windows\system32\DRIVERS\mutenx.sys [2013-04-21 82624]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL2832U_IRHID;HID Infrared Remote Receiver; C:\Windows\system32\DRIVERS\RTL2832U_IRHID.sys [2009-07-13 42912]
S3 RTL2832UBDA;REALTEK 2832U BDA Driver; C:\Windows\system32\drivers\RTL2832UBDA.sys [2010-07-01 224488]
S3 RTL2832UUSB;REALTEK 2832U USB Driver; C:\Windows\System32\Drivers\RTL2832UUSB.sys [2010-07-01 39016]
S3 ScreamBAudioSvc;ScreamBee Audio; C:\Windows\system32\drivers\ScreamingBAudio64.sys [2010-07-01 38992]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 tosrfbd;Bluetooth RFBUS; C:\Windows\system32\DRIVERS\tosrfbd.sys [2009-09-24 212072]
S3 tosrfbnp;Bluetooth RFBNEP; C:\Windows\System32\Drivers\tosrfbnp.sys [2009-06-19 50664]
S3 Tosrfhid;Bluetooth RFHID; C:\Windows\system32\DRIVERS\Tosrfhid.sys [2009-06-19 94336]
S3 tosrfnds;Bluetooth Personal Area Network; C:\Windows\system32\DRIVERS\tosrfnds.sys [2009-07-24 26472]
S3 TosRfSnd;Bluetooth Audio; C:\Windows\system32\drivers\tosrfsnd.sys [2009-08-05 63856]
S3 Tosrfusb;Bluetooth USB Controller; C:\Windows\system32\DRIVERS\tosrfusb.sys [2009-09-14 58744]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbser;USB Modem Driver; C:\Windows\system32\DRIVERS\usbser.sys [2010-11-20 32768]
S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys [2012-11-01 20120]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2014-12-17 431920]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2014-12-17 431920]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [2014-11-20 166192]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2009-10-02 13336]
R2 MSSQL$ECSQLEXPRESS;SQL Server (ECSQLEXPRESS); c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2010-12-10 29293408]
R2 MSSQL$SONY_MEDIAMGR;MSSQL$SONY_MEDIAMGR; C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [2002-12-17 7520337]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2014-07-12 43044512]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-07-25 1720608]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-07-25 18956064]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-07-02 935368]
R2 pcdservice;pcdservice; C:\Program Files\Phantombility\Phantom CD\pcdservice.exe [2010-06-14 316752]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-04-22 76888]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2011-09-22 154984]
R2 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO); C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [2010-10-26 124368]
R2 Thpsrv;Ochrana HDD TOSHIBA; C:\Windows\system32\ThpSrv.exe [2009-10-21 531520]
R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\Windows\system32\TODDSrv.exe [2009-07-28 140632]
R2 TosCoSrv;TOSHIBA Power Saver; C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe [2009-11-05 489312]
R2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service; C:\Program Files\TOSHIBA\TECO\TecoService.exe [2009-09-28 251760]
R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-02-05 137560]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S2 VMAuthdService;VMware Authorization Service; C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [2012-10-31 79872]
S2 VMnetDHCP;VMware DHCP Service; C:\Windows\syswow64\vmnetdhcp.exe [2012-11-01 357016]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-08 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [2012-07-25 139776]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-22 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-11 114288]
S3 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2010-12-10 44384]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2010-06-25 117264]
S3 SQLAgent$SONY_MEDIAMGR;SQLAgent$SONY_MEDIAMGR; C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [2002-12-17 311872]
S3 Te.Service;Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [2012-07-25 126976]
S3 TMachInfo;TMachInfo; C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2010-07-01 51576]
S3 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2009-10-21 193904]
S3 TPCHSrv;TPCH Service; C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe [2010-02-05 824688]
S3 TunngleService;TunngleService; C:\Program Files (x86)\Tunngle1\TnglCtrl.exe [2015-01-17 762320]
S4 cfWiMAXService;ConfigFree WiMAX Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2009-10-27 252784]
S4 ConfigFree Service;ConfigFree Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448]
S4 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe [2010-11-11 128928]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-10 135664]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-10 135664]
S4 IviRegMgr;IviRegMgr; C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe [2007-01-04 112152]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; c:\Program Files (x86)\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2009-03-31 47128]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2009-04-17 247152]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); c:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2014-07-12 380064]
S4 SQLBrowser;SQL Server Browser; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2011-09-22 255336]
S4 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Honza at 2015-02-04 04:26:59
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 58 GB (24%) free of 238 GB
Total RAM: 6006 MB (67% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 4:27:15, on 4.2.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17496)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Honza.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [Ttesports] C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [Bloody2] "C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe" Minimum
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-18\..\Run: [AviraSpeedup] "C:\Program Files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe" -autorun (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AviraSpeedup] "C:\Program Files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe" -autorun (User 'Default user')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Startup: Dropbox.lnk = Honza\AppData\Roaming\Dropbox\bin\Dropbox.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MIF5BA~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MIF5BA~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MIF5BA~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\vsocklib.dll
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: pcdservice - Phantombility, Inc - C:\Program Files\Phantombility\Phantom CD\pcdservice.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
O23 - Service: Ochrana HDD TOSHIBA (Thpsrv) - Unknown owner - C:\Windows\system32\ThpSrv.exe (file missing)
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: TunngleService - Tunngle.net GmbH - C:\Program Files (x86)\Tunngle1\TnglCtrl.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\system32\vmnetdhcp.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\system32\vmnat.exe
O23 - Service: VMware Workstation Server (VMwareHostd) - Unknown owner - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11336 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sECSQLEXPRESS
"C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe" -sSONY_MEDIAMGR
"c:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\RocketDock\RocketDock.exe"
"C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe" Minimum
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe"
"C:\Program Files\Phantombility\Phantom CD\pcdservice.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe"
C:\Windows\system32\ThpSrv.exe
C:\Windows\system32\TODDSrv.exe
"C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe"
"C:\Program Files\TOSHIBA\TECO\TecoService.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 3336
"C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000740
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k SDRSVC
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\Windows\system32\conhost.exe "-215548650-446229185-10490485401933208574-4291211198775498691628449808594843519
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
taskmgr.exe /3
"C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exe"
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" -- "http://rustmapmarks.com/RustLocalizer.php"
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="980.0.511092691\1608091231" --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,18,39,47 --gpu-vendor-id=0x10de --gpu-device-id=0x0a29 --gpu-driver-vendor=NVIDIA --gpu-driver-version=9.18.13.4052 --ignored=" --type=renderer " /prefetch:822062411
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/QUIC/Control/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_88/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="980.1.294634405\486202152" /prefetch:673131151
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/QUIC/Control/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_88/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="980.2.2142902131\1975019059" /prefetch:673131151
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Control/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_88/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="980.11.1125373849\444688517" /prefetch:673131151
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Control/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_88/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="980.16.1868721468\1194596920" /prefetch:673131151
"C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group7 pct:10g stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Enforce/ExtensionInstallVerification/Enforce/GoogleNow/Enable/MaterialDesignNTP/Default/NewProfileManagement/NewAvatarMenu/OmniboxBundledExperimentV1/StandardR4/PasswordGeneration/Disabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Control/RememberCertificateErrorDecisions/Default/SPDY/Spdy4Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-Population-Restrict/normal/UMA-Uniformity-Trial-1-Percent/group_88/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="980.17.383384624\838495161" /prefetch:673131151
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
"C:\Users\Honza\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore1ce7ebbcc676fbd.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1345737615-2917888567-741485270-1001Core1cfacee79f75900.job - C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\SidebarExecute.job - C:\Program Files\Windows Sidebar\sidebar.exe /stopHidingGadgets
C:\Windows\tasks\User_Feed_Synchronization-{B17F4266-6AB9-411A-AA11-2BD24C93D766}.job - C:\Windows\system32\msfeedssync.exe sync
C:\Windows\tasks\{2C53C194-5D1B-48DE-AF9F-73041E9D6762}.job - c:\users\honza\appdata\local\google\chrome\application\chrome.exe http://ui.skype.com/ui/0/6.18.0.106/cs/ ... rogressBar
=========Mozilla firefox=========
ProfilePath - C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.msn.com/?pc=U270&ocid=U270DHP"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.51.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.31211.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll
C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\extensions\
abs@avira.com
safesearch@avira.com
C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\searchplugins\
avira-safesearch.xml
bingp.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-02-24 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-02-24 171944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"TPwrMain"=C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [2009-11-05 505696]
"TosWaitSrv"=C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [2010-02-05 705368]
"TosSENotify"=C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [2010-02-05 709976]
"00TCrdMain"=C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [2009-11-10 910136]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"RocketDock"=C:\Program Files (x86)\RocketDock\RocketDock.exe [2007-09-02 495616]
"Bloody2"=C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe [2014-09-13 13969920]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-09-26 6482200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccleaner]
C:\Program Files\CCleaner\CCleaner64.exe [2014-09-26 6482200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe [2014-09-26 6482200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Connectify]
C:\Program Files (x86)\Connectify\Connectify.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FlashPlayerUpdate]
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_8_800_94_Plugin.exe [2013-08-08 814984]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-31 136176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDMICtrlMan]
C:\Program Files\TOSHIBA\HDMICtrlMan\HDMICtrlMan.exe [2009-10-23 1032536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HSON]
C:\Program Files\TOSHIBA\TBS\HSON.exe [2009-03-09 52600]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HWSetup]
C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [2009-06-02 423936]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware]
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /starttray []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-07-25 2403104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\routercmd]
C:\Program Files (x86)\Router Commander\routercmd.exe --s []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-08-31 8095776]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ShadowPlay]
C:\Windows\system32\nvspcap64.dll [2014-07-25 1283136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08 21444224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SmoothView]
C:\Program Files\Toshiba\SmoothView\SmoothView.exe [2009-08-13 570680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Teco]
C:\Program Files\TOSHIBA\TECO\Teco.exe [2009-09-28 1482592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ThpSrv]
C:\Windows\system32\thpsrv /logon []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vmware-tray.exe]
C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [2013-06-12 104088]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"KeNotify"=C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [2009-01-13 34088]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2009-10-02 284696]
"Ttesports"=C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe [2010-06-20 1671680]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2014-12-17 702768]
"Avira Systray"=C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [2014-11-20 126200]
C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Honza\AppData\Roaming\Dropbox\bin\Dropbox.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll [2014-02-24 275360]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\18072472.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\18072472.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SMPCHelper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\tvnserver]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"mtxk_hidefastuserswitching"=1
"SoftwareSASGeneration"=3
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave7"=wdmaud.drv
"midi7"=wdmaud.drv
"mixer7"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"wave8"=wdmaud.drv
"midi8"=wdmaud.drv
"mixer8"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave9"=wdmaud.drv
"midi9"=wdmaud.drv
"mixer9"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2015-11-01 20:01:34 ----A---- C:\Windows\system32\drivers\mutenx.sys
2015-02-04 04:26:59 ----D---- C:\rsit
2015-01-30 20:48:45 ----D---- C:\Users\Honza\AppData\Roaming\Dropbox
2015-01-29 00:10:49 ----A---- C:\Windows\SYSWOW64\Access.dat
2015-01-29 00:10:16 ----D---- C:\ProgramData\Tunngle
2015-01-29 00:10:15 ----D---- C:\Program Files (x86)\Tunngle1
2015-01-29 00:02:48 ----D---- C:\Users\Honza\AppData\Roaming\Tunngle
2015-01-29 00:02:31 ----A---- C:\Windows\system32\drivers\tap0901t.sys
2015-01-29 00:02:29 ----D---- C:\Program Files (x86)\Tunngle
2015-01-29 00:00:15 ----D---- C:\Program Files (x86)\7 Days to die 9.3 Ramnet (7days.wz.sk)
2015-01-14 11:46:07 ----A---- C:\Windows\system32\profsvc.dll
2015-01-14 11:46:04 ----A---- C:\Windows\system32\nlasvc.dll
2015-01-14 11:46:03 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2015-01-14 11:46:03 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2015-01-14 11:46:01 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2015-01-14 11:45:59 ----A---- C:\Windows\system32\TSWbPrxy.exe
2015-01-14 11:45:39 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-01-14 11:45:38 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-01-14 11:45:38 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-01-14 11:45:38 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-01-14 11:45:38 ----A---- C:\Windows\system32\srcore.dll
2015-01-14 11:45:38 ----A---- C:\Windows\system32\srclient.dll
2015-01-14 11:45:38 ----A---- C:\Windows\system32\rstrui.exe
======List of files/folders modified in the last 1 month======
2015-11-01 19:54:24 ----A---- C:\Windows\win.ini
2015-02-04 04:27:06 ----D---- C:\Windows\temp
2015-02-04 04:27:01 ----D---- C:\Program Files\trend micro
2015-02-04 03:35:33 ----D---- C:\Users\Honza\AppData\Roaming\TS3Client
2015-02-04 01:34:17 ----D---- C:\Windows\tracing
2015-02-03 23:18:57 ----D---- C:\Windows\system32\config
2015-02-03 23:07:11 ----D---- C:\Windows\System32
2015-02-03 23:07:10 ----D---- C:\Windows\inf
2015-02-03 23:07:10 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-02-03 17:00:24 ----SHD---- C:\System Volume Information
2015-02-03 10:06:46 ----D---- C:\Windows\system32\NDF
2015-02-02 13:44:14 ----D---- C:\Windows
2015-02-01 14:00:58 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-02-01 14:00:57 ----D---- C:\Program Files (x86)\Ubisoft
2015-01-31 13:54:04 ----SHD---- C:\Windows\Installer
2015-01-29 11:45:25 ----D---- C:\Windows\Minidump
2015-01-29 00:10:49 ----D---- C:\Windows\SysWOW64
2015-01-29 00:10:16 ----D---- C:\ProgramData
2015-01-29 00:10:15 ----RD---- C:\Program Files (x86)
2015-01-29 00:05:50 ----D---- C:\Windows\system32\drivers
2015-01-29 00:05:41 ----D---- C:\Windows\system32\DriverStore
2015-01-29 00:02:31 ----RSD---- C:\Windows\Fonts
2015-01-22 21:21:13 ----D---- C:\Users\Honza\AppData\Roaming\Skype
2015-01-15 10:16:22 ----D---- C:\Windows\Microsoft.NET
2015-01-15 08:51:43 ----D---- C:\Windows\debug
2015-01-15 02:46:23 ----D---- C:\Windows\winsxs
2015-01-15 02:42:32 ----RD---- C:\Program Files
2015-01-14 22:17:27 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2015-01-14 22:10:40 ----D---- C:\Windows\system32\MRT
2015-01-14 22:01:46 ----A---- C:\Windows\system32\MRT.exe
2015-01-06 04:36:02 ----N---- C:\Windows\system32\MpSigStub.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-10-02 537112]
R0 LPCFilter;LPC Lower Filter Driver; C:\Windows\system32\DRIVERS\LPCFilter.sys [2009-07-30 44912]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 phmcd;phmcd; C:\Windows\system32\DRIVERS\phmcd.sys [2010-06-14 53328]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2013-12-31 381440]
R0 Thpdrv;TOSHIBA HDD Protection Driver; C:\Windows\system32\DRIVERS\thpdrv.sys [2009-06-29 34880]
R0 Thpevm;TOSHIBA HDD Protection - Shock Sensor Driver; C:\Windows\system32\DRIVERS\Thpevm.SYS [2009-06-29 14784]
R0 tos_sps64;TOSHIBA tos_sps64 Service; C:\Windows\system32\DRIVERS\tos_sps64.sys [2009-07-24 482384]
R0 TVALZ;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Driver; C:\Windows\system32\DRIVERS\TVALZ_O.SYS [2009-07-14 26840]
R0 vmci;VMware VMCI Bus Driver; C:\Windows\system32\DRIVERS\vmci.sys [2012-10-24 85104]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2014-10-09 131608]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2013-11-19 28600]
R1 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2010-02-17 308296]
R1 SamsungMonitorFirmware;SamsungMonitorFirmware; C:\Windows\system32\drivers\MFWCtwl.sys [2011-12-26 21360]
R1 Tosrfcom;Bluetooth RFCOMM; C:\Windows\System32\Drivers\tosrfcom.sys [2009-07-28 81768]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2011-01-18 314016]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2014-10-09 119272]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2011-01-18 43680]
R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-06-25 35344]
R2 regi;regi; C:\Windows\system32\drivers\regi.sys [2007-04-16 14112]
R2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver; C:\Windows\system32\DRIVERS\TVALZFL.sys [2009-06-19 14472]
R2 VMnetBridge;VMware Bridge Protocol; C:\Windows\system32\DRIVERS\vmnetbridge.sys [2012-11-01 45720]
R2 VMnetuserif;VMware Network Application Interface; \??\C:\Windows\system32\drivers\vmnetuserif.sys [2012-11-01 30360]
R3 Afc;PPdus ASPI Shell; C:\Windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-02-15 283064]
R3 HECIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 Impcd;Impcd; C:\Windows\system32\DRIVERS\Impcd.sys [2009-10-26 151936]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-08-31 1992352]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2014-08-11 197408]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-07-25 20256]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\Windows\system32\drivers\nvvad64v.sys [2014-03-31 40392]
R3 PGEffect;Pangu effect driver; C:\Windows\system32\DRIVERS\pgeffect.sys [2009-06-22 35008]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2009-07-14 11264]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-11-05 291328]
R3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver; C:\Windows\system32\DRIVERS\rtl8192se.sys [2011-06-20 1225832]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle); C:\Windows\system32\DRIVERS\tap0901t.sys [2009-09-16 31232]
R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\Windows\system32\DRIVERS\tdcmdpst.sys [2009-07-30 27784]
R3 tosporte;Bluetooth COM Port; C:\Windows\system32\DRIVERS\tosporte.sys [2009-06-17 54664]
R3 tosrfec;Bluetooth ACPI; C:\Windows\system32\DRIVERS\tosrfec.sys [2009-07-13 19824]
S0 giveio;giveio; C:\Windows\syswow64\giveio.sys [1996-04-03 5248]
S2 Hardlock;Hardlock; \??\C:\Windows\system32\drivers\hardlock.sys []
S2 Sentinel64;Sentinel64; C:\Windows\System32\Drivers\Sentinel64.sys [2009-09-17 145448]
S3 athr;Atheros – ovladač pro zařízení pro rozšiřitelnou bezdrátovou síť LAN; C:\Windows\system32\DRIVERS\athrx.sys [2009-06-20 1394688]
S3 Bridge;@%SystemRoot%\system32\bridgeres.dll,-3; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 cpuz130;cpuz130; \??\C:\Users\Honza\AppData\Local\Temp\cpuz130\cpuz_x64.sys []
S3 cpuz135;cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys []
S3 esgiguard;esgiguard; \??\C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys []
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files (x86)\Garena\safedrv.sys []
S3 GUKBFLTR;Gaming Keyboard; C:\Windows\system32\drivers\GUKBFLTR.sys [2010-02-05 29440]
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2011-04-15 33344]
S3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-09-23 144496]
S3 KMWDFILTER;HIDServiceDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2009-04-29 30208]
S3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2010-02-17 102472]
S3 mferkdk;McAfee Inc. mferkdk; C:\Windows\system32\drivers\mferkdk.sys [2010-02-17 40904]
S3 mfesmfk;McAfee Inc. mfesmfk; C:\Windows\system32\drivers\mfesmfk.sys [2010-02-17 49480]
S3 MUTENX_SERVICE;MUTENX_SERVICE; C:\Windows\system32\DRIVERS\mutenx.sys [2013-04-21 82624]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL2832U_IRHID;HID Infrared Remote Receiver; C:\Windows\system32\DRIVERS\RTL2832U_IRHID.sys [2009-07-13 42912]
S3 RTL2832UBDA;REALTEK 2832U BDA Driver; C:\Windows\system32\drivers\RTL2832UBDA.sys [2010-07-01 224488]
S3 RTL2832UUSB;REALTEK 2832U USB Driver; C:\Windows\System32\Drivers\RTL2832UUSB.sys [2010-07-01 39016]
S3 ScreamBAudioSvc;ScreamBee Audio; C:\Windows\system32\drivers\ScreamingBAudio64.sys [2010-07-01 38992]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS [2009-06-10 292864]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS [2009-06-10 1485312]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [2009-06-10 740864]
S3 tosrfbd;Bluetooth RFBUS; C:\Windows\system32\DRIVERS\tosrfbd.sys [2009-09-24 212072]
S3 tosrfbnp;Bluetooth RFBNEP; C:\Windows\System32\Drivers\tosrfbnp.sys [2009-06-19 50664]
S3 Tosrfhid;Bluetooth RFHID; C:\Windows\system32\DRIVERS\Tosrfhid.sys [2009-06-19 94336]
S3 tosrfnds;Bluetooth Personal Area Network; C:\Windows\system32\DRIVERS\tosrfnds.sys [2009-07-24 26472]
S3 TosRfSnd;Bluetooth Audio; C:\Windows\system32\drivers\tosrfsnd.sys [2009-08-05 63856]
S3 Tosrfusb;Bluetooth USB Controller; C:\Windows\system32\DRIVERS\tosrfusb.sys [2009-09-14 58744]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 usbser;USB Modem Driver; C:\Windows\system32\DRIVERS\usbser.sys [2010-11-20 32768]
S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys [2012-11-01 20120]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2014-12-17 431920]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2014-12-17 431920]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [2014-11-20 166192]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2009-10-02 13336]
R2 MSSQL$ECSQLEXPRESS;SQL Server (ECSQLEXPRESS); c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2010-12-10 29293408]
R2 MSSQL$SONY_MEDIAMGR;MSSQL$SONY_MEDIAMGR; C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [2002-12-17 7520337]
R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2014-07-12 43044512]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-07-25 1720608]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-07-25 18956064]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-07-02 935368]
R2 pcdservice;pcdservice; C:\Program Files\Phantombility\Phantom CD\pcdservice.exe [2010-06-14 316752]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2014-04-22 76888]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2011-09-22 154984]
R2 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO); C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [2010-10-26 124368]
R2 Thpsrv;Ochrana HDD TOSHIBA; C:\Windows\system32\ThpSrv.exe [2009-10-21 531520]
R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\Windows\system32\TODDSrv.exe [2009-07-28 140632]
R2 TosCoSrv;TOSHIBA Power Saver; C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe [2009-11-05 489312]
R2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service; C:\Program Files\TOSHIBA\TECO\TecoService.exe [2009-09-28 251760]
R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-02-05 137560]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-11 103608]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2014-04-11 124088]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S2 VMAuthdService;VMware Authorization Service; C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [2012-10-31 79872]
S2 VMnetDHCP;VMware DHCP Service; C:\Windows\syswow64\vmnetdhcp.exe [2012-11-01 357016]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-08 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2014-04-11 50864]
S3 fussvc;Windows App Certification Kit Fast User Switching Utility Service; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [2012-07-25 139776]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2014-11-22 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-11-11 114288]
S3 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2010-12-10 44384]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2010-06-25 117264]
S3 SQLAgent$SONY_MEDIAMGR;SQLAgent$SONY_MEDIAMGR; C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [2002-12-17 311872]
S3 Te.Service;Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [2012-07-25 126976]
S3 TMachInfo;TMachInfo; C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2010-07-01 51576]
S3 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2009-10-21 193904]
S3 TPCHSrv;TPCH Service; C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe [2010-02-05 824688]
S3 TunngleService;TunngleService; C:\Program Files (x86)\Tunngle1\TnglCtrl.exe [2015-01-17 762320]
S4 cfWiMAXService;ConfigFree WiMAX Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [2009-10-27 252784]
S4 ConfigFree Service;ConfigFree Service; C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [2009-03-10 46448]
S4 Futuremark SystemInfo Service;Futuremark SystemInfo Service; C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe [2010-11-11 128928]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-10 135664]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-10 135664]
S4 IviRegMgr;IviRegMgr; C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe [2007-01-04 112152]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; c:\Program Files (x86)\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2009-03-31 47128]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2009-04-17 247152]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); c:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2014-07-12 380064]
S4 SQLBrowser;SQL Server Browser; c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2011-09-22 255336]
S4 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136]
-----------------EOF-----------------
Re: Preventivka
Zdravim 
V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne Kose).
Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/ (nebo http://www.bleepingcomputer.com/download/adwcleaner/ )
Ulozte na plochu zoek.exe http://hijackthis.nl/smeenk/zoek.htm



- ukoncete vsechny programy
- kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
- kliknete na Scan, pote na Clean
- po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner [Sx].txt), jehoz obsah mi zkopirujte do pristi odpovedi

- spustte jako spravce
- do velkeho okna zkopirujte script uvedeny nize
- kliknete na Run script
- po restartu na Vas vyskoci log (pripadne jej najdete v C:\zoek-results.log) - vlozte mi jej do pristi odpovedi
Kód: Vybrat vše
autoclean; emptyclsid; emptyalltemp;
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Preventivka
Prvni log
# AdwCleaner v4.109 - Report created 04/02/2015 at 17:43:17
# Updated 24/01/2015 by Xplode
# Database : 2015-02-03.1 [Live]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Honza - HONZA-TOSH
# Running from : C:\Users\Honza\Desktop\adwcleaner_4.109.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Tbccint
Folder Deleted : C:\ProgramData\Uniblue
Folder Deleted : C:\Program Files (x86)\Tbccint
Folder Deleted : C:\Users\Honza\AppData\Local\Tbccint
Folder Deleted : C:\Users\Honza\AppData\Local\CrashRpt
Folder Deleted : C:\Users\Honza\AppData\LocalLow\Tbccint
Folder Deleted : C:\Users\Honza\AppData\Roaming\Uniblue
File Deleted : C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\searchplugins\bingp.xml
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\NCTAudioCompress3.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\NCTAudioFile3.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\NCTAudioFormatSettings3.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3329621
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{5E50AE1D-BC76-418B-94C4-EFEAC0CEF80C}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{F54A0D21-6A53-460C-8301-C694EC9E1033}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{F7BCCFD4-2FA6-477D-A1B0-EF7500B3C49E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{03F14321-8FED-4CBC-B01A-4B57FC199062}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2C6F7E96-73BC-47A5-9F51-B67F0BAFE24D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4C58EB04-7B72-4D3D-A36E-66167A99BC31}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4EE0B011-604C-47F3-8F2B-39F79640B85E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CD5175E2-7CC1-418C-B66C-0AB95DAD4103}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3E288F79-03E4-4983-A48E-0D879B51FF19}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{43B4B831-F41F-4F73-8F14-4FFF0BA75B1B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{6C9945B7-1D19-46CB-88C0-45A24DF6CD6E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{84B9B044-17C0-48FB-A300-C9747D5DF29C}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E00DE9B9-B128-4C39-B732-B5D85013FA48}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKCU\Software\dt soft\daemon tools toolbar
Key Deleted : HKCU\Software\Tbccint
Key Deleted : HKCU\Software\Tbccint_HKLM
Key Deleted : HKCU\Software\AppDataLow\Software\Tbccint
Key Deleted : HKLM\SOFTWARE\dt soft\daemon tools toolbar
Key Deleted : HKLM\SOFTWARE\ICQ\ICQToolbar
Key Deleted : HKLM\SOFTWARE\Trymedia Systems
Key Deleted : HKLM\SOFTWARE\Uniblue
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17496
-\\ Mozilla Firefox v33.0.3 (x86 cs)
[fu95b1hq.default\prefs.js] - Line Deleted : user_pref("extensions.safesearch.MP_DISTINCT_ID", "\"147d1f3126626-0a19b2ae56a065-42504136-0-147d1f3126713c\"");
[fu95b1hq.default\prefs.js] - Line Deleted : user_pref("extensions.safesearch.SAUTH_expires_at", "1415922983");
[fu95b1hq.default\prefs.js] - Line Deleted : user_pref("extensions.safesearch.SAUTH_rndsnr", "\"6ca79dc36c7b864dc6d39179db50e033ee43f215\"");
[fu95b1hq.default\prefs.js] - Line Deleted : user_pref("extensions.safesearch.SAUTH_userid", "4253063577");
[fu95b1hq.default\prefs.js] - Line Deleted : user_pref("extensions.safesearch.SAUTH_utoken", "\"5e2bb9463a2e102517f68c2a67778b0e9d59c529\"");
[fu95b1hq.default\prefs.js] - Line Deleted : user_pref("extensions.safesearch.install", "1407976673901");
-\\ Google Chrome v
*************************
AdwCleaner[R0].txt - [6425 octets] - [04/02/2015 17:31:16]
AdwCleaner[R1].txt - [6122 octets] - [04/02/2015 17:41:39]
AdwCleaner[S0].txt - [5873 octets] - [04/02/2015 17:43:17]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5933 octets] ##########
# AdwCleaner v4.109 - Report created 04/02/2015 at 17:43:17
# Updated 24/01/2015 by Xplode
# Database : 2015-02-03.1 [Live]
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Honza - HONZA-TOSH
# Running from : C:\Users\Honza\Desktop\adwcleaner_4.109.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Tbccint
Folder Deleted : C:\ProgramData\Uniblue
Folder Deleted : C:\Program Files (x86)\Tbccint
Folder Deleted : C:\Users\Honza\AppData\Local\Tbccint
Folder Deleted : C:\Users\Honza\AppData\Local\CrashRpt
Folder Deleted : C:\Users\Honza\AppData\LocalLow\Tbccint
Folder Deleted : C:\Users\Honza\AppData\Roaming\Uniblue
File Deleted : C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\searchplugins\bingp.xml
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\NCTAudioCompress3.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\NCTAudioFile3.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AppID\NCTAudioFormatSettings3.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar.CT3329621
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{5E50AE1D-BC76-418B-94C4-EFEAC0CEF80C}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{F54A0D21-6A53-460C-8301-C694EC9E1033}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{F7BCCFD4-2FA6-477D-A1B0-EF7500B3C49E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{03F14321-8FED-4CBC-B01A-4B57FC199062}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2C6F7E96-73BC-47A5-9F51-B67F0BAFE24D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4C58EB04-7B72-4D3D-A36E-66167A99BC31}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4EE0B011-604C-47F3-8F2B-39F79640B85E}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CD5175E2-7CC1-418C-B66C-0AB95DAD4103}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3E288F79-03E4-4983-A48E-0D879B51FF19}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{43B4B831-F41F-4F73-8F14-4FFF0BA75B1B}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{6C9945B7-1D19-46CB-88C0-45A24DF6CD6E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{84B9B044-17C0-48FB-A300-C9747D5DF29C}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E00DE9B9-B128-4C39-B732-B5D85013FA48}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key Deleted : HKCU\Software\dt soft\daemon tools toolbar
Key Deleted : HKCU\Software\Tbccint
Key Deleted : HKCU\Software\Tbccint_HKLM
Key Deleted : HKCU\Software\AppDataLow\Software\Tbccint
Key Deleted : HKLM\SOFTWARE\dt soft\daemon tools toolbar
Key Deleted : HKLM\SOFTWARE\ICQ\ICQToolbar
Key Deleted : HKLM\SOFTWARE\Trymedia Systems
Key Deleted : HKLM\SOFTWARE\Uniblue
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17496
-\\ Mozilla Firefox v33.0.3 (x86 cs)
[fu95b1hq.default\prefs.js] - Line Deleted : user_pref("extensions.safesearch.MP_DISTINCT_ID", "\"147d1f3126626-0a19b2ae56a065-42504136-0-147d1f3126713c\"");
[fu95b1hq.default\prefs.js] - Line Deleted : user_pref("extensions.safesearch.SAUTH_expires_at", "1415922983");
[fu95b1hq.default\prefs.js] - Line Deleted : user_pref("extensions.safesearch.SAUTH_rndsnr", "\"6ca79dc36c7b864dc6d39179db50e033ee43f215\"");
[fu95b1hq.default\prefs.js] - Line Deleted : user_pref("extensions.safesearch.SAUTH_userid", "4253063577");
[fu95b1hq.default\prefs.js] - Line Deleted : user_pref("extensions.safesearch.SAUTH_utoken", "\"5e2bb9463a2e102517f68c2a67778b0e9d59c529\"");
[fu95b1hq.default\prefs.js] - Line Deleted : user_pref("extensions.safesearch.install", "1407976673901");
-\\ Google Chrome v
*************************
AdwCleaner[R0].txt - [6425 octets] - [04/02/2015 17:31:16]
AdwCleaner[R1].txt - [6122 octets] - [04/02/2015 17:41:39]
AdwCleaner[S0].txt - [5873 octets] - [04/02/2015 17:43:17]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5933 octets] ##########
Re: Preventivka
Druhy log
Zoek.exe v5.0.0.0 Updated 03-February-2015
Tool run by Honza on st 04.02.2015 at 17:55:26,03.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Honza\Desktop\zoek\zoek.exe.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
4.2.2015 19:38:08 Zoek.exe System Restore Point Created Succesfully.
==== Empty Folders Check ======================
C:\PROGRA~3\BioWare deleted successfully
C:\PROGRA~3\LangSoft deleted successfully
C:\PROGRA~3\Local Settings deleted successfully
C:\PROGRA~3\Novell deleted successfully
C:\PROGRA~3\Oracle deleted successfully
C:\PROGRA~3\Razer deleted successfully
C:\Users\Honza\AppData\Roaming\Malwarebytes deleted successfully
C:\Users\Honza\AppData\Roaming\Publish Providers deleted successfully
C:\Users\Honza\AppData\Roaming\skypePM deleted successfully
C:\Users\Honza\AppData\Roaming\UltraVNC deleted successfully
C:\Users\Honza\AppData\Roaming\Windows Live Writer deleted successfully
C:\Users\Guest\AppData\Local\VirtualStore deleted successfully
C:\Users\Honza\AppData\Local\Black_Tree_Gaming deleted successfully
C:\Users\Honza\AppData\Local\CrashDumps deleted successfully
C:\Users\Honza\AppData\Local\CrossLoop deleted successfully
C:\Users\Honza\AppData\Local\Femap deleted successfully
C:\Users\Honza\AppData\Local\MigWiz deleted successfully
C:\Users\Honza\AppData\Local\Ubisoft Game Launcher deleted successfully
C:\Users\Host\AppData\Local\VirtualStore deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-1345737615-2917888567-741485270-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0A900DF-9611-4446-86BD-4B1D47E7DB2A} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\PROGRA~3\Package Cache deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\Toolbar4 deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\gpt.ini deleted
C:\Windows\Syswow64\InstallUtil.InstallLog deleted
C:\Windows\SysWow64\AI_RecycleBin deleted
C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\searchplugins\avira-safesearch.xml deleted
C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\extensions\abs@avira.com deleted
C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\extensions\safesearch@avira.com deleted
"C:\Users\Honza\AppData\Local\LumaEmu" deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default
user_pref("browser.startup.homepage", "http://www.msn.com/?pc=U270&ocid=U270DHP");
user_pref("browser.search.defaultenginename", "Bing ");
user_pref("browser.search.selectedEngine", "Bing ");
==== Firefox Extensions ======================
ProfilePath: C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default
- Tab Mix Plus - %ProfilePath%\extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default
FB5621842FDABF9F8359775573498FBC - C:\Users\Honza\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll - Google Update
0C8597DBC74AAF5179471BA013E3C6B4 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll - Shockwave Flash
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
flliilndjeohchalpbbcdekjklbdgfkk - No path found[]
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/?pc=U270&ocid=U270DHP"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/?pc=U270&ocid=U270DHP"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... CZ396CZ396"
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{360AC456-30DD-40AF-B206-01424888587B} deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Connectify deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\routercmd deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Guest\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Honza\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Host\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
C:\Users\Guest\AppData\Local\Mozilla\Firefox\Profiles\gkk9enun.default\cache2 emptied successfully
C:\Users\Host\AppData\Local\Mozilla\Firefox\Profiles\jl1ud2t8.default\cache2 emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=343 folders=182 414043912 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\Guest\AppData\Local\temp emptied successfully
C:\Users\Honza\AppData\Local\Temp will be emptied at reboot
C:\Users\Host\AppData\Local\temp emptied successfully
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Users\TEMP\AppData\Local\temp emptied successfully
C:\Users\TEMP.Honza-TOSH\AppData\Local\temp emptied successfully
C:\Users\TEMP.Honza-TOSH.000\AppData\Local\temp emptied successfully
C:\Users\TEMP.Honza-TOSH.001\AppData\Local\temp emptied successfully
C:\Users\TEMP.Honza-TOSH.002\AppData\Local\temp emptied successfully
C:\Users\TEMP.Honza-TOSH.003\AppData\Local\temp emptied successfully
C:\Users\UpdatusUser\AppData\Local\temp emptied successfully
C:\Users\UpdatusUser.Honza-TOSH\AppData\Local\temp emptied successfully
C:\Users\UPDATU~1.HO~\AppData\Local\temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Honza\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on st 04.02.2015 at 20:26:28,03 ======================
Zoek.exe v5.0.0.0 Updated 03-February-2015
Tool run by Honza on st 04.02.2015 at 17:55:26,03.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Honza\Desktop\zoek\zoek.exe.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
4.2.2015 19:38:08 Zoek.exe System Restore Point Created Succesfully.
