problem s NT bookem posílám LOG, děkuji

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému hned. Děkujeme za pochopení.
Zpráva
Autor
gabrin
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 06 Ún 2015 22:24

problem s NT bookem posílám LOG, děkuji

#1 Příspěvek od gabrin »

Dobrý den,
casto mi zamrzá nt book, občas se sam restartuje a poslední dny se mi někdo navrtal do šablony wordpresu, kterou připravuji..
Můžete se podívat na log vygenerovaný vašim návodem.
Děkuji.
----------------------------------

Kód: Vybrat vše

Logfile of random's system information tool 1.10 (written by random/random)
Run by coolbox at 2015-02-06 22:28:51
Microsoft Windows 8.1 Pro 
System drive C: has 281 GB (30%) free of 938 GB
Total RAM: 3948 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:29:02, on 6.2.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe
C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe
C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe
C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Spyware Terminator\SpywareTerminator.exe
C:\Program Files\trend micro\coolbox.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=sp-006&q={searchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=sp-006&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 77.78.104.90 www.coolbox.cz coolbox.cz
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPlugin_Protection.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [ArcadeMovieService] "C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe"
O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k
O4 - HKLM\..\Run: [Dolby Advanced Audio v2] "C:\Dolby PCEE4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
O4 - HKLM\..\Run: [StartW8Button] C:\Program Files (x86)\StartW8\bin\StartW8Button.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"
O4 - HKCU\..\Run: [FLV Player] C:\Users\Coolbox\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe
O4 - HKCU\..\Run: [EEDSpeedLauncher] rundll32.exe C:\WINDOWS\system32\eed_ec.dll,SpeedLauncher
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [icq] C:\Users\Coolbox\AppData\Roaming\ICQM\icq.exe -CU
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Coolbox\AppData\Roaming\ICQM\icq.exe (HKCU)
O9 - Extra 'Tools' menuitem: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Coolbox\AppData\Roaming\ICQM\icq.exe (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\Skype4COM.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10849 bytes

======Listing Processes======






wininit.exe
winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files (x86)\StartW8\bin\StartW8Service.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 598943194736
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
dashost.exe {c2babcf3-8040-4207-925550ca127a3f8b}
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\Acer\Registration\GREGsvc.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe"
C:\WINDOWS\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe"
C:\WINDOWS\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 5bd29be5-4737-41f9-8ae3-69d769aabfc4 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
ngservice.exe pipeserver
"C:\Program Files (x86)\StartW8\bin\StartW8Button.exe"
C:\WINDOWS\Explorer.EXE
taskhostex.exe 
C:\Program Files (x86)\StartW8\bin\StartW8Menu.exe
"C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe" /startup
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
taskeng.exe {3A29C7A3-C097-4104-B4E5-EE2CA46A9B67}
"C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe" 
"C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe" 
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe" 
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" 
"C:\WINDOWS\system32\igfxext.exe" -Embedding
"C:\Windows\System32\igfxtray.exe" 
"C:\Windows\System32\hkcmd.exe" 
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\System32\igfxpers.exe" 
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe" 
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" 
"C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k
"C:\DOLBY PCEE4\pcee4.exe" -autostart
"C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe" 
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" 
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" 
"C:\Program Files (x86)\Launch Manager\LManager.exe" 
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe" 
"C:\Program Files (x86)\Launch Manager\LMworker.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding

"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" 
"C:\Program Files (x86)\Spyware Terminator\SpywareTerminator.exe"   /ELEVATED
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" 
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 584 588 596 65536 592 
"C:\Users\Coolbox\Downloads\RSITx64.exe" 

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe  
C:\WINDOWS\tasks\ASC8_SkipUac_coolbox.job - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe  /SkipUac 
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /c 
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /ua /installsource scheduler 
C:\WINDOWS\tasks\Uninstaller_SkipUac_Administrator.job - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe  /UninstallExplorer 
C:\WINDOWS\tasks\Uninstaller_SkipUac_coolbox.job - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe  /UninstallExplorer 

=========Mozilla firefox=========

ProfilePath - C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default

prefs.js - "browser.search.suggest.enabled" -  false
prefs.js - "browser.startup.homepage" -  "http://www.seznam.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1216156.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.72.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.72.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Acrobat]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.72.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.72.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll


C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\searchplugins\
google-avast.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2014-12-06 2471744]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-12-06 553896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-12-12 705448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-12-06 211880]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-12-06 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-12 586968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2014-12-03 343456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Surfing Protection - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPlugin_Protection.dll [2014-10-17 669984]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-12-06 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2014-12-03 343456]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2010-11-12 2588968]
"Power Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2011-05-10 1831528]
"KONICA MINOLTA PagePro 1350WStatusDisplay"=C:\WINDOWS\system32\MSTM64_Q.EXE [2013-05-02 247736]
"SpywareTerminatorShield"=C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [2012-09-07 2777296]
"SpywareTerminatorUpdater"=C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [2013-10-22 3684488]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-12-13 2531472]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2014-04-09 172016]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2014-04-09 399856]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-04-09 442352]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2014-12-13 2824504]
"AutoKMS"=C:\WINDOWS\AutoKMS.exe [2014-12-13 615936]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-01-29 12673128]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-01-29 2277480]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"FLV Player"=C:\Users\Coolbox\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe [2012-10-26 202752]
"EEDSpeedLauncher"=C:\WINDOWS\system32\eed_ec.dll [2014-04-11 3112960]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-12-12 7394584]
"AdobeBridge"= []
"icq"=C:\Users\Coolbox\AppData\Roaming\ICQM\icq.exe [2014-12-03 35239432]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-12-11 30877280]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-11-20 1021128]
"ArcadeMovieService"=C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [2011-05-09 177448]
"BackupManagerTray"=C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [2011-04-24 297280]
"Dolby Advanced Audio v2"=C:\Dolby PCEE4\pcee4.exe [2011-02-03 506712]
"EgisTecPMMUpdate"=C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [2010-09-18 407920]
"EgisUpdate"=C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [2010-09-18 201584]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-07-16 56128]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"SuiteTray"=C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [2010-09-28 340336]
"StartW8Button"=C:\Program Files (x86)\StartW8\bin\StartW8Button.exe [2014-12-15 59752]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-01-27 5227112]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2014-08-05 1131632]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
""= []
"Adobe Acrobat Speed Launcher"=C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [2014-12-03 41360]
"Acrobat Assistant 8.0"=C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2014-12-03 840592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll,C:\WINDOWS\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\SYSTEM32\igfxdev.dll [2014-03-20 442880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SafeModeBlockNonAdmins"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"msacm.l3codecp"=l3codecp.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - "C:\Program Files (x86)\Adobe\Adobe Dreamweaver CS6\Dreamweaver.exe","%1"

======List of files/folders created in the last 1 month======

2015-02-06 22:28:51 ----D---- C:\rsit
2015-02-06 22:28:51 ----D---- C:\Program Files\trend micro
2015-02-06 21:17:08 ----ASH---- C:\pagefile.sys
2015-02-06 19:46:58 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-02-04 21:04:31 ----SHD---- C:\found.000
2015-02-04 20:36:17 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerInstaller.exe
2015-02-04 20:30:02 ----A---- C:\WINDOWS\system32\IObitSmartDefragExtension.dll
2015-02-04 19:58:09 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-02-02 22:29:32 ----D---- C:\WINDOWS\pss
2015-02-02 19:50:21 ----D---- C:\Program Files (x86)\NuGet
2015-02-02 19:13:29 ----D---- C:\Program Files (x86)\Windows Kits
2015-02-02 19:08:44 ----D---- C:\Program Files (x86)\Microsoft Help Viewer
2015-02-02 19:08:28 ----D---- C:\Program Files (x86)\Microsoft SDKs
2015-02-02 19:00:44 ----D---- C:\WINDOWS\SYSWOW64\1033
2015-02-02 19:00:44 ----D---- C:\WINDOWS\system32\1033
2015-02-02 18:56:04 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2015-02-02 18:56:03 ----D---- C:\Program Files\Microsoft SQL Server
2015-02-02 18:50:48 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2015-02-02 18:49:25 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 11.0
2015-02-02 18:47:09 ----D---- C:\ProgramData\Package Cache
2015-01-29 23:09:19 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RtPCEE4.DAT
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RtPCEE3.DAT
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RtHdatEx.dat
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RTHDAEQ1.dat
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RTEQEX3.dat
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RTEQEX2.dat
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RTEQEX1.dat
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RTEQEX0.dat
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RTConvEQ.dat
2015-01-29 23:08:52 ----A---- C:\WINDOWS\system32\drivers\rtkhdaud.dat
2015-01-29 23:08:16 ----A---- C:\WINDOWS\system32\WavesGUILib.dll
2015-01-29 23:08:11 ----A---- C:\WINDOWS\system32\SRSWOW64.dll
2015-01-29 23:08:11 ----A---- C:\WINDOWS\system32\SRSTSX64.dll
2015-01-29 23:08:11 ----A---- C:\WINDOWS\system32\SRSTSH64.dll
2015-01-29 23:08:11 ----A---- C:\WINDOWS\system32\SRSHP64.dll
2015-01-29 23:08:07 ----A---- C:\WINDOWS\system32\SFSS_APO.dll
2015-01-29 23:08:06 ----A---- C:\WINDOWS\system32\SFNHK64.dll
2015-01-29 23:08:05 ----A---- C:\WINDOWS\system32\SFCOM64.dll
2015-01-29 23:08:04 ----A---- C:\WINDOWS\SYSWOW64\SFCOM.dll
2015-01-29 23:08:04 ----A---- C:\WINDOWS\system32\SFAPO64.dll
2015-01-29 23:07:58 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2015-01-29 23:07:56 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2015-01-29 23:07:53 ----A---- C:\WINDOWS\system32\drivers\RTKVHD64.sys
2015-01-29 23:07:46 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2015-01-29 23:07:41 ----A---- C:\WINDOWS\system32\RtkAPO64.dll
2015-01-29 23:07:39 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2015-01-29 23:07:38 ----A---- C:\WINDOWS\system32\RTEEP64A.dll
2015-01-29 23:07:38 ----A---- C:\WINDOWS\system32\RTEEL64A.dll
2015-01-29 23:07:37 ----A---- C:\WINDOWS\system32\RTEEG64A.dll
2015-01-29 23:07:37 ----A---- C:\WINDOWS\system32\RTEED64A.dll
2015-01-29 23:07:34 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2015-01-29 23:07:33 ----A---- C:\WINDOWS\system32\RP3DHT64.dll
2015-01-29 23:07:33 ----A---- C:\WINDOWS\system32\RP3DAA64.dll
2015-01-29 23:07:31 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2015-01-29 23:07:30 ----A---- C:\WINDOWS\system32\RCoInst64.dll
2015-01-29 23:07:11 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2015-01-29 23:07:11 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2015-01-29 23:07:10 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2015-01-29 23:07:10 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2015-01-29 23:07:09 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2015-01-29 23:07:03 ----A---- C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2015-01-29 23:07:00 ----A---- C:\WINDOWS\system32\MaxxAudioRealtek.dll
2015-01-29 23:06:58 ----A---- C:\WINDOWS\system32\MaxxAudioEQ.dll
2015-01-29 23:06:58 ----A---- C:\WINDOWS\system32\MaxxAudioAPO30.dll
2015-01-29 23:06:58 ----A---- C:\WINDOWS\system32\MaxxAudioAPO20.dll
2015-01-29 23:06:15 ----A---- C:\WINDOWS\system32\FMAPO64.dll
2015-01-29 23:06:14 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2015-01-29 23:06:11 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2015-01-29 23:06:11 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2015-01-29 23:06:10 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2015-01-29 23:06:09 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2015-01-29 23:06:09 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2015-01-29 23:06:09 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2015-01-29 23:06:08 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2015-01-29 23:06:07 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2015-01-29 23:06:07 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2015-01-29 23:06:06 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2015-01-29 23:06:05 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2015-01-29 23:05:57 ----A---- C:\WINDOWS\system32\AERTAR64.dll
2015-01-29 23:05:56 ----A---- C:\WINDOWS\system32\AERTAC64.dll
2015-01-29 23:05:45 ----A---- C:\WINDOWS\RtlExUpd.dll
2015-01-29 22:43:02 ----A---- C:\WINDOWS\system32\drivers\iaStorA.sys
2015-01-29 22:42:38 ----D---- C:\Users\Coolbox\AppData\Roaming\InstallShield
2015-01-26 22:20:59 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-01-24 09:50:34 ----A---- C:\WINDOWS\system32\drivers\k57nd60a.sys
2015-01-14 10:32:15 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-01-14 10:32:15 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-01-14 10:32:14 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-01-14 10:32:13 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-01-14 10:32:13 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-01-14 10:32:11 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-01-14 10:32:09 ----A---- C:\WINDOWS\system32\wer.dll
2015-01-14 10:32:09 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-01-14 10:32:08 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-01-14 10:32:07 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-01-14 10:32:07 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-01-14 10:32:07 ----A---- C:\WINDOWS\system32\ci.dll
2015-01-14 10:32:06 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-01-14 10:32:06 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-01-14 10:32:05 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-01-09 17:54:56 ----A---- C:\WINDOWS\system32\drivers\BCMWL63a.SYS
2015-01-09 17:54:56 ----A---- C:\WINDOWS\system32\bcmihvui64.dll
2015-01-09 17:54:55 ----A---- C:\WINDOWS\system32\bcmihvsrv64.dll
2015-01-08 15:05:06 ----D---- C:\WINDOWS\system32\Logs