==== Empty Folders Check ======================
C:\PROGRA~3\BioWare deleted successfully
C:\PROGRA~3\LangSoft deleted successfully
C:\PROGRA~3\Local Settings deleted successfully
C:\PROGRA~3\Novell deleted successfully
C:\PROGRA~3\Oracle deleted successfully
C:\PROGRA~3\Razer deleted successfully
C:\Users\Honza\AppData\Roaming\Malwarebytes deleted successfully
C:\Users\Honza\AppData\Roaming\Publish Providers deleted successfully
C:\Users\Honza\AppData\Roaming\skypePM deleted successfully
C:\Users\Honza\AppData\Roaming\UltraVNC deleted successfully
C:\Users\Honza\AppData\Roaming\Windows Live Writer deleted successfully
C:\Users\Guest\AppData\Local\VirtualStore deleted successfully
C:\Users\Honza\AppData\Local\Black_Tree_Gaming deleted successfully
C:\Users\Honza\AppData\Local\CrashDumps deleted successfully
C:\Users\Honza\AppData\Local\CrossLoop deleted successfully
C:\Users\Honza\AppData\Local\Femap deleted successfully
C:\Users\Honza\AppData\Local\MigWiz deleted successfully
C:\Users\Honza\AppData\Local\Ubisoft Game Launcher deleted successfully
C:\Users\Host\AppData\Local\VirtualStore deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-1345737615-2917888567-741485270-1001\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0A900DF-9611-4446-86BD-4B1D47E7DB2A} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\PROGRA~3\Package Cache deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\Toolbar4 deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\gpt.ini deleted
C:\Windows\Syswow64\InstallUtil.InstallLog deleted
C:\Windows\SysWow64\AI_RecycleBin deleted
C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\searchplugins\avira-safesearch.xml deleted
C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\extensions\abs@avira.com deleted
C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\extensions\safesearch@avira.com deleted
"C:\Users\Honza\AppData\Local\LumaEmu" deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default
user_pref("browser.startup.homepage", "http://www.msn.com/?pc=U270&ocid=U270DHP");
user_pref("browser.search.defaultenginename", "Bing ");
user_pref("browser.search.selectedEngine", "Bing ");
==== Firefox Extensions ======================
ProfilePath: C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default
- Tab Mix Plus - %ProfilePath%\extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default
FB5621842FDABF9F8359775573498FBC - C:\Users\Honza\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll - Google Update
0C8597DBC74AAF5179471BA013E3C6B4 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll - Shockwave Flash
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
flliilndjeohchalpbbcdekjklbdgfkk - No path found[]
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/?pc=U270&ocid=U270DHP"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/?pc=U270&ocid=U270DHP"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... CZ396CZ396"
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{360AC456-30DD-40AF-B206-01424888587B} deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Connectify deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\routercmd deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Guest\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Honza\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Host\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
C:\Users\Guest\AppData\Local\Mozilla\Firefox\Profiles\gkk9enun.default\cache2 emptied successfully
C:\Users\Host\AppData\Local\Mozilla\Firefox\Profiles\jl1ud2t8.default\cache2 emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=343 folders=182 414043912 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\Guest\AppData\Local\temp emptied successfully
C:\Users\Honza\AppData\Local\Temp will be emptied at reboot
C:\Users\Host\AppData\Local\temp emptied successfully
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Users\TEMP\AppData\Local\temp emptied successfully
C:\Users\TEMP.Honza-TOSH\AppData\Local\temp emptied successfully
C:\Users\TEMP.Honza-TOSH.000\AppData\Local\temp emptied successfully
C:\Users\TEMP.Honza-TOSH.001\AppData\Local\temp emptied successfully
C:\Users\TEMP.Honza-TOSH.002\AppData\Local\temp emptied successfully
C:\Users\TEMP.Honza-TOSH.003\AppData\Local\temp emptied successfully
C:\Users\UpdatusUser\AppData\Local\temp emptied successfully
C:\Users\UpdatusUser.Honza-TOSH\AppData\Local\temp emptied successfully
C:\Users\UPDATU~1.HO~\AppData\Local\temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Honza\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on st 04.02.2015 at 20:26:28,03 ======================
Re: Preventivka

Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Preventivka
Jeste bych potreboval vyresit problem s The Rust, ktery po vytvoreni tech logu viz. nahore, nefunguje
Re: Preventivka
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-02-2015 01
Ran by Honza (administrator) on HONZA-TOSH on 04-02-2015 23:13:19
Running from C:\Users\Honza\Desktop
Loaded Profiles: Honza (Available profiles: Honza & Host & Guest)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Phantombility, Inc) C:\Program Files\Phantombility\Phantom CD\pcdservice.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
() C:\Program Files (x86)\RocketDock\RocketDock.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
() C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(OSD) C:\Program Files (x86)\Ttesports\GamingKeyboard\OSD.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(TeamSpeak Systems GmbH) C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [505696 2009-11-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [705368 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [910136 2009-11-10] (TOSHIBA Corporation)
HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34088 2009-01-13] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2009-10-02] (Intel Corporation)
HKLM-x32\...\Run: [Ttesports] => C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe [1671680 2010-06-20] ()
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-17] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [126200 2014-11-20] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\Run: [RocketDock] => C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] ()
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\Run: [Bloody2] => C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe [13969920 2014-09-13] ()
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6482200 2014-09-26] (Piriform Ltd)
HKU\S-1-5-18\...\Run: [AviraSpeedup] => "C:\Program Files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe" -autorun
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Host\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
BootExecute: autocheck autochk /r \??\K:autocheck autochk * SCTBootTasks
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=U270&ocid=U270DHP
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1345737615-2917888567-741485270-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1
FireFox:
========
FF ProfilePath: C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default
FF DefaultSearchEngine: Bing
FF SearchEngineOrder.3: Bing
FF SelectedSearchEngine: Bing
FF Homepage: hxxp://www.msn.com/?pc=U270&ocid=U270DHP
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-1345737615-2917888567-741485270-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Honza\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-1345737615-2917888567-741485270-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Honza\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Extension: Tab Mix Plus - C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\Extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2014-05-09]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.msn.com/?pc=U270&ocid=U270DHP
CHR StartupUrls: Default -> "hxxp://www.msn.com/?pc=U270&ocid=U270DHP"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2012-07-31]
CHR Extension: (Disk Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-07-31]
CHR Extension: (YouTube) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-07-31]
CHR Extension: (Vyhledávání Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-07-31]
CHR Extension: (Avira Browser Safety) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2014-08-14]
CHR Extension: (Peněženka Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-31]
CHR Extension: (Gmail) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-07-31]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path
StartMenuInternet: Google Chrome.LKMDDDBGUCBCL3X6HJL6KVG7VM - C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-12-17] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-17] (Avira Operations GmbH & Co. KG)
S2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [166192 2014-11-20] (Avira Operations GmbH & Co. KG)
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) [File not signed]
S4 Futuremark SystemInfo Service; C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe [128928 2010-11-11] (Futuremark Corporation)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [File not signed]
R2 MSSQL$ECSQLEXPRESS; c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation)
R2 MSSQL$SONY_MEDIAMGR; C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [7520337 2002-12-17] (Microsoft Corporation) [File not signed]
R2 MSSQL$SQLEXPRESS; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [43044512 2014-07-12] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
R2 pcdservice; C:\Program Files\Phantombility\Phantom CD\pcdservice.exe [316752 2010-06-14] (Phantombility, Inc)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-04-22] ()
S4 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-04-17] ()
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc.)
S3 SQLAgent$SONY_MEDIAMGR; C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [311872 2002-12-17] (Microsoft Corporation) [File not signed]
S4 SQLAgent$SQLEXPRESS; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [380064 2014-07-12] (Microsoft Corporation)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) [File not signed]
S2 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [124368 2010-10-26] (Toshiba Europe GmbH)
S3 TunngleService; C:\Program Files (x86)\Tunngle1\TnglCtrl.exe [762320 2015-01-17] (Tunngle.net GmbH)
S2 VMAuthdService; C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [79872 2012-10-31] (VMware, Inc.) [File not signed]
S2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [13234176 2012-11-01] () [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2011-01-18] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-09] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-10-09] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-19] (Avira Operations GmbH & Co. KG)
R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-02-15] (Disc Soft Ltd)
U5 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [42856 2010-11-05] (Microsoft Corporation)
S0 giveio; C:\Windows\SysWOW64\giveio.sys [5248 1996-04-03] () [File not signed]
R3 GUKBFLTR; C:\Windows\System32\drivers\GUKBFLTR.sys [29440 2010-02-05] ()
S2 Hardlock; C:\Windows\SysWOW64\drivers\hardlock.sys [676864 2004-07-14] (Aladdin Knowledge Systems) [File not signed]
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2011-01-18] ()
S3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [102472 2010-02-17] (McAfee, Inc.)
R1 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [308296 2010-02-17] (McAfee, Inc.)
S3 mferkdk; C:\Windows\System32\drivers\mferkdk.sys [40904 2010-02-17] (McAfee, Inc.)
S3 mfesmfk; C:\Windows\System32\drivers\mfesmfk.sys [49480 2010-02-17] (McAfee, Inc.)
S3 MUTENX_SERVICE; C:\Windows\System32\DRIVERS\mutenx.sys [82624 2013-04-21] ()
R2 NPF; C:\Windows\System32\drivers\npf.sys [35344 2010-06-25] (CACE Technologies, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
R0 phmcd; C:\Windows\System32\DRIVERS\phmcd.sys [53328 2010-06-14] (Phantombility, Inc)
R1 SamsungMonitorFirmware; C:\Windows\system32\drivers\MFWCtwl.sys [21360 2011-12-26] (Samsung Electronics, Inc. ) [File not signed]
S2 Sentinel64; C:\Windows\System32\Drivers\Sentinel64.sys [145448 2009-09-17] (SafeNet, Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2013-12-31] (Duplex Secure Ltd.)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [70296 2012-10-24] (VMware, Inc.)
S3 WINFLASH64; C:\Program Files (x86)\UEFI WinFlash\WinFlash64.sys [19000 2009-11-24] ()
U3 ax9quwcj; No ImagePath
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 cpuz130; \??\C:\Users\Honza\AppData\Local\Temp\cpuz130\cpuz_x64.sys [X]
S3 cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys [X]
S3 esgiguard; \??\C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys [X]
S3 GGSAFERDriver; \??\C:\Program Files (x86)\Garena\safedrv.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-11-01 20:01 - 2013-04-21 17:45 - 00082624 _____ () C:\Windows\system32\Drivers\mutenx.sys
2015-02-04 23:13 - 2015-02-04 23:15 - 00021357 _____ () C:\Users\Honza\Desktop\FRST.txt
2015-02-04 23:12 - 2015-02-04 23:13 - 00000000 ____D () C:\FRST
2015-02-04 23:11 - 2015-02-04 23:11 - 02131968 _____ (Farbar) C:\Users\Honza\Desktop\FRST64.exe
2015-02-04 23:11 - 2015-02-04 23:11 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Downloads\Nepotvrzeno 814861.crdownload
2015-02-04 23:06 - 2015-02-04 23:06 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Downloads\Nepotvrzeno 420780.crdownload
2015-02-04 23:01 - 2015-02-04 23:01 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\LumaEmu
2015-02-04 22:54 - 2015-02-04 22:54 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-04 22:53 - 2015-02-04 22:53 - 00000000 ____D () C:\Users\Honza\AppData\Local\LumaEmu_SteamCloud
2015-02-04 22:17 - 2015-02-04 22:17 - 00000000 ____D () C:\Users\Honza\Downloads\Rust-Revolution.cz-KLIENT
2015-02-04 21:59 - 2015-02-04 22:32 - 00000224 _____ () C:\Windows\setupact.log
2015-02-04 21:59 - 2015-02-04 21:59 - 00000000 _____ () C:\Windows\setuperr.log
2015-02-04 21:14 - 2015-02-04 22:16 - 582320670 _____ () C:\Users\Honza\Downloads\Rust-Revolution.cz-KLIENT.rar
2015-02-04 21:10 - 2015-02-04 21:10 - 00000000 ___SH () C:\Users\Honza\AppData\Local\LumaEmu
2015-02-04 20:21 - 2015-02-04 17:55 - 00024064 _____ () C:\Windows\zoek-delete.exe
2015-02-04 19:37 - 2015-02-04 20:26 - 00009133 _____ () C:\zoek-results.log
2015-02-04 17:55 - 2015-02-04 20:16 - 00000000 ____D () C:\zoek_backup
2015-02-04 17:30 - 2015-02-04 17:43 - 00000000 ____D () C:\AdwCleaner
2015-02-04 04:26 - 2015-02-04 04:27 - 00000000 ____D () C:\rsit
2015-01-31 14:05 - 2015-01-31 14:06 - 04831232 _____ (Geza Kovacs) C:\Users\Honza\Downloads\unetbootin-windows-608.exe
2015-01-31 13:54 - 2015-01-31 13:54 - 00002528 _____ () C:\Users\Honza\Desktop\Windows 7 USB DVD Download Tool.lnk
2015-01-31 13:54 - 2015-01-31 13:54 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool
2015-01-31 13:54 - 2015-01-31 13:54 - 00000000 ____D () C:\Users\Honza\AppData\Local\Apps\Windows 7 USB DVD Download Tool
2015-01-31 13:52 - 2015-01-31 13:52 - 02721168 _____ (Microsoft Corporation) C:\Users\Honza\Downloads\Windows7-USB-DVD-tool.exe
2015-01-31 13:46 - 2015-01-31 13:46 - 00098304 _____ (Hewlett-Packard Company) C:\Users\Honza\Downloads\HPU_v2.2.3.exe
2015-01-31 13:46 - 2015-01-31 13:46 - 00098304 _____ (Hewlett-Packard Company) C:\Users\Honza\Downloads\HPU_v2.2.3 (1).exe
2015-01-31 13:32 - 2015-01-31 13:32 - 01473404 _____ () C:\Users\Honza\Downloads\BootableUSB.zip
2015-01-31 13:10 - 2015-01-31 13:32 - 1034944512 _____ () C:\Users\Honza\Downloads\Ubuntu.iso
2015-01-30 20:52 - 2015-01-30 20:52 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-01-30 20:48 - 2015-01-30 20:53 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Dropbox
2015-01-29 05:04 - 2015-01-29 05:04 - 00000022 _____ () C:\Users\Honza\Desktop\zubar.txt
2015-01-29 00:19 - 2015-01-29 00:19 - 00000000 ____D () C:\Users\Honza\AppData\Local\RammBase
2015-01-29 00:10 - 2015-02-03 10:13 - 00000000 ____D () C:\ProgramData\Tunngle
2015-01-29 00:10 - 2015-01-29 00:10 - 00000000 ____D () C:\Program Files (x86)\Tunngle1
2015-01-29 00:10 - 2015-01-29 00:10 - 00000000 _____ () C:\Windows\SysWOW64\Access.dat
2015-01-29 00:02 - 2015-02-03 10:13 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Tunngle
2015-01-29 00:02 - 2015-01-29 00:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tunngle
2015-01-29 00:02 - 2015-01-29 00:02 - 00000998 _____ () C:\Users\Public\Desktop\Tunngle.lnk
2015-01-29 00:02 - 2015-01-29 00:02 - 00000998 _____ () C:\ProgramData\Desktop\Tunngle.lnk
2015-01-29 00:02 - 2015-01-29 00:02 - 00000000 ____D () C:\Users\Public\Documents\Tunngle
2015-01-29 00:02 - 2015-01-29 00:02 - 00000000 ____D () C:\Users\Honza\Documents\Tunngle
2015-01-29 00:02 - 2015-01-29 00:02 - 00000000 ____D () C:\ProgramData\Documents\Tunngle
2015-01-29 00:02 - 2015-01-29 00:02 - 00000000 ____D () C:\Program Files (x86)\Tunngle
2015-01-29 00:02 - 2009-09-16 07:02 - 00031232 _____ (Tunngle.net) C:\Windows\system32\Drivers\tap0901t.sys
2015-01-29 00:00 - 2015-02-01 13:57 - 00000000 ____D () C:\Program Files (x86)\7 Days to die 9.3 Ramnet (7days.wz.sk)
2015-01-28 23:18 - 2015-01-28 23:19 - 04791280 _____ (Tunngle.net GmbH ) C:\Users\Honza\Downloads\Tunngle_Setup_v5.1.exe
2015-01-14 11:46 - 2014-12-19 04:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-01-14 11:46 - 2014-12-19 02:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-01-14 11:46 - 2014-12-06 05:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-01-14 11:46 - 2014-12-06 04:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-01-14 11:46 - 2014-12-06 04:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-01-14 11:45 - 2014-12-12 06:35 - 05553592 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-01-14 11:45 - 2014-12-12 06:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-01-14 11:45 - 2014-12-12 06:31 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-01-14 11:45 - 2014-12-12 06:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-01-14 11:45 - 2014-12-12 06:11 - 03971512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-01-14 11:45 - 2014-12-12 06:11 - 03916728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-01-14 11:45 - 2014-12-12 06:07 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-01-14 11:45 - 2014-12-11 18:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-01-09 05:42 - 2015-01-09 09:32 - 4136072096 _____ () C:\Users\Honza\Downloads\The-Hobbit-Battle-Of-The-Five-Armies-(2014)-720p-CZ.mkv
2015-01-09 05:42 - 2015-01-09 06:18 - 649616594 _____ () C:\Users\Honza\Downloads\Co-děláme-v-temnotách---What-We-Do-in-the-Shadows-2014-[HDRip.x264-COX]-tit.CZ-v-obraze.avi
2015-01-09 05:41 - 2015-01-09 07:11 - 1630656982 _____ () C:\Users\Honza\Downloads\Americký-ostřelovač-_-American-Sniper-2014,-EN.avi
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-11-01 20:42 - 2010-09-29 15:54 - 00000000 ____D () C:\Windows\System32\Tasks\Games
2015-11-01 19:54 - 2009-07-14 03:34 - 00000630 _____ () C:\Windows\win.ini
2015-11-01 19:50 - 2011-06-07 22:52 - 00003978 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{B17F4266-6AB9-411A-AA11-2BD24C93D766}
2015-02-04 22:56 - 2012-10-29 14:04 - 01828813 _____ () C:\Windows\WindowsUpdate.log
2015-02-04 22:45 - 2009-07-14 05:45 - 00016304 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-02-04 22:45 - 2009-07-14 05:45 - 00016304 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-02-04 22:42 - 2014-12-30 15:51 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\TS3Client
2015-02-04 22:32 - 2011-02-21 19:58 - 00065536 _____ () C:\Windows\system32\Ikeext.etl
2015-02-04 20:27 - 2014-09-28 04:05 - 00000008 __RSH () C:\Users\Honza\ntuser.pol
2015-02-04 20:27 - 2010-09-10 16:02 - 00000000 ____D () C:\Users\Honza
2015-02-04 20:16 - 2009-07-14 04:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2015-02-04 17:41 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\tracing
2015-02-04 17:34 - 2009-07-14 16:18 - 00808540 _____ () C:\Windows\system32\perfh005.dat
2015-02-04 17:34 - 2009-07-14 16:18 - 00196580 _____ () C:\Windows\system32\perfc005.dat
2015-02-04 17:34 - 2009-07-14 06:13 - 01976088 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-02-04 04:27 - 2012-02-08 17:28 - 00000000 ____D () C:\Program Files\trend micro
2015-02-03 10:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-02-02 20:24 - 2014-10-01 17:18 - 00000000 ____D () C:\Users\Host
2015-02-02 20:24 - 2014-09-28 04:14 - 00000000 ____D () C:\Users\Guest
2015-02-02 13:53 - 2009-07-14 05:45 - 05108224 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-01 14:00 - 2012-05-07 19:06 - 00000000 ____D () C:\Program Files (x86)\Ubisoft
2015-02-01 14:00 - 2009-12-10 06:58 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-01-29 11:45 - 2010-11-06 01:37 - 00000000 ____D () C:\Windows\Minidump
2015-01-29 00:18 - 2013-08-21 21:42 - 00143696 _____ () C:\Users\Honza\AppData\Local\GDIPFONTCACHEV1.DAT
2015-01-22 21:21 - 2012-12-23 01:12 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Skype
2015-01-14 22:17 - 2011-01-28 15:38 - 01955470 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-01-14 22:10 - 2013-07-12 21:01 - 00000000 ____D () C:\Windows\system32\MRT
2015-01-14 22:01 - 2010-09-12 00:00 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-01-06 04:36 - 2010-09-10 17:46 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
==================== Files in the root of some directories =======
2011-03-25 19:16 - 2011-03-25 19:16 - 0041974 _____ () C:\Users\Honza\AppData\Roaming\room.dat
2014-02-26 03:22 - 2014-02-26 03:22 - 0011264 ___SH () C:\Users\Honza\AppData\Roaming\Thumbs.db
2015-02-04 21:10 - 2015-02-04 21:10 - 0000000 ___SH () C:\Users\Honza\AppData\Local\LumaEmu
2014-11-12 18:35 - 2014-11-12 18:35 - 0000854 _____ () C:\Users\Honza\AppData\Local\recently-used.xbel
2014-10-06 14:30 - 2014-10-06 14:30 - 0000017 _____ () C:\Users\Honza\AppData\Local\resmon.resmoncfg
2012-07-17 22:10 - 2012-07-17 22:17 - 0000193 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
2014-01-17 00:17 - 2014-01-17 00:17 - 0000315 _____ () C:\ProgramData\NCIDebug.log
Files to move or delete:
====================
C:\Windows\Tasks\{2C53C194-5D1B-48DE-AF9F-73041E9D6762}.job
Some content of TEMP:
====================
C:\Users\Honza\AppData\Local\Temp\avgnt.exe
C:\Users\Honza\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpffcbx4.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-11-01 20:35
==================== End Of Log ============================
Ran by Honza (administrator) on HONZA-TOSH on 04-02-2015 23:13:19
Running from C:\Users\Honza\Desktop
Loaded Profiles: Honza (Available profiles: Honza & Host & Guest)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Phantombility, Inc) C:\Program Files\Phantombility\Phantom CD\pcdservice.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
() C:\Program Files (x86)\RocketDock\RocketDock.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
() C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(OSD) C:\Program Files (x86)\Ttesports\GamingKeyboard\OSD.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(TeamSpeak Systems GmbH) C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [505696 2009-11-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [705368 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [910136 2009-11-10] (TOSHIBA Corporation)
HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34088 2009-01-13] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2009-10-02] (Intel Corporation)
HKLM-x32\...\Run: [Ttesports] => C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe [1671680 2010-06-20] ()
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-17] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [126200 2014-11-20] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\Run: [RocketDock] => C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] ()
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\Run: [Bloody2] => C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe [13969920 2014-09-13] ()
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6482200 2014-09-26] (Piriform Ltd)
HKU\S-1-5-18\...\Run: [AviraSpeedup] => "C:\Program Files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe" -autorun
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Host\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
BootExecute: autocheck autochk /r \??\K:autocheck autochk * SCTBootTasks
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=U270&ocid=U270DHP
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1345737615-2917888567-741485270-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1
FireFox:
========
FF ProfilePath: C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default
FF DefaultSearchEngine: Bing
FF SearchEngineOrder.3: Bing
FF SelectedSearchEngine: Bing
FF Homepage: hxxp://www.msn.com/?pc=U270&ocid=U270DHP
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-1345737615-2917888567-741485270-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Honza\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-1345737615-2917888567-741485270-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Honza\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Extension: Tab Mix Plus - C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\fu95b1hq.default\Extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2014-05-09]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.msn.com/?pc=U270&ocid=U270DHP
CHR StartupUrls: Default -> "hxxp://www.msn.com/?pc=U270&ocid=U270DHP"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2012-07-31]
CHR Extension: (Disk Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-07-31]
CHR Extension: (YouTube) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-07-31]
CHR Extension: (Vyhledávání Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-07-31]
CHR Extension: (Avira Browser Safety) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2014-08-14]
CHR Extension: (Peněženka Google) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-31]
CHR Extension: (Gmail) - C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-07-31]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path
StartMenuInternet: Google Chrome.LKMDDDBGUCBCL3X6HJL6KVG7VM - C:\Users\Honza\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-12-17] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-17] (Avira Operations GmbH & Co. KG)
S2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [166192 2014-11-20] (Avira Operations GmbH & Co. KG)
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) [File not signed]
S4 Futuremark SystemInfo Service; C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe [128928 2010-11-11] (Futuremark Corporation)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [File not signed]
R2 MSSQL$ECSQLEXPRESS; c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation)
R2 MSSQL$SONY_MEDIAMGR; C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [7520337 2002-12-17] (Microsoft Corporation) [File not signed]
R2 MSSQL$SQLEXPRESS; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [43044512 2014-07-12] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
R2 pcdservice; C:\Program Files\Phantombility\Phantom CD\pcdservice.exe [316752 2010-06-14] (Phantombility, Inc)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-04-22] ()
S4 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-04-17] ()
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc.)
S3 SQLAgent$SONY_MEDIAMGR; C:\Program Files (x86)\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [311872 2002-12-17] (Microsoft Corporation) [File not signed]
S4 SQLAgent$SQLEXPRESS; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [380064 2014-07-12] (Microsoft Corporation)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) [File not signed]
S2 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [124368 2010-10-26] (Toshiba Europe GmbH)
S3 TunngleService; C:\Program Files (x86)\Tunngle1\TnglCtrl.exe [762320 2015-01-17] (Tunngle.net GmbH)
S2 VMAuthdService; C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [79872 2012-10-31] (VMware, Inc.) [File not signed]
S2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [13234176 2012-11-01] () [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2011-01-18] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-09] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-10-09] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-19] (Avira Operations GmbH & Co. KG)
R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-02-15] (Disc Soft Ltd)
U5 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [42856 2010-11-05] (Microsoft Corporation)
S0 giveio; C:\Windows\SysWOW64\giveio.sys [5248 1996-04-03] () [File not signed]
R3 GUKBFLTR; C:\Windows\System32\drivers\GUKBFLTR.sys [29440 2010-02-05] ()
S2 Hardlock; C:\Windows\SysWOW64\drivers\hardlock.sys [676864 2004-07-14] (Aladdin Knowledge Systems) [File not signed]
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2011-01-18] ()
S3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [102472 2010-02-17] (McAfee, Inc.)
R1 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [308296 2010-02-17] (McAfee, Inc.)
S3 mferkdk; C:\Windows\System32\drivers\mferkdk.sys [40904 2010-02-17] (McAfee, Inc.)
S3 mfesmfk; C:\Windows\System32\drivers\mfesmfk.sys [49480 2010-02-17] (McAfee, Inc.)
S3 MUTENX_SERVICE; C:\Windows\System32\DRIVERS\mutenx.sys [82624 2013-04-21] ()
R2 NPF; C:\Windows\System32\drivers\npf.sys [35344 2010-06-25] (CACE Technologies, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
R0 phmcd; C:\Windows\System32\DRIVERS\phmcd.sys [53328 2010-06-14] (Phantombility, Inc)
R1 SamsungMonitorFirmware; C:\Windows\system32\drivers\MFWCtwl.sys [21360 2011-12-26] (Samsung Electronics, Inc. ) [File not signed]
S2 Sentinel64; C:\Windows\System32\Drivers\Sentinel64.sys [145448 2009-09-17] (SafeNet, Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2013-12-31] (Duplex Secure Ltd.)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [70296 2012-10-24] (VMware, Inc.)
S3 WINFLASH64; C:\Program Files (x86)\UEFI WinFlash\WinFlash64.sys [19000 2009-11-24] ()
U3 ax9quwcj; No ImagePath
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 cpuz130; \??\C:\Users\Honza\AppData\Local\Temp\cpuz130\cpuz_x64.sys [X]
S3 cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys [X]
S3 esgiguard; \??\C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys [X]
S3 GGSAFERDriver; \??\C:\Program Files (x86)\Garena\safedrv.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-11-01 20:01 - 2013-04-21 17:45 - 00082624 _____ () C:\Windows\system32\Drivers\mutenx.sys
2015-02-04 23:13 - 2015-02-04 23:15 - 00021357 _____ () C:\Users\Honza\Desktop\FRST.txt
2015-02-04 23:12 - 2015-02-04 23:13 - 00000000 ____D () C:\FRST
2015-02-04 23:11 - 2015-02-04 23:11 - 02131968 _____ (Farbar) C:\Users\Honza\Desktop\FRST64.exe
2015-02-04 23:11 - 2015-02-04 23:11 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Downloads\Nepotvrzeno 814861.crdownload
2015-02-04 23:06 - 2015-02-04 23:06 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Downloads\Nepotvrzeno 420780.crdownload
2015-02-04 23:01 - 2015-02-04 23:01 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\LumaEmu
2015-02-04 22:54 - 2015-02-04 22:54 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-04 22:53 - 2015-02-04 22:53 - 00000000 ____D () C:\Users\Honza\AppData\Local\LumaEmu_SteamCloud
2015-02-04 22:17 - 2015-02-04 22:17 - 00000000 ____D () C:\Users\Honza\Downloads\Rust-Revolution.cz-KLIENT
2015-02-04 21:59 - 2015-02-04 22:32 - 00000224 _____ () C:\Windows\setupact.log
2015-02-04 21:59 - 2015-02-04 21:59 - 00000000 _____ () C:\Windows\setuperr.log
2015-02-04 21:14 - 2015-02-04 22:16 - 582320670 _____ () C:\Users\Honza\Downloads\Rust-Revolution.cz-KLIENT.rar
2015-02-04 21:10 - 2015-02-04 21:10 - 00000000 ___SH () C:\Users\Honza\AppData\Local\LumaEmu
2015-02-04 20:21 - 2015-02-04 17:55 - 00024064 _____ () C:\Windows\zoek-delete.exe
2015-02-04 19:37 - 2015-02-04 20:26 - 00009133 _____ () C:\zoek-results.log
2015-02-04 17:55 - 2015-02-04 20:16 - 00000000 ____D () C:\zoek_backup
2015-02-04 17:30 - 2015-02-04 17:43 - 00000000 ____D () C:\AdwCleaner
2015-02-04 04:26 - 2015-02-04 04:27 - 00000000 ____D () C:\rsit
2015-01-31 14:05 - 2015-01-31 14:06 - 04831232 _____ (Geza Kovacs) C:\Users\Honza\Downloads\unetbootin-windows-608.exe
2015-01-31 13:54 - 2015-01-31 13:54 - 00002528 _____ () C:\Users\Honza\Desktop\Windows 7 USB DVD Download Tool.lnk
2015-01-31 13:54 - 2015-01-31 13:54 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool
2015-01-31 13:54 - 2015-01-31 13:54 - 00000000 ____D () C:\Users\Honza\AppData\Local\Apps\Windows 7 USB DVD Download Tool
2015-01-31 13:52 - 2015-01-31 13:52 - 02721168 _____ (Microsoft Corporation) C:\Users\Honza\Downloads\Windows7-USB-DVD-tool.exe
2015-01-31 13:46 - 2015-01-31 13:46 - 00098304 _____ (Hewlett-Packard Company) C:\Users\Honza\Downloads\HPU_v2.2.3.exe
2015-01-31 13:46 - 2015-01-31 13:46 - 00098304 _____ (Hewlett-Packard Company) C:\Users\Honza\Downloads\HPU_v2.2.3 (1).exe
2015-01-31 13:32 - 2015-01-31 13:32 - 01473404 _____ () C:\Users\Honza\Downloads\BootableUSB.zip
2015-01-31 13:10 - 2015-01-31 13:32 - 1034944512 _____ () C:\Users\Honza\Downloads\Ubuntu.iso
2015-01-30 20:52 - 2015-01-30 20:52 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-01-30 20:48 - 2015-01-30 20:53 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Dropbox
2015-01-29 05:04 - 2015-01-29 05:04 - 00000022 _____ () C:\Users\Honza\Desktop\zubar.txt
2015-01-29 00:19 - 2015-01-29 00:19 - 00000000 ____D () C:\Users\Honza\AppData\Local\RammBase
2015-01-29 00:10 - 2015-02-03 10:13 - 00000000 ____D () C:\ProgramData\Tunngle
2015-01-29 00:10 - 2015-01-29 00:10 - 00000000 ____D () C:\Program Files (x86)\Tunngle1
2015-01-29 00:10 - 2015-01-29 00:10 - 00000000 _____ () C:\Windows\SysWOW64\Access.dat
2015-01-29 00:02 - 2015-02-03 10:13 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Tunngle
2015-01-29 00:02 - 2015-01-29 00:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tunngle
2015-01-29 00:02 - 2015-01-29 00:02 - 00000998 _____ () C:\Users\Public\Desktop\Tunngle.lnk
2015-01-29 00:02 - 2015-01-29 00:02 - 00000998 _____ () C:\ProgramData\Desktop\Tunngle.lnk
2015-01-29 00:02 - 2015-01-29 00:02 - 00000000 ____D () C:\Users\Public\Documents\Tunngle
2015-01-29 00:02 - 2015-01-29 00:02 - 00000000 ____D () C:\Users\Honza\Documents\Tunngle
2015-01-29 00:02 - 2015-01-29 00:02 - 00000000 ____D () C:\ProgramData\Documents\Tunngle
2015-01-29 00:02 - 2015-01-29 00:02 - 00000000 ____D () C:\Program Files (x86)\Tunngle
2015-01-29 00:02 - 2009-09-16 07:02 - 00031232 _____ (Tunngle.net) C:\Windows\system32\Drivers\tap0901t.sys
2015-01-29 00:00 - 2015-02-01 13:57 - 00000000 ____D () C:\Program Files (x86)\7 Days to die 9.3 Ramnet (7days.wz.sk)
2015-01-28 23:18 - 2015-01-28 23:19 - 04791280 _____ (Tunngle.net GmbH ) C:\Users\Honza\Downloads\Tunngle_Setup_v5.1.exe
2015-01-14 11:46 - 2014-12-19 04:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-01-14 11:46 - 2014-12-19 02:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-01-14 11:46 - 2014-12-06 05:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-01-14 11:46 - 2014-12-06 04:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-01-14 11:46 - 2014-12-06 04:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-01-14 11:45 - 2014-12-12 06:35 - 05553592 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-01-14 11:45 - 2014-12-12 06:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-01-14 11:45 - 2014-12-12 06:31 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-01-14 11:45 - 2014-12-12 06:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-01-14 11:45 - 2014-12-12 06:11 - 03971512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-01-14 11:45 - 2014-12-12 06:11 - 03916728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-01-14 11:45 - 2014-12-12 06:07 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-01-14 11:45 - 2014-12-11 18:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-01-09 05:42 - 2015-01-09 09:32 - 4136072096 _____ () C:\Users\Honza\Downloads\The-Hobbit-Battle-Of-The-Five-Armies-(2014)-720p-CZ.mkv
2015-01-09 05:42 - 2015-01-09 06:18 - 649616594 _____ () C:\Users\Honza\Downloads\Co-děláme-v-temnotách---What-We-Do-in-the-Shadows-2014-[HDRip.x264-COX]-tit.CZ-v-obraze.avi
2015-01-09 05:41 - 2015-01-09 07:11 - 1630656982 _____ () C:\Users\Honza\Downloads\Americký-ostřelovač-_-American-Sniper-2014,-EN.avi
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-11-01 20:42 - 2010-09-29 15:54 - 00000000 ____D () C:\Windows\System32\Tasks\Games
2015-11-01 19:54 - 2009-07-14 03:34 - 00000630 _____ () C:\Windows\win.ini
2015-11-01 19:50 - 2011-06-07 22:52 - 00003978 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{B17F4266-6AB9-411A-AA11-2BD24C93D766}
2015-02-04 22:56 - 2012-10-29 14:04 - 01828813 _____ () C:\Windows\WindowsUpdate.log
2015-02-04 22:45 - 2009-07-14 05:45 - 00016304 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-02-04 22:45 - 2009-07-14 05:45 - 00016304 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-02-04 22:42 - 2014-12-30 15:51 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\TS3Client
2015-02-04 22:32 - 2011-02-21 19:58 - 00065536 _____ () C:\Windows\system32\Ikeext.etl
2015-02-04 20:27 - 2014-09-28 04:05 - 00000008 __RSH () C:\Users\Honza\ntuser.pol
2015-02-04 20:27 - 2010-09-10 16:02 - 00000000 ____D () C:\Users\Honza
2015-02-04 20:16 - 2009-07-14 04:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2015-02-04 17:41 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\tracing
2015-02-04 17:34 - 2009-07-14 16:18 - 00808540 _____ () C:\Windows\system32\perfh005.dat
2015-02-04 17:34 - 2009-07-14 16:18 - 00196580 _____ () C:\Windows\system32\perfc005.dat
2015-02-04 17:34 - 2009-07-14 06:13 - 01976088 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-02-04 04:27 - 2012-02-08 17:28 - 00000000 ____D () C:\Program Files\trend micro
2015-02-03 10:06 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-02-02 20:24 - 2014-10-01 17:18 - 00000000 ____D () C:\Users\Host
2015-02-02 20:24 - 2014-09-28 04:14 - 00000000 ____D () C:\Users\Guest
2015-02-02 13:53 - 2009-07-14 05:45 - 05108224 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-01 14:00 - 2012-05-07 19:06 - 00000000 ____D () C:\Program Files (x86)\Ubisoft
2015-02-01 14:00 - 2009-12-10 06:58 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-01-29 11:45 - 2010-11-06 01:37 - 00000000 ____D () C:\Windows\Minidump
2015-01-29 00:18 - 2013-08-21 21:42 - 00143696 _____ () C:\Users\Honza\AppData\Local\GDIPFONTCACHEV1.DAT
2015-01-22 21:21 - 2012-12-23 01:12 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Skype
2015-01-14 22:17 - 2011-01-28 15:38 - 01955470 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-01-14 22:10 - 2013-07-12 21:01 - 00000000 ____D () C:\Windows\system32\MRT
2015-01-14 22:01 - 2010-09-12 00:00 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-01-06 04:36 - 2010-09-10 17:46 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
==================== Files in the root of some directories =======
2011-03-25 19:16 - 2011-03-25 19:16 - 0041974 _____ () C:\Users\Honza\AppData\Roaming\room.dat
2014-02-26 03:22 - 2014-02-26 03:22 - 0011264 ___SH () C:\Users\Honza\AppData\Roaming\Thumbs.db
2015-02-04 21:10 - 2015-02-04 21:10 - 0000000 ___SH () C:\Users\Honza\AppData\Local\LumaEmu
2014-11-12 18:35 - 2014-11-12 18:35 - 0000854 _____ () C:\Users\Honza\AppData\Local\recently-used.xbel
2014-10-06 14:30 - 2014-10-06 14:30 - 0000017 _____ () C:\Users\Honza\AppData\Local\resmon.resmoncfg
2012-07-17 22:10 - 2012-07-17 22:17 - 0000193 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
2014-01-17 00:17 - 2014-01-17 00:17 - 0000315 _____ () C:\ProgramData\NCIDebug.log
Files to move or delete:
====================
C:\Windows\Tasks\{2C53C194-5D1B-48DE-AF9F-73041E9D6762}.job
Some content of TEMP:
====================
C:\Users\Honza\AppData\Local\Temp\avgnt.exe
C:\Users\Honza\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpffcbx4.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-11-01 20:35
==================== End Of Log ============================
Re: Preventivka
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-02-2015 01
Ran by Honza at 2015-02-04 23:15:47
Running from C:\Users\Honza\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.2.8870 - Adobe Systems Inc.)
Adobe Flash Player 11 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 11.8.800.94 - Adobe Systems Incorporated)
Adobe Flash Player ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 9.0.124.0 - Adobe Systems Incorporated)
Adobe Reader 9.4.3 - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-A94000000001}) (Version: 9.4.3 - Adobe Systems Incorporated)
Aktualizace NVIDIA 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Application Verifier x64 External Package (Version: 8.59.29722 - Microsoft) Hidden
Avira (HKLM-x32\...\{e7c7c227-b742-4878-9425-f09bbf9951db}) (Version: 1.1.27.25527 - Avira Operations & Co. KG)
Avira (x32 Version: 1.1.27.25527 - Avira Operations & Co. KG) Hidden
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.7.468 - Avira)
Bloody5 (HKLM-x32\...\Bloody3) (Version: 14.09.0014 - Bloody)
Bluetooth Stack for Windows by Toshiba (HKLM\...\{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}) (Version: v7.10.01(T) - TOSHIBA CORPORATION)
CCleaner (HKLM\...\CCleaner) (Version: 4.18 - Piriform)
CyberLink PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 8.0.3022 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Defraggler (HKLM\...\Defraggler) (Version: 2.18 - Piriform)
Direct DiscRecorder (x32 Version: 1.00.0000 - Corel Corporation) Hidden
Dropbox (HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\Dropbox) (Version: 3.0.5 - Dropbox, Inc.)
DVD MovieFactory for TOSHIBA (HKLM-x32\...\InstallShield_{50F68032-B5B7-4513-9116-C978DBD8F27A}) (Version: 7.0.0 - Corel Corporation)
DVD MovieFactory for TOSHIBA (x32 Version: 7.0.0 - Corel Corporation) Hidden
EVEREST Ultimate Edition v5.50 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - Lavalys, Inc.)
Fable III (x32 Version: 1.0.0001.131 - Microsoft Game Studios) Hidden
FormatFactory 2.50 (HKLM-x32\...\FormatFactory) (Version: 2.50 - Free Time)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
Futuremark SystemInfo (HKLM-x32\...\{BEE64C14-BEF1-4610-8A68-A16EAA47B882}) (Version: 3.51.1.1 - Futuremark Corporation)
Game Maker 6 Resource Pack 1 (HKLM-x32\...\Game Maker 6 Resource Pack 1) (Version: - )
Game Maker 6 Resource Pack 2 (HKLM-x32\...\Game Maker 6 Resource Pack 2) (Version: - )
Game Maker 6 Resource Pack 3 (HKLM-x32\...\Game Maker 6 Resource Pack 3) (Version: - )
Game Maker 6 Resource Pack 4 (HKLM-x32\...\Game Maker 6 Resource Pack 4) (Version: - )
Game Maker 8.0 (HKLM-x32\...\Game Maker 8.0) (Version: - )
GameShadow (HKLM-x32\...\{F7C1C17E-70E3-475F-BD52-EA554391F15D}) (Version: 2.01.0000 - Název společnosti:)
GDR 5520 for SQL Server 2008 (KB2977321) (HKLM-x32\...\KB2977321) (Version: 10.3.5520.0 - Microsoft Corporation)
GIMP 2.8.2 (HKLM\...\GIMP-2_is1) (Version: 2.8.2 - The GIMP Team)
Google Chrome (HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\Google Chrome) (Version: 40.0.2214.91 - Google Inc.)
Google Update Helper (x32 Version: 1.3.21.165 - Google Inc.) Hidden
HDMI Control Manager (HKLM-x32\...\InstallShield_{63DA1F6A-2E65-4367-99B9-9E39FADEC446}) (Version: 2.0 - TOSHIBA CORPORATION)
HDMI Control Manager (Version: 2.0 - TOSHIBA CORPORATION) Hidden
HDMI Control Manager (x32 Version: 2.0 - TOSHIBA CORPORATION) Hidden
HijackThis 2.0.2 (HKLM-x32\...\HijackThis) (Version: 2.0.2 - TrendMicro)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.0.1006 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.5.0.1037 - Intel Corporation)
Intel(R) Turbo Boost Technology Driver (HKLM-x32\...\{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}) (Version: 01.00.01.1002 - Intel Corporation)
InterVideo WinDVD BD for TOSHIBA (HKLM-x32\...\InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}) (Version: 8.0.20.153 - InterVideo Inc.)
InterVideo WinDVD BD for TOSHIBA (x32 Version: 8.0.20.153 - InterVideo Inc.) Hidden
Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.510 - Oracle)
Java(TM) 6 Update 24 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216014FF}) (Version: 6.0.240 - Sun Microsystems, Inc.)
JMicron Flash Media Controller Driver (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.0.34.2 - JMicron Technology Corp.)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kits Configuration Installer (x32 Version: 8.59.25584 - Microsoft) Hidden
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0405-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.31211.0 - Microsoft Corporation)
Microsoft SQL Server 2005 (HKLM-x32\...\Microsoft SQL Server 2005) (Version: - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2008 (HKLM-x32\...\Microsoft SQL Server 10 Release) (Version: - Microsoft Corporation)
Microsoft SQL Server 2008 Browser (HKLM-x32\...\{C688457E-03FD-4941-923B-A27F4D42A7DD}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Native Client (HKLM\...\{2738C4AA-420E-4E13-ADEF-B5AB250E3EF1}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files (HKLM-x32\...\{5D60AB1A-2409-4829-83D4-0972856D885A}) (Version: 10.3.5520.0 - Microsoft Corporation)
Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR) (HKLM-x32\...\{E09B48B5-E141-427A-AB0C-D3605127224A}) (Version: 8.00.761 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{9ACF3FDB-C8E6-444C-8C64-13A221F7BFFD}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server Setup Support Files (English) (HKLM-x32\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{0826F9E4-787E-481D-83E0-BC6A57B056D5}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 (HKLM\...\{EE936C7A-EA40-31D5-9B65-8E3E089C3828}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{C73B5B3B-F974-48CA-8B91-3E8A432AEA5B}) (Version: 08.05.0822 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Mozilla Firefox 33.0.3 (x86 cs) (HKLM-x32\...\Mozilla Firefox 33.0.3 (x86 cs)) (Version: 33.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla)
MP3 Cutter 1.9 (HKLM-x32\...\MP3 Cutter_is1) (Version: - Aiv Software)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML4 Parser (HKLM-x32\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios)
Nastaveni hadrware TOSHIBA (HKLM-x32\...\InstallShield_{5279374D-87FE-4879-9385-F17278EBB9D3}) (Version: 1.63.0.16C - TOSHIBA CORPORATION)
NICI U.S./Worldwide 2.77.1.0 (x64) (HKLM\...\{123B3157-26AF-43F5-AD46-AB200AC56292}) (Version: 2.77.1.0 - Novell, Inc.)
NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Ovládací panel NVIDIA 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM-x32\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation)
Ovladač herní klávesnice Tt eSPORTS Challenger V1.0 (HKLM-x32\...\{1C0A8AE2-C207-49EF-A2FC-12981E460B55}_is1) (Version: - Ttesports Inc.)
Patch v4.17b Update (HKLM-x32\...\{THEGUILDREN-0010-2010-300520102330}_is1) (Version: - RUNEFORGE Games Studios)
Phantom CD (HKLM\...\Phantom CD) (Version: 2.0.0 - Phantombility)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Preset Manager 2.0 (HKLM-x32\...\{FCFE3F81-C977-4D31-877B-2778BB2A02DE}) (Version: 2.0.114 - Sony)
Rapture3D 2.4.8 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version: - Blue Ripple Sound)
Realtek Ethernet Controller Driver For Windows Vista and Later (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5928 - Realtek Semiconductor Corp.)
Realtek WLAN Driver (HKLM-x32\...\{0FB630AB-7BD8-40AE-B223-60397D57C3C9}) (Version: 2.00.0006 - Realtek)
Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)
Regi (Version: 1.00.0000 - InterVideo Inc.) Hidden
RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software) <==== ATTENTION!
Samsung_MonSetup (HKLM-x32\...\{8EA79DBF-D637-448A-89D6-410A087A4493}) (Version: 1.00.0000 - Samsung)
SDK Debuggers (x32 Version: 8.59.29746 - Microsoft Corporation) Hidden
Service Pack 3 for SQL Server 2008 (KB2546951) (HKLM-x32\...\KB2546951) (Version: 10.3.5500.0 - Microsoft Corporation)
SES Driver (HKLM\...\{D8CC254C-C671-4664-9A38-FA368D1E2C97}) (Version: 1.0.0 - Western Digital)
SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden
Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
Smart Counter 1.2.1 (HKLM-x32\...\Smart Counter_is1) (Version: - Štěpán Kozák)
Solid Edge ST7 (HKLM\...\{AB0F3228-D90C-4574-8A28-589483A68C93}) (Version: 107.00.00104 - Siemens)
Sony Media Manager 2.2 (HKLM-x32\...\{878D2EB2-2D55-42A9-955E-1E08F28529FD}) (Version: 2.2.136 - Sony)
Sql Server Customer Experience Improvement Program (x32 Version: 10.3.5500.0 - Microsoft Corporation) Hidden
TeamSpeak 3 Client (HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
The KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 3.4.0.59 - KMP Media co., Ltd)
Toshiba Assist (HKLM-x32\...\{1B87C40B-A60B-4EF3-9A68-706CF4B69978}) (Version: 3.00.10 - TOSHIBA)
TOSHIBA ConfigFree (HKLM-x32\...\{F3529665-D75E-4D6D-98F0-745C78C68E9B}) (Version: 8.0.25 - TOSHIBA Corporation)
TOSHIBA Disc Creator (HKLM\...\{5DA0E02F-970B-424B-BF41-513A5018E4C0}) (Version: 2.1.0.2 for x64 - TOSHIBA Corporation)
TOSHIBA eco Utility (HKLM-x32\...\InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}) (Version: 1.1.12.64 - TOSHIBA Corporation)
TOSHIBA Extended Tiles for Windows Mobility Center (HKLM-x32\...\InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}) (Version: - )
TOSHIBA Flash Cards Support Utility (HKLM-x32\...\InstallShield_{620BBA5E-F848-4D56-8BDA-584E44584C5E}) (Version: 1.63.0.4C - TOSHIBA CORPORATION)
TOSHIBA HDD Protection (HKLM\...\{94A90C69-71C1-470A-88F5-AA47ECC96B40}) (Version: 2.2.0.3 - TOSHIBA Corporation)
TOSHIBA Heslo správce (HKLM-x32\...\InstallShield_{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}) (Version: 1.63.0.7C - TOSHIBA CORPORATION)
Toshiba Manuals (HKLM-x32\...\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}) (Version: 10.00 - TOSHIBA)
TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 1.5.6.64 - TOSHIBA Corporation)
TOSHIBA Recovery Media Creator (HKLM\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 2.1.0.4 x64 - TOSHIBA Corporation)
TOSHIBA Recovery Media Creator Reminder (HKLM-x32\...\InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}) (Version: 1.00.0019 - TOSHIBA)
TOSHIBA Service Station (HKLM-x32\...\{AC6569FA-6919-442A-8552-073BE69E247A}) (Version: 2.1.45 - TOSHIBA)
TOSHIBA TEMPRO (HKLM-x32\...\{3A9B3B6D-3C08-4283-AF50-FD82C49DD71E}) (Version: 3.34 - Toshiba Europe GmbH)
TOSHIBA USB Sleep and Charge Utility (HKLM-x32\...\{E487EE7D-EAAA-4E2A-9116-E3B477D8A74F}) (Version: 1.3.2.0 - TOSHIBA Corporation)
TOSHIBA Value Added Package (HKLM-x32\...\InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}) (Version: 1.2.34.64 - TOSHIBA Corporation)
TOSHIBA Web Camera Application (HKLM-x32\...\{5E6F6CF3-BACC-4144-868C-E14622C658F3}) (Version: 1.1.1.9 - TOSHIBA Corporation)
TRORMCLauncher (HKLM-x32\...\InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600}) (Version: - )
TRORMCLauncher (Version: 1.0.0.9 - TOSHIBA) Hidden
TuneUp Utilities Language Pack (en-US) (x32 Version: 12.0.3000.140 - TuneUp Software) Hidden
Tunngle (HKLM-x32\...\Tunngle_is1) (Version: Tunngle - Tunngle.net GmbH)
Twinstar-Launcher (HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\c8c75cfa6b8b223c) (Version: 1.0.0.49 - Twinstar)
Ulead Straight-to-Disc SDK (HKLM-x32\...\{8D2C1E44-7685-4D05-8342-B0DC6422FA47}) (Version: 2.2 - )
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Utility Common Driver (x32 Version: 1.0.50.27C - TOSHIBA) Hidden
VBA (2627.01) (x32 Version: 6.03.00.9402 - Microsoft Corporation) Hidden
Vegas Movie Studio HD Platinum 10.0 (HKLM-x32\...\{40AE01BE-A290-4FFB-8DAB-C624C17DC87E}) (Version: 10.0.179 - Sony)
VibrateGameDeviceDrivers40 (HKLM\...\{DBB7F606-0C13-4182-AD7F-427A4773580E}) (Version: 4.09.0511G - Název společnosti:)
VMware Workstation (HKLM-x32\...\VMware_Workstation) (Version: 9.0.1 - VMware, Inc)
VMware Workstation (Version: 9.0.1 - VMware, Inc.) Hidden
Výstraha HDD/SSD TOSHIBA (HKLM-x32\...\InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}) (Version: 3.1.64.6 - TOSHIBA Corporation)
Výstraha HDD/SSD TOSHIBA (Version: 3.1.64.6 - TOSHIBA Corporation) Hidden
Výstraha HDD/SSD TOSHIBA (x32 Version: 3.1.64.6 - TOSHIBA Corporation) Hidden
Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
Windows Driver Package - Western Digital Technologies (WDC_SAM) WDC_SAM (01/19/2011 1.0.0009.0) (HKLM\...\4CA7CFBB29889F25ACB3DF6E3A42BAE29EB43B20) (Version: 01/19/2011 1.0.0009.0 - Western Digital Technologies)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{068B46A0-8858-4CEB-80BC-A4AE787A05FC}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Media Center Edition MPEG Codec Plug-in (HKLM-x32\...\{94F3D243-2006-4B2D-9160-C2A33F74BB84}) (Version: - ArcSoft)
Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
Windows Software Development Kit (HKLM-x32\...\{363a2c1e-637f-45ce-933b-5a5463efd945}) (Version: 8.59.29750 - Microsoft Corporation)
WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
WinRAR archiver (HKLM-x32\...\WinRAR archiver) (Version: - )
WPT Redistributables (x32 Version: 8.59.29750 - Microsoft) Hidden
WPTx64 (x32 Version: 8.59.29722 - Microsoft) Hidden
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{5b55a44a-d008-49aa-9234-86fb7709bc0a}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Honza\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Honza\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
==================== Restore Points =========================
29-01-2015 00:01:00 Tunngle 5.1 Setup
29-01-2015 00:04:08 Instalace balíčku ovladače zařízení: TAP-Win32 Provider V9 (Tunngle) Síťové adaptéry
30-01-2015 16:50:54 Windows Update
31-01-2015 13:53:06 Installed Windows 7 USB/DVD Download Tool
01-02-2015 14:00:00 Removed Heroes of Might and Magic V
03-02-2015 16:58:00 Windows Update
04-02-2015 19:37:27 zoek.exe restore point
04-02-2015 22:54:07 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2014-04-28 22:20 - 2014-10-30 14:55 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {0C2B9613-A87C-48A4-A754-430CFD143F57} - System32\Tasks\{309F2FC0-3555-49A5-837F-BC95A275CE85} => msiexec.exe /package "C:\Users\Honza\Desktop\Solid Edge ST3\Instalace\Solid Edge ST3.msi"
Task: {0CAD1F10-AF65-4B4D-B55E-DDC5E4875204} - System32\Tasks\{C78E6134-BE3F-4C33-9DE1-D6D98B7F0F46} => C:\Users\Honza\Desktop\FlatOut2\FlatOut2.exe
Task: {116958A6-DE4C-4604-BC40-A5460B55CAAD} - System32\Tasks\{75646656-9C18-458C-81E3-38264B97783F} => pcalua.exe -a C:\Users\Honza\Downloads\196.34_desktop_win7_winvista_64bit_english_beta.exe -d C:\Users\Honza\Downloads
Task: {16DCABC6-1880-4F68-9BFE-ECEA65551657} - System32\Tasks\{BFF3B366-4A7D-4B1B-A0C2-EB35E7999ACD} => pcalua.exe -a "C:\Users\Honza\Downloads\SP3 Holiday+Xmas Edition\Xmas\Setup.exe" -d "C:\Users\Honza\Downloads\SP3 Holiday+Xmas Edition\Xmas"
Task: {1C527862-2F27-4382-8943-AA87FEBCF045} - System32\Tasks\{41D6587C-1D7C-4B11-B28C-E880B2432D3B} => pcalua.exe -a C:\Users\Honza\Downloads\nVidia-ForceWare_182.06.exe -d C:\Users\Honza\Downloads
Task: {20CE8186-F01D-48E8-B15E-C40ED8AEEF5C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-10] (Google Inc.)
Task: {228E37E9-657E-46BC-A8B9-BDB46A867575} - System32\Tasks\{1E982D24-8D75-4AAC-9486-5185C3BB11CB} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{66491E5A-7899-4863-A2E9-057E10BCB578}\setup.exe" -c -runfromtemp -l0x0009 -removeonly
Task: {2D3CC10E-5363-407B-BF54-E04019BA4C27} - System32\Tasks\{DCF4A1BD-953A-4A43-9E55-40B9C0A5667B} => Chrome.exe http://ui.skype.com/ui/0/5.1.0.104/cs/a ... ltbrowser2
Task: {2FEEBBB1-140A-4180-8FF4-F2654AC7C6C0} - System32\Tasks\{9843DE75-B00C-4B27-82E2-46274453F613} => pcalua.exe -a C:\Users\Honza\Desktop\youtubedownloader216.exe -d C:\Users\Honza\Desktop
Task: {345BE6A0-F576-4463-9A6E-E9C8146986DA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-10] (Google Inc.)
Task: {35703804-EF22-431A-8676-D14159B2ED43} - System32\Tasks\{FE76EEC2-388F-4A44-9AE2-9460214AE50E} => pcalua.exe -a C:\Users\Honza\Downloads\Display_Nvidia_VSW7_64_258.96_8.17.12.5896\setup.exe -d C:\Users\Honza\Downloads\Display_Nvidia_VSW7_64_258.96_8.17.12.5896
Task: {37AC3DE5-A2F6-4525-9A47-E6AAE8637756} - System32\Tasks\{CE252CB2-B3A6-4454-B0C6-6DC856B7F93E} => C:\Program Files (x86)\2K Games\Mafia II\pc\mafia2.exe
Task: {3907C91B-4C18-4578-B26A-41EC9ED82DB4} - System32\Tasks\{67756D9F-E9D0-4F80-9FB7-F9DCD1380357} => pcalua.exe -a C:\Users\Honza\Downloads\acidpro50c-trial.exe -d C:\Users\Honza\Downloads
Task: {3F22EE04-E825-4E0C-8D3C-FD6C6872F74B} - System32\Tasks\{DB97AB06-FE8F-4661-9217-48A96008049E} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{AC61C594-5F86-4BE9-ABAF-763C6A8E2302}\setup.exe" -c -runfromtemp -l0x0009 -removeonly
Task: {4BD79027-CAB3-424E-A0D9-A45E4BBECC3A} - System32\Tasks\{A1FAECDF-D643-4800-83FE-3C737CC4F9FE} => pcalua.exe -a C:\Users\Honza\Downloads\Zoo-Tycoon-Cestina_1.05.exe -d C:\Users\Honza\Downloads
Task: {4C60A0DD-2072-421F-B041-4EDF93E568DD} - System32\Tasks\{2892EA2D-0FFD-4624-A59A-01985EFACC85} => pcalua.exe -a "C:\Users\Honza\Desktop\Gothic 3\autumn.exe" -d "C:\Users\Honza\Desktop\Gothic 3"
Task: {4CEEB4AC-F6CD-46AD-9F99-6A585DA4519F} - System32\Tasks\{C16DEDF5-8A69-4D15-B350-0169BEAAF63B} => pcalua.exe -a C:\Users\Honza\Desktop\X-MenOriginsCz.exe -d C:\Users\Honza\Desktop
Task: {4D8324B5-F83D-42E7-AB1D-B0871E8B3D00} - System32\Tasks\{5D60017A-A9F8-442D-BE4D-C05F95F2A077} => msiexec.exe /package "C:\Users\Honza\Downloads\SkypeSetup_5.6.0.110.msi"
Task: {517BC335-7BD4-4495-8C1F-954D95FEAFB5} - System32\Tasks\{08434B41-A742-434B-95CD-35050246BFF7} => pcalua.exe -a "C:\Program Files (x86)\EA GAMES\Xmas\Setup.exe" -d "C:\Program Files (x86)\EA GAMES\Xmas"
Task: {522E2BEC-421A-429A-A781-2FB8AE391CCD} - System32\Tasks\Google Updater and Installer => C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-31] (Google Inc.)
Task: {548E3669-F530-4A0F-8BD1-3CCE99BA77E7} - System32\Tasks\{85B603A4-3FDF-4B6D-B0B8-305D77244C6E} => C:\Program Files (x86)\Need For Speed Shift Ultimátní Edice\SHIFT.exe
Task: {56841E8A-ABE2-4AC8-90DA-3CB0CF3309E5} - System32\Tasks\{E41080C4-563E-4212-8BD9-D0A19AF57161} => pcalua.exe -a C:\Users\Honza\Downloads\266.58_notebook_winvista_win7_64bit_international_whql.exe -d C:\Users\Honza\Downloads
Task: {5AAB4578-F87B-4483-BBEA-98E4A7607C5D} - System32\Tasks\{47063297-B1CC-4EAA-A780-940A8BF732B2} => pcalua.exe -a F:\setup.exe -d F:\
Task: {6072AD30-14B7-4073-831C-74F33A8CC5DF} - System32\Tasks\{BF7EA90B-D59F-45BB-BFB3-63101F26EE3B} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08] (Skype Technologies S.A.)
Task: {610D7F03-EB94-4946-AE67-07603FB61556} - System32\Tasks\{B8E5A9AF-6150-43C5-AD36-391228A4D3E8} => pcalua.exe -a C:\Users\Honza\Desktop\hijackthis.exe -d C:\Users\Honza\Desktop
Task: {61F9515B-6C58-4D60-B38C-5151AEF56493} - System32\Tasks\{A6E2A68C-76CE-4BFF-9605-2DD07D3C1474} => C:\Program Files (x86)\2K Games\Mafia II\pc\mafia2.exe
Task: {663A699D-BC3C-42E8-A865-3608320B310E} - System32\Tasks\{70E5B754-23E6-43DB-BBEB-023778869E22} => pcalua.exe -a C:\Users\Honza\Downloads\NVDVID-00211195-0042.EXE -d C:\Users\Honza\Downloads
Task: {6893FF60-25C6-4B5B-85FA-7DD99571B5A9} - System32\Tasks\{A31368FD-AEC8-44C7-8516-A57BF4D11248} => pcalua.exe -a C:\Users\Honza\Desktop\HDAudioWHQLDriver\1.0.15.0\English\setup.exe -d C:\Users\Honza\Desktop\HDAudioWHQLDriver\1.0.15.0\English
Task: {69458B17-6C17-4A89-83A8-5822E931BBA3} - System32\Tasks\ConfigFree Startup Programs => C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [2013-06-12] (TOSHIBA CORPORATION)
Task: {6E143454-1226-4C09-B4F5-BE5324555FDA} - System32\Tasks\{CF1FE014-44A5-4629-A64F-6A4D7AA19E31} => pcalua.exe -a "C:\Program Files (x86)\Bethesda\The Elder Scrolls V - Skyrim\Odinstalovat.exe"
Task: {733F00A8-35B2-45A3-860D-CE739CE33F2D} - System32\Tasks\{E91EBCB9-B9AD-4A1B-BD2B-85861C929568} => Chrome.exe http://ui.skype.com/ui/0/5.10.0.116/cs/ ... Error=1603
Task: {74095C0F-AAAB-4284-87C5-386E5B83623A} - System32\Tasks\{4F756D5E-B534-4802-808C-5FAA15C96EBB} => pcalua.exe -a C:\Users\Honza\Desktop\blazingcolorsviz.exe -d C:\Users\Honza\Desktop
Task: {74715568-3C7E-4280-80CD-1AA5FE76CA15} - System32\Tasks\At1 => C:\Windows\system32\unnlodctr.exe <==== ATTENTION
Task: {7A5B0CE3-F0B6-4893-8001-A6D31F13C7E5} - System32\Tasks\{D0B6F1DC-F5AE-45B4-9D36-B62C236310EC} => C:\Program Files (x86)\Need For Speed Shift Ultimátní Edice\SHIFT.exe
Task: {7C14A486-CB55-4E60-A8D7-5E529D49EEBD} - System32\Tasks\{D0F93A15-323A-4642-9BE3-B93E4BAFAC0A} => pcalua.exe -a "C:\Users\Honza\Desktop\Edge CAM 12.5\Setup.exe" -d "C:\Users\Honza\Desktop\Edge CAM 12.5"
Task: {855861BD-AC9D-4CC3-8986-F3D09E338473} - System32\Tasks\{26AA186D-8EBF-47C8-9BF5-C7AB054763BA} => pcalua.exe -a "I:\The sims\The Sims 2\eauninstall.exe" -d "I:\The sims\The Sims 2"
Task: {86532D26-44F8-4A01-BAF3-F93536BF135D} - System32\Tasks\{E50726DE-F751-4557-BF69-F4FD01B242E8} => pcalua.exe -a "C:\Users\Honza\Downloads\knights-of-honor (1)\Knights Of Honor\Knights.exe" -d "C:\Users\Honza\Downloads\knights-of-honor (1)\Knights Of Honor"
Task: {91FF21AC-B3E8-4901-A9AC-170AE01702DF} - System32\Tasks\{55C16625-5944-4B0E-8B93-BC974B306D9D} => C:\Program Files (x86)\Need For Speed Shift Ultimátní Edice\SHIFT.exe
Task: {931A3E03-33E7-4AE0-9127-AF2B073FD5FA} - System32\Tasks\{D7AE7709-FD40-4B95-BAFB-0BD575DA1F56} => pcalua.exe -a "C:\Users\Honza\Downloads\call-of-duty-2\Call of Duty 2\Call of Duty 2 - setup.exe" -d "C:\Users\Honza\Downloads\call-of-duty-2\Call of Duty 2"
Task: {959D2712-AF80-4077-A4DC-810822B9A66B} - System32\Tasks\{6F00BE73-01EE-4739-A301-109A3C7C5BC6} => pcalua.exe -a C:\Users\Honza\Desktop\Oblivion_CZ_standard_105\InstallOblivionCZ.exe -d C:\Users\Honza\Desktop\Oblivion_CZ_standard_105
Task: {96BDB9A3-2400-4B17-A6DE-EF3506E1CA7F} - System32\Tasks\{83CBEB8E-0E33-40FC-95BD-4654E6F243EE} => pcalua.exe -a C:\Users\Honza\Desktop\trilogyiii.exe -d C:\Users\Honza\Desktop
Task: {9B5149ED-94D6-45D8-AC3E-2EAE998292E2} - System32\Tasks\{F25B23CC-C42B-485D-A98B-D8DA758A0658} => pcalua.exe -a F:\AUTOSTARTER.EXE -d F:\
Task: {9D67284C-F891-41D7-9333-631F2A6F5F76} - System32\Tasks\{2350BF38-5943-43E9-9B25-1F10B19A2960} => pcalua.exe -a C:\Users\Honza\Downloads\strongholdcrusader_cz.exe -d C:\Users\Honza\Downloads
Task: {A168093A-52B2-4C2F-911F-F7DDD0A13F8C} - System32\Tasks\{97B7084D-F0D7-40B7-802F-341D8C30EE9D} => pcalua.exe -a E:\1Setup.exe -d E:\
Task: {AFC33E0F-EE1D-4192-A482-C51D40D36226} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2012 => C:\Program Files (x86)\TuneUp Utilities 2012\OneClick.exe
Task: {B02E6B55-B2C8-4CD9-BE3E-0BA02D3436E2} - System32\Tasks\{FB785BD9-0E7A-4173-9D92-A8E0FBBB169F} => pcalua.exe -a C:\Users\Honza\Desktop\Český.exe -d C:\Users\Honza\Desktop
Task: {B1187EE4-2454-4927-A8D6-4FC60B52424F} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {B3E4C17F-DA9A-464B-8B86-F3384252053C} - System32\Tasks\{11FA8EC6-A0E0-40DE-AB0C-54A9BB983D53} => pcalua.exe -a C:\Users\Honza\Desktop\HT.exe -d C:\Users\Honza\Desktop
Task: {B5388D19-CAE7-4872-8E99-6D65F3CC3E05} - System32\Tasks\{AC8C3926-3EB1-4539-B8F2-5A574F454F09} => pcalua.exe -a F:\setup.exe -d F:\
Task: {BB126A5E-A480-4568-BB25-4DB8408FEDD4} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1345737615-2917888567-741485270-1001UA => C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-31] (Google Inc.)
Task: {BE086158-EEB3-4776-956E-702F91385AB7} - System32\Tasks\{BF5A48C6-2F4F-46EA-93A6-86796E4F0182} => pcalua.exe -a C:\Users\Honza\Downloads\Display_Nvidia_VSW7_64_258.96_8.17.12.5896\hdaudio_1.0.15.0_xp_vista_win7.exe -d C:\Users\Honza\Downloads\Display_Nvidia_VSW7_64_258.96_8.17.12.5896
Task: {BED21F0B-8311-471C-BDAD-8CBD4EA4089A} - System32\Tasks\{8FF055CC-CD12-4542-9F07-7584BAA56AD1} => pcalua.exe -a C:\Users\Honza\Downloads\EuroTruckSimulator_setup_gb_1_2.exe -d C:\Users\Honza\Downloads
Task: {C28846DC-3500-437F-89F3-BADFADA01992} - System32\Tasks\{DD4E92F1-E178-40BE-A5F4-6779A5A2E489} => C:\Program Files (x86)\Need For Speed Shift Ultimátní Edice\SHIFT.exe
Task: {C339A8B6-962E-4292-9732-D8A08324EA29} - System32\Tasks\{7866F206-4781-4ED4-AA00-9CEBB54442F6} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{888F1505-C2B3-4FDE-835D-36353EBD4754}\setup.exe" -c -runfromtemp -l0x0409 -removeonly
Task: {C66720FF-F8AF-47C7-B63B-FF42578ACD86} - System32\Tasks\{77B40E52-5167-4B07-8AE0-BFAA362ADDF9} => C:\Program Files (x86)\Gothic III\Gothic3.exe
Task: {C6F6DDD4-5167-4194-956D-B466EA4790C2} - System32\Tasks\{320C1EC6-27B1-49B6-82A2-C79BEE6C1AE3} => pcalua.exe -a "C:\Users\Honza\Downloads\knights-of-honor (1)\Knights Of Honor\KoH.exe" -d "C:\Users\Honza\Downloads\knights-of-honor (1)\Knights Of Honor"
Task: {CC0D3FEF-2C8C-47E3-8EB3-7C3C4B41EEB0} - System32\Tasks\{A6D14EBD-68A0-443C-B25F-70A958AB2350} => pcalua.exe -a C:\Users\Honza\Downloads\SpyHunter-Installer.exe -d C:\Users\Honza\Downloads
Task: {D0E55FF8-4DE5-4B22-80DF-9C17CC1061D3} - System32\Tasks\{F1BF636E-DB0D-42F0-BC7D-36D1B58C6AAB} => C:\Program Files (x86)\Gothic III\Gothic3.exe
Task: {D7581B63-9379-4824-8185-941FF2625F9B} - System32\Tasks\{43CA1B84-A773-4C4D-9B02-D588D535FAB2} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{BEE64C14-BEF1-4610-8A68-A16EAA47B882}\setup.exe" -c -runfromtemp -l0x0009 -removeonly
Task: {DB68155D-0229-417B-A1BB-AC859A3B2B79} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1345737615-2917888567-741485270-1001Core => C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-31] (Google Inc.)