======List of files/folders modified in the last 1 month======

2015-02-06 22:28:58 ----D---- C:\WINDOWS\Prefetch
2015-02-06 22:28:51 ----D---- C:\Program Files
2015-02-06 22:21:28 ----D---- C:\Users\Coolbox\AppData\Roaming\Skype
2015-02-06 22:00:01 ----D---- C:\WINDOWS\system32\sru
2015-02-06 21:36:54 ----D---- C:\WINDOWS\Temp
2015-02-06 21:28:35 ----D---- C:\WINDOWS\system32\catroot2
2015-02-06 21:28:35 ----D---- C:\WINDOWS\Minidump
2015-02-06 21:28:35 ----D---- C:\WINDOWS\Inf
2015-02-06 21:28:35 ----D---- C:\Windows
2015-02-06 21:24:51 ----D---- C:\ProgramData\clear.fi
2015-02-06 21:22:04 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-02-06 20:54:57 ----D---- C:\Program Files\NVIDIA Corporation
2015-02-06 20:54:57 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-02-06 20:54:56 ----RD---- C:\WINDOWS\System32
2015-02-06 20:54:56 ----D---- C:\WINDOWS\SysWOW64
2015-02-06 20:54:56 ----D---- C:\WINDOWS\system32\drivers
2015-02-06 20:54:50 ----D---- C:\WINDOWS\system32\DriverStore
2015-02-06 20:54:44 ----D---- C:\ProgramData\NVIDIA Corporation
2015-02-06 20:54:32 ----D---- C:\ProgramData\NVIDIA
2015-02-06 20:50:07 ----D---- C:\WINDOWS\Help
2015-02-06 20:36:57 ----D---- C:\Program Files (x86)\IObit
2015-02-06 20:05:59 ----D---- C:\WINDOWS\system32\config
2015-02-06 19:46:58 ----D---- C:\WINDOWS\WinSxS
2015-02-06 19:46:51 ----D---- C:\WINDOWS\CbsTemp
2015-02-06 19:36:37 ----D---- C:\ProgramData\StartW8
2015-02-06 19:35:13 ----D---- C:\WINDOWS\SoftwareDistribution
2015-02-06 13:28:48 ----D---- C:\WINDOWS\debug
2015-02-05 10:49:13 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-02-05 10:14:03 ----SHD---- C:\WINDOWS\Installer
2015-02-05 10:14:03 ----SHD---- C:\Config.Msi
2015-02-05 10:09:36 ----RD---- C:\Program Files (x86)
2015-02-05 10:09:34 ----D---- C:\WINDOWS\Tasks
2015-02-05 05:25:06 ----D---- C:\WINDOWS\system32\Tasks
2015-02-05 05:22:39 ----HD---- C:\ProgramData
2015-02-04 21:03:34 ----SHD---- C:\System Volume Information
2015-02-04 20:29:37 ----D---- C:\Users\Coolbox\AppData\Roaming\IObit
2015-02-04 19:45:50 ----D---- C:\Program Files (x86)\SamsungPrinterLiveUpdateInstaller
2015-02-04 19:42:27 ----D---- C:\WINDOWS\system32\wbem
2015-02-04 19:40:19 ----D---- C:\WINDOWS\MediaViewer
2015-02-04 19:40:19 ----D---- C:\WINDOWS\FileManager
2015-02-04 19:40:19 ----D---- C:\WINDOWS\Camera
2015-02-04 19:40:19 ----D---- C:\WINDOWS\AppReadiness
2015-02-04 19:40:15 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata
2015-02-04 19:40:15 ----D---- C:\Program Files (x86)\BlueStacks
2015-02-04 19:40:14 ----D---- C:\WINDOWS\system32\WinMetadata
2015-02-04 19:40:14 ----D---- C:\WINDOWS\rescache
2015-02-04 19:39:50 ----D---- C:\WINDOWS\system32\Sysprep
2015-02-04 19:39:48 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-02-04 19:39:30 ----D---- C:\Users\Coolbox\AppData\Roaming\ProductData
2015-02-04 19:39:00 ----D---- C:\ProgramData\BlueStacks
2015-02-04 19:33:26 ----HD---- C:\Program Files\WindowsApps
2015-02-04 19:25:36 ----D---- C:\WINDOWS\registration
2015-02-04 19:24:15 ----D---- C:\WINDOWS\Microsoft.NET
2015-02-04 19:22:41 ----RSD---- C:\WINDOWS\assembly
2015-02-04 19:21:05 ----SD---- C:\Users\Coolbox\AppData\Roaming\Microsoft
2015-02-04 19:20:14 ----SD---- C:\ProgramData\Microsoft
2015-02-04 19:20:14 ----D---- C:\ProgramData\Samsung
2015-02-04 19:19:41 ----D---- C:\Program Files (x86)\MSBuild
2015-02-04 19:19:39 ----D---- C:\Program Files (x86)\Common Files
2015-01-29 23:09:58 ----HD---- C:\Program Files (x86)\Temp
2015-01-29 23:09:21 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-01-29 22:43:34 ----D---- C:\WINDOWS\system32\catroot
2015-01-29 22:42:41 ----D---- C:\Program Files (x86)\Intel
2015-01-27 19:05:22 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-26 22:08:00 ----D---- C:\ProgramData\ProductData
2015-01-23 17:43:21 ----D---- C:\Program Files (x86)\7-Zip
2015-01-21 16:36:34 ----D---- C:\WINDOWS\system32\NDF
2015-01-17 00:43:57 ----D---- C:\Users\Coolbox\AppData\Roaming\GHISLER
2015-01-14 18:33:27 ----D---- C:\WINDOWS\system32\MRT
2015-01-14 18:23:16 ----A---- C:\WINDOWS\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-11-27 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-11-27 267632]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-09 645952]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-11-27 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-11-27 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-11-27 436624]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [2015-01-02 26528]
R1 mwlPSDFilter;mwlPSDFilter; C:\WINDOWS\system32\DRIVERS\mwlPSDFilter.sys [2011-05-28 22912]
R1 mwlPSDNServ;mwlPSDNServ; C:\WINDOWS\system32\DRIVERS\mwlPSDNServ.sys [2011-05-28 20328]
R1 mwlPSDVDisk;mwlPSDVDisk; C:\WINDOWS\system32\DRIVERS\mwlPSDVDisk.sys [2011-05-28 62584]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-11-27 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-11-27 83280]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-11-27 116728]
R2 sp_rsdrv2;Spyware Terminator Driver Filter; C:\WINDOWS\system32\DRIVERS\stflt.sys [2014-04-24 51496]
R2 SSPORT;SSPORT; \??\C:\WINDOWS\system32\Drivers\SSPORT.sys [2013-04-18 11576]
R3 b57xdbd;@oem21.inf,%bcmxd_16bf_svcd%;Broadcom xD Picture Bus Driver Service; C:\WINDOWS\System32\drivers\b57xdbd.sys [2011-01-21 67624]
R3 b57xdmp;@oem21.inf,%BXD_SVCDESC%;Broadcom xD Picture vstorp client drv; C:\WINDOWS\System32\drivers\b57xdmp.sys [2011-01-21 19496]
R3 BCM43XX;@oem107.inf,%BCM43XX_Service_DispName%;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [2015-01-09 7549616]
R3 bScsiMSa;bScsiMSa; C:\WINDOWS\System32\drivers\bScsiMSa.sys [2011-05-16 51240]
R3 bScsiSDa;bScsiSDa; C:\WINDOWS\System32\drivers\bScsiSDa.sys [2011-05-06 86056]
R3 ETD;@oem2.inf,%PS2.DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2010-11-12 138024]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-03-20 5363520]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-01-29 3056360]
R3 IntcDAud;@oem22.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2014-08-05 342528]
R3 k57nd60a;@oem104.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\WINDOWS\system32\DRIVERS\k57nd60a.sys [2015-01-24 458960]
R3 MEIx64;@oem24.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2011-03-10 18432]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-12-13 19600]
R3 nvvad_WaveExtensible;@oem111.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2014-11-22 38032]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2011-03-10 17408]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2014-11-18 212736]
S0 iaStor;@oem4.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2010-09-14 437272]
S2 MLPTDR_Q;MLPTDR_Q; \??\C:\WINDOWS\system32\ []
S3 cpuz137;cpuz137; \??\C:\Users\Coolbox\AppData\Local\Temp\cpuz137\cpuz137_x64.sys []
S3 HTCAND64;@oem90.inf,%HTCAND64.SvcDesc%;HTC Device Driver; C:\WINDOWS\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 htcnprot;HTC NDIS Protocol Driver; C:\WINDOWS\system32\DRIVERS\htcnprot.sys [2012-12-07 36928]
S3 SensorsSimulatorDriver;@oem112.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-11-18 226304]
S3 UrlFilter;UrlFilter; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [2014-11-10 23016]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\System32\drivers\usbscan.sys [2014-11-18 44544]
S4 FileMonitor;FileMonitor; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [2014-11-10 23048]
S4 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys []
S4 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys []
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2014-12-12 271752]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-12-12 50344]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2014-11-18 38792]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2014-11-18 38792]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2014-12-12 4012248]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R4 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-03 81088]
R4 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2014-08-05 365680]
R4 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2011-05-10 872552]
R4 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2014-12-13 1148560]
R4 GREGService;GREGService; C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [2011-01-18 39528]
R4 IAStorDataMgrSvc;Úložná technologie Intel® Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-07-09 7168]
R4 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
R4 IMFservice;IMF Service; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [2014-12-12 344896]
R4 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R4 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]
R4 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2014-12-12 2633024]
R4 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R4 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2011-04-24 256832]
R4 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-12-13 1701520]
R4 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-12-13 19823248]
R4 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2012-12-07 167424]
R4 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [2012-09-07 1148664]
R4 StartW8Service;StartW8Service; C:\Program Files (x86)\StartW8\bin\StartW8Service.exe [2014-12-15 620392]
R4 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-18 38792]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 ose;Office  Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-04 267440]
S4 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-04-09 279024]
S4 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2010-09-28 172912]
S4 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2013-02-03 655624]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-03 107912]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-03 107912]
S4 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-03-11 136120]
S4 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-01-26 114800]
S4 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S4 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

-----------------EOF-----------------

gabrin
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 06 Ún 2015 22:24

Re: problem s NT bookem posílám LOG, děkuji

#2 Příspěvek od gabrin »

2. část
-----------------
info.txt logfile of random's system information tool 1.10 2015-02-06 22:29:12

======MBR======

0x33C08ED0BC007C8EC08ED8BE007CBF0006B90002FCF3A450681C06CBFBB90400BDBE07807E00007C0B0F850E0183C510E2F1CD1888560055C6461105C6461000B441BBAA55CD135D720F81FB55AA7509F7C101007403FE46106660807E1000742666680000000066FF760868000068007C680100681000B4428A56008BF4CD139F83C4109EEB14B80102BB007C8A56008A76018A4E028A6E03CD136661731CFE4E11750C807E00800F848A00B280EB845532E48A5600CD135DEB9E813EFE7D55AA756EFF7600E88D007517FAB0D1E664E88300B0DFE660E87C00B0FFE664E87500FBB800BBCD1A6623C0753B6681FB54435041753281F90201722C666807BB00006668000200006668080000006653665366556668000000006668007C0000666168000007CD1A5A32F6EA007C0000CD18A0B707EB08A0B607EB03A0B50732E40500078BF0AC3C007409BB0700B40ECD10EBF2F4EBFD2BC9E464EB002402E0F82402C3496E76616C696420706172746974696F6E207461626C65004572726F72206C6F6164696E67206F7065726174696E672073797374656D004D697373696E67206F7065726174696E672073797374656D000000637B9A009333DF00000020210027FEFFFF000800000000E00180FEFFFF07FEFFFF0008E0010020030000FEFFFF07FEFFFF0028E30100388D720000000000000000000000000000000055AA