Task: {DDE5E35D-1365-4607-B4BA-6E4D03A7359A} - System32\Tasks\{D1866754-3ACE-4520-A0A8-DE910B78FAD5} => pcalua.exe -a F:\SPORESetup.exe -d F:\
Task: {DEE4D620-CEE6-4F82-A462-34056DA4E0F3} - System32\Tasks\{B81774FF-4307-4178-8A06-2320AAEDC8A5} => pcalua.exe -a "C:\Users\Honza\Downloads\knights-of-honor\Knights Of Honor\KoH.exe" -d "C:\Users\Honza\Downloads\knights-of-honor\Knights Of Honor"
Task: {E2034B78-624F-483A-B353-31AAE6E2BB5D} - System32\Tasks\{80A46168-8F6B-4A04-A48D-AE14F00825F8} => pcalua.exe -a C:\Users\Honza\AppData\Local\Temp\UN32.EXE -c -UP
Task: {E8F57422-241C-4A6B-ABD9-FF2F272FBB89} - System32\Tasks\{F472A072-95D3-4EE0-BD21-58B1AF341B88} => pcalua.exe -a E:\Driver\setup.exe -d E:\Driver
Task: {EAFC5B26-B305-455D-BBFF-7BF58E7DCAC1} - System32\Tasks\{3B89AA7D-E9DB-4144-B463-13B9BCC406DD} => C:\Program Files (x86)\Gothic III\Gothic3.exe
Task: {F2096706-7803-410A-AFC8-633C9A68654B} - System32\Tasks\{4E5DEFA9-4FD9-4F17-93A9-004E9EBDA84C} => pcalua.exe -a E:\autorun.exe -d E:\
Task: {F83BCEC9-A64A-41D7-AA74-B4DDFDCA241F} - System32\Tasks\{EE3751A2-C8F8-4153-917B-E85799B2535B} => pcalua.exe -a C:\Users\Honza\AppData\Local\Temp\Temp1_Hijackthis_2.0.2.zip\hijackthis.exe
Task: {FDDF1D48-8924-4FF2-BDFD-FF9B9F05FE79} - System32\Tasks\{42B905E9-D02C-43AD-AAAF-55475E6769BA} => pcalua.exe -a C:\Users\Honza\Desktop\Český.exe -d C:\Users\Honza\Desktop
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7ebbcc676fbd.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1345737615-2917888567-741485270-1001Core1cfacee79f75900.job => C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\SidebarExecute.job => C:\Program Files\Windows Sidebar\sidebar.exe
Task: C:\Windows\Tasks\User_Feed_Synchronization-{B17F4266-6AB9-411A-AA11-2BD24C93D766}.job => C:\Windows\system32\msfeedssync.exe
Task: C:\Windows\Tasks\{2C53C194-5D1B-48DE-AF9F-73041E9D6762}.job => c:\users\honza\appdata\local\google\chrome\application\chrome.exe
==================== Loaded Modules (whitelisted) ==============
2011-04-07 22:19 - 2014-07-02 19:55 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2013-02-13 08:42 - 2014-04-22 22:24 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2010-09-10 22:32 - 2010-03-15 10:28 - 00052224 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll
2013-02-01 22:43 - 2007-09-02 13:58 - 00495616 _____ () C:\Program Files (x86)\RocketDock\RocketDock.exe
2014-10-03 15:02 - 2014-09-13 15:30 - 13969920 ____N () C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe
2014-09-25 19:44 - 2014-09-25 19:44 - 00043008 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2012-12-28 19:34 - 2010-06-20 16:16 - 01671680 _____ () C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe
2010-02-05 16:44 - 2010-02-05 16:44 - 00079192 _____ () C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosIPCWraper.dll
2013-02-01 22:43 - 2007-09-02 13:57 - 00069632 _____ () C:\Program Files (x86)\RocketDock\RocketDock.dll
2009-07-13 22:03 - 2009-07-14 02:15 - 00364544 _____ () C:\Windows\SysWOW64\msjetoledb40.dll
2014-10-03 15:02 - 2013-04-03 17:29 - 00085504 _____ () C:\Program Files (x86)\Bloody5\Bloody5\DLL\DLL_ZoomControl.dll
2014-10-03 15:02 - 2014-01-10 16:48 - 04260352 _____ () C:\Program Files (x86)\Bloody5\Bloody5\Data\RES\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
2015-01-26 16:51 - 2015-01-21 04:50 - 01117512 _____ () C:\Users\Honza\AppData\Local\Google\Chrome\Application\40.0.2214.91\libglesv2.dll
2015-01-26 16:51 - 2015-01-21 04:50 - 00211272 _____ () C:\Users\Honza\AppData\Local\Google\Chrome\Application\40.0.2214.91\libegl.dll
2015-01-26 16:51 - 2015-01-21 04:50 - 09171272 _____ () C:\Users\Honza\AppData\Local\Google\Chrome\Application\40.0.2214.91\pdf.dll
2015-01-26 16:51 - 2015-01-21 04:50 - 14913352 _____ () C:\Users\Honza\AppData\Local\Google\Chrome\Application\40.0.2214.91\PepperFlash\pepflashplayer.dll
2014-12-30 15:52 - 2014-12-30 15:52 - 00148480 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\quazip.dll
2014-12-30 15:52 - 2014-12-30 15:52 - 00864768 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\platforms\qwindows.dll
2014-12-30 15:52 - 2014-12-30 15:52 - 00677376 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\sqldrivers\qsqlite.dll
2013-10-23 13:15 - 2014-12-30 15:52 - 00092104 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\soundbackends\directsound_win32.dll
2013-10-23 13:15 - 2014-12-30 15:52 - 00105416 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win32.dll
2014-12-30 15:52 - 2014-12-30 15:52 - 00025600 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\imageformats\qgif.dll
2014-12-30 15:52 - 2014-12-30 15:52 - 00242688 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\imageformats\qjpeg.dll
2013-10-23 13:15 - 2014-12-30 15:52 - 00477128 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\plugins\clientquery_plugin.dll
2013-10-23 13:15 - 2014-12-30 15:52 - 00484808 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll
2014-12-30 15:52 - 2014-12-30 15:52 - 00123904 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\18072472.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\18072472.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SMPCHelper => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\tvnserver => ""=""
==================== EXE Association (whitelisted) ===============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== Other Registry Areas =====================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\Services: Browser => 3
MSCONFIG\Services: cfWiMAXService => 2
MSCONFIG\Services: ConfigFree Service => 2
MSCONFIG\Services: Fax => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: UxTuneUp => 2
MSCONFIG\Services: WinDefend => 2
MSCONFIG\Services: wlidsvc => 2
MSCONFIG\startupreg: ccleaner => "C:\Program Files\CCleaner\CCleaner64.exe" /AUTO
MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: FlashPlayerUpdate => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_8_800_94_Plugin.exe -update plugin
MSCONFIG\startupreg: Google Update => "C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe" /c
MSCONFIG\startupreg: HDMICtrlMan => %ProgramFiles%\TOSHIBA\HDMICtrlMan\HDMICtrlMan.exe
MSCONFIG\startupreg: HSON => %ProgramFiles%\TOSHIBA\TBS\HSON.exe
MSCONFIG\startupreg: HWSetup => "C:\Program Files\TOSHIBA\Utilities\HWSetup.exe" hwSetUP
MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: SmoothView => %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: Teco => "%ProgramFiles%\TOSHIBA\TECO\Teco.exe" /r
MSCONFIG\startupreg: ThpSrv => C:\Windows\system32\thpsrv /logon
MSCONFIG\startupreg: vmware-tray.exe => "C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe"
==================== Accounts: =============================
Administrator (S-1-5-21-1345737615-2917888567-741485270-500 - Administrator - Disabled)
Guest (S-1-5-21-1345737615-2917888567-741485270-501 - Limited - Disabled) => C:\Users\Guest
HomeGroupUser$ (S-1-5-21-1345737615-2917888567-741485270-1002 - Limited - Enabled)
Honza (S-1-5-21-1345737615-2917888567-741485270-1001 - Administrator - Enabled) => C:\Users\Honza
Host (S-1-5-21-1345737615-2917888567-741485270-1017 - Limited - Enabled) => C:\Users\Host
==================== Faulty Device Manager Devices =============
Name: AFGAFWAN IDE Controller
Description: AFGAFWAN IDE Controller
Class Guid: {4D36E97B-E325-11CE-BFC1-08002BE10318}
Manufacturer: (Standard mass storage controllers)
Service: ax9quwcj
Problem: : Windows cannot load the device driver for this hardware. The driver may be corrupted or missing. (Code 39)
Resolution: Reasons for this error include a driver that is not present; a binary file that is corrupt; a file I/O problem, or a driver that references an entry point in another binary file that could not be loaded.
Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver.
Name: VMware Virtual Ethernet Adapter for VMnet1
Description: VMware Virtual Ethernet Adapter for VMnet1
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: VMware, Inc.
Service: VMnetAdapter
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: VMware Virtual Ethernet Adapter for VMnet8
Description: VMware Virtual Ethernet Adapter for VMnet8
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: VMware, Inc.
Service: VMnetAdapter
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Sentinel64
Description: Sentinel64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: Sentinel64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name:
Description:
Class Guid: {8ecc055d-047f-11d1-a537-0000f8753ed1}
Manufacturer:
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (02/04/2015 10:54:07 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny ConvertStringSidToSid(S-1-5-21-1345737615-2917888567-741485270-1007.bak) došlo k neočekávané chybě. hr= 0x80070539, Struktura ID zabezpečení není platná.
.
Operace:
Událost OnIdentify
Shromažďování dat modulu pro zápis
Kontext:
Kontext spuštění: Shadow Copy Optimization Writer
ID třídy modulu pro zápis: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Název modulu pro zápis: Shadow Copy Optimization Writer
ID instance modulu pro zápis: {8908618c-071a-40e2-9298-7ed9d157b7bb}
Error: (02/04/2015 07:37:27 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny ConvertStringSidToSid(S-1-5-21-1345737615-2917888567-741485270-1007.bak) došlo k neočekávané chybě. hr= 0x80070539, Struktura ID zabezpečení není platná.
.
Operace:
Událost OnIdentify
Shromažďování dat modulu pro zápis
Kontext:
Kontext spuštění: Shadow Copy Optimization Writer
ID třídy modulu pro zápis: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Název modulu pro zápis: Shadow Copy Optimization Writer
ID instance modulu pro zápis: {0c7ff253-8778-4404-b4df-c3f1d26f4b08}
Error: (02/03/2015 10:58:49 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]
Error: (02/03/2015 10:58:49 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]
Error: (02/03/2015 10:58:49 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD endpoint registration failed [0]
Error: (02/03/2015 04:58:02 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny ConvertStringSidToSid(S-1-5-21-1345737615-2917888567-741485270-1007.bak) došlo k neočekávané chybě. hr= 0x80070539, Struktura ID zabezpečení není platná.
.
Operace:
Událost OnIdentify
Shromažďování dat modulu pro zápis
Kontext:
Kontext spuštění: Shadow Copy Optimization Writer
ID třídy modulu pro zápis: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Název modulu pro zápis: Shadow Copy Optimization Writer
ID instance modulu pro zápis: {05baaf79-b47a-4277-a219-85ecb8794505}
Error: (02/02/2015 01:52:41 PM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: Index nebyl inicializován.
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (02/02/2015 01:52:41 PM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Aplikace nebyla inicializována.
Kontext: aplikace Windows
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (02/02/2015 01:52:41 PM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Objekt indexování nebyl inicializován.
Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (02/02/2015 01:52:41 PM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Modul plug-in v <Search.TripoliIndexer> nebyl inicializován.
Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Prvek nebyl nalezen. (HRESULT : 0x80070490) (0x80070490)
System errors:
=============
Error: (02/04/2015 10:38:32 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Microsoft .NET Framework NGEN v4.0.30319_X64 bylo dosaženo časového limitu (30000 ms).
Error: (02/04/2015 10:38:01 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba VMware NAT Service byla neočekávaně ukončena. Tento stav nastal již 3krát.
Error: (02/04/2015 10:37:21 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba VMware NAT Service byla nečekaně ukončena. Stalo se to 2 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.
Error: (02/04/2015 10:36:45 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba VMware NAT Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.
Error: (02/04/2015 10:35:30 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
giveio
Error: (02/04/2015 10:34:59 PM) (Source: VMnetDHCP) (EventID: 2) (User: )
Description: Can't open C:\ProgramData\VMware\vmnetdhcp.conf: Systém nemůže nalézt uvedený soubor.
/ Unknown error 2 (0x2)
Error: (02/04/2015 10:34:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Úložná technologie Intel(R) Rapid neuspěla při spuštění v důsledku následující chyby:
%%1053
Error: (02/04/2015 10:34:52 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Úložná technologie Intel(R) Rapid bylo dosaženo časového limitu (30000 ms).
Error: (02/04/2015 10:34:22 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Avira Service Host bylo dosaženo časového limitu (30000 ms).
Error: (02/04/2015 10:33:23 PM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Služba VMware Workstation Server závisí na následující službě: VMUSBArbService. Tato služba pravděpodobně není nainstalována.
Microsoft Office Sessions:
=========================
CodeIntegrity Errors:
===================================
Date: 2014-10-30 14:50:53.919
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-10-30 14:50:53.809
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-11-08 00:51:54.766
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-11-08 00:51:54.579
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-03-20 19:19:02.465
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-03-20 19:19:02.375
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-02-03 18:58:25.898
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-02-03 18:58:25.795
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-01-24 18:17:41.595
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-01-24 18:17:41.454
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5 CPU M 430 @ 2.27GHz
Percentage of memory in use: 37%
Total physical RAM: 6005.59 MB
Available physical RAM: 3756.75 MB
Total Pagefile: 12009.37 MB
Available Pagefile: 9191.57 MB
Total Virtual: 8192 MB
Available Virtual: 8191.8 MB
==================== Drives ================================
Drive c: (WINDOWS) (Fixed) (Total:232.88 GB) (Free:59.57 GB) NTFS
Drive d: () (Fixed) (Total:232.49 GB) (Free:232.39 GB) NTFS
Drive f: (Ubuntu 14.04.1 L) (CDROM) (Total:0.96 GB) (Free:0 GB) CDFS
Drive l: (SAMSUNG) (Fixed) (Total:298.09 GB) (Free:1.1 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: ADDFB0C7)
Partition 1: (Active) - (Size=400 MB) - (Type=27)
Partition 2: (Not Active) - (Size=232.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=232.5 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 298.1 GB) (Disk ID: FE6D545C)
Partition 1: (Active) - (Size=298.1 GB) - (Type=07 NTFS)
==================== End Of Log ============================
Ran by Honza at 2015-02-04 23:15:47
Running from C:\Users\Honza\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.2.8870 - Adobe Systems Inc.)
Adobe Flash Player 11 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 11.8.800.94 - Adobe Systems Incorporated)
Adobe Flash Player ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 9.0.124.0 - Adobe Systems Incorporated)
Adobe Reader 9.4.3 - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-A94000000001}) (Version: 9.4.3 - Adobe Systems Incorporated)
Aktualizace NVIDIA 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Application Verifier x64 External Package (Version: 8.59.29722 - Microsoft) Hidden
Avira (HKLM-x32\...\{e7c7c227-b742-4878-9425-f09bbf9951db}) (Version: 1.1.27.25527 - Avira Operations & Co. KG)
Avira (x32 Version: 1.1.27.25527 - Avira Operations & Co. KG) Hidden
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.7.468 - Avira)
Bloody5 (HKLM-x32\...\Bloody3) (Version: 14.09.0014 - Bloody)
Bluetooth Stack for Windows by Toshiba (HKLM\...\{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}) (Version: v7.10.01(T) - TOSHIBA CORPORATION)
CCleaner (HKLM\...\CCleaner) (Version: 4.18 - Piriform)
CyberLink PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 8.0.3022 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Defraggler (HKLM\...\Defraggler) (Version: 2.18 - Piriform)
Direct DiscRecorder (x32 Version: 1.00.0000 - Corel Corporation) Hidden
Dropbox (HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\Dropbox) (Version: 3.0.5 - Dropbox, Inc.)
DVD MovieFactory for TOSHIBA (HKLM-x32\...\InstallShield_{50F68032-B5B7-4513-9116-C978DBD8F27A}) (Version: 7.0.0 - Corel Corporation)
DVD MovieFactory for TOSHIBA (x32 Version: 7.0.0 - Corel Corporation) Hidden
EVEREST Ultimate Edition v5.50 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - Lavalys, Inc.)
Fable III (x32 Version: 1.0.0001.131 - Microsoft Game Studios) Hidden
FormatFactory 2.50 (HKLM-x32\...\FormatFactory) (Version: 2.50 - Free Time)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
Futuremark SystemInfo (HKLM-x32\...\{BEE64C14-BEF1-4610-8A68-A16EAA47B882}) (Version: 3.51.1.1 - Futuremark Corporation)
Game Maker 6 Resource Pack 1 (HKLM-x32\...\Game Maker 6 Resource Pack 1) (Version: - )
Game Maker 6 Resource Pack 2 (HKLM-x32\...\Game Maker 6 Resource Pack 2) (Version: - )
Game Maker 6 Resource Pack 3 (HKLM-x32\...\Game Maker 6 Resource Pack 3) (Version: - )
Game Maker 6 Resource Pack 4 (HKLM-x32\...\Game Maker 6 Resource Pack 4) (Version: - )
Game Maker 8.0 (HKLM-x32\...\Game Maker 8.0) (Version: - )
GameShadow (HKLM-x32\...\{F7C1C17E-70E3-475F-BD52-EA554391F15D}) (Version: 2.01.0000 - Název společnosti:)
GDR 5520 for SQL Server 2008 (KB2977321) (HKLM-x32\...\KB2977321) (Version: 10.3.5520.0 - Microsoft Corporation)
GIMP 2.8.2 (HKLM\...\GIMP-2_is1) (Version: 2.8.2 - The GIMP Team)
Google Chrome (HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\Google Chrome) (Version: 40.0.2214.91 - Google Inc.)
Google Update Helper (x32 Version: 1.3.21.165 - Google Inc.) Hidden
HDMI Control Manager (HKLM-x32\...\InstallShield_{63DA1F6A-2E65-4367-99B9-9E39FADEC446}) (Version: 2.0 - TOSHIBA CORPORATION)
HDMI Control Manager (Version: 2.0 - TOSHIBA CORPORATION) Hidden
HDMI Control Manager (x32 Version: 2.0 - TOSHIBA CORPORATION) Hidden
HijackThis 2.0.2 (HKLM-x32\...\HijackThis) (Version: 2.0.2 - TrendMicro)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.0.1006 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.5.0.1037 - Intel Corporation)
Intel(R) Turbo Boost Technology Driver (HKLM-x32\...\{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}) (Version: 01.00.01.1002 - Intel Corporation)
InterVideo WinDVD BD for TOSHIBA (HKLM-x32\...\InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}) (Version: 8.0.20.153 - InterVideo Inc.)
InterVideo WinDVD BD for TOSHIBA (x32 Version: 8.0.20.153 - InterVideo Inc.) Hidden
Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.510 - Oracle)
Java(TM) 6 Update 24 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216014FF}) (Version: 6.0.240 - Sun Microsystems, Inc.)
JMicron Flash Media Controller Driver (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.0.34.2 - JMicron Technology Corp.)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kits Configuration Installer (x32 Version: 8.59.25584 - Microsoft) Hidden
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0405-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.31211.0 - Microsoft Corporation)
Microsoft SQL Server 2005 (HKLM-x32\...\Microsoft SQL Server 2005) (Version: - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2008 (HKLM-x32\...\Microsoft SQL Server 10 Release) (Version: - Microsoft Corporation)
Microsoft SQL Server 2008 Browser (HKLM-x32\...\{C688457E-03FD-4941-923B-A27F4D42A7DD}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Native Client (HKLM\...\{2738C4AA-420E-4E13-ADEF-B5AB250E3EF1}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files (HKLM-x32\...\{5D60AB1A-2409-4829-83D4-0972856D885A}) (Version: 10.3.5520.0 - Microsoft Corporation)
Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR) (HKLM-x32\...\{E09B48B5-E141-427A-AB0C-D3605127224A}) (Version: 8.00.761 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{9ACF3FDB-C8E6-444C-8C64-13A221F7BFFD}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server Setup Support Files (English) (HKLM-x32\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{0826F9E4-787E-481D-83E0-BC6A57B056D5}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 (HKLM\...\{EE936C7A-EA40-31D5-9B65-8E3E089C3828}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{C73B5B3B-F974-48CA-8B91-3E8A432AEA5B}) (Version: 08.05.0822 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Mozilla Firefox 33.0.3 (x86 cs) (HKLM-x32\...\Mozilla Firefox 33.0.3 (x86 cs)) (Version: 33.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla)
MP3 Cutter 1.9 (HKLM-x32\...\MP3 Cutter_is1) (Version: - Aiv Software)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML4 Parser (HKLM-x32\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios)
Nastaveni hadrware TOSHIBA (HKLM-x32\...\InstallShield_{5279374D-87FE-4879-9385-F17278EBB9D3}) (Version: 1.63.0.16C - TOSHIBA CORPORATION)
NICI U.S./Worldwide 2.77.1.0 (x64) (HKLM\...\{123B3157-26AF-43F5-AD46-AB200AC56292}) (Version: 2.77.1.0 - Novell, Inc.)
NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Ovládací panel NVIDIA 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM-x32\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation)
Ovladač herní klávesnice Tt eSPORTS Challenger V1.0 (HKLM-x32\...\{1C0A8AE2-C207-49EF-A2FC-12981E460B55}_is1) (Version: - Ttesports Inc.)
Patch v4.17b Update (HKLM-x32\...\{THEGUILDREN-0010-2010-300520102330}_is1) (Version: - RUNEFORGE Games Studios)
Phantom CD (HKLM\...\Phantom CD) (Version: 2.0.0 - Phantombility)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Preset Manager 2.0 (HKLM-x32\...\{FCFE3F81-C977-4D31-877B-2778BB2A02DE}) (Version: 2.0.114 - Sony)
Rapture3D 2.4.8 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version: - Blue Ripple Sound)
Realtek Ethernet Controller Driver For Windows Vista and Later (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5928 - Realtek Semiconductor Corp.)
Realtek WLAN Driver (HKLM-x32\...\{0FB630AB-7BD8-40AE-B223-60397D57C3C9}) (Version: 2.00.0006 - Realtek)
Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)
Regi (Version: 1.00.0000 - InterVideo Inc.) Hidden
RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software) <==== ATTENTION!
Samsung_MonSetup (HKLM-x32\...\{8EA79DBF-D637-448A-89D6-410A087A4493}) (Version: 1.00.0000 - Samsung)
SDK Debuggers (x32 Version: 8.59.29746 - Microsoft Corporation) Hidden
Service Pack 3 for SQL Server 2008 (KB2546951) (HKLM-x32\...\KB2546951) (Version: 10.3.5500.0 - Microsoft Corporation)
SES Driver (HKLM\...\{D8CC254C-C671-4664-9A38-FA368D1E2C97}) (Version: 1.0.0 - Western Digital)
SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden
Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
Smart Counter 1.2.1 (HKLM-x32\...\Smart Counter_is1) (Version: - Štěpán Kozák)
Solid Edge ST7 (HKLM\...\{AB0F3228-D90C-4574-8A28-589483A68C93}) (Version: 107.00.00104 - Siemens)
Sony Media Manager 2.2 (HKLM-x32\...\{878D2EB2-2D55-42A9-955E-1E08F28529FD}) (Version: 2.2.136 - Sony)
Sql Server Customer Experience Improvement Program (x32 Version: 10.3.5500.0 - Microsoft Corporation) Hidden
TeamSpeak 3 Client (HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
The KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 3.4.0.59 - KMP Media co., Ltd)
Toshiba Assist (HKLM-x32\...\{1B87C40B-A60B-4EF3-9A68-706CF4B69978}) (Version: 3.00.10 - TOSHIBA)
TOSHIBA ConfigFree (HKLM-x32\...\{F3529665-D75E-4D6D-98F0-745C78C68E9B}) (Version: 8.0.25 - TOSHIBA Corporation)
TOSHIBA Disc Creator (HKLM\...\{5DA0E02F-970B-424B-BF41-513A5018E4C0}) (Version: 2.1.0.2 for x64 - TOSHIBA Corporation)
TOSHIBA eco Utility (HKLM-x32\...\InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}) (Version: 1.1.12.64 - TOSHIBA Corporation)
TOSHIBA Extended Tiles for Windows Mobility Center (HKLM-x32\...\InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}) (Version: - )
TOSHIBA Flash Cards Support Utility (HKLM-x32\...\InstallShield_{620BBA5E-F848-4D56-8BDA-584E44584C5E}) (Version: 1.63.0.4C - TOSHIBA CORPORATION)
TOSHIBA HDD Protection (HKLM\...\{94A90C69-71C1-470A-88F5-AA47ECC96B40}) (Version: 2.2.0.3 - TOSHIBA Corporation)
TOSHIBA Heslo správce (HKLM-x32\...\InstallShield_{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE}) (Version: 1.63.0.7C - TOSHIBA CORPORATION)
Toshiba Manuals (HKLM-x32\...\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}) (Version: 10.00 - TOSHIBA)
TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 1.5.6.64 - TOSHIBA Corporation)
TOSHIBA Recovery Media Creator (HKLM\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 2.1.0.4 x64 - TOSHIBA Corporation)
TOSHIBA Recovery Media Creator Reminder (HKLM-x32\...\InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}) (Version: 1.00.0019 - TOSHIBA)
TOSHIBA Service Station (HKLM-x32\...\{AC6569FA-6919-442A-8552-073BE69E247A}) (Version: 2.1.45 - TOSHIBA)
TOSHIBA TEMPRO (HKLM-x32\...\{3A9B3B6D-3C08-4283-AF50-FD82C49DD71E}) (Version: 3.34 - Toshiba Europe GmbH)
TOSHIBA USB Sleep and Charge Utility (HKLM-x32\...\{E487EE7D-EAAA-4E2A-9116-E3B477D8A74F}) (Version: 1.3.2.0 - TOSHIBA Corporation)
TOSHIBA Value Added Package (HKLM-x32\...\InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}) (Version: 1.2.34.64 - TOSHIBA Corporation)
TOSHIBA Web Camera Application (HKLM-x32\...\{5E6F6CF3-BACC-4144-868C-E14622C658F3}) (Version: 1.1.1.9 - TOSHIBA Corporation)
TRORMCLauncher (HKLM-x32\...\InstallShield_{E65C7D8E-186D-484B-BEA8-DEF0331CE600}) (Version: - )
TRORMCLauncher (Version: 1.0.0.9 - TOSHIBA) Hidden
TuneUp Utilities Language Pack (en-US) (x32 Version: 12.0.3000.140 - TuneUp Software) Hidden
Tunngle (HKLM-x32\...\Tunngle_is1) (Version: Tunngle - Tunngle.net GmbH)
Twinstar-Launcher (HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\c8c75cfa6b8b223c) (Version: 1.0.0.49 - Twinstar)
Ulead Straight-to-Disc SDK (HKLM-x32\...\{8D2C1E44-7685-4D05-8342-B0DC6422FA47}) (Version: 2.2 - )
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Utility Common Driver (x32 Version: 1.0.50.27C - TOSHIBA) Hidden
VBA (2627.01) (x32 Version: 6.03.00.9402 - Microsoft Corporation) Hidden
Vegas Movie Studio HD Platinum 10.0 (HKLM-x32\...\{40AE01BE-A290-4FFB-8DAB-C624C17DC87E}) (Version: 10.0.179 - Sony)
VibrateGameDeviceDrivers40 (HKLM\...\{DBB7F606-0C13-4182-AD7F-427A4773580E}) (Version: 4.09.0511G - Název společnosti:)
VMware Workstation (HKLM-x32\...\VMware_Workstation) (Version: 9.0.1 - VMware, Inc)
VMware Workstation (Version: 9.0.1 - VMware, Inc.) Hidden
Výstraha HDD/SSD TOSHIBA (HKLM-x32\...\InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}) (Version: 3.1.64.6 - TOSHIBA Corporation)
Výstraha HDD/SSD TOSHIBA (Version: 3.1.64.6 - TOSHIBA Corporation) Hidden
Výstraha HDD/SSD TOSHIBA (x32 Version: 3.1.64.6 - TOSHIBA Corporation) Hidden
Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
Windows Driver Package - Western Digital Technologies (WDC_SAM) WDC_SAM (01/19/2011 1.0.0009.0) (HKLM\...\4CA7CFBB29889F25ACB3DF6E3A42BAE29EB43B20) (Version: 01/19/2011 1.0.0009.0 - Western Digital Technologies)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{068B46A0-8858-4CEB-80BC-A4AE787A05FC}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Media Center Edition MPEG Codec Plug-in (HKLM-x32\...\{94F3D243-2006-4B2D-9160-C2A33F74BB84}) (Version: - ArcSoft)
Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
Windows Software Development Kit (HKLM-x32\...\{363a2c1e-637f-45ce-933b-5a5463efd945}) (Version: 8.59.29750 - Microsoft Corporation)
WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
WinRAR archiver (HKLM-x32\...\WinRAR archiver) (Version: - )
WPT Redistributables (x32 Version: 8.59.29750 - Microsoft) Hidden
WPTx64 (x32 Version: 8.59.29722 - Microsoft) Hidden
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{5b55a44a-d008-49aa-9234-86fb7709bc0a}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Honza\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Honza\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1345737615-2917888567-741485270-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Honza\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
==================== Restore Points =========================
29-01-2015 00:01:00 Tunngle 5.1 Setup
29-01-2015 00:04:08 Instalace balíčku ovladače zařízení: TAP-Win32 Provider V9 (Tunngle) Síťové adaptéry
30-01-2015 16:50:54 Windows Update
31-01-2015 13:53:06 Installed Windows 7 USB/DVD Download Tool
01-02-2015 14:00:00 Removed Heroes of Might and Magic V
03-02-2015 16:58:00 Windows Update
04-02-2015 19:37:27 zoek.exe restore point
04-02-2015 22:54:07 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2014-04-28 22:20 - 2014-10-30 14:55 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {0C2B9613-A87C-48A4-A754-430CFD143F57} - System32\Tasks\{309F2FC0-3555-49A5-837F-BC95A275CE85} => msiexec.exe /package "C:\Users\Honza\Desktop\Solid Edge ST3\Instalace\Solid Edge ST3.msi"
Task: {0CAD1F10-AF65-4B4D-B55E-DDC5E4875204} - System32\Tasks\{C78E6134-BE3F-4C33-9DE1-D6D98B7F0F46} => C:\Users\Honza\Desktop\FlatOut2\FlatOut2.exe
Task: {116958A6-DE4C-4604-BC40-A5460B55CAAD} - System32\Tasks\{75646656-9C18-458C-81E3-38264B97783F} => pcalua.exe -a C:\Users\Honza\Downloads\196.34_desktop_win7_winvista_64bit_english_beta.exe -d C:\Users\Honza\Downloads
Task: {16DCABC6-1880-4F68-9BFE-ECEA65551657} - System32\Tasks\{BFF3B366-4A7D-4B1B-A0C2-EB35E7999ACD} => pcalua.exe -a "C:\Users\Honza\Downloads\SP3 Holiday+Xmas Edition\Xmas\Setup.exe" -d "C:\Users\Honza\Downloads\SP3 Holiday+Xmas Edition\Xmas"
Task: {1C527862-2F27-4382-8943-AA87FEBCF045} - System32\Tasks\{41D6587C-1D7C-4B11-B28C-E880B2432D3B} => pcalua.exe -a C:\Users\Honza\Downloads\nVidia-ForceWare_182.06.exe -d C:\Users\Honza\Downloads
Task: {20CE8186-F01D-48E8-B15E-C40ED8AEEF5C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-10] (Google Inc.)
Task: {228E37E9-657E-46BC-A8B9-BDB46A867575} - System32\Tasks\{1E982D24-8D75-4AAC-9486-5185C3BB11CB} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{66491E5A-7899-4863-A2E9-057E10BCB578}\setup.exe" -c -runfromtemp -l0x0009 -removeonly
Task: {2D3CC10E-5363-407B-BF54-E04019BA4C27} - System32\Tasks\{DCF4A1BD-953A-4A43-9E55-40B9C0A5667B} => Chrome.exe http://ui.skype.com/ui/0/5.1.0.104/cs/a ... ltbrowser2
Task: {2FEEBBB1-140A-4180-8FF4-F2654AC7C6C0} - System32\Tasks\{9843DE75-B00C-4B27-82E2-46274453F613} => pcalua.exe -a C:\Users\Honza\Desktop\youtubedownloader216.exe -d C:\Users\Honza\Desktop
Task: {345BE6A0-F576-4463-9A6E-E9C8146986DA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-10] (Google Inc.)
Task: {35703804-EF22-431A-8676-D14159B2ED43} - System32\Tasks\{FE76EEC2-388F-4A44-9AE2-9460214AE50E} => pcalua.exe -a C:\Users\Honza\Downloads\Display_Nvidia_VSW7_64_258.96_8.17.12.5896\setup.exe -d C:\Users\Honza\Downloads\Display_Nvidia_VSW7_64_258.96_8.17.12.5896
Task: {37AC3DE5-A2F6-4525-9A47-E6AAE8637756} - System32\Tasks\{CE252CB2-B3A6-4454-B0C6-6DC856B7F93E} => C:\Program Files (x86)\2K Games\Mafia II\pc\mafia2.exe
Task: {3907C91B-4C18-4578-B26A-41EC9ED82DB4} - System32\Tasks\{67756D9F-E9D0-4F80-9FB7-F9DCD1380357} => pcalua.exe -a C:\Users\Honza\Downloads\acidpro50c-trial.exe -d C:\Users\Honza\Downloads
Task: {3F22EE04-E825-4E0C-8D3C-FD6C6872F74B} - System32\Tasks\{DB97AB06-FE8F-4661-9217-48A96008049E} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{AC61C594-5F86-4BE9-ABAF-763C6A8E2302}\setup.exe" -c -runfromtemp -l0x0009 -removeonly
Task: {4BD79027-CAB3-424E-A0D9-A45E4BBECC3A} - System32\Tasks\{A1FAECDF-D643-4800-83FE-3C737CC4F9FE} => pcalua.exe -a C:\Users\Honza\Downloads\Zoo-Tycoon-Cestina_1.05.exe -d C:\Users\Honza\Downloads
Task: {4C60A0DD-2072-421F-B041-4EDF93E568DD} - System32\Tasks\{2892EA2D-0FFD-4624-A59A-01985EFACC85} => pcalua.exe -a "C:\Users\Honza\Desktop\Gothic 3\autumn.exe" -d "C:\Users\Honza\Desktop\Gothic 3"
Task: {4CEEB4AC-F6CD-46AD-9F99-6A585DA4519F} - System32\Tasks\{C16DEDF5-8A69-4D15-B350-0169BEAAF63B} => pcalua.exe -a C:\Users\Honza\Desktop\X-MenOriginsCz.exe -d C:\Users\Honza\Desktop
Task: {4D8324B5-F83D-42E7-AB1D-B0871E8B3D00} - System32\Tasks\{5D60017A-A9F8-442D-BE4D-C05F95F2A077} => msiexec.exe /package "C:\Users\Honza\Downloads\SkypeSetup_5.6.0.110.msi"
Task: {517BC335-7BD4-4495-8C1F-954D95FEAFB5} - System32\Tasks\{08434B41-A742-434B-95CD-35050246BFF7} => pcalua.exe -a "C:\Program Files (x86)\EA GAMES\Xmas\Setup.exe" -d "C:\Program Files (x86)\EA GAMES\Xmas"
Task: {522E2BEC-421A-429A-A781-2FB8AE391CCD} - System32\Tasks\Google Updater and Installer => C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-31] (Google Inc.)
Task: {548E3669-F530-4A0F-8BD1-3CCE99BA77E7} - System32\Tasks\{85B603A4-3FDF-4B6D-B0B8-305D77244C6E} => C:\Program Files (x86)\Need For Speed Shift Ultimátní Edice\SHIFT.exe
Task: {56841E8A-ABE2-4AC8-90DA-3CB0CF3309E5} - System32\Tasks\{E41080C4-563E-4212-8BD9-D0A19AF57161} => pcalua.exe -a C:\Users\Honza\Downloads\266.58_notebook_winvista_win7_64bit_international_whql.exe -d C:\Users\Honza\Downloads
Task: {5AAB4578-F87B-4483-BBEA-98E4A7607C5D} - System32\Tasks\{47063297-B1CC-4EAA-A780-940A8BF732B2} => pcalua.exe -a F:\setup.exe -d F:\
Task: {6072AD30-14B7-4073-831C-74F33A8CC5DF} - System32\Tasks\{BF7EA90B-D59F-45BB-BFB3-63101F26EE3B} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-05-08] (Skype Technologies S.A.)
Task: {610D7F03-EB94-4946-AE67-07603FB61556} - System32\Tasks\{B8E5A9AF-6150-43C5-AD36-391228A4D3E8} => pcalua.exe -a C:\Users\Honza\Desktop\hijackthis.exe -d C:\Users\Honza\Desktop
Task: {61F9515B-6C58-4D60-B38C-5151AEF56493} - System32\Tasks\{A6E2A68C-76CE-4BFF-9605-2DD07D3C1474} => C:\Program Files (x86)\2K Games\Mafia II\pc\mafia2.exe
Task: {663A699D-BC3C-42E8-A865-3608320B310E} - System32\Tasks\{70E5B754-23E6-43DB-BBEB-023778869E22} => pcalua.exe -a C:\Users\Honza\Downloads\NVDVID-00211195-0042.EXE -d C:\Users\Honza\Downloads
Task: {6893FF60-25C6-4B5B-85FA-7DD99571B5A9} - System32\Tasks\{A31368FD-AEC8-44C7-8516-A57BF4D11248} => pcalua.exe -a C:\Users\Honza\Desktop\HDAudioWHQLDriver\1.0.15.0\English\setup.exe -d C:\Users\Honza\Desktop\HDAudioWHQLDriver\1.0.15.0\English
Task: {69458B17-6C17-4A89-83A8-5822E931BBA3} - System32\Tasks\ConfigFree Startup Programs => C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [2013-06-12] (TOSHIBA CORPORATION)
Task: {6E143454-1226-4C09-B4F5-BE5324555FDA} - System32\Tasks\{CF1FE014-44A5-4629-A64F-6A4D7AA19E31} => pcalua.exe -a "C:\Program Files (x86)\Bethesda\The Elder Scrolls V - Skyrim\Odinstalovat.exe"
Task: {733F00A8-35B2-45A3-860D-CE739CE33F2D} - System32\Tasks\{E91EBCB9-B9AD-4A1B-BD2B-85861C929568} => Chrome.exe http://ui.skype.com/ui/0/5.10.0.116/cs/ ... Error=1603
Task: {74095C0F-AAAB-4284-87C5-386E5B83623A} - System32\Tasks\{4F756D5E-B534-4802-808C-5FAA15C96EBB} => pcalua.exe -a C:\Users\Honza\Desktop\blazingcolorsviz.exe -d C:\Users\Honza\Desktop
Task: {74715568-3C7E-4280-80CD-1AA5FE76CA15} - System32\Tasks\At1 => C:\Windows\system32\unnlodctr.exe <==== ATTENTION
Task: {7A5B0CE3-F0B6-4893-8001-A6D31F13C7E5} - System32\Tasks\{D0B6F1DC-F5AE-45B4-9D36-B62C236310EC} => C:\Program Files (x86)\Need For Speed Shift Ultimátní Edice\SHIFT.exe
Task: {7C14A486-CB55-4E60-A8D7-5E529D49EEBD} - System32\Tasks\{D0F93A15-323A-4642-9BE3-B93E4BAFAC0A} => pcalua.exe -a "C:\Users\Honza\Desktop\Edge CAM 12.5\Setup.exe" -d "C:\Users\Honza\Desktop\Edge CAM 12.5"
Task: {855861BD-AC9D-4CC3-8986-F3D09E338473} - System32\Tasks\{26AA186D-8EBF-47C8-9BF5-C7AB054763BA} => pcalua.exe -a "I:\The sims\The Sims 2\eauninstall.exe" -d "I:\The sims\The Sims 2"
Task: {86532D26-44F8-4A01-BAF3-F93536BF135D} - System32\Tasks\{E50726DE-F751-4557-BF69-F4FD01B242E8} => pcalua.exe -a "C:\Users\Honza\Downloads\knights-of-honor (1)\Knights Of Honor\Knights.exe" -d "C:\Users\Honza\Downloads\knights-of-honor (1)\Knights Of Honor"
Task: {91FF21AC-B3E8-4901-A9AC-170AE01702DF} - System32\Tasks\{55C16625-5944-4B0E-8B93-BC974B306D9D} => C:\Program Files (x86)\Need For Speed Shift Ultimátní Edice\SHIFT.exe
Task: {931A3E03-33E7-4AE0-9127-AF2B073FD5FA} - System32\Tasks\{D7AE7709-FD40-4B95-BAFB-0BD575DA1F56} => pcalua.exe -a "C:\Users\Honza\Downloads\call-of-duty-2\Call of Duty 2\Call of Duty 2 - setup.exe" -d "C:\Users\Honza\Downloads\call-of-duty-2\Call of Duty 2"
Task: {959D2712-AF80-4077-A4DC-810822B9A66B} - System32\Tasks\{6F00BE73-01EE-4739-A301-109A3C7C5BC6} => pcalua.exe -a C:\Users\Honza\Desktop\Oblivion_CZ_standard_105\InstallOblivionCZ.exe -d C:\Users\Honza\Desktop\Oblivion_CZ_standard_105
Task: {96BDB9A3-2400-4B17-A6DE-EF3506E1CA7F} - System32\Tasks\{83CBEB8E-0E33-40FC-95BD-4654E6F243EE} => pcalua.exe -a C:\Users\Honza\Desktop\trilogyiii.exe -d C:\Users\Honza\Desktop
Task: {9B5149ED-94D6-45D8-AC3E-2EAE998292E2} - System32\Tasks\{F25B23CC-C42B-485D-A98B-D8DA758A0658} => pcalua.exe -a F:\AUTOSTARTER.EXE -d F:\
Task: {9D67284C-F891-41D7-9333-631F2A6F5F76} - System32\Tasks\{2350BF38-5943-43E9-9B25-1F10B19A2960} => pcalua.exe -a C:\Users\Honza\Downloads\strongholdcrusader_cz.exe -d C:\Users\Honza\Downloads
Task: {A168093A-52B2-4C2F-911F-F7DDD0A13F8C} - System32\Tasks\{97B7084D-F0D7-40B7-802F-341D8C30EE9D} => pcalua.exe -a E:\1Setup.exe -d E:\
Task: {AFC33E0F-EE1D-4192-A482-C51D40D36226} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2012 => C:\Program Files (x86)\TuneUp Utilities 2012\OneClick.exe
Task: {B02E6B55-B2C8-4CD9-BE3E-0BA02D3436E2} - System32\Tasks\{FB785BD9-0E7A-4173-9D92-A8E0FBBB169F} => pcalua.exe -a C:\Users\Honza\Desktop\Český.exe -d C:\Users\Honza\Desktop
Task: {B1187EE4-2454-4927-A8D6-4FC60B52424F} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {B3E4C17F-DA9A-464B-8B86-F3384252053C} - System32\Tasks\{11FA8EC6-A0E0-40DE-AB0C-54A9BB983D53} => pcalua.exe -a C:\Users\Honza\Desktop\HT.exe -d C:\Users\Honza\Desktop
Task: {B5388D19-CAE7-4872-8E99-6D65F3CC3E05} - System32\Tasks\{AC8C3926-3EB1-4539-B8F2-5A574F454F09} => pcalua.exe -a F:\setup.exe -d F:\
Task: {BB126A5E-A480-4568-BB25-4DB8408FEDD4} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1345737615-2917888567-741485270-1001UA => C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-31] (Google Inc.)
Task: {BE086158-EEB3-4776-956E-702F91385AB7} - System32\Tasks\{BF5A48C6-2F4F-46EA-93A6-86796E4F0182} => pcalua.exe -a C:\Users\Honza\Downloads\Display_Nvidia_VSW7_64_258.96_8.17.12.5896\hdaudio_1.0.15.0_xp_vista_win7.exe -d C:\Users\Honza\Downloads\Display_Nvidia_VSW7_64_258.96_8.17.12.5896
Task: {BED21F0B-8311-471C-BDAD-8CBD4EA4089A} - System32\Tasks\{8FF055CC-CD12-4542-9F07-7584BAA56AD1} => pcalua.exe -a C:\Users\Honza\Downloads\EuroTruckSimulator_setup_gb_1_2.exe -d C:\Users\Honza\Downloads
Task: {C28846DC-3500-437F-89F3-BADFADA01992} - System32\Tasks\{DD4E92F1-E178-40BE-A5F4-6779A5A2E489} => C:\Program Files (x86)\Need For Speed Shift Ultimátní Edice\SHIFT.exe
Task: {C339A8B6-962E-4292-9732-D8A08324EA29} - System32\Tasks\{7866F206-4781-4ED4-AA00-9CEBB54442F6} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{888F1505-C2B3-4FDE-835D-36353EBD4754}\setup.exe" -c -runfromtemp -l0x0409 -removeonly
Task: {C66720FF-F8AF-47C7-B63B-FF42578ACD86} - System32\Tasks\{77B40E52-5167-4B07-8AE0-BFAA362ADDF9} => C:\Program Files (x86)\Gothic III\Gothic3.exe
Task: {C6F6DDD4-5167-4194-956D-B466EA4790C2} - System32\Tasks\{320C1EC6-27B1-49B6-82A2-C79BEE6C1AE3} => pcalua.exe -a "C:\Users\Honza\Downloads\knights-of-honor (1)\Knights Of Honor\KoH.exe" -d "C:\Users\Honza\Downloads\knights-of-honor (1)\Knights Of Honor"
Task: {CC0D3FEF-2C8C-47E3-8EB3-7C3C4B41EEB0} - System32\Tasks\{A6D14EBD-68A0-443C-B25F-70A958AB2350} => pcalua.exe -a C:\Users\Honza\Downloads\SpyHunter-Installer.exe -d C:\Users\Honza\Downloads
Task: {D0E55FF8-4DE5-4B22-80DF-9C17CC1061D3} - System32\Tasks\{F1BF636E-DB0D-42F0-BC7D-36D1B58C6AAB} => C:\Program Files (x86)\Gothic III\Gothic3.exe
Task: {D7581B63-9379-4824-8185-941FF2625F9B} - System32\Tasks\{43CA1B84-A773-4C4D-9B02-D588D535FAB2} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{BEE64C14-BEF1-4610-8A68-A16EAA47B882}\setup.exe" -c -runfromtemp -l0x0009 -removeonly
Task: {DB68155D-0229-417B-A1BB-AC859A3B2B79} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1345737615-2917888567-741485270-1001Core => C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe [2012-07-31] (Google Inc.)
Task: {DDE5E35D-1365-4607-B4BA-6E4D03A7359A} - System32\Tasks\{D1866754-3ACE-4520-A0A8-DE910B78FAD5} => pcalua.exe -a F:\SPORESetup.exe -d F:\
Task: {DEE4D620-CEE6-4F82-A462-34056DA4E0F3} - System32\Tasks\{B81774FF-4307-4178-8A06-2320AAEDC8A5} => pcalua.exe -a "C:\Users\Honza\Downloads\knights-of-honor\Knights Of Honor\KoH.exe" -d "C:\Users\Honza\Downloads\knights-of-honor\Knights Of Honor"
Task: {E2034B78-624F-483A-B353-31AAE6E2BB5D} - System32\Tasks\{80A46168-8F6B-4A04-A48D-AE14F00825F8} => pcalua.exe -a C:\Users\Honza\AppData\Local\Temp\UN32.EXE -c -UP
Task: {E8F57422-241C-4A6B-ABD9-FF2F272FBB89} - System32\Tasks\{F472A072-95D3-4EE0-BD21-58B1AF341B88} => pcalua.exe -a E:\Driver\setup.exe -d E:\Driver
Task: {EAFC5B26-B305-455D-BBFF-7BF58E7DCAC1} - System32\Tasks\{3B89AA7D-E9DB-4144-B463-13B9BCC406DD} => C:\Program Files (x86)\Gothic III\Gothic3.exe
Task: {F2096706-7803-410A-AFC8-633C9A68654B} - System32\Tasks\{4E5DEFA9-4FD9-4F17-93A9-004E9EBDA84C} => pcalua.exe -a E:\autorun.exe -d E:\
Task: {F83BCEC9-A64A-41D7-AA74-B4DDFDCA241F} - System32\Tasks\{EE3751A2-C8F8-4153-917B-E85799B2535B} => pcalua.exe -a C:\Users\Honza\AppData\Local\Temp\Temp1_Hijackthis_2.0.2.zip\hijackthis.exe
Task: {FDDF1D48-8924-4FF2-BDFD-FF9B9F05FE79} - System32\Tasks\{42B905E9-D02C-43AD-AAAF-55475E6769BA} => pcalua.exe -a C:\Users\Honza\Desktop\Český.exe -d C:\Users\Honza\Desktop
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7ebbcc676fbd.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1345737615-2917888567-741485270-1001Core1cfacee79f75900.job => C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\SidebarExecute.job => C:\Program Files\Windows Sidebar\sidebar.exe
Task: C:\Windows\Tasks\User_Feed_Synchronization-{B17F4266-6AB9-411A-AA11-2BD24C93D766}.job => C:\Windows\system32\msfeedssync.exe
Task: C:\Windows\Tasks\{2C53C194-5D1B-48DE-AF9F-73041E9D6762}.job => c:\users\honza\appdata\local\google\chrome\application\chrome.exe
==================== Loaded Modules (whitelisted) ==============
2011-04-07 22:19 - 2014-07-02 19:55 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2013-02-13 08:42 - 2014-04-22 22:24 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2010-09-10 22:32 - 2010-03-15 10:28 - 00052224 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll
2013-02-01 22:43 - 2007-09-02 13:58 - 00495616 _____ () C:\Program Files (x86)\RocketDock\RocketDock.exe
2014-10-03 15:02 - 2014-09-13 15:30 - 13969920 ____N () C:\Program Files (x86)\Bloody5\Bloody5\Bloody5.exe
2014-09-25 19:44 - 2014-09-25 19:44 - 00043008 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2012-12-28 19:34 - 2010-06-20 16:16 - 01671680 _____ () C:\Program Files (x86)\Ttesports\GamingKeyboard\HID.exe
2010-02-05 16:44 - 2010-02-05 16:44 - 00079192 _____ () C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosIPCWraper.dll
2013-02-01 22:43 - 2007-09-02 13:57 - 00069632 _____ () C:\Program Files (x86)\RocketDock\RocketDock.dll
2009-07-13 22:03 - 2009-07-14 02:15 - 00364544 _____ () C:\Windows\SysWOW64\msjetoledb40.dll
2014-10-03 15:02 - 2013-04-03 17:29 - 00085504 _____ () C:\Program Files (x86)\Bloody5\Bloody5\DLL\DLL_ZoomControl.dll
2014-10-03 15:02 - 2014-01-10 16:48 - 04260352 _____ () C:\Program Files (x86)\Bloody5\Bloody5\Data\RES\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
2015-01-26 16:51 - 2015-01-21 04:50 - 01117512 _____ () C:\Users\Honza\AppData\Local\Google\Chrome\Application\40.0.2214.91\libglesv2.dll
2015-01-26 16:51 - 2015-01-21 04:50 - 00211272 _____ () C:\Users\Honza\AppData\Local\Google\Chrome\Application\40.0.2214.91\libegl.dll
2015-01-26 16:51 - 2015-01-21 04:50 - 09171272 _____ () C:\Users\Honza\AppData\Local\Google\Chrome\Application\40.0.2214.91\pdf.dll
2015-01-26 16:51 - 2015-01-21 04:50 - 14913352 _____ () C:\Users\Honza\AppData\Local\Google\Chrome\Application\40.0.2214.91\PepperFlash\pepflashplayer.dll
2014-12-30 15:52 - 2014-12-30 15:52 - 00148480 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\quazip.dll
2014-12-30 15:52 - 2014-12-30 15:52 - 00864768 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\platforms\qwindows.dll
2014-12-30 15:52 - 2014-12-30 15:52 - 00677376 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\sqldrivers\qsqlite.dll
2013-10-23 13:15 - 2014-12-30 15:52 - 00092104 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\soundbackends\directsound_win32.dll
2013-10-23 13:15 - 2014-12-30 15:52 - 00105416 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win32.dll
2014-12-30 15:52 - 2014-12-30 15:52 - 00025600 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\imageformats\qgif.dll
2014-12-30 15:52 - 2014-12-30 15:52 - 00242688 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\imageformats\qjpeg.dll
2013-10-23 13:15 - 2014-12-30 15:52 - 00477128 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\plugins\clientquery_plugin.dll
2013-10-23 13:15 - 2014-12-30 15:52 - 00484808 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll
2014-12-30 15:52 - 2014-12-30 15:52 - 00123904 _____ () C:\Users\Honza\AppData\Local\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\18072472.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\18072472.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SMPCHelper => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\tvnserver => ""=""
==================== EXE Association (whitelisted) ===============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== Other Registry Areas =====================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Honza\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
MSCONFIG\Services: Browser => 3
MSCONFIG\Services: cfWiMAXService => 2
MSCONFIG\Services: ConfigFree Service => 2
MSCONFIG\Services: Fax => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: UxTuneUp => 2
MSCONFIG\Services: WinDefend => 2
MSCONFIG\Services: wlidsvc => 2
MSCONFIG\startupreg: ccleaner => "C:\Program Files\CCleaner\CCleaner64.exe" /AUTO
MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: FlashPlayerUpdate => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_8_800_94_Plugin.exe -update plugin
MSCONFIG\startupreg: Google Update => "C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe" /c
MSCONFIG\startupreg: HDMICtrlMan => %ProgramFiles%\TOSHIBA\HDMICtrlMan\HDMICtrlMan.exe
MSCONFIG\startupreg: HSON => %ProgramFiles%\TOSHIBA\TBS\HSON.exe
MSCONFIG\startupreg: HWSetup => "C:\Program Files\TOSHIBA\Utilities\HWSetup.exe" hwSetUP
MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: SmoothView => %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: Teco => "%ProgramFiles%\TOSHIBA\TECO\Teco.exe" /r
MSCONFIG\startupreg: ThpSrv => C:\Windows\system32\thpsrv /logon
MSCONFIG\startupreg: vmware-tray.exe => "C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe"
==================== Accounts: =============================
Administrator (S-1-5-21-1345737615-2917888567-741485270-500 - Administrator - Disabled)
Guest (S-1-5-21-1345737615-2917888567-741485270-501 - Limited - Disabled) => C:\Users\Guest
HomeGroupUser$ (S-1-5-21-1345737615-2917888567-741485270-1002 - Limited - Enabled)
Honza (S-1-5-21-1345737615-2917888567-741485270-1001 - Administrator - Enabled) => C:\Users\Honza
Host (S-1-5-21-1345737615-2917888567-741485270-1017 - Limited - Enabled) => C:\Users\Host
==================== Faulty Device Manager Devices =============
Name: AFGAFWAN IDE Controller
Description: AFGAFWAN IDE Controller
Class Guid: {4D36E97B-E325-11CE-BFC1-08002BE10318}
Manufacturer: (Standard mass storage controllers)
Service: ax9quwcj
Problem: : Windows cannot load the device driver for this hardware. The driver may be corrupted or missing. (Code 39)
Resolution: Reasons for this error include a driver that is not present; a binary file that is corrupt; a file I/O problem, or a driver that references an entry point in another binary file that could not be loaded.
Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver.
Name: VMware Virtual Ethernet Adapter for VMnet1
Description: VMware Virtual Ethernet Adapter for VMnet1
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: VMware, Inc.
Service: VMnetAdapter
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: VMware Virtual Ethernet Adapter for VMnet8
Description: VMware Virtual Ethernet Adapter for VMnet8
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: VMware, Inc.
Service: VMnetAdapter
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Sentinel64
Description: Sentinel64
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: Sentinel64
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name:
Description:
Class Guid: {8ecc055d-047f-11d1-a537-0000f8753ed1}
Manufacturer:
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (02/04/2015 10:54:07 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny ConvertStringSidToSid(S-1-5-21-1345737615-2917888567-741485270-1007.bak) došlo k neočekávané chybě. hr= 0x80070539, Struktura ID zabezpečení není platná.
.
Operace:
Událost OnIdentify
Shromažďování dat modulu pro zápis
Kontext:
Kontext spuštění: Shadow Copy Optimization Writer
ID třídy modulu pro zápis: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Název modulu pro zápis: Shadow Copy Optimization Writer
ID instance modulu pro zápis: {8908618c-071a-40e2-9298-7ed9d157b7bb}
Error: (02/04/2015 07:37:27 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny ConvertStringSidToSid(S-1-5-21-1345737615-2917888567-741485270-1007.bak) došlo k neočekávané chybě. hr= 0x80070539, Struktura ID zabezpečení není platná.
.
Operace:
Událost OnIdentify
Shromažďování dat modulu pro zápis
Kontext:
Kontext spuštění: Shadow Copy Optimization Writer
ID třídy modulu pro zápis: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Název modulu pro zápis: Shadow Copy Optimization Writer
ID instance modulu pro zápis: {0c7ff253-8778-4404-b4df-c3f1d26f4b08}
Error: (02/03/2015 10:58:49 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]
Error: (02/03/2015 10:58:49 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]
Error: (02/03/2015 10:58:49 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD endpoint registration failed [0]
Error: (02/03/2015 04:58:02 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny ConvertStringSidToSid(S-1-5-21-1345737615-2917888567-741485270-1007.bak) došlo k neočekávané chybě. hr= 0x80070539, Struktura ID zabezpečení není platná.
.
Operace:
Událost OnIdentify
Shromažďování dat modulu pro zápis
Kontext:
Kontext spuštění: Shadow Copy Optimization Writer
ID třídy modulu pro zápis: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Název modulu pro zápis: Shadow Copy Optimization Writer
ID instance modulu pro zápis: {05baaf79-b47a-4277-a219-85ecb8794505}
Error: (02/02/2015 01:52:41 PM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: Index nebyl inicializován.
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (02/02/2015 01:52:41 PM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Aplikace nebyla inicializována.
Kontext: aplikace Windows
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (02/02/2015 01:52:41 PM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Objekt indexování nebyl inicializován.
Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Katalog indexu obsahu je poškozený. (HRESULT : 0xc0041801) (0xc0041801)
Error: (02/02/2015 01:52:41 PM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Modul plug-in v <Search.TripoliIndexer> nebyl inicializován.
Kontext: aplikace Windows, katalog SystemIndex
Podrobnosti:
Prvek nebyl nalezen. (HRESULT : 0x80070490) (0x80070490)
System errors:
=============
Error: (02/04/2015 10:38:32 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Microsoft .NET Framework NGEN v4.0.30319_X64 bylo dosaženo časového limitu (30000 ms).
Error: (02/04/2015 10:38:01 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba VMware NAT Service byla neočekávaně ukončena. Tento stav nastal již 3krát.
Error: (02/04/2015 10:37:21 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba VMware NAT Service byla nečekaně ukončena. Stalo se to 2 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.
Error: (02/04/2015 10:36:45 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba VMware NAT Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.
Error: (02/04/2015 10:35:30 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo:
giveio
Error: (02/04/2015 10:34:59 PM) (Source: VMnetDHCP) (EventID: 2) (User: )
Description: Can't open C:\ProgramData\VMware\vmnetdhcp.conf: Systém nemůže nalézt uvedený soubor.
/ Unknown error 2 (0x2)
Error: (02/04/2015 10:34:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Úložná technologie Intel(R) Rapid neuspěla při spuštění v důsledku následující chyby:
%%1053
Error: (02/04/2015 10:34:52 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Úložná technologie Intel(R) Rapid bylo dosaženo časového limitu (30000 ms).
Error: (02/04/2015 10:34:22 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Avira Service Host bylo dosaženo časového limitu (30000 ms).
Error: (02/04/2015 10:33:23 PM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Služba VMware Workstation Server závisí na následující službě: VMUSBArbService. Tato služba pravděpodobně není nainstalována.
Microsoft Office Sessions:
=========================
CodeIntegrity Errors:
===================================
Date: 2014-10-30 14:50:53.919
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2014-10-30 14:50:53.809
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-11-08 00:51:54.766
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-11-08 00:51:54.579
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-03-20 19:19:02.465
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-03-20 19:19:02.375
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-02-03 18:58:25.898
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-02-03 18:58:25.795
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-01-24 18:17:41.595
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2013-01-24 18:17:41.454
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5 CPU M 430 @ 2.27GHz
Percentage of memory in use: 37%
Total physical RAM: 6005.59 MB
Available physical RAM: 3756.75 MB
Total Pagefile: 12009.37 MB
Available Pagefile: 9191.57 MB
Total Virtual: 8192 MB
Available Virtual: 8191.8 MB
==================== Drives ================================
Drive c: (WINDOWS) (Fixed) (Total:232.88 GB) (Free:59.57 GB) NTFS
Drive d: () (Fixed) (Total:232.49 GB) (Free:232.39 GB) NTFS
Drive f: (Ubuntu 14.04.1 L) (CDROM) (Total:0.96 GB) (Free:0 GB) CDFS
Drive l: (SAMSUNG) (Fixed) (Total:298.09 GB) (Free:1.1 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: ADDFB0C7)
Partition 1: (Active) - (Size=400 MB) - (Type=27)
Partition 2: (Not Active) - (Size=232.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=232.5 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 298.1 GB) (Disk ID: FE6D545C)
Partition 1: (Active) - (Size=298.1 GB) - (Type=07 NTFS)
==================== End Of Log ============================
Re: Preventivka




- Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
- ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
- znovu spustte FRST a kliknete na Fix
- po restartu na Vas vyskoci fixlog (pripadne bude ulozen na Plose), jehoz obsah mi vlozte do pristi odpovedi
Kód: Vybrat vše
Start CloseProcesses: HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6482200 2014-09-26] (Piriform Ltd) HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-1345737615-2917888567-741485270-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = FF DefaultSearchEngine: Bing FF SearchEngineOrder.3: Bing FF SelectedSearchEngine: Bing FF Homepage: hxxp://www.msn.com/?pc=U270&ocid=U270DHP FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File CHR HomePage: Default -> hxxp://www.msn.com/?pc=U270&ocid=U270DHP CHR StartupUrls: Default -> "hxxp://www.msn.com/?pc=U270&ocid=U270DHP" CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} 2015-02-04 23:11 - 2015-02-04 23:11 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Downloads\Nepotvrzeno 814861.crdownload 2015-02-04 23:06 - 2015-02-04 23:06 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Downloads\Nepotvrzeno 420780.crdownload 2015-02-04 17:30 - 2015-02-04 17:43 - 00000000 ____D () C:\AdwCleaner 2015-02-04 04:26 - 2015-02-04 04:27 - 00000000 ____D () C:\rsit Task: {0C2B9613-A87C-48A4-A754-430CFD143F57} - System32\Tasks\{309F2FC0-3555-49A5-837F-BC95A275CE85} => msiexec.exe /package "C:\Users\Honza\Desktop\Solid Edge ST3\Instalace\Solid Edge ST3.msi" Task: {0CAD1F10-AF65-4B4D-B55E-DDC5E4875204} - System32\Tasks\{C78E6134-BE3F-4C33-9DE1-D6D98B7F0F46} => C:\Users\Honza\Desktop\FlatOut2\FlatOut2.exe Task: {116958A6-DE4C-4604-BC40-A5460B55CAAD} - System32\Tasks\{75646656-9C18-458C-81E3-38264B97783F} => pcalua.exe -a C:\Users\Honza\Downloads\196.34_desktop_win7_winvista_64bit_english_beta.exe -d C:\Users\Honza\Downloads Task: {16DCABC6-1880-4F68-9BFE-ECEA65551657} - System32\Tasks\{BFF3B366-4A7D-4B1B-A0C2-EB35E7999ACD} => pcalua.exe -a "C:\Users\Honza\Downloads\SP3 Holiday+Xmas Edition\Xmas\Setup.exe" -d "C:\Users\Honza\Downloads\SP3 Holiday+Xmas Edition\Xmas" Task: {2FEEBBB1-140A-4180-8FF4-F2654AC7C6C0} - System32\Tasks\{9843DE75-B00C-4B27-82E2-46274453F613} => pcalua.exe -a C:\Users\Honza\Desktop\youtubedownloader216.exe -d C:\Users\Honza\Desktop Task: {3907C91B-4C18-4578-B26A-41EC9ED82DB4} - System32\Tasks\{67756D9F-E9D0-4F80-9FB7-F9DCD1380357} => pcalua.exe -a C:\Users\Honza\Downloads\acidpro50c-trial.exe -d C:\Users\Honza\Downloads Task: {4BD79027-CAB3-424E-A0D9-A45E4BBECC3A} - System32\Tasks\{A1FAECDF-D643-4800-83FE-3C737CC4F9FE} => pcalua.exe -a C:\Users\Honza\Downloads\Zoo-Tycoon-Cestina_1.05.exe -d C:\Users\Honza\Downloads Task: {4C60A0DD-2072-421F-B041-4EDF93E568DD} - System32\Tasks\{2892EA2D-0FFD-4624-A59A-01985EFACC85} => pcalua.exe -a "C:\Users\Honza\Desktop\Gothic 3\autumn.exe" -d "C:\Users\Honza\Desktop\Gothic 3" Task: {4CEEB4AC-F6CD-46AD-9F99-6A585DA4519F} - System32\Tasks\{C16DEDF5-8A69-4D15-B350-0169BEAAF63B} => pcalua.exe -a C:\Users\Honza\Desktop\X-MenOriginsCz.exe -d C:\Users\Honza\Desktop Task: {548E3669-F530-4A0F-8BD1-3CCE99BA77E7} - System32\Tasks\{85B603A4-3FDF-4B6D-B0B8-305D77244C6E} => C:\Program Files (x86)\Need For Speed Shift Ultimátní Edice\SHIFT.exe Task: {56841E8A-ABE2-4AC8-90DA-3CB0CF3309E5} - System32\Tasks\{E41080C4-563E-4212-8BD9-D0A19AF57161} => pcalua.exe -a C:\Users\Honza\Downloads\266.58_notebook_winvista_win7_64bit_international_whql.exe -d C:\Users\Honza\Downloads Task: {5AAB4578-F87B-4483-BBEA-98E4A7607C5D} - System32\Tasks\{47063297-B1CC-4EAA-A780-940A8BF732B2} => pcalua.exe -a F:\setup.exe -d F:\ Task: {610D7F03-EB94-4946-AE67-07603FB61556} - System32\Tasks\{B8E5A9AF-6150-43C5-AD36-391228A4D3E8} => pcalua.exe -a C:\Users\Honza\Desktop\hijackthis.exe -d C:\Users\Honza\Desktop Task: {74715568-3C7E-4280-80CD-1AA5FE76CA15} - System32\Tasks\At1 => C:\Windows\system32\unnlodctr.exe <==== ATTENTION Task: {96BDB9A3-2400-4B17-A6DE-EF3506E1CA7F} - System32\Tasks\{83CBEB8E-0E33-40FC-95BD-4654E6F243EE} => pcalua.exe -a C:\Users\Honza\Desktop\trilogyiii.exe -d C:\Users\Honza\Desktop Task: {9B5149ED-94D6-45D8-AC3E-2EAE998292E2} - System32\Tasks\{F25B23CC-C42B-485D-A98B-D8DA758A0658} => pcalua.exe -a F:\AUTOSTARTER.EXE -d F:\ Task: {9D67284C-F891-41D7-9333-631F2A6F5F76} - System32\Tasks\{2350BF38-5943-43E9-9B25-1F10B19A2960} => pcalua.exe -a C:\Users\Honza\Downloads\strongholdcrusader_cz.exe -d C:\Users\Honza\Downloads Task: {A168093A-52B2-4C2F-911F-F7DDD0A13F8C} - System32\Tasks\{97B7084D-F0D7-40B7-802F-341D8C30EE9D} => pcalua.exe -a E:\1Setup.exe -d E:\ Task: {AFC33E0F-EE1D-4192-A482-C51D40D36226} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2012 => C:\Program Files (x86)\TuneUp Utilities 2012\OneClick.exe Task: {B02E6B55-B2C8-4CD9-BE3E-0BA02D3436E2} - System32\Tasks\{FB785BD9-0E7A-4173-9D92-A8E0FBBB169F} => pcalua.exe -a C:\Users\Honza\Desktop\Český.exe -d C:\Users\Honza\Desktop Task: {B5388D19-CAE7-4872-8E99-6D65F3CC3E05} - System32\Tasks\{AC8C3926-3EB1-4539-B8F2-5A574F454F09} => pcalua.exe -a F:\setup.exe -d F:\ Task: {DDE5E35D-1365-4607-B4BA-6E4D03A7359A} - System32\Tasks\{D1866754-3ACE-4520-A0A8-DE910B78FAD5} => pcalua.exe -a F:\SPORESetup.exe -d F:\ Task: {E2034B78-624F-483A-B353-31AAE6E2BB5D} - System32\Tasks\{80A46168-8F6B-4A04-A48D-AE14F00825F8} => pcalua.exe -a C:\Users\Honza\AppData\Local\Temp\UN32.EXE -c -UP Task: {E8F57422-241C-4A6B-ABD9-FF2F272FBB89} - System32\Tasks\{F472A072-95D3-4EE0-BD21-58B1AF341B88} => pcalua.exe -a E:\Driver\setup.exe -d E:\Driver Task: {F2096706-7803-410A-AFC8-633C9A68654B} - System32\Tasks\{4E5DEFA9-4FD9-4F17-93A9-004E9EBDA84C} => pcalua.exe -a E:\autorun.exe -d E:\ Task: {F83BCEC9-A64A-41D7-AA74-B4DDFDCA241F} - System32\Tasks\{EE3751A2-C8F8-4153-917B-E85799B2535B} => pcalua.exe -a C:\Users\Honza\AppData\Local\Temp\Temp1_Hijackthis_2.0.2.zip\hijackthis.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7ebbcc676fbd.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1345737615-2917888567-741485270-1001Core1cfacee79f75900.job => C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\{2C53C194-5D1B-48DE-AF9F-73041E9D6762}.job => c:\users\honza\appdata\local\google\chrome\application\chrome.exe CMD: dir "C:\zoek_backup" Hosts: EmptyTemp: End
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Preventivka
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 04-02-2015 01
Ran by Honza at 2015-02-05 00:00:41 Run:1
Running from C:\Users\Honza\Desktop
Loaded Profiles: Honza (Available profiles: Honza & Host & Guest)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6482200 2014-09-26] (Piriform Ltd)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF DefaultSearchEngine: Bing
FF SearchEngineOrder.3: Bing
FF SelectedSearchEngine: Bing
FF Homepage: hxxp://www.msn.com/?pc=U270&ocid=U270DHP
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
CHR HomePage: Default -> hxxp://www.msn.com/?pc=U270&ocid=U270DHP
CHR StartupUrls: Default -> "hxxp://www.msn.com/?pc=U270&ocid=U270DHP"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
2015-02-04 23:11 - 2015-02-04 23:11 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Downloads\Nepotvrzeno 814861.crdownload
2015-02-04 23:06 - 2015-02-04 23:06 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Downloads\Nepotvrzeno 420780.crdownload
2015-02-04 17:30 - 2015-02-04 17:43 - 00000000 ____D () C:\AdwCleaner
2015-02-04 04:26 - 2015-02-04 04:27 - 00000000 ____D () C:\rsit
Task: {0C2B9613-A87C-48A4-A754-430CFD143F57} - System32\Tasks\{309F2FC0-3555-49A5-837F-BC95A275CE85} => msiexec.exe /package "C:\Users\Honza\Desktop\Solid Edge ST3\Instalace\Solid Edge ST3.msi"
Task: {0CAD1F10-AF65-4B4D-B55E-DDC5E4875204} - System32\Tasks\{C78E6134-BE3F-4C33-9DE1-D6D98B7F0F46} => C:\Users\Honza\Desktop\FlatOut2\FlatOut2.exe
Task: {116958A6-DE4C-4604-BC40-A5460B55CAAD} - System32\Tasks\{75646656-9C18-458C-81E3-38264B97783F} => pcalua.exe -a C:\Users\Honza\Downloads\196.34_desktop_win7_winvista_64bit_english_beta.exe -d C:\Users\Honza\Downloads
Task: {16DCABC6-1880-4F68-9BFE-ECEA65551657} - System32\Tasks\{BFF3B366-4A7D-4B1B-A0C2-EB35E7999ACD} => pcalua.exe -a "C:\Users\Honza\Downloads\SP3 Holiday+Xmas Edition\Xmas\Setup.exe" -d "C:\Users\Honza\Downloads\SP3 Holiday+Xmas Edition\Xmas"
Task: {2FEEBBB1-140A-4180-8FF4-F2654AC7C6C0} - System32\Tasks\{9843DE75-B00C-4B27-82E2-46274453F613} => pcalua.exe -a C:\Users\Honza\Desktop\youtubedownloader216.exe -d C:\Users\Honza\Desktop
Task: {3907C91B-4C18-4578-B26A-41EC9ED82DB4} - System32\Tasks\{67756D9F-E9D0-4F80-9FB7-F9DCD1380357} => pcalua.exe -a C:\Users\Honza\Downloads\acidpro50c-trial.exe -d C:\Users\Honza\Downloads
Task: {4BD79027-CAB3-424E-A0D9-A45E4BBECC3A} - System32\Tasks\{A1FAECDF-D643-4800-83FE-3C737CC4F9FE} => pcalua.exe -a C:\Users\Honza\Downloads\Zoo-Tycoon-Cestina_1.05.exe -d C:\Users\Honza\Downloads
Task: {4C60A0DD-2072-421F-B041-4EDF93E568DD} - System32\Tasks\{2892EA2D-0FFD-4624-A59A-01985EFACC85} => pcalua.exe -a "C:\Users\Honza\Desktop\Gothic 3\autumn.exe" -d "C:\Users\Honza\Desktop\Gothic 3"
Task: {4CEEB4AC-F6CD-46AD-9F99-6A585DA4519F} - System32\Tasks\{C16DEDF5-8A69-4D15-B350-0169BEAAF63B} => pcalua.exe -a C:\Users\Honza\Desktop\X-MenOriginsCz.exe -d C:\Users\Honza\Desktop
Task: {548E3669-F530-4A0F-8BD1-3CCE99BA77E7} - System32\Tasks\{85B603A4-3FDF-4B6D-B0B8-305D77244C6E} => C:\Program Files (x86)\Need For Speed Shift Ultimátní Edice\SHIFT.exe
Task: {56841E8A-ABE2-4AC8-90DA-3CB0CF3309E5} - System32\Tasks\{E41080C4-563E-4212-8BD9-D0A19AF57161} => pcalua.exe -a C:\Users\Honza\Downloads\266.58_notebook_winvista_win7_64bit_international_whql.exe -d C:\Users\Honza\Downloads
Task: {5AAB4578-F87B-4483-BBEA-98E4A7607C5D} - System32\Tasks\{47063297-B1CC-4EAA-A780-940A8BF732B2} => pcalua.exe -a F:\setup.exe -d F:\
Task: {610D7F03-EB94-4946-AE67-07603FB61556} - System32\Tasks\{B8E5A9AF-6150-43C5-AD36-391228A4D3E8} => pcalua.exe -a C:\Users\Honza\Desktop\hijackthis.exe -d C:\Users\Honza\Desktop
Task: {74715568-3C7E-4280-80CD-1AA5FE76CA15} - System32\Tasks\At1 => C:\Windows\system32\unnlodctr.exe <==== ATTENTION
Task: {96BDB9A3-2400-4B17-A6DE-EF3506E1CA7F} - System32\Tasks\{83CBEB8E-0E33-40FC-95BD-4654E6F243EE} => pcalua.exe -a C:\Users\Honza\Desktop\trilogyiii.exe -d C:\Users\Honza\Desktop
Task: {9B5149ED-94D6-45D8-AC3E-2EAE998292E2} - System32\Tasks\{F25B23CC-C42B-485D-A98B-D8DA758A0658} => pcalua.exe -a F:\AUTOSTARTER.EXE -d F:\
Task: {9D67284C-F891-41D7-9333-631F2A6F5F76} - System32\Tasks\{2350BF38-5943-43E9-9B25-1F10B19A2960} => pcalua.exe -a C:\Users\Honza\Downloads\strongholdcrusader_cz.exe -d C:\Users\Honza\Downloads
Task: {A168093A-52B2-4C2F-911F-F7DDD0A13F8C} - System32\Tasks\{97B7084D-F0D7-40B7-802F-341D8C30EE9D} => pcalua.exe -a E:\1Setup.exe -d E:\
Task: {AFC33E0F-EE1D-4192-A482-C51D40D36226} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2012 => C:\Program Files (x86)\TuneUp Utilities 2012\OneClick.exe
Task: {B02E6B55-B2C8-4CD9-BE3E-0BA02D3436E2} - System32\Tasks\{FB785BD9-0E7A-4173-9D92-A8E0FBBB169F} => pcalua.exe -a C:\Users\Honza\Desktop\Český.exe -d C:\Users\Honza\Desktop
Task: {B5388D19-CAE7-4872-8E99-6D65F3CC3E05} - System32\Tasks\{AC8C3926-3EB1-4539-B8F2-5A574F454F09} => pcalua.exe -a F:\setup.exe -d F:\
Task: {DDE5E35D-1365-4607-B4BA-6E4D03A7359A} - System32\Tasks\{D1866754-3ACE-4520-A0A8-DE910B78FAD5} => pcalua.exe -a F:\SPORESetup.exe -d F:\
Task: {E2034B78-624F-483A-B353-31AAE6E2BB5D} - System32\Tasks\{80A46168-8F6B-4A04-A48D-AE14F00825F8} => pcalua.exe -a C:\Users\Honza\AppData\Local\Temp\UN32.EXE -c -UP
Task: {E8F57422-241C-4A6B-ABD9-FF2F272FBB89} - System32\Tasks\{F472A072-95D3-4EE0-BD21-58B1AF341B88} => pcalua.exe -a E:\Driver\setup.exe -d E:\Driver
Task: {F2096706-7803-410A-AFC8-633C9A68654B} - System32\Tasks\{4E5DEFA9-4FD9-4F17-93A9-004E9EBDA84C} => pcalua.exe -a E:\autorun.exe -d E:\
Task: {F83BCEC9-A64A-41D7-AA74-B4DDFDCA241F} - System32\Tasks\{EE3751A2-C8F8-4153-917B-E85799B2535B} => pcalua.exe -a C:\Users\Honza\AppData\Local\Temp\Temp1_Hijackthis_2.0.2.zip\hijackthis.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7ebbcc676fbd.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1345737615-2917888567-741485270-1001Core1cfacee79f75900.job => C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\{2C53C194-5D1B-48DE-AF9F-73041E9D6762}.job => c:\users\honza\appdata\local\google\chrome\application\chrome.exe
Folder: C:\zoek_backup
Hosts:
EmptyTemp:
End
*****************
Processes closed successfully.