======Uninstall list======

-->"C:\Program Files (x86)\InstallShield Installation Information\{14C4C3B6-F1F4-401F-8C86-03E8E19AAC8C}\Setup.exe" /z-uninstall
-->"C:\Program Files (x86)\InstallShield Installation Information\{39F15B50-A977-4CA6-B1C3-6A8724CDA025}\setup.exe" -runfromtemp -l0x0405 -removeonly
-->"C:\Program Files (x86)\InstallShield Installation Information\{B906C11A-D193-4143-9FA7-E2EE8A5A8F21}\Setup.exe" /z-uninstall
-->"C:\Program Files (x86)\InstallShield Installation Information\{C2695E83-CF1D-43D1-84FE-B3BEC561012A}\setup.exe" -runfromtemp -l0x0409 -removeonly
-->MsiExec /X{B455E95A-B804-439F-B533-336B1635AE97}
3D RealityMaps Viewer 1.6.8.0-->"C:\Program Files (x86)\3D-RealityMaps\Online-Viewer\unins000.exe"
64 Bit HP CIO Components Installer-->MsiExec.exe /I{F8F948EA-5AEA-4158-8821-A2F788ECE936}
7-Zip 4.65-->"C:\Program Files (x86)\7-Zip\Uninstall.exe"
Acer Backup Manager-->C:\Program Files (x86)\InstallShield Installation Information\{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}\setup.exe -runfromtemp -l0x0405
Acer Crystal Eye Webcam-->"C:\Program Files (x86)\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
Acer Crystal Eye Webcam-->"C:\Program Files (x86)\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
Acer ePower Management-->"C:\Program Files (x86)\InstallShield Installation Information\{3DB0448D-AD82-4923-B305-D001E521A964}\setup.exe" -runfromtemp -l0x405 -removeonly
Acer eRecovery Management-->"C:\Program Files (x86)\InstallShield Installation Information\{7F811A54-5A09-4579-90E1-C93498E230D9}\setup.exe" -runfromtemp -l0x405 -removeonly
Acer GameZone Console-->"C:\Program Files (x86)\Acer GameZone\GameConsole\unins000.exe"
Acer Registration-->C:\Program Files (x86)\Acer\Registration\Uninstall.exe
Acer ScreenSaver-->C:\Program Files (x86)\Acer\Screensaver\Uninstall.exe
Acer System Information-->MsiExec.exe /I{72199E33-4F2A-4B7F-8E25-95DDDD50A678}
Acer Updater-->"C:\Program Files (x86)\InstallShield Installation Information\{EE171732-BEB4-4576-887D-CB62727F01CA}\setup.exe" -runfromtemp -l0x405 -removeonly
Acrobat.com-->MsiExec.exe /X{287ECFA4-719A-2143-A09B-D6A12DE54E40}
Adobe Acrobat X Pro - Eastern European (Group 1)-->MsiExec.exe /I{AC76BA86-1029-4770-7760-000000000005}
Adobe AIR-->c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{7B77622E-DE90-48EA-B2C7-227B1DE58A01}
Adobe Creative Suite 6 Master Collection-->C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exe --appletID="DWA_UI" --appletVersion="2.0" --mode="Uninstall" --mediaSignature="{E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0}"
Adobe Flash Player 16 NPAPI-->C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_305_Plugin.exe -maintain plugin
Adobe Help Manager-->msiexec /qb /x {AF37176A-78CA-545B-34EF-8B6A21514DD1}
Adobe Help Manager-->MsiExec.exe /I{AF37176A-78CA-545B-34EF-8B6A21514DD1}
Adobe Reader XI (11.0.10) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AB0000000001}
Adobe Shockwave Player 12.1-->"C:\WINDOWS\SysWOW64\Adobe\Shockwave 12\uninstaller.exe"
Adobe Widget Browser-->msiexec /qb /x {EFBE6DD5-B224-96E5-72B9-68D328CB12A6}
Adobe Widget Browser-->MsiExec.exe /I{EFBE6DD5-B224-96E5-72B9-68D328CB12A6}
Argazki Galeria-->MsiExec.exe /X{3C68859B-213C-4D91-881C-8EA422C6ACBD}
Avast Free Antivirus-->C:\Program Files\AVAST Software\Avast\Setup\Instup.exe /control_panel /instop:uninstall
Backup Manager V3-->C:\Program Files (x86)\InstallShield Installation Information\{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}\setup.exe -runfromtemp -l0x0409
Banner Effect Trial-->"C:\Program Files (x86)\Banner Effect Trial\unins000.exe"
bl-->MsiExec.exe /I{2A075BB4-E976-4278-BF3F-E5C6945D84C0}
Broadcom Card Reader Driver Installer-->MsiExec.exe /I{4710662C-8204-4334-A977-B1AC9E547819}
Broadcom NetLink Controller-->MsiExec.exe /X{C91DCB72-F5BB-410D-A91A-314F5D1B4284}
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
clear.fi Client-->"C:\Program Files (x86)\InstallShield Installation Information\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}\setup.exe" -runfromtemp -l0x0005 -removeonly
clear.fi-->"C:\Program Files (x86)\InstallShield Installation Information\{14C4C3B6-F1F4-401F-8C86-03E8E19AAC8C}\Setup.exe" /z-uninstall
clear.fi-->"C:\Program Files (x86)\InstallShield Installation Information\{2637C347-9DAD-11D6-9EA2-00055D0CA761}\Setup.exe" /z-uninstall
clear.fi-->"C:\Program Files (x86)\InstallShield Installation Information\{2637C347-9DAD-11D6-9EA2-00055D0CA761}\Setup.exe" /z-uninstall
clear.fi-->"C:\Program Files (x86)\InstallShield Installation Information\{B906C11A-D193-4143-9FA7-E2EE8A5A8F21}\Setup.exe" /z-uninstall
D3DX10-->MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF}
Definition Update for Microsoft Office 2010 (KB2910899) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{C8358E8D-6C89-41B3-8439-FEFBC0353D81}" "1029" "0"
Dolby Advanced Audio v2-->MsiExec.exe /X{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}
Driver Booster 2.1-->"C:\Program Files (x86)\IObit\Driver Booster\unins000.exe"
Entity Framework Designer for Visual Studio 2012 - enu-->MsiExec.exe /X{32136776-FE3F-453D-80DA-CDD993BDB2A3}
ETDWare PS/2-X64 8.0.6.0_WHQL-->%ProgramFiles%\Elantech\ETDUn_inst.exe
FormatFactory 3.2.1.0-->C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
Fotogaléria-->MsiExec.exe /X{9093B0D5-EA59-4C9E-A2E3-CC130138DFCD}
Fotogalerie-->MsiExec.exe /X{3CBD94C1-BA15-488C-888B-D8DD296CC6DC}
Fotogalerie-->MsiExec.exe /X{A1FBD2B3-6768-472D-BA46-C00EACBCE16C}
Fotogalerija-->MsiExec.exe /X{1F0C818D-4A41-4E40-BAFB-BB940C82A518}
Fotogalleri-->MsiExec.exe /X{E354D495-5DA4-4CCF-AB39-080F6A4141BE}
Fotogalleriet-->MsiExec.exe /X{9F470E17-4FC3-4091-A508-D5347A16A2B9}
Fotoğraf Galerisi-->MsiExec.exe /X{DB7B6508-2AAB-4F26-99D4-74559A2F5E42}
Fotótár-->MsiExec.exe /X{E50E3DBC-46AA-4827-B2A6-F995D81DF526}
Galería de fotos-->MsiExec.exe /X{8F7FECEC-088F-431D-A5FB-2B59E1E69943}
Galeria fotogràfica-->MsiExec.exe /X{BC50DD4C-2A32-4863-B454-ECEA4EDC594D}
Galeria fotografii-->MsiExec.exe /X{7595CAD2-87D0-4D01-AC02-3FDD3A891BB8}
Galerie de photos-->MsiExec.exe /X{446CC8CE-0E90-44F7-ADD0-774B243EF090}
Galerie foto-->MsiExec.exe /X{C2F1EBBF-9AC4-4E0B-A7F4-74C9C7AD4813}
Galerija fotografija-->MsiExec.exe /X{C5B383EB-B85B-481C-9946-34FBF021678B}
Google AdWords Editor-->MsiExec.exe /X{6145B982-ACC5-46A3-9166-9ADADE6D17E2}
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Identity Card-->C:\Program Files (x86)\Acer\Identity Card\Uninstall.exe
Intel(R) Management Engine Components-->C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\Uninstall\setup.exe -uninstall
Intel(R) Rapid Storage Technology-->C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\Uninstall\setup.exe -uninstall
Intel® Trusted Connect Service Client-->MsiExec.exe /I{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}
IObit Malware Fighter 3 Beta-->"C:\Program Files (x86)\IObit\IObit Malware Fighter\unins001.exe"
IObit Uninstaller-->"C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallDisplay.exe" uninstall_start
IPTInstaller-->MsiExec.exe /I{08208143-777D-4A06-BB54-71BF0AD1BB70}
Java 7 Update 51-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83217051F0}
Java 7 Update 72 (64-bit)-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F06417072FF}
Java 7 Update 72-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F03217072FF}
Junk Mail filter update-->MsiExec.exe /I{400C31E4-796F-4E86-8FDC-C3C4FACC6847}
K-Lite Codec Pack 10.9.0 Full-->"C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe"
KONICA MINOLTA PagePro 1350W-->MUNT64_Q.EXE /PRN:"KONICA MINOLTA PagePro 1350W"
Launch Manager-->C:\WINDOWS\UNINSTLMv4.EXE LMv4.UNI
Microsoft .NET Framework 4 Multi-Targeting Pack-->MsiExec.exe /I{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}
Microsoft .NET Framework 4.5 Multi-Targeting Pack-->MsiExec.exe /X{5CBFF3F3-2D40-34EE-BCA5-A95BC19E400D}
Microsoft .NET Framework 4.5 SDK-->MsiExec.exe /X{1948E039-EC79-4591-951D-9867A8C14C90}
Microsoft ASP.NET MVC 4 Runtime-->MsiExec.exe /X{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}
Microsoft Help Viewer 2.0-->msiexec.exe /X{FEB375AB-6EEC-3929-8FAF-188ED81DD8B5}
Microsoft NuGet - Visual Studio Express 2012 for Windows Desktop-->MsiExec.exe /I{49402ED1-A795-4435-A745-1B781BE621A6}
Microsoft Office 2010-->MsiExec.exe /X{95140000-0070-0000-0000-0000000FF1CE}
Microsoft Office Access MUI (Czech) 2010-->MsiExec.exe /X{90140000-0015-0405-0000-0000000FF1CE}
Microsoft Office Excel MUI (Czech) 2010-->MsiExec.exe /X{90140000-0016-0405-0000-0000000FF1CE}
Microsoft Office Groove MUI (Czech) 2010-->MsiExec.exe /X{90140000-00BA-0405-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (Czech) 2010-->MsiExec.exe /X{90140000-0044-0405-0000-0000000FF1CE}
Microsoft Office Office 64-bit Components 2010-->MsiExec.exe /X{90140000-002A-0000-1000-0000000FF1CE}
Microsoft Office OneNote MUI (Czech) 2010-->MsiExec.exe /X{90140000-00A1-0405-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Czech) 2010-->MsiExec.exe /X{90140000-001A-0405-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Czech) 2010-->MsiExec.exe /X{90140000-0018-0405-0000-0000000FF1CE}
Microsoft Office Professional Plus 2010-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe" /uninstall PROPLUSR /dll OSETUP.DLL
Microsoft Office Professional Plus 2010-->MsiExec.exe /X{91140000-0011-0000-0000-0000000FF1CE}
Microsoft Office Proof (Czech) 2010-->MsiExec.exe /X{90140000-001F-0405-0000-0000000FF1CE}
Microsoft Office Proof (English) 2010-->MsiExec.exe /X{90140000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2010-->MsiExec.exe /X{90140000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Slovak) 2010-->MsiExec.exe /X{90140000-001F-041B-0000-0000000FF1CE}
Microsoft Office Proofing (Czech) 2010-->MsiExec.exe /X{90140000-002C-0405-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Czech) 2010-->MsiExec.exe /X{90140000-0019-0405-0000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Czech) 2010-->MsiExec.exe /X{90140000-002A-0405-1000-0000000FF1CE}
Microsoft Office Shared MUI (Czech) 2010-->MsiExec.exe /X{90140000-006E-0405-0000-0000000FF1CE}
Microsoft Office Word MUI (Czech) 2010-->MsiExec.exe /X{90140000-001B-0405-0000-0000000FF1CE}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft SQL Server 2012 Data-Tier App Framework -->MsiExec.exe /I{36E619BC-A234-4EC3-849B-779A7C865A45}
Microsoft SQL Server 2012 Express LocalDB -->MsiExec.exe /I{13D558FE-A863-402C-B115-160007277033}
Microsoft SQL Server 2012 Management Objects (x64)-->MsiExec.exe /I{FA0A244E-F3C2-4589-B42A-3D522DE79A42}
Microsoft SQL Server 2012 Management Objects -->MsiExec.exe /I{DA1C1761-5F4F-4332-AB9D-29EDF3F8EA0A}
Microsoft SQL Server 2012 Native Client -->MsiExec.exe /I{49D665A2-4C2A-476E-9AB8-FCC425F526FC}
Microsoft SQL Server 2012 Transact-SQL Compiler Service -->MsiExec.exe /I{BEB0F91E-F2EA-48A1-B938-7857ABF2A93D}
Microsoft SQL Server 2012 Transact-SQL ScriptDom -->MsiExec.exe /I{0E8670B8-3965-4930-ADA6-570348B67153}
Microsoft SQL Server 2012 T-SQL Language Service -->MsiExec.exe /I{6D6D43E5-218C-4B05-92D3-2240810F4760}
Microsoft SQL Server Compact 4.0 SP1 x64 ENU-->MsiExec.exe /X{78909610-D229-459C-A936-25D92283D3FD}
Microsoft SQL Server Data Tools - enu (11.1.20828.01)-->MsiExec.exe /X{4F2B8233-35EE-4197-8C3B-EACCBF712029}
Microsoft System CLR Types for SQL Server 2012 (x64)-->MsiExec.exe /I{F1949145-EB64-4DE7-9D81-E6D27937146C}