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value deleted successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKU\S-1-5-21-1345737615-2917888567-741485270-1001\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
Firefox DefaultSearchEngine deleted successfully.
Firefox SearchEngineOrder.3 deleted successfully.
Firefox SelectedSearchEngine deleted successfully.
Firefox homepage deleted successfully.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
Chrome HomePage deleted successfully.
Chrome StartupUrls deleted successfully.
Chrome DefaultSuggestURL deleted successfully.
C:\Users\Honza\Downloads\Nepotvrzeno 814861.crdownload => Moved successfully.
C:\Users\Honza\Downloads\Nepotvrzeno 420780.crdownload => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\rsit => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0C2B9613-A87C-48A4-A754-430CFD143F57}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0C2B9613-A87C-48A4-A754-430CFD143F57}" => Key deleted successfully.
C:\Windows\System32\Tasks\{309F2FC0-3555-49A5-837F-BC95A275CE85} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{309F2FC0-3555-49A5-837F-BC95A275CE85}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0CAD1F10-AF65-4B4D-B55E-DDC5E4875204}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0CAD1F10-AF65-4B4D-B55E-DDC5E4875204}" => Key deleted successfully.
C:\Windows\System32\Tasks\{C78E6134-BE3F-4C33-9DE1-D6D98B7F0F46} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C78E6134-BE3F-4C33-9DE1-D6D98B7F0F46}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{116958A6-DE4C-4604-BC40-A5460B55CAAD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{116958A6-DE4C-4604-BC40-A5460B55CAAD}" => Key deleted successfully.
C:\Windows\System32\Tasks\{75646656-9C18-458C-81E3-38264B97783F} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{75646656-9C18-458C-81E3-38264B97783F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{16DCABC6-1880-4F68-9BFE-ECEA65551657}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16DCABC6-1880-4F68-9BFE-ECEA65551657}" => Key deleted successfully.
C:\Windows\System32\Tasks\{BFF3B366-4A7D-4B1B-A0C2-EB35E7999ACD} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{BFF3B366-4A7D-4B1B-A0C2-EB35E7999ACD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2FEEBBB1-140A-4180-8FF4-F2654AC7C6C0}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2FEEBBB1-140A-4180-8FF4-F2654AC7C6C0}" => Key deleted successfully.
C:\Windows\System32\Tasks\{9843DE75-B00C-4B27-82E2-46274453F613} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{9843DE75-B00C-4B27-82E2-46274453F613}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3907C91B-4C18-4578-B26A-41EC9ED82DB4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3907C91B-4C18-4578-B26A-41EC9ED82DB4}" => Key deleted successfully.
C:\Windows\System32\Tasks\{67756D9F-E9D0-4F80-9FB7-F9DCD1380357} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{67756D9F-E9D0-4F80-9FB7-F9DCD1380357}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4BD79027-CAB3-424E-A0D9-A45E4BBECC3A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4BD79027-CAB3-424E-A0D9-A45E4BBECC3A}" => Key deleted successfully.
C:\Windows\System32\Tasks\{A1FAECDF-D643-4800-83FE-3C737CC4F9FE} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{A1FAECDF-D643-4800-83FE-3C737CC4F9FE}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4C60A0DD-2072-421F-B041-4EDF93E568DD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C60A0DD-2072-421F-B041-4EDF93E568DD}" => Key deleted successfully.
C:\Windows\System32\Tasks\{2892EA2D-0FFD-4624-A59A-01985EFACC85} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{2892EA2D-0FFD-4624-A59A-01985EFACC85}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4CEEB4AC-F6CD-46AD-9F99-6A585DA4519F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4CEEB4AC-F6CD-46AD-9F99-6A585DA4519F}" => Key deleted successfully.
C:\Windows\System32\Tasks\{C16DEDF5-8A69-4D15-B350-0169BEAAF63B} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C16DEDF5-8A69-4D15-B350-0169BEAAF63B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{548E3669-F530-4A0F-8BD1-3CCE99BA77E7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{548E3669-F530-4A0F-8BD1-3CCE99BA77E7}" => Key deleted successfully.
C:\Windows\System32\Tasks\{85B603A4-3FDF-4B6D-B0B8-305D77244C6E} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{85B603A4-3FDF-4B6D-B0B8-305D77244C6E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{56841E8A-ABE2-4AC8-90DA-3CB0CF3309E5}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{56841E8A-ABE2-4AC8-90DA-3CB0CF3309E5}" => Key deleted successfully.
C:\Windows\System32\Tasks\{E41080C4-563E-4212-8BD9-D0A19AF57161} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{E41080C4-563E-4212-8BD9-D0A19AF57161}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5AAB4578-F87B-4483-BBEA-98E4A7607C5D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5AAB4578-F87B-4483-BBEA-98E4A7607C5D}" => Key deleted successfully.
C:\Windows\System32\Tasks\{47063297-B1CC-4EAA-A780-940A8BF732B2} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{47063297-B1CC-4EAA-A780-940A8BF732B2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{610D7F03-EB94-4946-AE67-07603FB61556}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{610D7F03-EB94-4946-AE67-07603FB61556}" => Key deleted successfully.
C:\Windows\System32\Tasks\{B8E5A9AF-6150-43C5-AD36-391228A4D3E8} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B8E5A9AF-6150-43C5-AD36-391228A4D3E8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{74715568-3C7E-4280-80CD-1AA5FE76CA15}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{74715568-3C7E-4280-80CD-1AA5FE76CA15}" => Key deleted successfully.
C:\Windows\System32\Tasks\At1 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\At1" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{96BDB9A3-2400-4B17-A6DE-EF3506E1CA7F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96BDB9A3-2400-4B17-A6DE-EF3506E1CA7F}" => Key deleted successfully.
C:\Windows\System32\Tasks\{83CBEB8E-0E33-40FC-95BD-4654E6F243EE} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{83CBEB8E-0E33-40FC-95BD-4654E6F243EE}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9B5149ED-94D6-45D8-AC3E-2EAE998292E2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9B5149ED-94D6-45D8-AC3E-2EAE998292E2}" => Key deleted successfully.
C:\Windows\System32\Tasks\{F25B23CC-C42B-485D-A98B-D8DA758A0658} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F25B23CC-C42B-485D-A98B-D8DA758A0658}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9D67284C-F891-41D7-9333-631F2A6F5F76}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9D67284C-F891-41D7-9333-631F2A6F5F76}" => Key deleted successfully.
C:\Windows\System32\Tasks\{2350BF38-5943-43E9-9B25-1F10B19A2960} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{2350BF38-5943-43E9-9B25-1F10B19A2960}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A168093A-52B2-4C2F-911F-F7DDD0A13F8C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A168093A-52B2-4C2F-911F-F7DDD0A13F8C}" => Key deleted successfully.
C:\Windows\System32\Tasks\{97B7084D-F0D7-40B7-802F-341D8C30EE9D} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{97B7084D-F0D7-40B7-802F-341D8C30EE9D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AFC33E0F-EE1D-4192-A482-C51D40D36226}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AFC33E0F-EE1D-4192-A482-C51D40D36226}" => Key deleted successfully.
C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2012 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\TuneUpUtilities_Task_BkGndMaintenance2012" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B02E6B55-B2C8-4CD9-BE3E-0BA02D3436E2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B02E6B55-B2C8-4CD9-BE3E-0BA02D3436E2}" => Key deleted successfully.
C:\Windows\System32\Tasks\{FB785BD9-0E7A-4173-9D92-A8E0FBBB169F} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{FB785BD9-0E7A-4173-9D92-A8E0FBBB169F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B5388D19-CAE7-4872-8E99-6D65F3CC3E05}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B5388D19-CAE7-4872-8E99-6D65F3CC3E05}" => Key deleted successfully.
C:\Windows\System32\Tasks\{AC8C3926-3EB1-4539-B8F2-5A574F454F09} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{AC8C3926-3EB1-4539-B8F2-5A574F454F09}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DDE5E35D-1365-4607-B4BA-6E4D03A7359A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DDE5E35D-1365-4607-B4BA-6E4D03A7359A}" => Key deleted successfully.
C:\Windows\System32\Tasks\{D1866754-3ACE-4520-A0A8-DE910B78FAD5} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{D1866754-3ACE-4520-A0A8-DE910B78FAD5}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E2034B78-624F-483A-B353-31AAE6E2BB5D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E2034B78-624F-483A-B353-31AAE6E2BB5D}" => Key deleted successfully.
C:\Windows\System32\Tasks\{80A46168-8F6B-4A04-A48D-AE14F00825F8} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{80A46168-8F6B-4A04-A48D-AE14F00825F8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E8F57422-241C-4A6B-ABD9-FF2F272FBB89}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E8F57422-241C-4A6B-ABD9-FF2F272FBB89}" => Key deleted successfully.
C:\Windows\System32\Tasks\{F472A072-95D3-4EE0-BD21-58B1AF341B88} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F472A072-95D3-4EE0-BD21-58B1AF341B88}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F2096706-7803-410A-AFC8-633C9A68654B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F2096706-7803-410A-AFC8-633C9A68654B}" => Key deleted successfully.
C:\Windows\System32\Tasks\{4E5DEFA9-4FD9-4F17-93A9-004E9EBDA84C} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{4E5DEFA9-4FD9-4F17-93A9-004E9EBDA84C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F83BCEC9-A64A-41D7-AA74-B4DDFDCA241F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F83BCEC9-A64A-41D7-AA74-B4DDFDCA241F}" => Key deleted successfully.
C:\Windows\System32\Tasks\{EE3751A2-C8F8-4153-917B-E85799B2535B} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{EE3751A2-C8F8-4153-917B-E85799B2535B}" => Key deleted successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7ebbcc676fbd.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1345737615-2917888567-741485270-1001Core1cfacee79f75900.job => Moved successfully.
C:\Windows\Tasks\{2C53C194-5D1B-48DE-AF9F-73041E9D6762}.job => Moved successfully.
========================= Folder: C:\zoek_backup ========================
2015-02-04 20:16 - 2014-11-11 21:28 - 0001015 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_searchplugins_avira-safesearch.xml.vir
2015-02-04 20:16 - 2014-09-28 04:41 - 0000130 _____ () C:\zoek_backup\C_windows_SysNative_GroupPolicy_gpt.ini.vir
2015-02-04 20:16 - 2013-02-01 23:59 - 0000889 _____ () C:\zoek_backup\C_Windows_Syswow64_InstallUtil.InstallLog.vir
2015-02-04 20:16 - 2015-02-04 20:16 - 0001391 _____ () C:\zoek_backup\restore.txt
2015-02-04 20:15 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:29 - 4846283 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\1de82860db02f762c5f65a73daa31f3e.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 1642205 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\590d28783ff280b8b0016c3492433241.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0612829 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\68d3d4315e5c2095463645eb86f33d4d.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 9004302 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\69661e20556b3ca9456b946c2c881ddd.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 2292395 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\703316c9de0a32acf316d03b1cffc559.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 3060932 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\953951aa89b75554848f10beaeb378b6.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0161033 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\b913ca15956d14df2d4b1f11ae07885b.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0567197 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\d2c7f420fc938451941b33d1fa8a7149.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 1357353 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\d2caf327e340f3c9245298dd6068a27e.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0717223 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\e8bc712abeffd7c9711ee3f55d4aa99b.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0197265 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\fc084e70acbbb649de52f3f160f6cd55.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0430080 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\Windows App Certification Kit x64-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{0CBDFF59-DEC7-46AD-846F-41D29C7235F2}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{0CBDFF59-DEC7-46AD-846F-41D29C7235F2}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{0CBDFF59-DEC7-46AD-846F-41D29C7235F2}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:37 - 11874304 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{0CBDFF59-DEC7-46AD-846F-41D29C7235F2}\Patches\8.59.29750\Windows Software Development Kit for Metro style Apps-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527
2015-02-04 20:15 - 2014-11-20 14:18 - 3977216 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\Avira.OE.Setup.Msi.msi
2015-02-04 20:15 - 2014-11-20 14:09 - 0000065 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\BundledProducts.xml
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.de.mst
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.en.mst
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.es.mst
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.fr.mst
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.it.mst
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.ptbr.mst
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.ru.mst
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{23176E97-26CB-C72A-19EB-BFB21AC1D15A}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{23176E97-26CB-C72A-19EB-BFB21AC1D15A}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 0740033 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{23176E97-26CB-C72A-19EB-BFB21AC1D15A}v8.59.25584\Installers\ec9d39539c27e8cf5ad39bffce00c34e.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{23176E97-26CB-C72A-19EB-BFB21AC1D15A}v8.59.25584\Installers\Windows Software Development Kit DirectX x86 Remote-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{27EF252D-800C-ED42-9904-459FE0046225}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{27EF252D-800C-ED42-9904-459FE0046225}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 0841497 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{27EF252D-800C-ED42-9904-459FE0046225}v8.59.25584\Installers\5cf1d61a223a02ff2f52fe05f058d52e.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{27EF252D-800C-ED42-9904-459FE0046225}v8.59.25584\Installers\Windows Software Development Kit for Metro style Apps DirectX x64 Remote-x64_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}
2015-02-04 20:15 - 2014-05-30 00:34 - 0000670 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\state.rsm
2015-02-04 20:15 - 2014-05-30 00:30 - 0455720 _____ (Microsoft Corporation) C:\zoek_backup\C_PROGRA~3_Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{363a2c1e-637f-45ce-933b-5a5463efd945}
2015-02-04 20:15 - 2014-10-07 10:27 - 0991536 _____ (Microsoft Corporation) C:\zoek_backup\C_PROGRA~3_Package Cache\{363a2c1e-637f-45ce-933b-5a5463efd945}\sdksetup.exe
2015-02-04 20:15 - 2014-10-07 10:48 - 0038544 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{363a2c1e-637f-45ce-933b-5a5463efd945}\state.rsm
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{37B8F9C7-03FB-3253-8781-2517C99D7C00}v11.0.61030
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{37B8F9C7-03FB-3253-8781-2517C99D7C00}v11.0.61030\packages
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{37B8F9C7-03FB-3253-8781-2517C99D7C00}v11.0.61030\packages\vcRuntimeAdditional_amd64
2015-02-04 20:15 - 2013-10-30 04:04 - 5800228 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{37B8F9C7-03FB-3253-8781-2517C99D7C00}v11.0.61030\packages\vcRuntimeAdditional_amd64\cab1.cab
2015-02-04 20:15 - 2013-10-30 04:08 - 0151552 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{37B8F9C7-03FB-3253-8781-2517C99D7C00}v11.0.61030\packages\vcRuntimeAdditional_amd64\vc_runtimeAdditional_x64.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:30 - 0113860 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\0f5c9874ec8b03b3a2ef2148f76b34cf.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0891373 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\2d609858545493b503b24bd3328d8d2a.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0099824 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\4c0b3f635c0903217a3535759b7ce85f.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0308257 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\4dc69cc131b3f4fdde53e76d759509dc.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0891299 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\74b89608f8f11f7e9efa14c4c73703da.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0506951 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\7f2e1d84e9a0738a722d9dd75bbda287.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0926351 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\9070517e54c750dca5f4eaa025eb8057.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0506576 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\b1033a9482d5307d3df8fcd97174719e.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0099818 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\b8e24d79b048ee60690232e44c0be7a9.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0061479 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\cd9128b760c06a010e1621af6528432e.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0616775 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\dc3acb184552e9eeac50269425274d3c.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0074419 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\f7b25543b47329ef932ad391c72c4ab7.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0385024 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\Windows App Certification Kit Native Components-x64_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FC576D8-5BAD-4767-81C5-3836CD4702F8}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FC576D8-5BAD-4767-81C5-3836CD4702F8}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FC576D8-5BAD-4767-81C5-3836CD4702F8}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:40 - 8908800 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FC576D8-5BAD-4767-81C5-3836CD4702F8}\Patches\8.59.29750\Windows App Certification Kit x64-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{42F61556-29ED-8122-F39E-6F04EA5FF279}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{42F61556-29ED-8122-F39E-6F04EA5FF279}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 0734734 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{42F61556-29ED-8122-F39E-6F04EA5FF279}v8.59.25584\Installers\5509e4710313421be8d5e7cfbfde4d30.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{42F61556-29ED-8122-F39E-6F04EA5FF279}v8.59.25584\Installers\Windows Software Development Kit for Metro style Apps DirectX x86 Remote-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{44258566-6A78-4569-9F6A-E1D6422678A9}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{44258566-6A78-4569-9F6A-E1D6422678A9}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{44258566-6A78-4569-9F6A-E1D6422678A9}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:40 - 0053248 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{44258566-6A78-4569-9F6A-E1D6422678A9}\Patches\8.59.29750\Windows Software Development Kit EULA-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4AE57014-05C4-4864-A13D-86517A7E1BA4}v4.5.50710
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4AE57014-05C4-4864-A13D-86517A7E1BA4}v4.5.50710\Redistributable
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4AE57014-05C4-4864-A13D-86517A7E1BA4}v4.5.50710\Redistributable\4.5.50710
2015-02-04 20:15 - 2014-10-06 23:40 - 4422174 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{4AE57014-05C4-4864-A13D-86517A7E1BA4}v4.5.50710\Redistributable\4.5.50710\sdk_tools4.cab
2015-02-04 20:15 - 2014-10-06 23:40 - 0421888 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{4AE57014-05C4-4864-A13D-86517A7E1BA4}v4.5.50710\Redistributable\4.5.50710\sdk_tools4.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4F1B8A25-4622-4000-B4FD-24206B3E0776}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4F1B8A25-4622-4000-B4FD-24206B3E0776}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4F1B8A25-4622-4000-B4FD-24206B3E0776}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:38 - 28471296 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{4F1B8A25-4622-4000-B4FD-24206B3E0776}\Patches\8.59.29750\WPT Redistributables-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4FBC26B0-CB48-409B-89B8-CF85BCF6BD7B}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4FBC26B0-CB48-409B-89B8-CF85BCF6BD7B}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4FBC26B0-CB48-409B-89B8-CF85BCF6BD7B}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:37 - 8941568 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{4FBC26B0-CB48-409B-89B8-CF85BCF6BD7B}\Patches\8.59.29750\Windows Software Development Kit-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 0737734 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\3988e4dfdc3f1d180c47a61a0ca76215.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0734734 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\5509e4710313421be8d5e7cfbfde4d30.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0841497 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\5cf1d61a223a02ff2f52fe05f058d52e.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0740033 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\ec9d39539c27e8cf5ad39bffce00c34e.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0854881 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\ef4472fd7552490fd759075186ed2ec8.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\Windows Software Development Kit DirectX x64 Remote-x64_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\Windows Software Development Kit DirectX x86 Remote-x86_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 0303104 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\Windows Software Development Kit for Metro style Apps DirectX ARM Remote-arm_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\Windows Software Development Kit for Metro style Apps DirectX x64 Remote-x64_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\Windows Software Development Kit for Metro style Apps DirectX x86 Remote-x86_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\Windows Software Development Kit Redistributables-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}v4.5.50710
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}v4.5.50710\Redistributable
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}v4.5.50710\Redistributable\4.5.50710
2015-02-04 20:15 - 2014-10-07 10:29 - 9798660 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}v4.5.50710\Redistributable\4.5.50710\netfx45_dtp.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0274432 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}v4.5.50710\Redistributable\4.5.50710\netfx45_dtp.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{5C5A1FE8-0686-4451-BA81-DCFF13060D75}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{5C5A1FE8-0686-4451-BA81-DCFF13060D75}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{5C5A1FE8-0686-4451-BA81-DCFF13060D75}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:40 - 0434176 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{5C5A1FE8-0686-4451-BA81-DCFF13060D75}\Patches\8.59.29750\Windows App Certification Kit Native Components-x64_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{5FB4C443-6BD6-1514-2717-3827D65AE6FB}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{5FB4C443-6BD6-1514-2717-3827D65AE6FB}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 0854881 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{5FB4C443-6BD6-1514-2717-3827D65AE6FB}v8.59.25584\Installers\ef4472fd7552490fd759075186ed2ec8.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{5FB4C443-6BD6-1514-2717-3827D65AE6FB}v8.59.25584\Installers\Windows Software Development Kit DirectX x64 Remote-x64_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:27 - 0067390 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\07a57cdb41ba28cced14005f087267be.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0784088 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\19248fabbb2098a7b88c4a2786066bcc.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0012342 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\263104e5ce3a72f68151a93d88a3f22f.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 9264363 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\2e876dd22fa5e6785f137e3422dd50ec.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0972273 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\4fe4c8b88812f5339018c0eef95acdb9.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 17290023 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\53174a8154da07099db041b9caffeaee.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 6988993 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\56a114848fda9a7e47bad4b3fc4be9a6.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 18104326 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\58314d0646d7e1a25e97c902166c3155.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0011645 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\5c2fcb46e03eada0ed0cad44a3f5c71f.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0770405 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\67c9fd1fab36154e6e7e429610cd67c8.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 1181858 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\8e4755178e6b5bcba8d3538c3630b7a5.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 1967260 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\a35cd6c9233b6ba3da66eecaa9190436.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0011916 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\b5f177b84c0ec473cbd69557634b27cd.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0012026 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\c2aabf6ea5c1d348ec22f3aeb92f8656.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 5750763 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\cdea5502a35d09ddfbcda12e3a391dc0.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0012117 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\de111c3d435b0785b31b28c386ee691f.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0799709 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\f4661eda3692e166927c14c96164150a.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0012298 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\fe38b2fd0d440e3c6740b626f51a22fc.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0503808 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\MsiVal2-x86_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:27 - 0503808 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\Orca-x86_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:27 - 0835584 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\Windows Software Development Kit-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{6D3D284F-4131-4D28-A3BF-6F3A2E8305E1}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{6D3D284F-4131-4D28-A3BF-6F3A2E8305E1}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{6D3D284F-4131-4D28-A3BF-6F3A2E8305E1}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:38 - 0462848 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{6D3D284F-4131-4D28-A3BF-6F3A2E8305E1}\Patches\8.59.29750\Windows Software Development Kit DirectX x64 Remote-x64_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{6DA574FB-2CE0-40B8-88F3-3EBB20D3D761}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{6DA574FB-2CE0-40B8-88F3-3EBB20D3D761}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{6DA574FB-2CE0-40B8-88F3-3EBB20D3D761}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:39 - 44769280 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{6DA574FB-2CE0-40B8-88F3-3EBB20D3D761}\Patches\8.59.29750\SDK Debuggers-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{729130BA-42AC-4ECA-9404-3CE343F249E9}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{729130BA-42AC-4ECA-9404-3CE343F249E9}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{729130BA-42AC-4ECA-9404-3CE343F249E9}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:40 - 0200704 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{729130BA-42AC-4ECA-9404-3CE343F249E9}\Patches\8.59.29750\Application Verifier x64 External Package-x64_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{7346C35D-942D-3CCE-94CB-7008BA8D63CB}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{7346C35D-942D-3CCE-94CB-7008BA8D63CB}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:29 - 3481600 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{7346C35D-942D-3CCE-94CB-7008BA8D63CB}v8.59.25584\Installers\Application Verifier x64 External Package-x64_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{8E049E94-D96B-4C99-A98C-C6359FB57A3C}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{8E049E94-D96B-4C99-A98C-C6359FB57A3C}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{8E049E94-D96B-4C99-A98C-C6359FB57A3C}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:38 - 4583424 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{8E049E94-D96B-4C99-A98C-C6359FB57A3C}\Patches\8.59.29750\Windows Software Development Kit Redistributables-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{9139BBE8-B57A-45B6-A94F-866FD0CE12E1}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{9139BBE8-B57A-45B6-A94F-866FD0CE12E1}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{9139BBE8-B57A-45B6-A94F-866FD0CE12E1}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:38 - 0401408 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{9139BBE8-B57A-45B6-A94F-866FD0CE12E1}\Patches\8.59.29750\Windows Software Development Kit DirectX x86 Remote-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{986EABFC-92F6-CECD-9E5A-B13CAC40BB1D}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{986EABFC-92F6-CECD-9E5A-B13CAC40BB1D}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 10903552 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{986EABFC-92F6-CECD-9E5A-B13CAC40BB1D}v8.59.25584\Installers\WPTx64-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{A144E79B-ED13-40D5-AD46-81849CDBB353}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{A144E79B-ED13-40D5-AD46-81849CDBB353}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{A144E79B-ED13-40D5-AD46-81849CDBB353}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:38 - 0077824 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{A144E79B-ED13-40D5-AD46-81849CDBB353}\Patches\8.59.29750\Windows Software Development Kit for Metro style Apps DirectX x64 Remote-x64_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{A5D42D71-4036-5F88-5085-657C9DF9F1DD}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{A5D42D71-4036-5F88-5085-657C9DF9F1DD}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{A5D42D71-4036-5F88-5085-657C9DF9F1DD}v8.59.25584\Installers\WPT Redistributables-x86_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 8024064 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{A5D42D71-4036-5F88-5085-657C9DF9F1DD}v8.59.25584\Installers\WPTarm-arm_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 10903552 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{A5D42D71-4036-5F88-5085-657C9DF9F1DD}v8.59.25584\Installers\WPTx64-x86_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 10092544 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{A5D42D71-4036-5F88-5085-657C9DF9F1DD}v8.59.25584\Installers\WPTx86-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{B175520C-86A2-35A7-8619-86DC379688B9}v11.0.61030
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{B175520C-86A2-35A7-8619-86DC379688B9}v11.0.61030\packages
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{B175520C-86A2-35A7-8619-86DC379688B9}v11.0.61030\packages\vcRuntimeAdditional_x86
2015-02-04 20:15 - 2013-10-30 04:03 - 5153816 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{B175520C-86A2-35A7-8619-86DC379688B9}v11.0.61030\packages\vcRuntimeAdditional_x86\cab1.cab
2015-02-04 20:15 - 2013-10-30 04:08 - 0151552 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{B175520C-86A2-35A7-8619-86DC379688B9}v11.0.61030\packages\vcRuntimeAdditional_x86\vc_runtimeAdditional_x86.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}v11.0.61030
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}v11.0.61030\packages
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}v11.0.61030\packages\vcRuntimeMinimum_x86
2015-02-04 20:15 - 2013-10-30 04:03 - 0821681 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}v11.0.61030\packages\vcRuntimeMinimum_x86\cab1.cab
2015-02-04 20:15 - 2013-10-30 04:08 - 0151552 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}v11.0.61030\packages\vcRuntimeMinimum_x86\vc_runtimeMinimum_x86.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}
2015-02-04 20:15 - 2014-05-30 00:34 - 0000670 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\state.rsm
2015-02-04 20:15 - 2014-05-30 00:30 - 0455576 _____ (Microsoft Corporation) C:\zoek_backup\C_PROGRA~3_Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}v11.0.61030
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}v11.0.61030\packages
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}v11.0.61030\packages\vcRuntimeMinimum_amd64
2015-02-04 20:15 - 2013-10-30 04:03 - 0809765 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}v11.0.61030\packages\vcRuntimeMinimum_amd64\cab1.cab
2015-02-04 20:15 - 2013-10-30 04:09 - 0151552 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}v11.0.61030\packages\vcRuntimeMinimum_amd64\vc_runtimeMinimum_x64.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 1368627 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\15bc5316e373960d82abc253bceaa25d.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 1387877 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\2630bae9681db6a9f6722366f47d055c.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0013456 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\4035a83dc8e73244d15d1196d55059c3.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 1654595 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\61d57a7a82309cd161a854a6f4619e52.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 9004302 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\69661e20556b3ca9456b946c2c881ddd.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 1756844 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\766c0ffd568bbb31bf7fb6793383e24a.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 2765205 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\8125ee239710f33ea485965f76fae646.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0435997 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\8d2550602d5b8054e13a9fe36a9df5ba.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0012339 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\a68c0988d16ee124783efd98074dcbf9.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 2553874 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\ba60f891debd633ae9c26e1372703e3c.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0585097 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\c1c7e442409c0adbf81ae43aa0e4351f.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 3156142 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\e072b3b3d3164e26b63338dce51862a7.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 2387560 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\e10768bb6e9d0ea730280336b697da66.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 8068858 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\e3d1b35aecfccda1b4af6fe5988ac4be.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 2394596 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\f9b24c8280986c0683fbceca5326d806.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0536576 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\Windows Software Development Kit for Metro style Apps-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{D4F102C5-EEA1-CAE1-8E67-1A7FCE27F673}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{D4F102C5-EEA1-CAE1-8E67-1A7FCE27F673}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:30 - 0011804 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D4F102C5-EEA1-CAE1-8E67-1A7FCE27F673}v8.59.25584\Installers\4e2dea081242e821596b58b31bc22cca.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0033884 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D4F102C5-EEA1-CAE1-8E67-1A7FCE27F673}v8.59.25584\Installers\598442d9f84639d200d4f3af477da95c.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D4F102C5-EEA1-CAE1-8E67-1A7FCE27F673}v8.59.25584\Installers\Windows Software Development Kit EULA-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E09674A6-0234-4E4E-8D92-8213FBC6E336}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E09674A6-0234-4E4E-8D92-8213FBC6E336}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E09674A6-0234-4E4E-8D92-8213FBC6E336}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:38 - 3506176 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E09674A6-0234-4E4E-8D92-8213FBC6E336}\Patches\8.59.29750\WPTx64-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E14DDED2-919B-FCCB-84AC-5ABB6D182D46}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E14DDED2-919B-FCCB-84AC-5ABB6D182D46}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:29 - 0294912 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E14DDED2-919B-FCCB-84AC-5ABB6D182D46}v8.59.25584\Installers\Kits Configuration Installer-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:29 - 3278090 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\0253f7df0974f9d7169b410d812a5385.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0552496 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\114c321d61ae77816824fed67cd25704.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0616179 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\1a822224523be67061edcc97f6c0e36a.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0458861 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\2c1331a0f4ecc46dfa39f43a575305e0.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0292468 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\2c1817d3f3f33cd01376c5ec441cc636.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 2547519 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\34ee98a7c9420178c55f176f75c3fe10.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0013946 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\3960f55df7c8073f3997269e5e390abc.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0637250 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\3a53dffe0b4548753bc34825894f19bf.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 3040038 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\3ca392fde3898c3be052ddcddd14bb5f.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 1116518 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\437e52bd67ebe977a8957439db5ecf75.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 1287360 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\4ac48dbdddbc8ce04721f519b9cf1698.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0058633 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\4de7a1422374f98369172705b05d4bf9.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0061107 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\7178f554c01f912c749b622564106b02.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 6104388 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\72bda6e16f5c7a040361c1304b4b5b36.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0704709 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\79e9b68a34bc84ab465fe1b79b84a325.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0013958 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\7cb1ba9318f4b586c6a3bdd541e7f3ad.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0771268 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\96e8f767221532c6446fd1b8dad53b60.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0209499 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\a74408a87a51829b89e5282e73974d74.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0282530 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\ab8c11616091812d6c7137e366ba1d8d.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 2374335 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\b98a31e36735eb82b3b238c68f36fbbf.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0477862 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\ba5d20281a858248e59d96d75c014391.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0317561 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\baa2d817ae180ba7e772f1543c3bbdea.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0348265 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\d55d1e003fbb00a12c63b8f618e452bf.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 6104077 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\dcb0a55d6cacaa05ead299e1d3de3c6d.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 1347018 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\e10f9740446a96314a1731aa7cb4286a.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0717223 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\e8bc712abeffd7c9711ee3f55d4aa99b.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 1179700 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\fe80f1b6d4cf60c919f4b3a0cd2f4306.cab
2015-02-04 20:16 - 2014-10-07 10:28 - 0409600 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\SDK Debuggers-x86_en-us.msi
2015-02-04 20:16 - 2014-10-07 10:29 - 18673664 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\X64 Debuggers And Tools-x64_en-us.msi
2015-02-04 20:16 - 2014-10-07 10:29 - 17625088 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\X86 Debuggers And Tools-x86_en-us.msi
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{e7c7c227-b742-4878-9425-f09bbf9951db}
2015-02-04 20:16 - 2014-12-15 23:45 - 0770368 _____ (Avira Operations & Co. KG) C:\zoek_backup\C_PROGRA~3_Package Cache\{e7c7c227-b742-4878-9425-f09bbf9951db}\Avira.OE.Setup.Bundle.exe
2015-02-04 20:16 - 2014-12-15 23:46 - 0000660 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{e7c7c227-b742-4878-9425-f09bbf9951db}\state.rsm
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{EF44758C-5A95-4E56-822B-2B38272CC695}
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{EF44758C-5A95-4E56-822B-2B38272CC695}\Patches
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{EF44758C-5A95-4E56-822B-2B38272CC695}\Patches\8.59.29750
2015-02-04 20:16 - 2014-10-06 23:38 - 0335872 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{EF44758C-5A95-4E56-822B-2B38272CC695}\Patches\8.59.29750\Windows Software Development Kit for Metro style Apps DirectX x86 Remote-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\3E5E2B220922021B2A739472E8AC2AF75CC6DCBF
2015-02-04 20:15 - 2014-11-20 14:18 - 0119088 _____ (Avira Operations GmbH & Co. KG) C:\zoek_backup\C_PROGRA~3_Package Cache\3E5E2B220922021B2A739472E8AC2AF75CC6DCBF\Avira.OE.Setup.Prerequisites.exe
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com
2015-02-04 20:16 - 2015-01-30 21:00 - 0004045 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\bootstrap.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000032 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\chrome.manifest
2015-02-04 20:16 - 2015-01-30 21:00 - 0002596 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\install.rdf
2015-02-04 20:16 - 2015-01-30 21:00 - 0001969 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\manifest.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\de
2015-02-04 20:16 - 2015-01-30 21:00 - 0000263 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\de\messages.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\en
2015-02-04 20:16 - 2015-01-30 21:00 - 0000238 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\en\messages.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\en_US
2015-02-04 20:16 - 2015-01-30 21:00 - 0000238 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\en_US\messages.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0000299 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\en_US\messages-sim.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\es
2015-02-04 20:16 - 2015-01-30 21:00 - 0000245 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\es\messages.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\fr
2015-02-04 20:16 - 2015-01-30 21:00 - 0000260 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\fr\messages.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\it
2015-02-04 20:16 - 2015-01-30 21:00 - 0000245 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\it\messages.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\pt_BR
2015-02-04 20:16 - 2015-01-30 21:00 - 0000250 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\pt_BR\messages.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\components
2015-02-04 20:16 - 2015-01-30 21:00 - 0025307 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\components\DNTContentPolicy.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000468 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\components\IDNTContentPolicy.xpt
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css
2015-02-04 20:16 - 2015-01-30 21:00 - 0059995 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\app.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0018363 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\blocked.css
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content
2015-02-04 20:16 - 2015-01-30 21:00 - 0000293 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\content.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0001697 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\search.css
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\base
2015-02-04 20:16 - 2015-01-30 21:00 - 0001404 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\base\search.css
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\engines
2015-02-04 20:16 - 2015-01-30 21:00 - 0000543 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\engines\ask.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0000206 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\engines\duckduckgo.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0000119 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\engines\google.css
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts
2015-02-04 20:16 - 2015-01-30 21:00 - 0103116 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts\KievitWebPro.eot
2015-02-04 20:16 - 2015-01-30 21:00 - 0055076 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts\KievitWebPro.woff
2015-02-04 20:16 - 2015-01-30 21:00 - 0103092 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts\KievitWebPro-Bold.eot
2015-02-04 20:16 - 2015-01-30 21:00 - 0057084 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts\KievitWebPro-Bold.woff
2015-02-04 20:16 - 2015-01-30 21:00 - 0103008 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts\KievitWebPro-Light.eot
2015-02-04 20:16 - 2015-01-30 21:00 - 0056020 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts\KievitWebPro-Light.woff
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images
2015-02-04 20:16 - 2015-01-30 21:00 - 0001738 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\animated-overlay.gif
2015-02-04 20:16 - 2015-01-30 21:00 - 0000418 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_diagonals-thick_18_b81900_40x40.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000312 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_diagonals-thick_20_666666_40x40.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000205 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_flat_10_000000_40x100.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000262 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_glass_100_f6f6f6_1x400.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000348 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_glass_100_fdf5ce_1x400.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000207 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_glass_65_ffffff_1x400.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0005815 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_gloss-wave_35_f6a828_500x100.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000278 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_highlight-soft_100_eeeeee_1x100.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000328 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_highlight-soft_75_ffe45c_1x100.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0006922 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-icons_222222_256x240.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0004549 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-icons_228ef1_256x240.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0004549 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-icons_ef8c08_256x240.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0004549 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-icons_ffd27a_256x240.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0006299 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-icons_ffffff_256x240.png
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\data
2015-02-04 20:16 - 2015-01-30 21:00 - 0117151 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\data\effective_tld_names.dat.txt
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api
2015-02-04 20:16 - 2015-01-30 21:00 - 0014228 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\almond-min.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000650 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\almond-patch.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0080193 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\api-rules.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0081882 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\background.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000875 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\global.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0014142 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\underscore-min.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0001628 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\underscore-module.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000263 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html\app.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000227 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html\blocked.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000553 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html\locale.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000517 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html\top.html
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html\templates
2015-02-04 20:16 - 2015-01-30 21:00 - 0018473 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html\templates\indexed.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n
2015-02-04 20:16 - 2015-01-30 21:00 - 0007706 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n\de-DE.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0007084 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n\en-US.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0007854 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n\es-ES.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0008442 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n\fr-FR.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0007809 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n\it-IT.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0007886 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n\pt-BR.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img
Ran by Honza at 2015-02-05 00:00:41 Run:1
Running from C:\Users\Honza\Desktop
Loaded Profiles: Honza (Available profiles: Honza & Host & Guest)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6482200 2014-09-26] (Piriform Ltd)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF DefaultSearchEngine: Bing
FF SearchEngineOrder.3: Bing
FF SelectedSearchEngine: Bing
FF Homepage: hxxp://www.msn.com/?pc=U270&ocid=U270DHP
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
CHR HomePage: Default -> hxxp://www.msn.com/?pc=U270&ocid=U270DHP
CHR StartupUrls: Default -> "hxxp://www.msn.com/?pc=U270&ocid=U270DHP"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
2015-02-04 23:11 - 2015-02-04 23:11 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Downloads\Nepotvrzeno 814861.crdownload
2015-02-04 23:06 - 2015-02-04 23:06 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Downloads\Nepotvrzeno 420780.crdownload
2015-02-04 17:30 - 2015-02-04 17:43 - 00000000 ____D () C:\AdwCleaner
2015-02-04 04:26 - 2015-02-04 04:27 - 00000000 ____D () C:\rsit
Task: {0C2B9613-A87C-48A4-A754-430CFD143F57} - System32\Tasks\{309F2FC0-3555-49A5-837F-BC95A275CE85} => msiexec.exe /package "C:\Users\Honza\Desktop\Solid Edge ST3\Instalace\Solid Edge ST3.msi"
Task: {0CAD1F10-AF65-4B4D-B55E-DDC5E4875204} - System32\Tasks\{C78E6134-BE3F-4C33-9DE1-D6D98B7F0F46} => C:\Users\Honza\Desktop\FlatOut2\FlatOut2.exe
Task: {116958A6-DE4C-4604-BC40-A5460B55CAAD} - System32\Tasks\{75646656-9C18-458C-81E3-38264B97783F} => pcalua.exe -a C:\Users\Honza\Downloads\196.34_desktop_win7_winvista_64bit_english_beta.exe -d C:\Users\Honza\Downloads
Task: {16DCABC6-1880-4F68-9BFE-ECEA65551657} - System32\Tasks\{BFF3B366-4A7D-4B1B-A0C2-EB35E7999ACD} => pcalua.exe -a "C:\Users\Honza\Downloads\SP3 Holiday+Xmas Edition\Xmas\Setup.exe" -d "C:\Users\Honza\Downloads\SP3 Holiday+Xmas Edition\Xmas"
Task: {2FEEBBB1-140A-4180-8FF4-F2654AC7C6C0} - System32\Tasks\{9843DE75-B00C-4B27-82E2-46274453F613} => pcalua.exe -a C:\Users\Honza\Desktop\youtubedownloader216.exe -d C:\Users\Honza\Desktop
Task: {3907C91B-4C18-4578-B26A-41EC9ED82DB4} - System32\Tasks\{67756D9F-E9D0-4F80-9FB7-F9DCD1380357} => pcalua.exe -a C:\Users\Honza\Downloads\acidpro50c-trial.exe -d C:\Users\Honza\Downloads
Task: {4BD79027-CAB3-424E-A0D9-A45E4BBECC3A} - System32\Tasks\{A1FAECDF-D643-4800-83FE-3C737CC4F9FE} => pcalua.exe -a C:\Users\Honza\Downloads\Zoo-Tycoon-Cestina_1.05.exe -d C:\Users\Honza\Downloads
Task: {4C60A0DD-2072-421F-B041-4EDF93E568DD} - System32\Tasks\{2892EA2D-0FFD-4624-A59A-01985EFACC85} => pcalua.exe -a "C:\Users\Honza\Desktop\Gothic 3\autumn.exe" -d "C:\Users\Honza\Desktop\Gothic 3"
Task: {4CEEB4AC-F6CD-46AD-9F99-6A585DA4519F} - System32\Tasks\{C16DEDF5-8A69-4D15-B350-0169BEAAF63B} => pcalua.exe -a C:\Users\Honza\Desktop\X-MenOriginsCz.exe -d C:\Users\Honza\Desktop
Task: {548E3669-F530-4A0F-8BD1-3CCE99BA77E7} - System32\Tasks\{85B603A4-3FDF-4B6D-B0B8-305D77244C6E} => C:\Program Files (x86)\Need For Speed Shift Ultimátní Edice\SHIFT.exe
Task: {56841E8A-ABE2-4AC8-90DA-3CB0CF3309E5} - System32\Tasks\{E41080C4-563E-4212-8BD9-D0A19AF57161} => pcalua.exe -a C:\Users\Honza\Downloads\266.58_notebook_winvista_win7_64bit_international_whql.exe -d C:\Users\Honza\Downloads
Task: {5AAB4578-F87B-4483-BBEA-98E4A7607C5D} - System32\Tasks\{47063297-B1CC-4EAA-A780-940A8BF732B2} => pcalua.exe -a F:\setup.exe -d F:\
Task: {610D7F03-EB94-4946-AE67-07603FB61556} - System32\Tasks\{B8E5A9AF-6150-43C5-AD36-391228A4D3E8} => pcalua.exe -a C:\Users\Honza\Desktop\hijackthis.exe -d C:\Users\Honza\Desktop
Task: {74715568-3C7E-4280-80CD-1AA5FE76CA15} - System32\Tasks\At1 => C:\Windows\system32\unnlodctr.exe <==== ATTENTION
Task: {96BDB9A3-2400-4B17-A6DE-EF3506E1CA7F} - System32\Tasks\{83CBEB8E-0E33-40FC-95BD-4654E6F243EE} => pcalua.exe -a C:\Users\Honza\Desktop\trilogyiii.exe -d C:\Users\Honza\Desktop
Task: {9B5149ED-94D6-45D8-AC3E-2EAE998292E2} - System32\Tasks\{F25B23CC-C42B-485D-A98B-D8DA758A0658} => pcalua.exe -a F:\AUTOSTARTER.EXE -d F:\
Task: {9D67284C-F891-41D7-9333-631F2A6F5F76} - System32\Tasks\{2350BF38-5943-43E9-9B25-1F10B19A2960} => pcalua.exe -a C:\Users\Honza\Downloads\strongholdcrusader_cz.exe -d C:\Users\Honza\Downloads
Task: {A168093A-52B2-4C2F-911F-F7DDD0A13F8C} - System32\Tasks\{97B7084D-F0D7-40B7-802F-341D8C30EE9D} => pcalua.exe -a E:\1Setup.exe -d E:\
Task: {AFC33E0F-EE1D-4192-A482-C51D40D36226} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2012 => C:\Program Files (x86)\TuneUp Utilities 2012\OneClick.exe
Task: {B02E6B55-B2C8-4CD9-BE3E-0BA02D3436E2} - System32\Tasks\{FB785BD9-0E7A-4173-9D92-A8E0FBBB169F} => pcalua.exe -a C:\Users\Honza\Desktop\Český.exe -d C:\Users\Honza\Desktop
Task: {B5388D19-CAE7-4872-8E99-6D65F3CC3E05} - System32\Tasks\{AC8C3926-3EB1-4539-B8F2-5A574F454F09} => pcalua.exe -a F:\setup.exe -d F:\
Task: {DDE5E35D-1365-4607-B4BA-6E4D03A7359A} - System32\Tasks\{D1866754-3ACE-4520-A0A8-DE910B78FAD5} => pcalua.exe -a F:\SPORESetup.exe -d F:\
Task: {E2034B78-624F-483A-B353-31AAE6E2BB5D} - System32\Tasks\{80A46168-8F6B-4A04-A48D-AE14F00825F8} => pcalua.exe -a C:\Users\Honza\AppData\Local\Temp\UN32.EXE -c -UP
Task: {E8F57422-241C-4A6B-ABD9-FF2F272FBB89} - System32\Tasks\{F472A072-95D3-4EE0-BD21-58B1AF341B88} => pcalua.exe -a E:\Driver\setup.exe -d E:\Driver
Task: {F2096706-7803-410A-AFC8-633C9A68654B} - System32\Tasks\{4E5DEFA9-4FD9-4F17-93A9-004E9EBDA84C} => pcalua.exe -a E:\autorun.exe -d E:\
Task: {F83BCEC9-A64A-41D7-AA74-B4DDFDCA241F} - System32\Tasks\{EE3751A2-C8F8-4153-917B-E85799B2535B} => pcalua.exe -a C:\Users\Honza\AppData\Local\Temp\Temp1_Hijackthis_2.0.2.zip\hijackthis.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7ebbcc676fbd.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1345737615-2917888567-741485270-1001Core1cfacee79f75900.job => C:\Users\Honza\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\{2C53C194-5D1B-48DE-AF9F-73041E9D6762}.job => c:\users\honza\appdata\local\google\chrome\application\chrome.exe
Folder: C:\zoek_backup
Hosts:
EmptyTemp:
End
*****************
Processes closed successfully.
HKU\S-1-5-21-1345737615-2917888567-741485270-1001\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value deleted successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKU\S-1-5-21-1345737615-2917888567-741485270-1001\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
Firefox DefaultSearchEngine deleted successfully.
Firefox SearchEngineOrder.3 deleted successfully.
Firefox SelectedSearchEngine deleted successfully.
Firefox homepage deleted successfully.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
Chrome HomePage deleted successfully.
Chrome StartupUrls deleted successfully.
Chrome DefaultSuggestURL deleted successfully.
C:\Users\Honza\Downloads\Nepotvrzeno 814861.crdownload => Moved successfully.
C:\Users\Honza\Downloads\Nepotvrzeno 420780.crdownload => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\rsit => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0C2B9613-A87C-48A4-A754-430CFD143F57}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0C2B9613-A87C-48A4-A754-430CFD143F57}" => Key deleted successfully.
C:\Windows\System32\Tasks\{309F2FC0-3555-49A5-837F-BC95A275CE85} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{309F2FC0-3555-49A5-837F-BC95A275CE85}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0CAD1F10-AF65-4B4D-B55E-DDC5E4875204}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0CAD1F10-AF65-4B4D-B55E-DDC5E4875204}" => Key deleted successfully.
C:\Windows\System32\Tasks\{C78E6134-BE3F-4C33-9DE1-D6D98B7F0F46} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C78E6134-BE3F-4C33-9DE1-D6D98B7F0F46}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{116958A6-DE4C-4604-BC40-A5460B55CAAD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{116958A6-DE4C-4604-BC40-A5460B55CAAD}" => Key deleted successfully.
C:\Windows\System32\Tasks\{75646656-9C18-458C-81E3-38264B97783F} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{75646656-9C18-458C-81E3-38264B97783F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{16DCABC6-1880-4F68-9BFE-ECEA65551657}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16DCABC6-1880-4F68-9BFE-ECEA65551657}" => Key deleted successfully.
C:\Windows\System32\Tasks\{BFF3B366-4A7D-4B1B-A0C2-EB35E7999ACD} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{BFF3B366-4A7D-4B1B-A0C2-EB35E7999ACD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2FEEBBB1-140A-4180-8FF4-F2654AC7C6C0}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2FEEBBB1-140A-4180-8FF4-F2654AC7C6C0}" => Key deleted successfully.
C:\Windows\System32\Tasks\{9843DE75-B00C-4B27-82E2-46274453F613} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{9843DE75-B00C-4B27-82E2-46274453F613}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3907C91B-4C18-4578-B26A-41EC9ED82DB4}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3907C91B-4C18-4578-B26A-41EC9ED82DB4}" => Key deleted successfully.
C:\Windows\System32\Tasks\{67756D9F-E9D0-4F80-9FB7-F9DCD1380357} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{67756D9F-E9D0-4F80-9FB7-F9DCD1380357}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4BD79027-CAB3-424E-A0D9-A45E4BBECC3A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4BD79027-CAB3-424E-A0D9-A45E4BBECC3A}" => Key deleted successfully.
C:\Windows\System32\Tasks\{A1FAECDF-D643-4800-83FE-3C737CC4F9FE} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{A1FAECDF-D643-4800-83FE-3C737CC4F9FE}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4C60A0DD-2072-421F-B041-4EDF93E568DD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C60A0DD-2072-421F-B041-4EDF93E568DD}" => Key deleted successfully.
C:\Windows\System32\Tasks\{2892EA2D-0FFD-4624-A59A-01985EFACC85} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{2892EA2D-0FFD-4624-A59A-01985EFACC85}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4CEEB4AC-F6CD-46AD-9F99-6A585DA4519F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4CEEB4AC-F6CD-46AD-9F99-6A585DA4519F}" => Key deleted successfully.
C:\Windows\System32\Tasks\{C16DEDF5-8A69-4D15-B350-0169BEAAF63B} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C16DEDF5-8A69-4D15-B350-0169BEAAF63B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{548E3669-F530-4A0F-8BD1-3CCE99BA77E7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{548E3669-F530-4A0F-8BD1-3CCE99BA77E7}" => Key deleted successfully.
C:\Windows\System32\Tasks\{85B603A4-3FDF-4B6D-B0B8-305D77244C6E} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{85B603A4-3FDF-4B6D-B0B8-305D77244C6E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{56841E8A-ABE2-4AC8-90DA-3CB0CF3309E5}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{56841E8A-ABE2-4AC8-90DA-3CB0CF3309E5}" => Key deleted successfully.
C:\Windows\System32\Tasks\{E41080C4-563E-4212-8BD9-D0A19AF57161} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{E41080C4-563E-4212-8BD9-D0A19AF57161}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5AAB4578-F87B-4483-BBEA-98E4A7607C5D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5AAB4578-F87B-4483-BBEA-98E4A7607C5D}" => Key deleted successfully.
C:\Windows\System32\Tasks\{47063297-B1CC-4EAA-A780-940A8BF732B2} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{47063297-B1CC-4EAA-A780-940A8BF732B2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{610D7F03-EB94-4946-AE67-07603FB61556}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{610D7F03-EB94-4946-AE67-07603FB61556}" => Key deleted successfully.
C:\Windows\System32\Tasks\{B8E5A9AF-6150-43C5-AD36-391228A4D3E8} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B8E5A9AF-6150-43C5-AD36-391228A4D3E8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{74715568-3C7E-4280-80CD-1AA5FE76CA15}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{74715568-3C7E-4280-80CD-1AA5FE76CA15}" => Key deleted successfully.
C:\Windows\System32\Tasks\At1 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\At1" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{96BDB9A3-2400-4B17-A6DE-EF3506E1CA7F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96BDB9A3-2400-4B17-A6DE-EF3506E1CA7F}" => Key deleted successfully.
C:\Windows\System32\Tasks\{83CBEB8E-0E33-40FC-95BD-4654E6F243EE} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{83CBEB8E-0E33-40FC-95BD-4654E6F243EE}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9B5149ED-94D6-45D8-AC3E-2EAE998292E2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9B5149ED-94D6-45D8-AC3E-2EAE998292E2}" => Key deleted successfully.
C:\Windows\System32\Tasks\{F25B23CC-C42B-485D-A98B-D8DA758A0658} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F25B23CC-C42B-485D-A98B-D8DA758A0658}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9D67284C-F891-41D7-9333-631F2A6F5F76}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9D67284C-F891-41D7-9333-631F2A6F5F76}" => Key deleted successfully.
C:\Windows\System32\Tasks\{2350BF38-5943-43E9-9B25-1F10B19A2960} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{2350BF38-5943-43E9-9B25-1F10B19A2960}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A168093A-52B2-4C2F-911F-F7DDD0A13F8C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A168093A-52B2-4C2F-911F-F7DDD0A13F8C}" => Key deleted successfully.
C:\Windows\System32\Tasks\{97B7084D-F0D7-40B7-802F-341D8C30EE9D} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{97B7084D-F0D7-40B7-802F-341D8C30EE9D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AFC33E0F-EE1D-4192-A482-C51D40D36226}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AFC33E0F-EE1D-4192-A482-C51D40D36226}" => Key deleted successfully.
C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2012 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\TuneUpUtilities_Task_BkGndMaintenance2012" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B02E6B55-B2C8-4CD9-BE3E-0BA02D3436E2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B02E6B55-B2C8-4CD9-BE3E-0BA02D3436E2}" => Key deleted successfully.
C:\Windows\System32\Tasks\{FB785BD9-0E7A-4173-9D92-A8E0FBBB169F} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{FB785BD9-0E7A-4173-9D92-A8E0FBBB169F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B5388D19-CAE7-4872-8E99-6D65F3CC3E05}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B5388D19-CAE7-4872-8E99-6D65F3CC3E05}" => Key deleted successfully.
C:\Windows\System32\Tasks\{AC8C3926-3EB1-4539-B8F2-5A574F454F09} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{AC8C3926-3EB1-4539-B8F2-5A574F454F09}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DDE5E35D-1365-4607-B4BA-6E4D03A7359A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DDE5E35D-1365-4607-B4BA-6E4D03A7359A}" => Key deleted successfully.
C:\Windows\System32\Tasks\{D1866754-3ACE-4520-A0A8-DE910B78FAD5} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{D1866754-3ACE-4520-A0A8-DE910B78FAD5}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E2034B78-624F-483A-B353-31AAE6E2BB5D}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E2034B78-624F-483A-B353-31AAE6E2BB5D}" => Key deleted successfully.
C:\Windows\System32\Tasks\{80A46168-8F6B-4A04-A48D-AE14F00825F8} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{80A46168-8F6B-4A04-A48D-AE14F00825F8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E8F57422-241C-4A6B-ABD9-FF2F272FBB89}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E8F57422-241C-4A6B-ABD9-FF2F272FBB89}" => Key deleted successfully.
C:\Windows\System32\Tasks\{F472A072-95D3-4EE0-BD21-58B1AF341B88} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F472A072-95D3-4EE0-BD21-58B1AF341B88}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F2096706-7803-410A-AFC8-633C9A68654B}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F2096706-7803-410A-AFC8-633C9A68654B}" => Key deleted successfully.
C:\Windows\System32\Tasks\{4E5DEFA9-4FD9-4F17-93A9-004E9EBDA84C} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{4E5DEFA9-4FD9-4F17-93A9-004E9EBDA84C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F83BCEC9-A64A-41D7-AA74-B4DDFDCA241F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F83BCEC9-A64A-41D7-AA74-B4DDFDCA241F}" => Key deleted successfully.
C:\Windows\System32\Tasks\{EE3751A2-C8F8-4153-917B-E85799B2535B} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{EE3751A2-C8F8-4153-917B-E85799B2535B}" => Key deleted successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore1ce7ebbcc676fbd.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1345737615-2917888567-741485270-1001Core1cfacee79f75900.job => Moved successfully.
C:\Windows\Tasks\{2C53C194-5D1B-48DE-AF9F-73041E9D6762}.job => Moved successfully.
========================= Folder: C:\zoek_backup ========================
2015-02-04 20:16 - 2014-11-11 21:28 - 0001015 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_searchplugins_avira-safesearch.xml.vir
2015-02-04 20:16 - 2014-09-28 04:41 - 0000130 _____ () C:\zoek_backup\C_windows_SysNative_GroupPolicy_gpt.ini.vir
2015-02-04 20:16 - 2013-02-01 23:59 - 0000889 _____ () C:\zoek_backup\C_Windows_Syswow64_InstallUtil.InstallLog.vir
2015-02-04 20:16 - 2015-02-04 20:16 - 0001391 _____ () C:\zoek_backup\restore.txt
2015-02-04 20:15 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:29 - 4846283 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\1de82860db02f762c5f65a73daa31f3e.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 1642205 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\590d28783ff280b8b0016c3492433241.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0612829 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\68d3d4315e5c2095463645eb86f33d4d.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 9004302 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\69661e20556b3ca9456b946c2c881ddd.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 2292395 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\703316c9de0a32acf316d03b1cffc559.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 3060932 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\953951aa89b75554848f10beaeb378b6.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0161033 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\b913ca15956d14df2d4b1f11ae07885b.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0567197 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\d2c7f420fc938451941b33d1fa8a7149.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 1357353 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\d2caf327e340f3c9245298dd6068a27e.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0717223 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\e8bc712abeffd7c9711ee3f55d4aa99b.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0197265 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\fc084e70acbbb649de52f3f160f6cd55.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0430080 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{02213A81-CB13-7262-5ABE-1FFA2C75559F}v8.59.25584\Installers\Windows App Certification Kit x64-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{0CBDFF59-DEC7-46AD-846F-41D29C7235F2}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{0CBDFF59-DEC7-46AD-846F-41D29C7235F2}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{0CBDFF59-DEC7-46AD-846F-41D29C7235F2}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:37 - 11874304 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{0CBDFF59-DEC7-46AD-846F-41D29C7235F2}\Patches\8.59.29750\Windows Software Development Kit for Metro style Apps-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527
2015-02-04 20:15 - 2014-11-20 14:18 - 3977216 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\Avira.OE.Setup.Msi.msi
2015-02-04 20:15 - 2014-11-20 14:09 - 0000065 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\BundledProducts.xml
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.de.mst
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.en.mst
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.es.mst
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.fr.mst
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.it.mst
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.ptbr.mst
2015-02-04 20:15 - 2014-11-20 14:19 - 0020480 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{21388E37-9EC5-4549-95CA-95D9B2D327A4}v1.1.27.25527\loc.ru.mst
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{23176E97-26CB-C72A-19EB-BFB21AC1D15A}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{23176E97-26CB-C72A-19EB-BFB21AC1D15A}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 0740033 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{23176E97-26CB-C72A-19EB-BFB21AC1D15A}v8.59.25584\Installers\ec9d39539c27e8cf5ad39bffce00c34e.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{23176E97-26CB-C72A-19EB-BFB21AC1D15A}v8.59.25584\Installers\Windows Software Development Kit DirectX x86 Remote-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{27EF252D-800C-ED42-9904-459FE0046225}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{27EF252D-800C-ED42-9904-459FE0046225}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 0841497 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{27EF252D-800C-ED42-9904-459FE0046225}v8.59.25584\Installers\5cf1d61a223a02ff2f52fe05f058d52e.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{27EF252D-800C-ED42-9904-459FE0046225}v8.59.25584\Installers\Windows Software Development Kit for Metro style Apps DirectX x64 Remote-x64_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}
2015-02-04 20:15 - 2014-05-30 00:34 - 0000670 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\state.rsm
2015-02-04 20:15 - 2014-05-30 00:30 - 0455720 _____ (Microsoft Corporation) C:\zoek_backup\C_PROGRA~3_Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{363a2c1e-637f-45ce-933b-5a5463efd945}
2015-02-04 20:15 - 2014-10-07 10:27 - 0991536 _____ (Microsoft Corporation) C:\zoek_backup\C_PROGRA~3_Package Cache\{363a2c1e-637f-45ce-933b-5a5463efd945}\sdksetup.exe
2015-02-04 20:15 - 2014-10-07 10:48 - 0038544 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{363a2c1e-637f-45ce-933b-5a5463efd945}\state.rsm
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{37B8F9C7-03FB-3253-8781-2517C99D7C00}v11.0.61030
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{37B8F9C7-03FB-3253-8781-2517C99D7C00}v11.0.61030\packages
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{37B8F9C7-03FB-3253-8781-2517C99D7C00}v11.0.61030\packages\vcRuntimeAdditional_amd64
2015-02-04 20:15 - 2013-10-30 04:04 - 5800228 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{37B8F9C7-03FB-3253-8781-2517C99D7C00}v11.0.61030\packages\vcRuntimeAdditional_amd64\cab1.cab
2015-02-04 20:15 - 2013-10-30 04:08 - 0151552 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{37B8F9C7-03FB-3253-8781-2517C99D7C00}v11.0.61030\packages\vcRuntimeAdditional_amd64\vc_runtimeAdditional_x64.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:30 - 0113860 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\0f5c9874ec8b03b3a2ef2148f76b34cf.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0891373 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\2d609858545493b503b24bd3328d8d2a.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0099824 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\4c0b3f635c0903217a3535759b7ce85f.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0308257 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\4dc69cc131b3f4fdde53e76d759509dc.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0891299 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\74b89608f8f11f7e9efa14c4c73703da.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0506951 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\7f2e1d84e9a0738a722d9dd75bbda287.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0926351 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\9070517e54c750dca5f4eaa025eb8057.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0506576 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\b1033a9482d5307d3df8fcd97174719e.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0099818 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\b8e24d79b048ee60690232e44c0be7a9.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0061479 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\cd9128b760c06a010e1621af6528432e.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0616775 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\dc3acb184552e9eeac50269425274d3c.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0074419 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\f7b25543b47329ef932ad391c72c4ab7.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0385024 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FA063D7-EDC1-AFA8-54AF-0563C7DEE070}v8.59.25584\Installers\Windows App Certification Kit Native Components-x64_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FC576D8-5BAD-4767-81C5-3836CD4702F8}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FC576D8-5BAD-4767-81C5-3836CD4702F8}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FC576D8-5BAD-4767-81C5-3836CD4702F8}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:40 - 8908800 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{3FC576D8-5BAD-4767-81C5-3836CD4702F8}\Patches\8.59.29750\Windows App Certification Kit x64-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{42F61556-29ED-8122-F39E-6F04EA5FF279}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{42F61556-29ED-8122-F39E-6F04EA5FF279}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 0734734 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{42F61556-29ED-8122-F39E-6F04EA5FF279}v8.59.25584\Installers\5509e4710313421be8d5e7cfbfde4d30.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{42F61556-29ED-8122-F39E-6F04EA5FF279}v8.59.25584\Installers\Windows Software Development Kit for Metro style Apps DirectX x86 Remote-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{44258566-6A78-4569-9F6A-E1D6422678A9}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{44258566-6A78-4569-9F6A-E1D6422678A9}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{44258566-6A78-4569-9F6A-E1D6422678A9}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:40 - 0053248 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{44258566-6A78-4569-9F6A-E1D6422678A9}\Patches\8.59.29750\Windows Software Development Kit EULA-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4AE57014-05C4-4864-A13D-86517A7E1BA4}v4.5.50710
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4AE57014-05C4-4864-A13D-86517A7E1BA4}v4.5.50710\Redistributable
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4AE57014-05C4-4864-A13D-86517A7E1BA4}v4.5.50710\Redistributable\4.5.50710
2015-02-04 20:15 - 2014-10-06 23:40 - 4422174 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{4AE57014-05C4-4864-A13D-86517A7E1BA4}v4.5.50710\Redistributable\4.5.50710\sdk_tools4.cab
2015-02-04 20:15 - 2014-10-06 23:40 - 0421888 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{4AE57014-05C4-4864-A13D-86517A7E1BA4}v4.5.50710\Redistributable\4.5.50710\sdk_tools4.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4F1B8A25-4622-4000-B4FD-24206B3E0776}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4F1B8A25-4622-4000-B4FD-24206B3E0776}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4F1B8A25-4622-4000-B4FD-24206B3E0776}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:38 - 28471296 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{4F1B8A25-4622-4000-B4FD-24206B3E0776}\Patches\8.59.29750\WPT Redistributables-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4FBC26B0-CB48-409B-89B8-CF85BCF6BD7B}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4FBC26B0-CB48-409B-89B8-CF85BCF6BD7B}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{4FBC26B0-CB48-409B-89B8-CF85BCF6BD7B}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:37 - 8941568 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{4FBC26B0-CB48-409B-89B8-CF85BCF6BD7B}\Patches\8.59.29750\Windows Software Development Kit-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 0737734 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\3988e4dfdc3f1d180c47a61a0ca76215.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0734734 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\5509e4710313421be8d5e7cfbfde4d30.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0841497 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\5cf1d61a223a02ff2f52fe05f058d52e.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0740033 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\ec9d39539c27e8cf5ad39bffce00c34e.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0854881 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\ef4472fd7552490fd759075186ed2ec8.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\Windows Software Development Kit DirectX x64 Remote-x64_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\Windows Software Development Kit DirectX x86 Remote-x86_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 0303104 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\Windows Software Development Kit for Metro style Apps DirectX ARM Remote-arm_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\Windows Software Development Kit for Metro style Apps DirectX x64 Remote-x64_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\Windows Software Development Kit for Metro style Apps DirectX x86 Remote-x86_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{512957F0-B211-C50A-C1FC-6867FC3348A1}v8.59.25584\Installers\Windows Software Development Kit Redistributables-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}v4.5.50710
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}v4.5.50710\Redistributable
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}v4.5.50710\Redistributable\4.5.50710
2015-02-04 20:15 - 2014-10-07 10:29 - 9798660 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}v4.5.50710\Redistributable\4.5.50710\netfx45_dtp.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0274432 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}v4.5.50710\Redistributable\4.5.50710\netfx45_dtp.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{5C5A1FE8-0686-4451-BA81-DCFF13060D75}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{5C5A1FE8-0686-4451-BA81-DCFF13060D75}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{5C5A1FE8-0686-4451-BA81-DCFF13060D75}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:40 - 0434176 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{5C5A1FE8-0686-4451-BA81-DCFF13060D75}\Patches\8.59.29750\Windows App Certification Kit Native Components-x64_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{5FB4C443-6BD6-1514-2717-3827D65AE6FB}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{5FB4C443-6BD6-1514-2717-3827D65AE6FB}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 0854881 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{5FB4C443-6BD6-1514-2717-3827D65AE6FB}v8.59.25584\Installers\ef4472fd7552490fd759075186ed2ec8.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{5FB4C443-6BD6-1514-2717-3827D65AE6FB}v8.59.25584\Installers\Windows Software Development Kit DirectX x64 Remote-x64_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:27 - 0067390 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\07a57cdb41ba28cced14005f087267be.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0784088 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\19248fabbb2098a7b88c4a2786066bcc.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0012342 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\263104e5ce3a72f68151a93d88a3f22f.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 9264363 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\2e876dd22fa5e6785f137e3422dd50ec.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0972273 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\4fe4c8b88812f5339018c0eef95acdb9.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 17290023 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\53174a8154da07099db041b9caffeaee.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 6988993 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\56a114848fda9a7e47bad4b3fc4be9a6.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 18104326 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\58314d0646d7e1a25e97c902166c3155.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0011645 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\5c2fcb46e03eada0ed0cad44a3f5c71f.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0770405 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\67c9fd1fab36154e6e7e429610cd67c8.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 1181858 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\8e4755178e6b5bcba8d3538c3630b7a5.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 1967260 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\a35cd6c9233b6ba3da66eecaa9190436.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0011916 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\b5f177b84c0ec473cbd69557634b27cd.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0012026 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\c2aabf6ea5c1d348ec22f3aeb92f8656.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 5750763 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\cdea5502a35d09ddfbcda12e3a391dc0.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0012117 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\de111c3d435b0785b31b28c386ee691f.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0799709 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\f4661eda3692e166927c14c96164150a.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0012298 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\fe38b2fd0d440e3c6740b626f51a22fc.cab
2015-02-04 20:15 - 2014-10-07 10:27 - 0503808 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\MsiVal2-x86_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:27 - 0503808 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\Orca-x86_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:27 - 0835584 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}v8.59.25584\Installers\Windows Software Development Kit-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{6D3D284F-4131-4D28-A3BF-6F3A2E8305E1}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{6D3D284F-4131-4D28-A3BF-6F3A2E8305E1}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{6D3D284F-4131-4D28-A3BF-6F3A2E8305E1}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:38 - 0462848 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{6D3D284F-4131-4D28-A3BF-6F3A2E8305E1}\Patches\8.59.29750\Windows Software Development Kit DirectX x64 Remote-x64_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{6DA574FB-2CE0-40B8-88F3-3EBB20D3D761}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{6DA574FB-2CE0-40B8-88F3-3EBB20D3D761}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{6DA574FB-2CE0-40B8-88F3-3EBB20D3D761}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:39 - 44769280 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{6DA574FB-2CE0-40B8-88F3-3EBB20D3D761}\Patches\8.59.29750\SDK Debuggers-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{729130BA-42AC-4ECA-9404-3CE343F249E9}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{729130BA-42AC-4ECA-9404-3CE343F249E9}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{729130BA-42AC-4ECA-9404-3CE343F249E9}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:40 - 0200704 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{729130BA-42AC-4ECA-9404-3CE343F249E9}\Patches\8.59.29750\Application Verifier x64 External Package-x64_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{7346C35D-942D-3CCE-94CB-7008BA8D63CB}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{7346C35D-942D-3CCE-94CB-7008BA8D63CB}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:29 - 3481600 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{7346C35D-942D-3CCE-94CB-7008BA8D63CB}v8.59.25584\Installers\Application Verifier x64 External Package-x64_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{8E049E94-D96B-4C99-A98C-C6359FB57A3C}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{8E049E94-D96B-4C99-A98C-C6359FB57A3C}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{8E049E94-D96B-4C99-A98C-C6359FB57A3C}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:38 - 4583424 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{8E049E94-D96B-4C99-A98C-C6359FB57A3C}\Patches\8.59.29750\Windows Software Development Kit Redistributables-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{9139BBE8-B57A-45B6-A94F-866FD0CE12E1}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{9139BBE8-B57A-45B6-A94F-866FD0CE12E1}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{9139BBE8-B57A-45B6-A94F-866FD0CE12E1}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:38 - 0401408 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{9139BBE8-B57A-45B6-A94F-866FD0CE12E1}\Patches\8.59.29750\Windows Software Development Kit DirectX x86 Remote-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{986EABFC-92F6-CECD-9E5A-B13CAC40BB1D}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{986EABFC-92F6-CECD-9E5A-B13CAC40BB1D}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 10903552 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{986EABFC-92F6-CECD-9E5A-B13CAC40BB1D}v8.59.25584\Installers\WPTx64-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{A144E79B-ED13-40D5-AD46-81849CDBB353}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{A144E79B-ED13-40D5-AD46-81849CDBB353}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{A144E79B-ED13-40D5-AD46-81849CDBB353}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:38 - 0077824 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{A144E79B-ED13-40D5-AD46-81849CDBB353}\Patches\8.59.29750\Windows Software Development Kit for Metro style Apps DirectX x64 Remote-x64_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{A5D42D71-4036-5F88-5085-657C9DF9F1DD}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{A5D42D71-4036-5F88-5085-657C9DF9F1DD}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{A5D42D71-4036-5F88-5085-657C9DF9F1DD}v8.59.25584\Installers\WPT Redistributables-x86_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 8024064 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{A5D42D71-4036-5F88-5085-657C9DF9F1DD}v8.59.25584\Installers\WPTarm-arm_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 10903552 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{A5D42D71-4036-5F88-5085-657C9DF9F1DD}v8.59.25584\Installers\WPTx64-x86_en-us.msi
2015-02-04 20:15 - 2014-10-07 10:28 - 10092544 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{A5D42D71-4036-5F88-5085-657C9DF9F1DD}v8.59.25584\Installers\WPTx86-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{B175520C-86A2-35A7-8619-86DC379688B9}v11.0.61030
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{B175520C-86A2-35A7-8619-86DC379688B9}v11.0.61030\packages
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{B175520C-86A2-35A7-8619-86DC379688B9}v11.0.61030\packages\vcRuntimeAdditional_x86
2015-02-04 20:15 - 2013-10-30 04:03 - 5153816 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{B175520C-86A2-35A7-8619-86DC379688B9}v11.0.61030\packages\vcRuntimeAdditional_x86\cab1.cab
2015-02-04 20:15 - 2013-10-30 04:08 - 0151552 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{B175520C-86A2-35A7-8619-86DC379688B9}v11.0.61030\packages\vcRuntimeAdditional_x86\vc_runtimeAdditional_x86.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}v11.0.61030
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}v11.0.61030\packages
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}v11.0.61030\packages\vcRuntimeMinimum_x86
2015-02-04 20:15 - 2013-10-30 04:03 - 0821681 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}v11.0.61030\packages\vcRuntimeMinimum_x86\cab1.cab
2015-02-04 20:15 - 2013-10-30 04:08 - 0151552 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}v11.0.61030\packages\vcRuntimeMinimum_x86\vc_runtimeMinimum_x86.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}
2015-02-04 20:15 - 2014-05-30 00:34 - 0000670 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\state.rsm
2015-02-04 20:15 - 2014-05-30 00:30 - 0455576 _____ (Microsoft Corporation) C:\zoek_backup\C_PROGRA~3_Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}v11.0.61030
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}v11.0.61030\packages
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}v11.0.61030\packages\vcRuntimeMinimum_amd64
2015-02-04 20:15 - 2013-10-30 04:03 - 0809765 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}v11.0.61030\packages\vcRuntimeMinimum_amd64\cab1.cab
2015-02-04 20:15 - 2013-10-30 04:09 - 0151552 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}v11.0.61030\packages\vcRuntimeMinimum_amd64\vc_runtimeMinimum_x64.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:28 - 1368627 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\15bc5316e373960d82abc253bceaa25d.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 1387877 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\2630bae9681db6a9f6722366f47d055c.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0013456 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\4035a83dc8e73244d15d1196d55059c3.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 1654595 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\61d57a7a82309cd161a854a6f4619e52.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 9004302 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\69661e20556b3ca9456b946c2c881ddd.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 1756844 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\766c0ffd568bbb31bf7fb6793383e24a.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 2765205 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\8125ee239710f33ea485965f76fae646.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0435997 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\8d2550602d5b8054e13a9fe36a9df5ba.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0012339 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\a68c0988d16ee124783efd98074dcbf9.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 2553874 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\ba60f891debd633ae9c26e1372703e3c.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0585097 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\c1c7e442409c0adbf81ae43aa0e4351f.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 3156142 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\e072b3b3d3164e26b63338dce51862a7.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 2387560 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\e10768bb6e9d0ea730280336b697da66.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 8068858 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\e3d1b35aecfccda1b4af6fe5988ac4be.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 2394596 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\f9b24c8280986c0683fbceca5326d806.cab
2015-02-04 20:15 - 2014-10-07 10:28 - 0536576 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D11F66FF-82B3-DDB8-1146-525370552BE1}v8.59.25584\Installers\Windows Software Development Kit for Metro style Apps-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{D4F102C5-EEA1-CAE1-8E67-1A7FCE27F673}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{D4F102C5-EEA1-CAE1-8E67-1A7FCE27F673}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:30 - 0011804 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D4F102C5-EEA1-CAE1-8E67-1A7FCE27F673}v8.59.25584\Installers\4e2dea081242e821596b58b31bc22cca.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0033884 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D4F102C5-EEA1-CAE1-8E67-1A7FCE27F673}v8.59.25584\Installers\598442d9f84639d200d4f3af477da95c.cab
2015-02-04 20:15 - 2014-10-07 10:30 - 0299008 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{D4F102C5-EEA1-CAE1-8E67-1A7FCE27F673}v8.59.25584\Installers\Windows Software Development Kit EULA-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E09674A6-0234-4E4E-8D92-8213FBC6E336}
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E09674A6-0234-4E4E-8D92-8213FBC6E336}\Patches
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E09674A6-0234-4E4E-8D92-8213FBC6E336}\Patches\8.59.29750
2015-02-04 20:15 - 2014-10-06 23:38 - 3506176 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E09674A6-0234-4E4E-8D92-8213FBC6E336}\Patches\8.59.29750\WPTx64-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E14DDED2-919B-FCCB-84AC-5ABB6D182D46}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E14DDED2-919B-FCCB-84AC-5ABB6D182D46}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:29 - 0294912 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E14DDED2-919B-FCCB-84AC-5ABB6D182D46}v8.59.25584\Installers\Kits Configuration Installer-x86_en-us.msi
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584
2015-02-04 20:15 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers
2015-02-04 20:15 - 2014-10-07 10:29 - 3278090 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\0253f7df0974f9d7169b410d812a5385.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0552496 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\114c321d61ae77816824fed67cd25704.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0616179 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\1a822224523be67061edcc97f6c0e36a.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0458861 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\2c1331a0f4ecc46dfa39f43a575305e0.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0292468 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\2c1817d3f3f33cd01376c5ec441cc636.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 2547519 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\34ee98a7c9420178c55f176f75c3fe10.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0013946 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\3960f55df7c8073f3997269e5e390abc.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0637250 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\3a53dffe0b4548753bc34825894f19bf.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 3040038 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\3ca392fde3898c3be052ddcddd14bb5f.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 1116518 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\437e52bd67ebe977a8957439db5ecf75.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 1287360 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\4ac48dbdddbc8ce04721f519b9cf1698.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0058633 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\4de7a1422374f98369172705b05d4bf9.cab
2015-02-04 20:15 - 2014-10-07 10:29 - 0061107 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\7178f554c01f912c749b622564106b02.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 6104388 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\72bda6e16f5c7a040361c1304b4b5b36.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0704709 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\79e9b68a34bc84ab465fe1b79b84a325.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0013958 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\7cb1ba9318f4b586c6a3bdd541e7f3ad.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0771268 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\96e8f767221532c6446fd1b8dad53b60.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0209499 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\a74408a87a51829b89e5282e73974d74.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0282530 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\ab8c11616091812d6c7137e366ba1d8d.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 2374335 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\b98a31e36735eb82b3b238c68f36fbbf.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0477862 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\ba5d20281a858248e59d96d75c014391.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0317561 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\baa2d817ae180ba7e772f1543c3bbdea.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0348265 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\d55d1e003fbb00a12c63b8f618e452bf.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 6104077 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\dcb0a55d6cacaa05ead299e1d3de3c6d.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 1347018 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\e10f9740446a96314a1731aa7cb4286a.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 0717223 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\e8bc712abeffd7c9711ee3f55d4aa99b.cab
2015-02-04 20:16 - 2014-10-07 10:29 - 1179700 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\fe80f1b6d4cf60c919f4b3a0cd2f4306.cab
2015-02-04 20:16 - 2014-10-07 10:28 - 0409600 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\SDK Debuggers-x86_en-us.msi
2015-02-04 20:16 - 2014-10-07 10:29 - 18673664 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\X64 Debuggers And Tools-x64_en-us.msi
2015-02-04 20:16 - 2014-10-07 10:29 - 17625088 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{E63A3353-003C-E4C2-230B-F155212D1479}v8.59.25584\Installers\X86 Debuggers And Tools-x86_en-us.msi
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{e7c7c227-b742-4878-9425-f09bbf9951db}
2015-02-04 20:16 - 2014-12-15 23:45 - 0770368 _____ (Avira Operations & Co. KG) C:\zoek_backup\C_PROGRA~3_Package Cache\{e7c7c227-b742-4878-9425-f09bbf9951db}\Avira.OE.Setup.Bundle.exe
2015-02-04 20:16 - 2014-12-15 23:46 - 0000660 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{e7c7c227-b742-4878-9425-f09bbf9951db}\state.rsm
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{EF44758C-5A95-4E56-822B-2B38272CC695}
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{EF44758C-5A95-4E56-822B-2B38272CC695}\Patches
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\{EF44758C-5A95-4E56-822B-2B38272CC695}\Patches\8.59.29750
2015-02-04 20:16 - 2014-10-06 23:38 - 0335872 _____ () C:\zoek_backup\C_PROGRA~3_Package Cache\{EF44758C-5A95-4E56-822B-2B38272CC695}\Patches\8.59.29750\Windows Software Development Kit for Metro style Apps DirectX x86 Remote-x86_en-us.msp
2015-02-04 20:15 - 2015-02-04 20:15 - 0000000 ____D () C:\zoek_backup\C_PROGRA~3_Package Cache\3E5E2B220922021B2A739472E8AC2AF75CC6DCBF
2015-02-04 20:15 - 2014-11-20 14:18 - 0119088 _____ (Avira Operations GmbH & Co. KG) C:\zoek_backup\C_PROGRA~3_Package Cache\3E5E2B220922021B2A739472E8AC2AF75CC6DCBF\Avira.OE.Setup.Prerequisites.exe
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com
2015-02-04 20:16 - 2015-01-30 21:00 - 0004045 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\bootstrap.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000032 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\chrome.manifest
2015-02-04 20:16 - 2015-01-30 21:00 - 0002596 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\install.rdf
2015-02-04 20:16 - 2015-01-30 21:00 - 0001969 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\manifest.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\de
2015-02-04 20:16 - 2015-01-30 21:00 - 0000263 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\de\messages.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\en
2015-02-04 20:16 - 2015-01-30 21:00 - 0000238 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\en\messages.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\en_US
2015-02-04 20:16 - 2015-01-30 21:00 - 0000238 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\en_US\messages.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0000299 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\en_US\messages-sim.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\es
2015-02-04 20:16 - 2015-01-30 21:00 - 0000245 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\es\messages.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\fr
2015-02-04 20:16 - 2015-01-30 21:00 - 0000260 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\fr\messages.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\it
2015-02-04 20:16 - 2015-01-30 21:00 - 0000245 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\it\messages.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\pt_BR
2015-02-04 20:16 - 2015-01-30 21:00 - 0000250 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\_locales\pt_BR\messages.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\components
2015-02-04 20:16 - 2015-01-30 21:00 - 0025307 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\components\DNTContentPolicy.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000468 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\components\IDNTContentPolicy.xpt
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css
2015-02-04 20:16 - 2015-01-30 21:00 - 0059995 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\app.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0018363 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\blocked.css
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content
2015-02-04 20:16 - 2015-01-30 21:00 - 0000293 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\content.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0001697 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\search.css
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\base
2015-02-04 20:16 - 2015-01-30 21:00 - 0001404 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\base\search.css
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\engines
2015-02-04 20:16 - 2015-01-30 21:00 - 0000543 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\engines\ask.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0000206 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\engines\duckduckgo.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0000119 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\content\engines\google.css