Microsoft System CLR Types for SQL Server 2012-->MsiExec.exe /I{E2082604-4BA5-44BB-BBFB-AF0F3CB8C6AB}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148-->MsiExec.exe /X{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 32bit Compilers - ENU Resources-->MsiExec.exe /X{0F3C9093-6C13-484D-8385-93AA21BEC025}
Microsoft Visual C++ 2012 Core Libraries-->MsiExec.exe /X{B362A397-B38A-3A23-A190-611F9C7EB4F9}
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727-->MsiExec.exe /X{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}
Microsoft Visual C++ 2012 x64 Debug Runtime - 11.0.50727-->MsiExec.exe /X{2B997E80-3BEC-3222-9114-98DBE1182B2E}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}
Microsoft Visual C++ 2012 x86 Debug Runtime - 11.0.50727-->MsiExec.exe /X{1C163D33-33B3-33EB-A617-0D4D852BE8E1}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}
Microsoft Visual C++ 2012 x86-x64 Compilers-->MsiExec.exe /X{A1785BD4-3486-4E7E-8074-E3FC61B8F315}
Microsoft Visual J# 2.0 Redistributable Package-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft Visual J# 2.0 Redistributable Package\install.exe
Microsoft Visual Studio 2012 Express Prerequisites x64 - ENU-->MsiExec.exe /I{30B7A7A6-D519-3332-BEB3-D105EFC7389A}
Microsoft Visual Studio 2012 Preparation-->MsiExec.exe /I{09412B73-6159-40D6-B0B9-C11B30A7531E}
Microsoft Visual Studio 2012 Shell (Minimum) Interop Assemblies-->MsiExec.exe /I{820C677A-41B2-48C3-8136-FEE35A052E73}
Microsoft Visual Studio 2012 Shell (Minimum) Resources-->MsiExec.exe /I{38FC6E9A-F719-431A-A83D-4C86D5FD6555}
Microsoft Visual Studio 2012 Shell (Minimum)-->MsiExec.exe /I{800F484E-9D69-492D-B656-7BAA32586142}
Microsoft Visual Studio 2012 Tools for SQL Server Compact 4.0 SP1 ENU-->MsiExec.exe /I{E818AE7C-244B-4A50-9C86-C0E4A8B69159}
Microsoft Visual Studio Express 2012 for Windows Desktop - ENU-->MsiExec.exe /X{222C5507-AC43-388F-808E-2266EC57E043}
Microsoft Visual Studio Express 2012 for Windows Desktop-->MsiExec.exe /X{1BE2AFE6-209E-3862-AE45-DA9D3D21BD65}
Microsoft Visual Studio Team Foundation Server 2012 Object Model Language Pack - ENU-->MsiExec.exe /I{68A48EF1-DF03-394F-AF40-1E4FE42BB8DD}
Microsoft Visual Studio Team Foundation Server 2012 Object Model-->MsiExec.exe /I{6F07A6C2-9068-3673-A120-DC10012468C6}
Microsoft Visual Studio Team Foundation Server 2012 Team Explorer Language Pack - ENU-->MsiExec.exe /I{1B9BBB23-65CB-3AEE-BFC6-633E7CA299FD}
Microsoft Visual Studio Team Foundation Server 2012 Team Explorer-->MsiExec.exe /I{6DAB46E3-D017-3E2B-85D8-F57A230384C0}
Microsoft_VC80_CRT_x86-->MsiExec.exe /I{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
Microsoft_VC90_CRT_x86-->MsiExec.exe /I{08D2E121-7F6A-43EB-97FD-629B44903403}
Microsoft_VC90_MFC_x86-->MsiExec.exe /I{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}
Microsoft_VC90_MFCLOC_x86-->MsiExec.exe /I{B6D38690-755E-4F40-A35A-23F8BC2B86AC}
Movie Maker-->MsiExec.exe /X{000AD938-EEBB-46F5-BD33-23CB34A57C54}
Movie Maker-->MsiExec.exe /X{03CC9D58-B132-4CC0-A521-4F3660AA43C7}
Movie Maker-->MsiExec.exe /X{058EDEC8-1873-4B49-9A08-54ADE9CC129B}
Movie Maker-->MsiExec.exe /X{13F3CEA5-9E2C-4C4E-9F0F-D0DB389CF4A9}
Movie Maker-->MsiExec.exe /X{2A078A2B-E2C8-43A3-862C-DC57090AB7C2}
Movie Maker-->MsiExec.exe /X{2AC4C6D7-512D-4B78-A85B-2C16E748AB8E}
Movie Maker-->MsiExec.exe /X{306C7AEF-16C7-428D-93AA-99D4A4090243}
Movie Maker-->MsiExec.exe /X{36BEC461-B58A-414D-993E-E2BDD1F1A14B}
Movie Maker-->MsiExec.exe /X{46A648D2-C097-41A3-A517-E709F045B6CD}
Movie Maker-->MsiExec.exe /X{525E7EA7-481F-499D-A7F7-4682AC46A454}
Movie Maker-->MsiExec.exe /X{5BABDA39-61CF-41EE-992D-4054B6649A9B}
Movie Maker-->MsiExec.exe /X{62BBCDDC-4979-4E59-9D97-5B8E874C3191}
Movie Maker-->MsiExec.exe /X{701FE1BC-834A-4857-AF62-6EBA50CFBC78}
Movie Maker-->MsiExec.exe /X{719E4DA1-A17B-4B46-9D5D-925D4FBE4D69}
Movie Maker-->MsiExec.exe /X{751EB657-3F22-4150-8CE4-D79A262F1D92}
Movie Maker-->MsiExec.exe /X{7B5AB3AE-AAF7-4E9C-86A0-356C66A04BF9}
Movie Maker-->MsiExec.exe /X{7E63F102-A9E9-4F4C-8004-BC62974736BF}
Movie Maker-->MsiExec.exe /X{8176B9CA-F037-49C0-BD77-661B1DDCA6F3}
Movie Maker-->MsiExec.exe /X{9EDF46F0-2D4E-4C00-B2B6-0660666E9F60}
Movie Maker-->MsiExec.exe /X{A035950F-15BA-41C0-9D8F-165FC0536012}
Movie Maker-->MsiExec.exe /X{A17946CA-18E5-4CF0-8D55-A56D804718F8}
Movie Maker-->MsiExec.exe /X{A47EA9D4-BB87-415E-9239-28860434E5A0}
Movie Maker-->MsiExec.exe /X{AE8044B5-FCA3-4EBE-AC78-0FB3A6E8DC76}
Movie Maker-->MsiExec.exe /X{BAD4B8FA-4BDA-4A59-BE64-9741031680C7}
Movie Maker-->MsiExec.exe /X{BFA6D5AD-25EA-475F-AD80-ECD408C674AB}
Movie Maker-->MsiExec.exe /X{C32D87E1-6310-4CD5-8D6D-865AFE0E9B4E}
Movie Maker-->MsiExec.exe /X{D592A061-3069-4696-B180-ED0B11C98241}
Movie Maker-->MsiExec.exe /X{E0B5FDF0-6940-44B2-8204-CFA746A6B4AF}
Movie Maker-->MsiExec.exe /X{ED6C77F9-4D7E-447C-9EC0-9A212D075535}
Mozilla Firefox 35.0.1 (x86 cs)-->"C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe"
Mozilla Maintenance Service-->"C:\Program Files (x86)\Mozilla Maintenance Service\uninstall.exe"
MSVCRT_amd64-->MsiExec.exe /I{D0B44725-3666-492D-BEF6-587A14BD9BD9}
MSVCRT-->MsiExec.exe /I{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
MSVCRT110_amd64-->MsiExec.exe /I{E9FA781F-3E80-4399-825A-AD3E11C28C77}
MSVCRT110-->MsiExec.exe /I{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
MyWinLocker 4-->MsiExec.exe /X{39F15B50-A977-4CA6-B1C3-6A8724CDA025}
MyWinLocker Suite-->"C:\Program Files (x86)\InstallShield Installation Information\{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}\setup.exe" -runfromtemp -l0x0405 -removeonly
MyWinLocker Suite-->MsiExec.exe /X{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}
MyWinLocker-->MsiExec.exe /I{0B78ECB0-1A6B-4E6D-89D7-0E7CE77F0427}
NTI Media Maker 9-->C:\Program Files (x86)\InstallShield Installation Information\{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}\setup.exe -runfromtemp -l0x0409
NVIDIA GeForce Experience 2.1.5-->"C:\WINDOWS\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.GFExperience
NVIDIA PhysX-->MsiExec.exe /I{B455E95A-B804-439F-B533-336B1635AE97}
OpenOffice.org 3.4.1-->MsiExec.exe /I{1E0AF527-0B8E-4F8A-BA27-CB3C359998C6}
PDF Settings CS6-->MsiExec.exe /I{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}
ph-->MsiExec.exe /I{185F9795-9663-4F13-9EF9-307A282ADB5A}
Photo Common-->MsiExec.exe /X{048C8498-C20B-4AF7-9978-7A79E567D74C}
Photo Common-->MsiExec.exe /X{061FF8F3-5226-4278-8AAB-282C1B024F58}
Photo Common-->MsiExec.exe /X{0BFF2188-2D8E-4BE2-95D0-B3CCD4C6A0C9}
Photo Common-->MsiExec.exe /X{0DF95460-2887-4011-9344-1959CDF18ADC}
Photo Common-->MsiExec.exe /X{187A0FCA-2FE2-4827-83CA-D4887E965047}
Photo Common-->MsiExec.exe /X{4AF53C99-315D-4536-873F-029D2D274AE2}
Photo Common-->MsiExec.exe /X{5078CEC3-A56F-4080-8CD4-ED7BCBE5686B}
Photo Common-->MsiExec.exe /X{69D48C91-CCC2-4305-89DE-D1F8122EDBF4}
Photo Common-->MsiExec.exe /X{6B8F13E2-F02B-445C-9A31-3C0E5D547CBA}
Photo Common-->MsiExec.exe /X{743FD554-A73F-4FE8-BE7B-C283D16297F9}
Photo Common-->MsiExec.exe /X{8063EB67-E777-4A56-9C1E-FAD75C2F5EC2}
Photo Common-->MsiExec.exe /X{8DA8A340-E915-45E9-B91C-DEEBA3824A26}
Photo Common-->MsiExec.exe /X{8E6AB06E-FE46-433B-85D5-BC27ABE06570}
Photo Common-->MsiExec.exe /X{989889A7-D13D-4DA4-B059-B250784DFABC}
Photo Common-->MsiExec.exe /X{A132CE8A-79EA-4BB5-9A24-4348B4DDD48A}
Photo Common-->MsiExec.exe /X{AA82E5EF-70C2-41CB-8432-309078304CBB}
Photo Common-->MsiExec.exe /X{C67BC332-A59A-4D40-977F-664F60AB21D8}
Photo Common-->MsiExec.exe /X{C7929038-EDFB-416D-A2C9-CC65416DA0DF}
Photo Common-->MsiExec.exe /X{C8BBA220-8549-462A-B411-1AF44DE098B5}
Photo Common-->MsiExec.exe /X{D1F5A388-09C9-4998-A793-B15DCDEB3B42}
Photo Common-->MsiExec.exe /X{D5082B89-2E86-447E-A02C-922534592FA8}
Photo Common-->MsiExec.exe /X{D824AFCC-3408-4FB2-A6C9-28C660700DD4}
Photo Common-->MsiExec.exe /X{D888F114-7537-4D48-AF03-5DA9C82D7540}
Photo Common-->MsiExec.exe /X{DF84859F-B6B1-44B1-953C-D88383B59D3E}
Photo Common-->MsiExec.exe /X{E1203F8C-FF34-4968-A4A5-B4F1F8533DAB}
Photo Common-->MsiExec.exe /X{EB91007A-0110-42A6-B869-2709955A9B2A}
Photo Common-->MsiExec.exe /X{EC33D375-5164-4374-9061-43F5C6073219}
Photo Gallery-->MsiExec.exe /X{30F99474-EBE3-4134-A02B-F6CD38CFE243}
Photo Gallery-->MsiExec.exe /X{E0E0FB88-D570-463E-A98E-733B7B656867}
Picasa 3-->"C:\Program Files (x86)\Google\Picasa3\Uninstall.exe"
Poczta usługi Windows Live-->MsiExec.exe /I{4E55905B-849D-4633-9267-3EC77E24221A}
Podstawowe programy Windows Live-->MsiExec.exe /I{A7E73DE5-E5FD-4923-9D88-E09ECD1F3545}
Pošta Windows Live-->MsiExec.exe /I{E6A3F960-E593-4DDE-B9F2-66885D973A26}
Prerequisites for SSDT -->MsiExec.exe /I{9169C939-ED01-446A-BD0C-29873BAF4E48}
ProFact 4.0-->"C:\Program Files (x86)\ProFact 4.0\unins000.exe"
Raccolta foto-->MsiExec.exe /X{D04EBB49-C985-4A38-8695-62000861293A}
Recuva-->"C:\Program Files\Recuva\uninst.exe"
Renesas Electronics USB 3.0 Host Controller Driver-->"C:\Program Files (x86)\InstallShield Installation Information\{5442DAB8-7177-49E1-8B22-09A049EA5996}\setup.exe" -runfromtemp -l0x0405 -removeonly
Renesas Electronics USB 3.0 Host Controller Driver-->MsiExec.exe /X{5442DAB8-7177-49E1-8B22-09A049EA5996}
Samsung Printer Live Update-->C:\Program Files (x86)\SamsungPrinterLiveUpdateInstaller\uninstall.exe
Security Update for Microsoft Excel 2010 (KB2910902) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{6A1E6C95-CDE5-4E8C-A712-79C0985DAFE6}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2553154) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{D0D69BA5-4BD9-439E-804F-07DC80CF5408}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2553284) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0405-0000-0000000FF1CE}" "{0665F3BA-FCE2-4CB1-ACDD-19544B0E4C14}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2687423) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{4D6FE7B6-559F-4DAC-92CF-A01C24046AEB}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2760781) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0405-0000-0000000FF1CE}" "{A5B39813-17B0-4481-B19E-9C57C0BF1EE0}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2810073) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{1EE5FA17-F624-438C-B7AC-7C5A41E90FA2}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2850016) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{7AC3F78E-ECA0-45F4-A9CC-3E885DA23662}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2880971) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{5EE42B42-1159-435C-898A-2A3298453B20}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2881071) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{0BC570F0-7352-4A3A-B2A2-CA56ADA7375F}" "1029" "0"
Security Update for Microsoft Word 2010 (KB2899519) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{3D0C726C-AA67-4078-9046-24F95B738B6A}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0015-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0016-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0018-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0019-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001B-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0405-0000-0000000FF1CE}" "{A71E3AD4-5545-4D59-9F11-75F363563C6A}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0407-0000-0000000FF1CE}" "{8925227F-C7B5-4C95-AB58-4FCF2433DAEE}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0409-0000-0000000FF1CE}" "{09A9DF49-DA06-4093-A2FD-F339211E39EA}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-041B-0000-0000000FF1CE}" "{0C337AF5-E6A7-4B6B-8F8E-08F9C6F956B4}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{E4D76E88-C65F-4003-9C71-EC4306679D17}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0405-1000-0000000FF1CE}" "{7F5CE17A-23B9-4EED-B017-A7EF4547476C}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002C-0405-0000-0000000FF1CE}" "{EA82267F-4AAB-46BA-AD6A-9EBB544D0EF7}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0044-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0405-0000-0000000FF1CE}" "{2C911571-C8B6-400B-B323-417C1806E866}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00A1-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00BA-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}" "1029" "0"
SGP Baltie 3.0.71.76-->"C:\Program Files (x86)\SGP Systems\SGP Baltie 3\unins000.exe"
SGP Baltík 3-->"C:\Program Files (x86)\SGP Systems\unins000.exe"
Shredder-->MsiExec.exe /I{C2695E83-CF1D-43D1-84FE-B3BEC561012A}
Skype™ 7.0-->MsiExec.exe /X{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
Smart Defrag 4-->"C:\Program Files (x86)\IObit\Smart Defrag 4\unins000.exe"
Spyware Terminator 2012-->"C:\Program Files (x86)\Spyware Terminator\unins000.exe"
StartW8 1.2.111.0-->MsiExec.exe /I{2FA895E0-C8CF-4216-90AB-C2E21A62BCB1}
Surfing Protection-->"C:\Program Files (x86)\IObit\Surfing Protection\unins000.exe"
swMSM-->MsiExec.exe /I{612C34C7-5E90-47D8-9B5C-0F717DD82726}
System Requirements Lab for Intel-->MsiExec.exe /I{04C4B49D-45D9-4A28-9ED1-B45CBD99B8C7}
Total Commander 64-bit (Remove or Repair)-->c:\totalcmd\tcunin64.exe
Update for (KB2504637)-->C:\WINDOWS\SysWOW64\msiexec.exe /package {CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE} /uninstall {815F0BC1-7E54-300C-9ACA-C9460FDF6F78} /qb+ REBOOTPROMPT=""
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}" "1029" "0"
Update for Microsoft en-us Dictionary-->MsiExec.exe /X{FB623CD6-A0BF-4613-A518-84EAF9A898F3}
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0016-0405-0000-0000000FF1CE}" "{24C87C37-90DB-4DEB-AE8B-7F533CF0D7D9}" "1029" "0"
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0018-0405-0000-0000000FF1CE}" "{24C87C37-90DB-4DEB-AE8B-7F533CF0D7D9}" "1029" "0"
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001B-0405-0000-0000000FF1CE}" "{24C87C37-90DB-4DEB-AE8B-7F533CF0D7D9}" "1029" "0"
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{302A8FE3-EBF5-486C-A431-16A1CD914443}" "1029" "0"
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{302A8FE3-EBF5-486C-A431-16A1CD914443}" "1029" "0"
Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}" "1029" "0"
Update for Microsoft InfoPath 2010 (KB2817396) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{39767ECA-1731-45DB-AB5B-6BF40E151D66}" "1029" "0"
Update for Microsoft Office 2010 (KB2553140) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0405-0000-0000000FF1CE}" "{8BEEA2FC-D416-428A-B52A-A3ED45921151}" "1029" "0"
Update for Microsoft Office 2010 (KB2553140) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{8BEEA2FC-D416-428A-B52A-A3ED45921151}" "1029" "0"
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}" "1029" "0"
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}" "1029" "0"
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}" "1029" "0"
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{287A1E92-9E41-4BC1-8920-B3D0E9220800}" "1029" "0"
Update for Microsoft Office 2010 (KB2589386) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{A4F91D60-654C-4892-BFD3-0D41ADA649B6}" "1029" "0"
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{9D69691D-823D-4C3E-9B12-563A3F520366}" "1029" "0"
Update for Microsoft Office 2010 (KB2597089) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0405-0000-0000000FF1CE}" "{B0D1579E-E814-4779-A1EE-CFF95D68E265}" "1029" "0"
Update for Microsoft Office 2010 (KB2687275) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{0B7744D2-1FDD-4843-9987-7CE11B79F370}" "1029" "0"
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{35698CB7-AAA2-4577-B505-DBFF504AEF23}" "1029" "0"
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{5AA578BB-759C-40FD-9661-A737C0884541}" "1029" "0"
Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}" "1029" "0"
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{BA610006-2C39-4419-9834-CF61AB24810A}" "1029" "0"
Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{334FB202-28D7-4BA4-8BC9-4FE4AB233EA0}" "1029" "0"
Update for Microsoft Office 2010 (KB2837602) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{8158D96B-083A-4FE4-8587-B5D0F49FE4B8}" "1029" "0"
Update for Microsoft Office 2010 (KB2837602) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{8158D96B-083A-4FE4-8587-B5D0F49FE4B8}" "1029" "0"
Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{B0D672F7-883E-4279-8E75-D97A5445AB46}" "1029" "0"
Update for Microsoft Office 2010 (KB2883019) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{D1C4AD0B-CC79-41D2-8D6A-571E7B30658C}" "1029" "0"
Update for Microsoft Office 2010 (KB2889818) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{CFB80344-FCBA-4C03-AD77-D49E82F14C3E}" "1029" "0"
Update for Microsoft Office 2010 (KB2889828) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0407-0000-0000000FF1CE}" "{60C9499F-B532-4206-AB19-F88C3A7684D5}" "1029" "0"
Update for Microsoft Office 2010 (KB2910896) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0409-0000-0000000FF1CE}" "{E762A933-274B-4860-B066-A39FAB0838FD}" "1029" "0"
Update for Microsoft OneNote 2010 (KB2597088) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{A87EDEA3-4861-4D99-9B36-F442740F1287}" "1029" "0"
Update for Microsoft OneNote 2010 (KB2597088) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00A1-0405-0000-0000000FF1CE}" "{A6CAC541-0269-4BCB-B759-31D7FBB02227}" "1029" "0"
Update for Microsoft OneNote 2010 (KB2597088) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{A87EDEA3-4861-4D99-9B36-F442740F1287}" "1029" "0"
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-0405-0000-0000000FF1CE}" "{D02AE7ED-5B00-4251-B7D5-F9590899EEEA}" "1029" "0"
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{2AB483F1-C86E-427A-83B4-23889B03512D}" "1029" "0"
Update for Microsoft PowerPoint 2010 (KB2880517) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0018-0405-0000-0000000FF1CE}" "{EFF9CBEC-AC1C-4F64-BF8B-FAF088911BAF}" "1029" "0"
Update for Microsoft PowerPoint 2010 (KB2880517) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{6C727BC2-B2B9-4B03-BD7E-682EA6FA1C04}" "1029" "0"
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{F9F5A080-AF38-4966-9A6B-C43DCA465035}" "1029" "0"
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{F9F5A080-AF38-4966-9A6B-C43DCA465035}" "1029" "0"
Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{7B29D8B8-6A87-496C-A65E-B935E740448A}" "1029" "0"
Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{38CF30E4-3348-4BD1-A859-B630C355A56F}" "1029" "0"
Valokuvavalikoima-->MsiExec.exe /X{C32F4F5A-C9FB-427C-9F6F-9DB157611FFF}
VLC media player-->C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe
VLC media player-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Welcome Center-->C:\Program Files (x86)\Acer\Welcome Center\Uninstall.exe
Windows Live Communications Platform-->MsiExec.exe /I{0454BB9A-2A7A-4214-BDFF-937F7A711A44}
Windows Live Essentials-->C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{1FEE19BC-6F0C-42E4-82FF-FB597F6141DF}
Windows Live Essentials-->MsiExec.exe /I{262E7632-72F9-4CBE-9461-937F24106EF2}
Windows Live Essentials-->MsiExec.exe /I{476C5E21-9418-4A76-80A3-0C6A470AC637}
Windows Live Essentials-->MsiExec.exe /I{49F068F2-4323-417B-AFC8-1E43F479D46C}
Windows Live Essentials-->MsiExec.exe /I{690F5BA3-5DEB-42CD-962B-F687EE59FAA7}
Windows Live Essentials-->MsiExec.exe /I{715F9B21-2817-402A-9BF0-BDA764D21F09}
Windows Live Essentials-->MsiExec.exe /I{797DC296-ADC5-4A08-8CBC-AEB0D6F4B249}
Windows Live Essentials-->MsiExec.exe /I{80382254-4568-4E7E-BB9A-376846800E8F}
Windows Live Essentials-->MsiExec.exe /I{81CF4226-47C1-418C-8718-1B3ED2C37878}
Windows Live Essentials-->MsiExec.exe /I{857BC375-BCFB-474E-9BD9-7EBB18EC55E0}
Windows Live Essentials-->MsiExec.exe /I{9B4D3AFE-8679-4704-AA4C-BAB0E41870EF}
Windows Live Essentials-->MsiExec.exe /I{9C60D080-84E7-43A5-8ECA-28253D253BD7}
Windows Live Essentials-->MsiExec.exe /I{A37F2060-813A-4325-9456-272B10EE75EF}
Windows Live Essentials-->MsiExec.exe /I{B096A0E4-26A1-4E9F-8548-577964B9434B}
Windows Live Essentials-->MsiExec.exe /I{B7F31B9C-8775-4500-8E9D-6ABE9AE17CF4}
Windows Live Essentials-->MsiExec.exe /I{BEA0C361-4CEF-4132-AA16-86E95AE9293E}
Windows Live Essentials-->MsiExec.exe /I{C034A6F9-6569-491B-B3BF-F5D15221A708}
Windows Live Essentials-->MsiExec.exe /I{C4D82144-B2D5-4A0E-A470-16F13EBC5BCB}
Windows Live Essentials-->MsiExec.exe /I{D1952E4A-9F67-4693-A06D-DA8E0FB2B00D}
Windows Live Essentials-->MsiExec.exe /I{D9D4D271-609F-440D-A9EC-A66B0815CFE2}
Windows Live Essentials-->MsiExec.exe /I{DCA5D0DE-F6AC-4E24-A924-03561D26BE97}
Windows Live Essentials-->MsiExec.exe /I{E9031A69-043D-4C8B-B7D9-043713F05717}
Windows Live Fotogalleri-->MsiExec.exe /X{5C2F5C1B-9732-4F81-8FBF-6711627DC508}
Windows Live ID Sign-in Assistant-->MsiExec.exe /I{1B8ABA62-74F0-47ED-B18C-A43128E591B8}
Windows Live Installer-->MsiExec.exe /I{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}
Windows Live Mail-->MsiExec.exe /I{00476F3E-3C4D-4E02-B8BB-125350157EB9}
Windows Live Mail-->MsiExec.exe /I{03426ED9-9D9C-4F71-B293-BBE6493367A2}
Windows Live Mail-->MsiExec.exe /I{0AD576A7-EDCE-469E-ADD7-1AC9DB200C6B}
Windows Live Mail-->MsiExec.exe /I{15F3A6F5-06AE-4332-AE3E-21CD0416827A}
Windows Live Mail-->MsiExec.exe /I{207E9B4C-48A9-47CE-BBC8-ACF0B2006351}
Windows Live Mail-->MsiExec.exe /I{50849B2C-097E-47A5-A076-6F11A939E093}
Windows Live Mail-->MsiExec.exe /I{51EF51B6-0D9F-4977-8F9D-A1E15017D2B7}
Windows Live Mail-->MsiExec.exe /I{5B441979-C897-4B5B-907D-649B866F8104}
Windows Live Mail-->MsiExec.exe /I{68BA8FC3-9784-4EDB-9344-9F25A419E6ED}
Windows Live Mail-->MsiExec.exe /I{69FCA957-224F-4623-8BE0-6295CFB2C3E4}
Windows Live Mail-->MsiExec.exe /I{6DA675F3-B549-4BDE-90FA-BEF8C3B87F00}
Windows Live Mail-->MsiExec.exe /I{70854FE6-3BF1-4C69-94D0-BEB821102E34}
Windows Live Mail-->MsiExec.exe /I{87425773-10F4-4858-8CBF-465093FA43DE}
Windows Live Mail-->MsiExec.exe /I{8E241C05-52BF-4862-AD1F-AAE465C0075B}
Windows Live Mail-->MsiExec.exe /I{924B4D82-1B97-48EB-8F1E-55C4353C22DB}
Windows Live Mail-->MsiExec.exe /I{9341E0BE-ADA3-4590-BB51-5D916D8FAE65}
Windows Live Mail-->MsiExec.exe /I{96914829-DF65-40AE-8A31-6F3E96BAEBBD}
Windows Live Mail-->MsiExec.exe /I{9939B8FF-7D2D-4258-B5B9-B6BA8DD59905}
Windows Live Mail-->MsiExec.exe /I{ABAF6F07-0D84-4700-948E-EC5042B9D978}
Windows Live Mail-->MsiExec.exe /I{B328282C-DCE9-49B7-8B98-C08D9AA28C46}
Windows Live Mail-->MsiExec.exe /I{B80D3EA9-A252-4AE5-AC51-81729F5C586F}
Windows Live Mail-->MsiExec.exe /I{D201E6C1-1A5C-4816-B2C1-89CB6E6C7B3B}
Windows Live Mail-->MsiExec.exe /I{DAD85607-2C8E-43D5-B068-4B218F1A7DB8}
Windows Live Mail-->MsiExec.exe /I{DDFF51C0-A729-49E2-B777-8432C0F74FD9}
Windows Live Mail-->MsiExec.exe /I{E570053D-8ABC-4938-9E23-C634E08E7490}
Windows Live Messenger-->MsiExec.exe /X{0125DB4D-98A0-4DBF-B68A-23BF08FFA6A3}
Windows Live Messenger-->MsiExec.exe /X{03E2EED4-368D-49EA-B1AC-8B615E37E16D}
Windows Live Messenger-->MsiExec.exe /X{0C5F1F2A-319F-4117-AA9B-69214C27D2F1}
Windows Live Messenger-->MsiExec.exe /X{0E3A4650-A873-4D53-A9DE-E84D57F6A085}