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts
2015-02-04 20:16 - 2015-01-30 21:00 - 0103116 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts\KievitWebPro.eot
2015-02-04 20:16 - 2015-01-30 21:00 - 0055076 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts\KievitWebPro.woff
2015-02-04 20:16 - 2015-01-30 21:00 - 0103092 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts\KievitWebPro-Bold.eot
2015-02-04 20:16 - 2015-01-30 21:00 - 0057084 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts\KievitWebPro-Bold.woff
2015-02-04 20:16 - 2015-01-30 21:00 - 0103008 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts\KievitWebPro-Light.eot
2015-02-04 20:16 - 2015-01-30 21:00 - 0056020 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\fonts\KievitWebPro-Light.woff
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images
2015-02-04 20:16 - 2015-01-30 21:00 - 0001738 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\animated-overlay.gif
2015-02-04 20:16 - 2015-01-30 21:00 - 0000418 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_diagonals-thick_18_b81900_40x40.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000312 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_diagonals-thick_20_666666_40x40.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000205 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_flat_10_000000_40x100.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000262 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_glass_100_f6f6f6_1x400.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000348 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_glass_100_fdf5ce_1x400.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000207 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_glass_65_ffffff_1x400.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0005815 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_gloss-wave_35_f6a828_500x100.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000278 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_highlight-soft_100_eeeeee_1x100.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000328 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-bg_highlight-soft_75_ffe45c_1x100.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0006922 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-icons_222222_256x240.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0004549 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-icons_228ef1_256x240.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0004549 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-icons_ef8c08_256x240.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0004549 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-icons_ffd27a_256x240.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0006299 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\css\images\ui-icons_ffffff_256x240.png
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\data
2015-02-04 20:16 - 2015-01-30 21:00 - 0117151 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\data\effective_tld_names.dat.txt
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api
2015-02-04 20:16 - 2015-01-30 21:00 - 0014228 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\almond-min.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000650 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\almond-patch.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0080193 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\api-rules.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0081882 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\background.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000875 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\global.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0014142 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\underscore-min.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0001628 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\dnt-api\underscore-module.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000263 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html\app.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000227 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html\blocked.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000553 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html\locale.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000517 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html\top.html
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html\templates
2015-02-04 20:16 - 2015-01-30 21:00 - 0018473 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\html\templates\indexed.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n
2015-02-04 20:16 - 2015-01-30 21:00 - 0007706 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n\de-DE.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0007084 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n\en-US.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0007854 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n\es-ES.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0008442 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n\fr-FR.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0007809 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n\it-IT.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0007886 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\i18n\pt-BR.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img
Re: Preventivka
2015-02-04 20:16 - 2015-01-30 21:00 - 0001757 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\abs_avira_umbrella_white.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001500 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\absb-attention.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000942 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\absb-close.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000972 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\absb-checks.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0004442 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_icon128.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000601 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_icon16.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000857 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_icon24.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001922 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_icon32.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001659 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_icon48.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001423 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_logo.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001014 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_logo.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001280 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_logo32.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001355 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\classification_safe.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001428 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\classification_safe_lg.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001280 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\classification_unsafe.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0003450 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\classification_unsafe_lg.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001191 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\close.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001179 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\close-offers-bar.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001112 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_close.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000876 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_close_white.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001031 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_feedback.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001079 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_search_dark.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001278 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_search_dark.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000851 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_search_light.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0002176 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_search_light.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001444 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_search_normal.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0002042 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\expand-arrow.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000874 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\info_empty.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001047 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\info_full.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000397 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\offers-rating.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001334 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\question-mark.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000850 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\scroll-down.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001807 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\serp_info_safe.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0002472 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\serp_info_unsafe.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0003044 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\settings-24.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000371 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\switch-on.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0003403 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\trackers_icon.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0002983 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\trackers_icon_nb.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000657 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\white_check.svg
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js
2015-02-04 20:16 - 2015-01-30 21:00 - 0003430 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\init.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches
2015-02-04 20:16 - 2015-01-30 21:00 - 0462620 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\app.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0327485 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\background.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0374011 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\blocked.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0116629 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\content.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000000 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\content_start.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0087431 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\locale.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0007645 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\search.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\META-INF
2015-02-04 20:16 - 2015-01-30 21:00 - 0015385 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\META-INF\manifest.mf
2015-02-04 20:16 - 2015-01-30 21:00 - 0002928 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\META-INF\zigbert.rsa
2015-02-04 20:16 - 2015-01-30 21:00 - 0015493 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\META-INF\zigbert.sf
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com
2015-02-04 20:16 - 2015-01-30 21:00 - 0005060 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\bootstrap.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000040 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\chrome.manifest
2015-02-04 20:16 - 2015-01-30 21:00 - 0000994 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\install.rdf
2015-02-04 20:16 - 2015-01-30 21:00 - 0002453 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\manifest.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001127 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\search.xml
2015-02-04 20:16 - 2015-01-30 21:00 - 0000831 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\update.rdf
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\css
2015-02-04 20:16 - 2015-01-30 21:00 - 0000000 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\css\browser_specific.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0001835 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\css\content_popup.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0002314 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\css\popup.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0001298 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\css\search_offer.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0001830 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\css\settings_offer.css
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts
2015-02-04 20:16 - 2015-01-30 21:00 - 0103116 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts\KievitWebPro.eot
2015-02-04 20:16 - 2015-01-30 21:00 - 0055076 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts\KievitWebPro.woff
2015-02-04 20:16 - 2015-01-30 21:00 - 0103092 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts\KievitWebPro-Bold.eot
2015-02-04 20:16 - 2015-01-30 21:00 - 0057084 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts\KievitWebPro-Bold.woff
2015-02-04 20:16 - 2015-01-30 21:00 - 0103008 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts\KievitWebPro-Light.eot
2015-02-04 20:16 - 2015-01-30 21:00 - 0056020 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts\KievitWebPro-Light.woff
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000294 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\html\ff_popup.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000746 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\html\newtab_popup.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0001458 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\html\popup.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000794 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\html\search_offer.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0001113 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\html\settings_offer.html
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n
2015-02-04 20:16 - 2015-01-30 21:00 - 0001568 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\de.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001329 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\en.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001329 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\en-US.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001553 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\es.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001604 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\fr.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001494 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\it.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001497 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\pt.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0002470 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\ru.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img
2015-02-04 20:16 - 2015-01-30 21:00 - 0001014 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\abs-icon.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0002735 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_biglogo.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0003815 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_icon128.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000580 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_icon16.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000786 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_icon24.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001772 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_icon32.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001502 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_icon48.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001254 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_logo.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001636 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_logo.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000657 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\check.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000821 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\check-circle.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000873 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\magnifying_glass.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001026 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\safesearch-icon.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001019 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\settings.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0022314 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\smiling-couple.jpg
2015-02-04 20:16 - 2015-01-30 21:00 - 0028769 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\smiling-girl.jpg
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js
2015-02-04 20:16 - 2015-01-30 21:00 - 0003393 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\init.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\background
2015-02-04 20:16 - 2015-01-30 21:00 - 0409906 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\background\background.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\content
2015-02-04 20:16 - 2015-01-30 21:00 - 0000522 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\content\installed.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\lib
2015-02-04 20:16 - 2015-01-30 21:00 - 0082719 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\lib\require.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000533 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\lib\require-cs.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\newtab
2015-02-04 20:16 - 2015-01-30 21:00 - 0503026 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\newtab\popup.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000440 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\newtab\popup_includer.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\popup
2015-02-04 20:16 - 2015-01-30 21:00 - 0507039 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\popup\popup.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\serp
2015-02-04 20:16 - 2015-01-30 21:00 - 0503468 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\serp\search_offer.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0005906 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\serp\serp.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0505633 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\serp\settings_offer.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\META-INF
2015-02-04 20:16 - 2015-01-30 21:00 - 0007796 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\META-INF\manifest.mf
2015-02-04 20:16 - 2015-01-30 21:00 - 0002928 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\META-INF\zigbert.rsa
2015-02-04 20:16 - 2015-01-30 21:00 - 0007904 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\META-INF\zigbert.sf
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_windows_SysNative_GroupPolicy_Machine
2015-02-04 20:16 - 2011-02-22 14:17 - 0000008 _____ () C:\zoek_backup\C_windows_SysNative_GroupPolicy_Machine\Registry.pol
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_windows_SysNative_GroupPolicy_User
2015-02-04 20:16 - 2014-09-28 04:41 - 0000382 _____ () C:\zoek_backup\C_windows_SysNative_GroupPolicy_User\Registry.pol
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 __SHD () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin
2015-02-04 20:16 - 2013-10-01 20:18 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{06E1F2DB-36ED-42A2-975B-E2DD574DF80C}
2015-02-04 20:16 - 2013-11-14 12:32 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{1F7D58D8-62D0-4849-9E7A-73FD042FD7AE}
2015-02-04 20:16 - 2013-11-27 16:42 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{22C3F226-20DE-4E24-90C3-66C5A558A292}
2015-02-04 20:16 - 2013-11-26 23:39 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{22EA8B61-6C2C-4021-AC7D-366B1D5DB856}
2015-02-04 20:16 - 2013-11-14 12:32 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{2685CDDE-D6D2-4F3F-9144-A73E00F84582}
2015-02-04 20:16 - 2013-10-01 20:18 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{31845B30-ECC6-4114-B7B8-FA6A2C90B937}
2015-02-04 20:16 - 2013-11-27 16:42 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{3250D51B-F9EA-4FE5-A046-07F4431AD05C}
2015-02-04 20:16 - 2013-11-26 23:39 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{3E821B9D-91FE-4F62-81FA-5AC1FB07A09F}
2015-02-04 20:16 - 2013-11-14 12:32 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{43B491C6-641E-4196-9345-DCB4A5728A99}
2015-02-04 20:16 - 2013-11-27 16:42 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{444E360B-6188-4279-816F-D84FBF610588}
2015-02-04 20:16 - 2013-11-14 12:46 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{453CB2FF-F652-44FD-B5BF-495EADC48ECE}
2015-02-04 20:16 - 2013-11-14 12:52 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{52269A8A-ADD8-45BA-95CE-447E2B064F14}
2015-02-04 20:16 - 2013-11-14 12:29 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{5BB603EF-E2D7-453C-A1B4-3D0C4D629015}
2015-02-04 20:16 - 2013-11-14 12:29 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{5DA3CF2F-2DB1-4339-956A-C6B5CD9FDAAF}
2015-02-04 20:16 - 2013-11-14 12:29 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{612F3844-CF7A-44D5-8AAF-50E248710C4B}
2015-02-04 20:16 - 2013-11-26 23:39 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{73F4145E-45E5-476D-91C6-F829B61AEE3E}
2015-02-04 20:16 - 2013-11-14 12:52 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{80952CE1-8AF7-42FA-B7BC-9CD76F98179E}
2015-02-04 20:16 - 2013-11-27 16:42 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{89AEE76B-58BA-484D-B223-25BB9A066C32}
2015-02-04 20:16 - 2013-10-01 20:18 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{8B791659-ACFA-4A70-9C74-9E8DB35A1272}
2015-02-04 20:16 - 2013-11-14 12:29 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{8BC4CBD9-11EB-4EAD-9CF6-A3A4C85516BD}
2015-02-04 20:16 - 2013-11-14 12:52 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{8CE7C6DC-E581-4B35-BF8E-262B3AC2E569}
2015-02-04 20:16 - 2013-11-27 16:42 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{8F6DFE67-2A2E-401B-9204-CF4D6F195E45}
2015-02-04 20:16 - 2013-11-14 12:29 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{A02E0815-63F9-4B20-BDCE-764E11A4939D}
2015-02-04 20:16 - 2013-11-26 23:39 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{AB9F855C-3F79-4617-9556-44453A2D2EA3}
2015-02-04 20:16 - 2013-11-14 12:46 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{AC421AA6-C73C-4CC5-8A1C-BC0CAE3E2D37}
2015-02-04 20:16 - 2013-10-01 20:18 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{AF3DFA00-72C8-4F27-9E2D-6989B81D5025}
2015-02-04 20:16 - 2013-11-14 12:32 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{B743F8D0-936E-4B86-9273-E638D140FA6C}
2015-02-04 20:16 - 2013-11-27 16:42 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{C3F5C5A5-0522-40B1-9609-5322030901B7}
2015-02-04 20:16 - 2013-10-01 20:18 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{CD52CB61-9378-4363-B77C-85894B7FFAB0}
2015-02-04 20:16 - 2013-11-14 12:46 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{D24EA0F7-1CC2-4F25-8F4A-A3A1394DBC67}
2015-02-04 20:16 - 2013-11-26 23:39 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{D24F292F-FA7C-4EF1-B608-678FC1A172BA}
2015-02-04 20:16 - 2013-11-14 12:46 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{D41508D7-F12C-40C8-BEFB-A193972CED9F}
2015-02-04 20:16 - 2013-11-14 12:52 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{D4350633-13A1-41C4-8190-15517C8807BA}
2015-02-04 20:16 - 2013-10-01 20:18 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{D4DD209B-3043-444E-B0DB-A3285451B558}
2015-02-04 20:16 - 2013-11-14 12:32 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{D75772B0-B0BB-4DD7-B9F8-ECB5A46BFD0F}
2015-02-04 20:16 - 2013-11-14 12:52 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{E2C6074D-9594-42E4-9D92-32806A5EDA4F}
2015-02-04 20:16 - 2013-11-14 12:32 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{E5193E14-76DA-4E6B-95B6-7E6082451D02}
2015-02-04 20:16 - 2013-11-14 12:46 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{E628BEFE-BB8A-47AC-8D78-CA0D73FA2464}
2015-02-04 20:16 - 2013-11-26 23:39 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{EF2D143E-B465-4D16-96CA-FCAA767CBC33}
2015-02-04 20:16 - 2013-11-14 12:29 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{F76C0F77-783C-459B-BEBA-4B6D0E8930A7}
2015-02-04 20:16 - 2013-11-14 12:46 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{F7D0BE31-3513-42EA-9AE3-AB1243E73129}
2015-02-04 20:16 - 2013-11-14 12:52 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{F855541E-F577-4B8E-AA0F-24F7A4DBCEE2}
2015-02-04 20:16 - 2013-02-02 00:00 - 0000000 ____D () C:\zoek_backup\C_Windows_sysWoW64_config_systemprofile_AppData_LocalLow_Toolbar4
====== End of Folder: ======
"C:\Windows\System32\Drivers\etc\hosts" => Could not move.
Could not reset Hosts.
EmptyTemp: => Removed 1 GB temporary data.
The system needed a reboot.
==== End of Fixlog 00:01:08 ====
2015-02-04 20:16 - 2015-01-30 21:00 - 0001500 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\absb-attention.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000942 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\absb-close.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000972 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\absb-checks.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0004442 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_icon128.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000601 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_icon16.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000857 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_icon24.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001922 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_icon32.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001659 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_icon48.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001423 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_logo.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001014 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_logo.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001280 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\avira_logo32.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001355 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\classification_safe.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001428 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\classification_safe_lg.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001280 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\classification_unsafe.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0003450 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\classification_unsafe_lg.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001191 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\close.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001179 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\close-offers-bar.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001112 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_close.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000876 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_close_white.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001031 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_feedback.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001079 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_search_dark.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001278 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_search_dark.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000851 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_search_light.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0002176 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_search_light.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001444 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\dash_search_normal.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0002042 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\expand-arrow.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000874 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\info_empty.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001047 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\info_full.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000397 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\offers-rating.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001334 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\question-mark.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000850 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\scroll-down.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001807 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\serp_info_safe.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0002472 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\serp_info_unsafe.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0003044 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\settings-24.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000371 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\switch-on.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0003403 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\trackers_icon.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0002983 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\trackers_icon_nb.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000657 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\img\white_check.svg
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js
2015-02-04 20:16 - 2015-01-30 21:00 - 0003430 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\init.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches
2015-02-04 20:16 - 2015-01-30 21:00 - 0462620 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\app.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0327485 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\background.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0374011 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\blocked.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0116629 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\content.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000000 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\content_start.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0087431 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\locale.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0007645 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\js\bunches\search.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\META-INF
2015-02-04 20:16 - 2015-01-30 21:00 - 0015385 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\META-INF\manifest.mf
2015-02-04 20:16 - 2015-01-30 21:00 - 0002928 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\META-INF\zigbert.rsa
2015-02-04 20:16 - 2015-01-30 21:00 - 0015493 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_abs@avira.com\META-INF\zigbert.sf
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com
2015-02-04 20:16 - 2015-01-30 21:00 - 0005060 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\bootstrap.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000040 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\chrome.manifest
2015-02-04 20:16 - 2015-01-30 21:00 - 0000994 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\install.rdf
2015-02-04 20:16 - 2015-01-30 21:00 - 0002453 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\manifest.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001127 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\search.xml
2015-02-04 20:16 - 2015-01-30 21:00 - 0000831 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\update.rdf
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\css
2015-02-04 20:16 - 2015-01-30 21:00 - 0000000 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\css\browser_specific.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0001835 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\css\content_popup.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0002314 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\css\popup.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0001298 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\css\search_offer.css
2015-02-04 20:16 - 2015-01-30 21:00 - 0001830 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\css\settings_offer.css
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts
2015-02-04 20:16 - 2015-01-30 21:00 - 0103116 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts\KievitWebPro.eot
2015-02-04 20:16 - 2015-01-30 21:00 - 0055076 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts\KievitWebPro.woff
2015-02-04 20:16 - 2015-01-30 21:00 - 0103092 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts\KievitWebPro-Bold.eot
2015-02-04 20:16 - 2015-01-30 21:00 - 0057084 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts\KievitWebPro-Bold.woff
2015-02-04 20:16 - 2015-01-30 21:00 - 0103008 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts\KievitWebPro-Light.eot
2015-02-04 20:16 - 2015-01-30 21:00 - 0056020 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\fonts\KievitWebPro-Light.woff
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000294 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\html\ff_popup.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000746 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\html\newtab_popup.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0001458 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\html\popup.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0000794 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\html\search_offer.html
2015-02-04 20:16 - 2015-01-30 21:00 - 0001113 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\html\settings_offer.html
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n
2015-02-04 20:16 - 2015-01-30 21:00 - 0001568 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\de.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001329 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\en.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001329 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\en-US.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001553 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\es.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001604 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\fr.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001494 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\it.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0001497 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\pt.json
2015-02-04 20:16 - 2015-01-30 21:00 - 0002470 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\i18n\ru.json
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img
2015-02-04 20:16 - 2015-01-30 21:00 - 0001014 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\abs-icon.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0002735 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_biglogo.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0003815 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_icon128.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000580 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_icon16.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0000786 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_icon24.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001772 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_icon32.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001502 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_icon48.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001254 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_logo.png
2015-02-04 20:16 - 2015-01-30 21:00 - 0001636 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\avira_search_logo.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000657 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\check.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000821 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\check-circle.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0000873 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\magnifying_glass.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001026 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\safesearch-icon.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0001019 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\settings.svg
2015-02-04 20:16 - 2015-01-30 21:00 - 0022314 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\smiling-couple.jpg
2015-02-04 20:16 - 2015-01-30 21:00 - 0028769 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\img\smiling-girl.jpg
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js
2015-02-04 20:16 - 2015-01-30 21:00 - 0003393 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\init.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\background
2015-02-04 20:16 - 2015-01-30 21:00 - 0409906 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\background\background.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\content
2015-02-04 20:16 - 2015-01-30 21:00 - 0000522 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\content\installed.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\lib
2015-02-04 20:16 - 2015-01-30 21:00 - 0082719 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\lib\require.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000533 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\lib\require-cs.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\newtab
2015-02-04 20:16 - 2015-01-30 21:00 - 0503026 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\newtab\popup.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0000440 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\newtab\popup_includer.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\popup
2015-02-04 20:16 - 2015-01-30 21:00 - 0507039 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\popup\popup.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\serp
2015-02-04 20:16 - 2015-01-30 21:00 - 0503468 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\serp\search_offer.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0005906 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\serp\serp.js
2015-02-04 20:16 - 2015-01-30 21:00 - 0505633 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\js\serp\settings_offer.js
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\META-INF
2015-02-04 20:16 - 2015-01-30 21:00 - 0007796 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\META-INF\manifest.mf
2015-02-04 20:16 - 2015-01-30 21:00 - 0002928 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\META-INF\zigbert.rsa
2015-02-04 20:16 - 2015-01-30 21:00 - 0007904 _____ () C:\zoek_backup\C_Users_Honza_AppData_Roaming_Mozilla_Firefox_Profiles_fu95b1hq.default_extensions_safesearch@avira.com\META-INF\zigbert.sf
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_windows_SysNative_GroupPolicy_Machine
2015-02-04 20:16 - 2011-02-22 14:17 - 0000008 _____ () C:\zoek_backup\C_windows_SysNative_GroupPolicy_Machine\Registry.pol
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 ____D () C:\zoek_backup\C_windows_SysNative_GroupPolicy_User
2015-02-04 20:16 - 2014-09-28 04:41 - 0000382 _____ () C:\zoek_backup\C_windows_SysNative_GroupPolicy_User\Registry.pol
2015-02-04 20:16 - 2015-02-04 20:16 - 0000000 __SHD () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin
2015-02-04 20:16 - 2013-10-01 20:18 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{06E1F2DB-36ED-42A2-975B-E2DD574DF80C}
2015-02-04 20:16 - 2013-11-14 12:32 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{1F7D58D8-62D0-4849-9E7A-73FD042FD7AE}
2015-02-04 20:16 - 2013-11-27 16:42 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{22C3F226-20DE-4E24-90C3-66C5A558A292}
2015-02-04 20:16 - 2013-11-26 23:39 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{22EA8B61-6C2C-4021-AC7D-366B1D5DB856}
2015-02-04 20:16 - 2013-11-14 12:32 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{2685CDDE-D6D2-4F3F-9144-A73E00F84582}
2015-02-04 20:16 - 2013-10-01 20:18 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{31845B30-ECC6-4114-B7B8-FA6A2C90B937}
2015-02-04 20:16 - 2013-11-27 16:42 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{3250D51B-F9EA-4FE5-A046-07F4431AD05C}
2015-02-04 20:16 - 2013-11-26 23:39 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{3E821B9D-91FE-4F62-81FA-5AC1FB07A09F}
2015-02-04 20:16 - 2013-11-14 12:32 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{43B491C6-641E-4196-9345-DCB4A5728A99}
2015-02-04 20:16 - 2013-11-27 16:42 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{444E360B-6188-4279-816F-D84FBF610588}
2015-02-04 20:16 - 2013-11-14 12:46 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{453CB2FF-F652-44FD-B5BF-495EADC48ECE}
2015-02-04 20:16 - 2013-11-14 12:52 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{52269A8A-ADD8-45BA-95CE-447E2B064F14}
2015-02-04 20:16 - 2013-11-14 12:29 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{5BB603EF-E2D7-453C-A1B4-3D0C4D629015}
2015-02-04 20:16 - 2013-11-14 12:29 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{5DA3CF2F-2DB1-4339-956A-C6B5CD9FDAAF}
2015-02-04 20:16 - 2013-11-14 12:29 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{612F3844-CF7A-44D5-8AAF-50E248710C4B}
2015-02-04 20:16 - 2013-11-26 23:39 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{73F4145E-45E5-476D-91C6-F829B61AEE3E}
2015-02-04 20:16 - 2013-11-14 12:52 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{80952CE1-8AF7-42FA-B7BC-9CD76F98179E}
2015-02-04 20:16 - 2013-11-27 16:42 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{89AEE76B-58BA-484D-B223-25BB9A066C32}
2015-02-04 20:16 - 2013-10-01 20:18 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{8B791659-ACFA-4A70-9C74-9E8DB35A1272}
2015-02-04 20:16 - 2013-11-14 12:29 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{8BC4CBD9-11EB-4EAD-9CF6-A3A4C85516BD}
2015-02-04 20:16 - 2013-11-14 12:52 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{8CE7C6DC-E581-4B35-BF8E-262B3AC2E569}
2015-02-04 20:16 - 2013-11-27 16:42 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{8F6DFE67-2A2E-401B-9204-CF4D6F195E45}
2015-02-04 20:16 - 2013-11-14 12:29 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{A02E0815-63F9-4B20-BDCE-764E11A4939D}
2015-02-04 20:16 - 2013-11-26 23:39 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{AB9F855C-3F79-4617-9556-44453A2D2EA3}
2015-02-04 20:16 - 2013-11-14 12:46 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{AC421AA6-C73C-4CC5-8A1C-BC0CAE3E2D37}
2015-02-04 20:16 - 2013-10-01 20:18 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{AF3DFA00-72C8-4F27-9E2D-6989B81D5025}
2015-02-04 20:16 - 2013-11-14 12:32 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{B743F8D0-936E-4B86-9273-E638D140FA6C}
2015-02-04 20:16 - 2013-11-27 16:42 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{C3F5C5A5-0522-40B1-9609-5322030901B7}
2015-02-04 20:16 - 2013-10-01 20:18 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{CD52CB61-9378-4363-B77C-85894B7FFAB0}
2015-02-04 20:16 - 2013-11-14 12:46 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{D24EA0F7-1CC2-4F25-8F4A-A3A1394DBC67}
2015-02-04 20:16 - 2013-11-26 23:39 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{D24F292F-FA7C-4EF1-B608-678FC1A172BA}
2015-02-04 20:16 - 2013-11-14 12:46 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{D41508D7-F12C-40C8-BEFB-A193972CED9F}
2015-02-04 20:16 - 2013-11-14 12:52 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{D4350633-13A1-41C4-8190-15517C8807BA}
2015-02-04 20:16 - 2013-10-01 20:18 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{D4DD209B-3043-444E-B0DB-A3285451B558}
2015-02-04 20:16 - 2013-11-14 12:32 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{D75772B0-B0BB-4DD7-B9F8-ECB5A46BFD0F}
2015-02-04 20:16 - 2013-11-14 12:52 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{E2C6074D-9594-42E4-9D92-32806A5EDA4F}
2015-02-04 20:16 - 2013-11-14 12:32 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{E5193E14-76DA-4E6B-95B6-7E6082451D02}
2015-02-04 20:16 - 2013-11-14 12:46 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{E628BEFE-BB8A-47AC-8D78-CA0D73FA2464}
2015-02-04 20:16 - 2013-11-26 23:39 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{EF2D143E-B465-4D16-96CA-FCAA767CBC33}
2015-02-04 20:16 - 2013-11-14 12:29 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{F76C0F77-783C-459B-BEBA-4B6D0E8930A7}
2015-02-04 20:16 - 2013-11-14 12:46 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{F7D0BE31-3513-42EA-9AE3-AB1243E73129}
2015-02-04 20:16 - 2013-11-14 12:52 - 0000000 ____D () C:\zoek_backup\C_Windows_SysWow64_AI_RecycleBin\{F855541E-F577-4B8E-AA0F-24F7A4DBCEE2}
2015-02-04 20:16 - 2013-02-02 00:00 - 0000000 ____D () C:\zoek_backup\C_Windows_sysWoW64_config_systemprofile_AppData_LocalLow_Toolbar4
====== End of Folder: ======
"C:\Windows\System32\Drivers\etc\hosts" => Could not move.
Could not reset Hosts.
EmptyTemp: => Removed 1 GB temporary data.
The system needed a reboot.
==== End of Fixlog 00:01:08 ====
Re: Preventivka
Nevim, co presne ke hre Rust patri, ale smazany C:\Users\Honza\AppData\Local\LumaEmu je jiz vytvoreny, takze ted nevim, kde je chyba... zkuste hru odinstalovat se vsemi rozsirenimi apod., vycistit i registry pomoci CCleaneru (udelejte zalohu, kterou Vam CCleaner nabidne) a hru znovu nainstalujte.
Jak se jinak chova pocitac? Zlepsil se stav?
Jak se jinak chova pocitac? Zlepsil se stav?
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Preventivka
Pc se zdát být v pořádku. The Rust pořád nefunguje, ale to snad nějak rozjedu 

Re: Preventivka
Uz se tu Rust jednou resil a uzivatel si to nakonec vyresil sam nasledovne
Zkontroloval bych jeste jednu vec... sken vezme vic casu, takze ho udelejte az bude cas.
Nainstalujte MBAM a udelejte vlastni sken vsech disku - http://forum.viry.cz/viewtopic.php?f=29&t=137928
Snad se Vam to taky nejak podari...vamvam píše:No, tak rust jsem sprovoznil vymazáním nějakého chybného Luma Emu.
Zkontroloval bych jeste jednu vec... sken vezme vic casu, takze ho udelejte az bude cas.

- Upozorneni: tento sken zabere od 30 minut po nekolik hodin
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.