Windows Live Messenger-->MsiExec.exe /X{184A0D4F-4BCF-40EF-A73C-F0313FDB5CCD}
Windows Live Messenger-->MsiExec.exe /X{19AFD9A4-B584-41C8-91EA-38EB2FC1BD50}
Windows Live Messenger-->MsiExec.exe /X{1EA7C505-E6DA-4B85-9432-EBD3C70D510D}
Windows Live Messenger-->MsiExec.exe /X{31846283-C955-4CE1-9297-8670BD0C9A7E}
Windows Live Messenger-->MsiExec.exe /X{373EF285-A2DC-44EB-8D79-18918F33CB3A}
Windows Live Messenger-->MsiExec.exe /X{37FDD121-C443-4FD3-A213-2449B397C068}
Windows Live Messenger-->MsiExec.exe /X{43CCAC37-4E31-495F-9077-471E4E92DCEA}
Windows Live Messenger-->MsiExec.exe /X{62CC9AF4-EDD9-43C8-9856-FFD60362CFA9}
Windows Live Messenger-->MsiExec.exe /X{66DB6D91-BF91-480B-933D-7CB8B1E64D74}
Windows Live Messenger-->MsiExec.exe /X{8146445E-B14D-4CBA-AB9A-728CF166DAC9}
Windows Live Messenger-->MsiExec.exe /X{83C9377F-5ED1-4AD8-B113-7C876AEAF3AB}
Windows Live Messenger-->MsiExec.exe /X{8AAEB5A5-A397-46B6-8AF3-B6DC790C4E48}
Windows Live Messenger-->MsiExec.exe /X{A412D7BD-FD86-461D-B385-CD8062F34131}
Windows Live Messenger-->MsiExec.exe /X{AE364ACC-B9DF-466B-B4EA-AEECD0CD581E}
Windows Live Messenger-->MsiExec.exe /X{B27EDD14-869E-4A44-905A-5DE652F7278F}
Windows Live Messenger-->MsiExec.exe /X{B306F739-A414-4698-BFAD-0AB23F73D14F}
Windows Live Messenger-->MsiExec.exe /X{B625668D-34AA-462D-AA32-44BFA70F08E7}
Windows Live Messenger-->MsiExec.exe /X{B67B2671-2981-466B-BA14-25538AA871DC}
Windows Live Messenger-->MsiExec.exe /X{BE5650DD-D298-421B-B7A7-3A18DC55565B}
Windows Live Messenger-->MsiExec.exe /X{CA5C4498-C7E7-4808-AB41-A2B534A476AF}
Windows Live Messenger-->MsiExec.exe /X{CE44687E-BC21-4B69-B0AE-6BDFD6B5C327}
Windows Live Messenger-->MsiExec.exe /X{D0F03C35-6196-4992-8621-6F390DFA9073}
Windows Live Messenger-->MsiExec.exe /X{DB169E8F-5332-4DBF-B085-84AA2C373304}
Windows Live Messenger-->MsiExec.exe /X{DFB0E1FE-B5DE-42D7-97A9-2A69FB530A73}
Windows Live Messenger-->MsiExec.exe /X{E22E95E7-0A26-4AEC-A907-390C568C5BC1}
Windows Live MIME IFilter-->MsiExec.exe /I{F6822EFD-3F7D-4B35-8845-757A26AEC8E2}
Windows Live Movie Maker-->MsiExec.exe /X{CD442136-9115-4236-9C14-278F6A9DCB3F}
Windows Live Photo Common-->MsiExec.exe /X{7ADFA72D-2A9F-4DEC-80A5-2FAA27E23F0F}
Windows Live Photo Common-->MsiExec.exe /X{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}
Windows Live PIMT Platform-->MsiExec.exe /I{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}
Windows Live SOXE Definitions-->MsiExec.exe /I{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}
Windows Live Temel Parçalar-->MsiExec.exe /I{5A30E103-9FA6-4A23-A107-E1F5F174BB62}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{0E1BB4B4-00FF-45B1-914B-AB8D8B9862B3}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{0F6A576E-C6E3-437E-B389-262EBC86B09A}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{18272881-CFC0-434D-A975-E5BE44206AA0}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{22C0182F-3588-41B7-A5C5-4D2FD8054C02}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{24DF33E0-F924-4D0D-9B96-11F28F0D602D}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{3C63F944-803E-49A7-B3A2-B8AB3313E883}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{3D4F3F4C-E364-4E46-BFB1-A00BF9777422}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{3FD0036E-236A-4EDD-894D-4374BEE64464}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{4AA2A466-8031-403A-8236-5301B4E391FB}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{537B16E0-A39F-47CB-9C1E-50978862B108}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{56232E3D-7EA9-45E0-A371-26CD80510AF7}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{5917D694-AFC3-46BF-8CAB-0DABAF9D6FCB}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{7E9A63B3-8572-4A4B-9F87-3C2A873BBC55}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{88809C3E-8C92-4454-AEB7-B26166E3D6CD}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{90993BD9-C7D9-4C2F-B56C-2F7AFEBD4CD0}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{99AA6730-54CD-4B9E-B05B-0A5196743923}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{A3D995FA-C9A0-4E7D-B430-3F7A6731B4D5}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{A96A855B-89F7-40D4-A57E-580DFD4235B3}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{ADE1F206-1365-4B14-9A24-4B1A7DD58BAC}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{B693A4C3-B708-4F25-978E-56CA2517914C}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{B727564C-47D3-473A-AC9E-F4BE7B1BD5D3}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{BA068968-594F-40BE-8EE8-99119123C991}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{C40D110E-0718-4E11-A69B-D4EC7BF2EB04}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{C9D08433-5FDD-43C6-8482-7AFA7D891D98}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{CE542E0D-E056-4426-9F98-084C13E18641}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{E18F981B-401C-4D90-BC57-D8903564D558}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{E7AE39C6-B669-433F-A351-CA132C611310}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{EA348D4B-FB4D-4449-8749-654CA51F56A6}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{F09DD76B-D3D3-4558-B5BC-F1EEA6E00162}
Windows Live UX Platform-->MsiExec.exe /I{4CCBD1F4-CEEC-452A-9CB8-46564B501315}
Windows Live Writer Resources-->MsiExec.exe /X{01ABAEC3-8F96-4D00-9672-E49AAFDC0685}
Windows Live Writer Resources-->MsiExec.exe /X{0618FAAA-E236-4F74-924F-837A5592E506}
Windows Live Writer Resources-->MsiExec.exe /X{0B783100-6F04-4E2F-B83D-0A9B4EEDE47A}
Windows Live Writer Resources-->MsiExec.exe /X{182D3167-FE80-4DF6-96C2-84AC0ABA20D8}
Windows Live Writer Resources-->MsiExec.exe /X{2177152C-83DD-4540-B2F0-970F7303B7BA}
Windows Live Writer Resources-->MsiExec.exe /X{23A3E560-069F-4CFC-8F6C-1B526EC735FC}
Windows Live Writer Resources-->MsiExec.exe /X{2E50E321-4747-4EB5-9ECB-BBC6C3AC0F31}
Windows Live Writer Resources-->MsiExec.exe /X{330BBA5F-4A63-4545-900F-8446F205BA52}
Windows Live Writer Resources-->MsiExec.exe /X{35CB7C2D-B421-46FC-89CF-3B630628876F}
Windows Live Writer Resources-->MsiExec.exe /X{3A9ECD64-DE00-4779-A89E-C878513B2B37}
Windows Live Writer Resources-->MsiExec.exe /X{6209125A-46C5-4099-96DC-72FD55B07C1C}
Windows Live Writer Resources-->MsiExec.exe /X{7211F448-F865-4D37-B905-24D84E6C3E5E}
Windows Live Writer Resources-->MsiExec.exe /X{7607440C-FDCA-4210-9CD9-13D8F0DDAD0C}
Windows Live Writer Resources-->MsiExec.exe /X{7E41F42B-7ED8-4E15-A492-B93B287C027F}
Windows Live Writer Resources-->MsiExec.exe /X{8030AE22-7FA0-4880-A538-8906EDBF49F4}
Windows Live Writer Resources-->MsiExec.exe /X{854A24E3-A0EF-472A-B1D6-A2E9D43D5D8B}
Windows Live Writer Resources-->MsiExec.exe /X{8913AC02-67B8-4B52-91B2-BBA7B9C265B5}
Windows Live Writer Resources-->MsiExec.exe /X{96361BC7-B7C8-4594-AD89-813C371F4246}
Windows Live Writer Resources-->MsiExec.exe /X{998A42A3-D307-41C5-AB28-4C66F8E06303}
Windows Live Writer Resources-->MsiExec.exe /X{A0E4C4A6-1CC7-4442-8CAE-2D825B7BC1C1}
Windows Live Writer Resources-->MsiExec.exe /X{A58FCEF4-3191-466C-8949-0FFFFFB7631D}
Windows Live Writer Resources-->MsiExec.exe /X{B77D2795-23C0-4DBD-B7B5-CFB542D1FA3F}
Windows Live Writer Resources-->MsiExec.exe /X{C3F20956-66D6-4834-9427-DABFDF123D70}
Windows Live Writer Resources-->MsiExec.exe /X{C4E8BC59-BD60-4B73-999B-758890DF4E62}
Windows Live Writer Resources-->MsiExec.exe /X{D4EA8070-20E0-4BAF-BC44-D166C292FEBE}
Windows Live Writer Resources-->MsiExec.exe /X{E800ADC4-F459-42F5-89A2-E754634B010A}
Windows Live Writer-->MsiExec.exe /X{01944037-D136-45EE-A007-403EAD929FC7}
Windows Live Writer-->MsiExec.exe /X{06EED60F-7FFC-43A7-936E-AA4A8BD948B4}
Windows Live Writer-->MsiExec.exe /X{0BC39E89-506A-4ADA-8924-27AEE2C97618}
Windows Live Writer-->MsiExec.exe /X{1026DF85-1C0F-4839-888E-EB9D5B73CF46}
Windows Live Writer-->MsiExec.exe /X{1A79A578-4277-48AF-98A6-F9E48CF1B6D8}
Windows Live Writer-->MsiExec.exe /X{254F7574-53A7-43D1-BC4D-B1E894AEE175}
Windows Live Writer-->MsiExec.exe /X{25CD4B12-8CC5-433E-B723-C9CB41FA8C5A}
Windows Live Writer-->MsiExec.exe /X{2B919309-7052-45A4-B1C8-5B4894E8648B}
Windows Live Writer-->MsiExec.exe /X{3C3DCD2B-6FC7-41BF-BB80-40A936E1A785}
Windows Live Writer-->MsiExec.exe /X{3C41298B-A3F5-40C8-8BE3-A9A3F0644B0A}
Windows Live Writer-->MsiExec.exe /X{42B6C7E0-0DAE-488D-8DAF-838898102F19}
Windows Live Writer-->MsiExec.exe /X{51449A7F-4820-4757-9236-87A3BE7B6F27}
Windows Live Writer-->MsiExec.exe /X{55268806-FC27-4CA2-9CCA-1269FD4831FE}
Windows Live Writer-->MsiExec.exe /X{70BF63A5-DE6A-417C-AB93-5E31D0DA994E}
Windows Live Writer-->MsiExec.exe /X{73669388-1011-4B57-A90F-8B0415093AB2}
Windows Live Writer-->MsiExec.exe /X{76D7098A-B27C-44E9-8DB5-E6EE1A1EB385}
Windows Live Writer-->MsiExec.exe /X{794D971F-7EC1-4F71-A51C-773074CAB8DA}
Windows Live Writer-->MsiExec.exe /X{79A1AF43-BD17-4A81-B38A-6D6535D3F377}
Windows Live Writer-->MsiExec.exe /X{7A83618D-879A-4258-8B5E-5AD8B5F3EDD0}
Windows Live Writer-->MsiExec.exe /X{8658C355-896C-465F-86C6-F4B344517E7D}
Windows Live Writer-->MsiExec.exe /X{86C40513-B5A4-476E-9EAB-EC118DCF4502}
Windows Live Writer-->MsiExec.exe /X{8E31695A-4694-4DC4-8BEF-F8F22520D38D}
Windows Live Writer-->MsiExec.exe /X{902C4E0E-89CE-43B9-BCC0-F3A91E987F99}
Windows Live Writer-->MsiExec.exe /X{97C79BEC-43F7-4BD8-A6A7-85C0257E488A}
Windows Live Writer-->MsiExec.exe /X{B20502AB-2A3F-48F9-AD09-9FB61689A6D4}
Windows Live Writer-->MsiExec.exe /X{C41A3B9E-A238-4E83-AD37-D1EDD1105F5A}
Windows Live Writer-->MsiExec.exe /X{C595F480-788A-4F8F-8277-1A91F32CA879}
Windows Live Writer-->MsiExec.exe /X{D16E0F0C-5D10-45CF-A585-CE3689B5A913}
Windows Live Writer-->MsiExec.exe /X{D2C146B1-948D-47EF-8387-5D1C6B980F7C}
Windows Live Writer-->MsiExec.exe /X{DF2B3089-8B7A-4CBC-87D0-8AD60CAED564}
Windows Live Writer-->MsiExec.exe /X{E0AEFDEF-9BC4-4D6F-BE11-B4BD7E3B8816}
Windows Live 程式集-->MsiExec.exe /I{EA2BE047-FF29-4336-BB70-6AF201085BAF}
Windows Live-->MsiExec.exe /I{8D813AFF-D91D-4EE0-821F-B901FC2E89FA}
Windows Liven peruspaketti-->MsiExec.exe /I{28B2947F-FC0B-4450-80E3-6DF698E824A6}
Windows Liven sähköposti-->MsiExec.exe /I{1D6F9A9A-DCF3-45A7-9B14-46DDA778313F}
Windows Software Development Kit DirectX x64 Remote-->MsiExec.exe /I{5FB4C443-6BD6-1514-2717-3827D65AE6FB}
Windows Software Development Kit DirectX x86 Remote-->MsiExec.exe /I{23176E97-26CB-C72A-19EB-BFB21AC1D15A}
Windows Software Development Kit for Windows Store Apps DirectX x64 Remote-->MsiExec.exe /I{27EF252D-800C-ED42-9904-459FE0046225}
Windows Software Development Kit for Windows Store Apps DirectX x86 Remote-->MsiExec.exe /I{42F61556-29ED-8122-F39E-6F04EA5FF279}
Windows Software Development Kit for Windows Store Apps-->MsiExec.exe /I{D11F66FF-82B3-DDB8-1146-525370552BE1}
Windows Software Development Kit-->MsiExec.exe /I{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}
Συλλογή φωτογραφιών-->MsiExec.exe /X{A19A8C25-272A-4CD6-8BA8-3772321A021B}
Почта Windows Live-->MsiExec.exe /I{5FE3BC4E-2BD5-4D6B-8BC4-640A42626AAD}
Фотоальбом-->MsiExec.exe /X{087D261B-73AE-4B8A-8F18-2EE80DD2ED8B}
Фотогалерия-->MsiExec.exe /X{32AA7594-09A9-437F-9541-5F760509B752}
Фотографии (общедоступная версия)-->MsiExec.exe /X{2B068A64-F867-44E9-8827-A795647C8730}
גלריית התמונות-->MsiExec.exe /X{E37CD6E8-BC51-4D48-9840-803EC3B418D3}
بريد Windows Live-->MsiExec.exe /I{5681FEA2-1CF8-461E-B611-55D2C50FC4EF}
معرض الصور-->MsiExec.exe /X{5006FD66-7E9B-4F92-BD36-275AD7712348}
影像中心-->MsiExec.exe /X{631C4E4F-6FDC-4CC0-A067-E9876A9BA7FD}

======Hosts File======

127.0.0.1 192.150.14.69
127.0.0.1 192.150.18.101
127.0.0.1 192.150.18.108
127.0.0.1 192.150.22.40
127.0.0.1 192.150.8.100
127.0.0.1 192.150.8.118
127.0.0.1 209-34-83-73.ood.opsource.net
127.0.0.1 3dns-1.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 3dns-2.adobe.com

======System event log======

Computer Name: Coolbox-PC
Event Code: 42
Message: Systém přechází do režimu spánku.

Důvod spánku: Aplikační rozhraní API
Record Number: 41182
Source Name: Microsoft-Windows-Kernel-Power
Time Written: 20140313135306.719785-000
Event Type: Informace
User:

Computer Name: Coolbox-PC
Event Code: 12
Message: Schéma zásad resetování procesu C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (ID procesu: 1468) od {381B4222-F694-41F0-9685-FF5BB260DF2E} do {381B4222-F694-41F0-9685-FF5BB260DF2E}
Record Number: 41181
Source Name: Microsoft-Windows-UserModePowerService
Time Written: 20140313135305.907101-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Coolbox-PC
Event Code: 12
Message: Schéma zásad resetování procesu C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (ID procesu: 1468) od {381B4222-F694-41F0-9685-FF5BB260DF2E} do {381B4222-F694-41F0-9685-FF5BB260DF2E}
Record Number: 41180
Source Name: Microsoft-Windows-UserModePowerService
Time Written: 20140313135252.695056-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Coolbox-PC
Event Code: 12
Message: Schéma zásad resetování procesu C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (ID procesu: 1468) od {381B4222-F694-41F0-9685-FF5BB260DF2E} do {381B4222-F694-41F0-9685-FF5BB260DF2E}
Record Number: 41179
Source Name: Microsoft-Windows-UserModePowerService
Time Written: 20140313134440.413702-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Coolbox-PC
Event Code: 12
Message: Schéma zásad resetování procesu C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (ID procesu: 1468) od {381B4222-F694-41F0-9685-FF5BB260DF2E} do {381B4222-F694-41F0-9685-FF5BB260DF2E}
Record Number: 41178
Source Name: Microsoft-Windows-UserModePowerService
Time Written: 20140313133941.121971-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

=====Application event log=====

Computer Name: Coolbox-PC
Event Code: 105
Message: svchost (7016) Instance: Databázový stroj spustil novou instanci (0). (Čas=0 s)

Sekvence interního načasování: [1] 0.000, [2] 0.000, [3] 0.000, [4] 0.016, [5] 0.000, [6] 0.000, [7] 0.000, [8] 0.000, [9] 0.000, [10] 0.000.
Record Number: 62147
Source Name: ESENT
Time Written: 20140930111040.000000-000
Event Type: Informace
User:

Computer Name: Coolbox-PC
Event Code: 102
Message: svchost (7016) Instance: Databázový stroj (6.03.9600.0000) spouští novou instanci (0).
Record Number: 62146
Source Name: ESENT
Time Written: 20140930111040.000000-000
Event Type: Informace
User:

Computer Name: Coolbox-PC
Event Code: 903
Message: Služba Ochrana softwaru byla ukončena.

Record Number: 62145
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20140930111025.000000-000
Event Type: Informace
User:

Computer Name: Coolbox-PC
Event Code: 16384
Message: Restartování služby Ochrana softwaru bylo úspěšně naplánováno na 2114-09-06T11:10:25Z. Důvod: RulesEngine
Record Number: 62144
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20140930111025.000000-000
Event Type: Informace
User:

Computer Name: Coolbox-PC
Event Code: 1001
Message: Chybný blok -746254382, typ 5
Název události: WPNConnectionFailure
Reakce: Není k dispozici.
ID souboru CAB: 0

Podpis problému:
P1: Test Connect
P2: 880403fa
P3: WNP
P4: Unknown
P5: Unknown
P6: Unknown
P7: 2
P8: 75
P9:
P10:

Připojené soubory:
C:\Users\Coolbox\AppData\Local\Temp\wpn_15001471472628211130.evtx

Tyto soubory mohou být k dispozici zde:
C:\Users\Coolbox\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_Test Connect_9b26a8ef55c176b147526e63175e4b9df4c66e12_00000000_cab_0988e20e

Symbol analýzy:
Opětovné hledání řešení: 0
ID hlášení: 463b3d77-47d7-11e4-bfb1-b870f4b13fec
Stav hlášení: 0
Zakódovaný interval: ea4299296860cbcc626b4180a46aac0b
Record Number: 62143
Source Name: Windows Error Reporting
Time Written: 20140930111015.000000-000
Event Type: Informace
User:

=====Security event log=====

Computer Name: Coolbox-PC
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-3442833130-3731506892-1951788502-1001
Název účtu: coolbox
Doména účtu: Coolbox-PC
ID přihlášení: 0x3470D

Další informace:
Pracovní stanice volajícího: COOLBOX-PC
Název cílového účtu: Guest
Doména cílového účtu: Coolbox-PC
Record Number: 212332
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141127122520.442067-000
Event Type: Úspěšný audit
User:

Computer Name: Coolbox-PC
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-3442833130-3731506892-1951788502-1001
Název účtu: coolbox
Doména účtu: Coolbox-PC
ID přihlášení: 0x3470D

Další informace:
Pracovní stanice volajícího: COOLBOX-PC
Název cílového účtu: Administrator
Doména cílového účtu: Coolbox-PC
Record Number: 212331
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141127122520.442067-000
Event Type: Úspěšný audit
User:

Computer Name: Coolbox-PC
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-3442833130-3731506892-1951788502-1001
Název účtu: coolbox
Doména účtu: Coolbox-PC
ID přihlášení: 0x3470D

Další informace:
Pracovní stanice volajícího: COOLBOX-PC
Název cílového účtu: SimonAndrej
Doména cílového účtu: Coolbox-PC
Record Number: 212330
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141127122520.426441-000
Event Type: Úspěšný audit
User:

Computer Name: Coolbox-PC
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-3442833130-3731506892-1951788502-1001
Název účtu: coolbox
Doména účtu: Coolbox-PC
ID přihlášení: 0x3470D

Další informace:
Pracovní stanice volajícího: COOLBOX-PC
Název cílového účtu: HomeGroupUser$
Doména cílového účtu: Coolbox-PC
Record Number: 212329
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141127122520.426441-000
Event Type: Úspěšný audit
User:

Computer Name: Coolbox-PC
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-3442833130-3731506892-1951788502-1001
Název účtu: coolbox
Doména účtu: Coolbox-PC
ID přihlášení: 0x3470D

Další informace:
Pracovní stanice volajícího: COOLBOX-PC
Název cílového účtu: Guest
Doména cílového účtu: Coolbox-PC
Record Number: 212328
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141127122520.426441-000
Event Type: Úspěšný audit
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"NUMBER_OF_PROCESSORS"=4
"OS"=Windows_NT
"Path"=C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE;C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE;%SYSTEMROOT%\SYSTEM32;%SYSTEMROOT%;%SYSTEMROOT%\SYSTEM32\WBEM;%SYSTEMROOT%\SYSTEM32\WINDOWSPOWERSHELL\V1.0\;C:\PROGRAM FILES (X86)\WINDOWS LIVE\SHARED;C:\PROGRAM FILES (X86)\EGISTEC MYWINLOCKER\X64;C:\PROGRAM FILES (X86)\EGISTEC MYWINLOCKER\;;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64;C:\Program Files\Microsoft SQL Server\110\Tools\Binn\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
"PROCESSOR_LEVEL"=6
"PROCESSOR_REVISION"=2a07
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"windows_tracing_flags"=3
"windows_tracing_logfile"=C:\BVTBin\Tests\installpackage\csilogfile.log
"VS110COMNTOOLS"=C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\Tools\

-----------------EOF-----------------

altrok
Moderátor
Moderátor
Příspěvky: 7328
Registrován: 15 Lis 2012 22:26
Místo/Bydliště: Znojmo

Re: problem s NT bookem posílám LOG, děkuji

#3 Příspěvek od altrok »

Zdravim :bye:

:arrow: Nedavejte logy do code/citaci... hure se to cte, dekuji.

:arrow: Upraveny hosts mate schvalne?

:arrow: Odinstalujte vsechno od IObitu nez to stihne napachat nanavratne skody.

:arrow: V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne Kose).

:arrow: Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/ (nebo http://www.bleepingcomputer.com/download/adwcleaner/ )
  • ukoncete vsechny programy
  • kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
  • kliknete na Scan, pote na Clean
  • po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner [Sx].txt), jehoz obsah mi zkopirujte do pristi odpovedi
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

gabrin
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 06 Ún 2015 22:24

Re: problem s NT bookem posílám LOG, děkuji

#4 Příspěvek od gabrin »

Dle instrukci jsem provedl nejdříve před:
---------------


# AdwCleaner v4.110 - Logfile created 07/02/2015 at 16:56:52
# Updated 05/02/2015 by Xplode
# Database : 2015-02-05.2 [Server]
# Operating system : Windows 8.1 Pro (x64)
# Username : coolbox - COOLBOX-PC
# Running from : C:\Users\Coolbox\Downloads\adwcleaner_4.110.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\mystarttb.xml
File Found : C:\Users\Coolbox\daemonprocess.txt
Folder Found : C:\Program Files (x86)\Mobogenie
Folder Found : C:\Program Files (x86)\MyPC Backup
Folder Found : C:\Program Files (x86)\YouTube Accelerator
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Accelerator
Folder Found : C:\Users\Coolbox\AppData\Local\CrashRpt
Folder Found : C:\Users\Coolbox\AppData\Local\FileViewPro
Folder Found : C:\Users\Coolbox\AppData\Local\genienext
Folder Found : C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Folder Found : C:\Users\Coolbox\AppData\Local\Mobogenie
Folder Found : C:\Users\Coolbox\AppData\Local\PackageAware
Folder Found : C:\Users\Coolbox\AppData\Local\webplayer
Folder Found : C:\Users\Coolbox\AppData\LocalLow\Goobzo
Folder Found : C:\Users\Coolbox\AppData\Roaming\newnext.me
Folder Found : C:\Users\Coolbox\AppData\Roaming\OpenCandy
Folder Found : C:\Users\Coolbox\Documents\Mobogenie

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\BI
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\FLV Player
Key Found : HKCU\Software\Webplayer
Key Found : [x64] HKCU\Software\BI
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Found : [x64] HKCU\Software\Webplayer
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CCB24E92-62C4-4C53-95D2-65F9EED476BC}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EE171732-BEB4-4576-887D-CB62727F01CA}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [FLV Player]

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v35.0.1 (x86 cs)

[ba46fptn.default] - Line Found : user_pref("browser.search.hiddenOneOffs", "Google (avast),Seznam,DuckDuckGo,Heuréka,Mapy.cz,Search The Web,Slunečnice,Wikipedie (cs)");

-\\ Google Chrome v40.0.2214.111

*************************

AdwCleaner[R0].txt - [3669 bytes] - [07/02/2015 16:56:52]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [3728 bytes] ##########

gabrin
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 06 Ún 2015 22:24

Re: problem s NT bookem posílám LOG, děkuji

#5 Příspěvek od gabrin »

... ted po:
-----------------------
# AdwCleaner v4.110 - Logfile created 07/02/2015 at 17:05:54
# Updated 05/02/2015 by Xplode
# Database : 2015-02-05.2 [Server]
# Operating system : Windows 8.1 Pro (x64)
# Username : coolbox - COOLBOX-PC
# Running from : C:\Users\Coolbox\Downloads\adwcleaner_4.110.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Accelerator
Folder Deleted : C:\Program Files (x86)\Mobogenie
Folder Deleted : C:\Program Files (x86)\MyPC Backup
Folder Deleted : C:\Program Files (x86)\YouTube Accelerator
Folder Deleted : C:\Users\Coolbox\AppData\Local\genienext
Folder Deleted : C:\Users\Coolbox\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Coolbox\AppData\Local\PackageAware
Folder Deleted : C:\Users\Coolbox\AppData\Local\webplayer
Folder Deleted : C:\Users\Coolbox\AppData\Local\CrashRpt
Folder Deleted : C:\Users\Coolbox\AppData\Local\FileViewPro
Folder Deleted : C:\Users\Coolbox\AppData\LocalLow\Goobzo
Folder Deleted : C:\Users\Coolbox\AppData\Roaming\newnext.me
Folder Deleted : C:\Users\Coolbox\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Coolbox\Documents\Mobogenie
Folder Deleted : C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
File Deleted : C:\Users\Coolbox\daemonprocess.txt
File Deleted : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\mystarttb.xml

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [FLV Player]
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CCB24E92-62C4-4C53-95D2-65F9EED476BC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Key Deleted : HKCU\Software\BI
Key Deleted : HKCU\Software\Webplayer
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\FLV Player
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EE171732-BEB4-4576-887D-CB62727F01CA}

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v35.0.1 (x86 cs)

[ba46fptn.default\prefs.js] - Line Deleted : user_pref("browser.search.hiddenOneOffs", "Google (avast),Seznam,DuckDuckGo,Heuréka,Mapy.cz,Search The Web,Slunečnice,Wikipedie (cs)");

-\\ Google Chrome v40.0.2214.111


*************************

AdwCleaner[R0].txt - [3827 bytes] - [07/02/2015 17:00:37]
AdwCleaner[S0].txt - [3524 bytes] - [07/02/2015 17:05:54]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3583 bytes] ##########

altrok
Moderátor
Moderátor
Příspěvky: 7328
Registrován: 15 Lis 2012 22:26
Místo/Bydliště: Znojmo

Re: problem s NT bookem posílám LOG, děkuji

#6 Příspěvek od altrok »

:arrow: Upraveny hosts mate schvalne?

:arrow: Dejte log FRST.txt, prilozte i Addition.txt - http://forum.viry.cz/viewtopic.php?f=30&t=133101
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

gabrin
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 06 Ún 2015 22:24

Re: problem s NT bookem posílám LOG, děkuji

#7 Příspěvek od gabrin »

dobrý den,
hosts byl upraven schválně...řešíme nový eshop, webmaster to tak nastavil...

je v tom problém?

co se týče
Dejte log FRST.txt, prilozte i Addition.txt - viewtopic.php?f=30&t=133101
tak i přes velkou snahu a dodržení postupi nelze program spustit... píše to, že to není na ploše.. i když tam je uložen
:-(

altrok
Moderátor
Moderátor
Příspěvky: 7328
Registrován: 15 Lis 2012 22:26
Místo/Bydliště: Znojmo

Re: problem s NT bookem posílám LOG, děkuji

#8 Příspěvek od altrok »

gabrin napsal:hosts byl upraven schválně...řešíme nový eshop, webmaster to tak nastavil...

je v tom problém?
Neni. Jen se ujistuju, ze o teto uprave vite.


gabrin napsal:Dejte log FRST.txt, prilozte i Addition.txt - viewtopic.php?f=30&t=133101
tak i přes velkou snahu a dodržení postupi nelze program spustit... píše to, že to není na ploše.. i když tam je uložen
:-(
Spustte tedy jen samotny FRST.exe/FRST64.exe (bez FRSTLauncheru)
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

gabrin
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 06 Ún 2015 22:24

Re: problem s NT bookem posílám LOG, děkuji

#9 Příspěvek od gabrin »

FIRST
----------------------------
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-02-2015
Ran by coolbox (administrator) on COOLBOX-PC on 09-02-2015 20:45:42
Running from C:\Users\Coolbox\Desktop
Loaded Profiles: coolbox (Available profiles: coolbox & SimonAndrej)
Platform: Windows 8.1 Pro (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe
(IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenu_Hook.exe
(CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(IObit) C:\Program Files (x86)\IObit\Start Menu 8\InstallServices.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
(Dolby Laboratories Inc.) C:\DOLBY PCEE4\pcee4.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2588968 2010-11-12] (ELAN Microelectronics Corp.)
HKLM\...\Run: [Power Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [1831528 2011-05-10] (Acer Incorporated)
HKLM\...\Run: [KONICA MINOLTA PagePro 1350WStatusDisplay] => C:\WINDOWS\system32\MSTM64_Q.EXE [247736 2013-05-02] (KONICA MINOLTA BUSINESS TECHNOLOGIES, INC.)
HKLM\...\Run: [SpywareTerminatorShield] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [2777296 2012-09-07] (Crawler.com)
HKLM\...\Run: [SpywareTerminatorUpdater] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [3684488 2013-10-22] (Crawler.com)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AutoKMS] => C:\WINDOWS\AutoKMS.exe [615936 2014-12-13] ()
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12673128 2015-01-29] (Realtek Semiconductor)
HKLM-x32\...\Run: [ArcadeMovieService] => C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [177448 2011-05-09] (CyberLink Corp.)
HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [297280 2011-04-24] (NTI Corporation)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Dolby PCEE4\pcee4.exe [506712 2011-02-03] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [EgisTecPMMUpdate] => C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [407920 2010-09-18] (Egis Technology Inc.)
HKLM-x32\...\Run: [EgisUpdate] => C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [201584 2010-09-18] (Egis Technology Inc.)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [277504 2012-07-09] (Intel Corporation)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [SuiteTray] => C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [340336 2010-09-28] (Egis Technology Inc.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-27] (AVAST Software)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1131632 2014-08-05] (Dritek System Inc.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41360 2014-12-03] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\WINDOWS\SYSTEM32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [EEDSpeedLauncher] => rundll32.exe C:\WINDOWS\system32\eed_ec.dll,SpeedLauncher
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [icq] => C:\Users\Coolbox\AppData\Roaming\ICQM\icq.exe [35239432 2014-12-03] (ICQ)
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30877280 2014-12-11] (Skype Technologies S.A.)
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {1867392d-805b-11e4-bff9-b870f4b13fec} - "F:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {2695d6dd-e571-11e3-bf76-b870f4b13fec} - "E:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {be70bbf9-ddb9-11e3-bf70-b870f4b13fec} - "E:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {e0934027-51e7-11e4-bfbe-b870f4b13fec} - "E:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {e0a597f3-2c6c-11e4-bfa2-b870f4b13fec} - "E:\setup.exe"
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [178632 2015-02-07] (NVIDIA Corporation)
AppInit_DLLs: , C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [178632 2015-02-07] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [165760 2015-02-07] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://acer.msn.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
BHO: No Name -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> No File
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 217.195.165.131 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default
FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1216156.dll (Adobe Systems, Inc.)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3442833130-3731506892-1951788502-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Coolbox\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Users\Coolbox\AppData\Roaming\mozilla\plugins\np-mswmp.dll (Microsoft Corporation)
FF SearchPlugin: C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\searchplugins\google-avast.xml
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\Extensions\iobitascsurfingprotection@iobit.com [2015-02-07]
FF Extension: Simple White - C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\Extensions\Simple@White.Theme.xpi [2015-01-08]
FF Extension: QuickJava - C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\Extensions\{E6C1199F-E687-42da-8C24-E7770CC3AE66}.xpi [2014-12-12]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-20]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2014-11-30]

Chrome:
=======
CHR Profile: C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-02-03]
CHR Extension: (Disk Google) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-02-03]
CHR Extension: (YouTube) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-02-03]
CHR Extension: (Vyhledávání Google) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-02-03]
CHR Extension: (Avast Online Security) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-10-07]
CHR Extension: (Pixlr Editor) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmaknaampgiegkcjlimdiidlhopknpk [2014-05-27]
CHR Extension: (VratnePenize.cz) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiekfaemafmplemocgimeccahephhdgf [2014-01-28]
CHR Extension: (ActiveX for Chrome) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\lgllffgicojgllpmdbemgglaponefajn [2014-05-07]
CHR Extension: (Peněženka Google) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-02]
CHR Extension: (Google Chrome to Phone Extension) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco [2014-12-18]
CHR Extension: (Gmail) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-02-03]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-27]
CHR HKLM-x32\...\Chrome\Extension: [iphahelpmejkbidhiecfeicblienleon] - No Path

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-12] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2014-12-12] (Avast Software)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-11-18] (Microsoft Corporation)
S4 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2014-12-13] (NVIDIA Corporation)
S4 IAStorDataMgrSvc; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [7168 2012-07-09] (Intel Corporation) [File not signed]
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2724128 2015-01-16] (IObit)
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2013-11-14] (Hewlett-Packard) [File not signed]
S4 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832 2011-04-24] (NTI Corporation)
S4 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2014-12-13] (NVIDIA Corporation)
S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19823248 2014-12-13] (NVIDIA Corporation)
S4 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () [File not signed]
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2013-11-14] (Hewlett-Packard) [File not signed]
S4 ST2012_Svc; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [1148664 2012-09-07] (Crawler.com)
R2 StartMenuService; C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe [1055008 2015-01-14] (IObit)
S4 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-27] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-27] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-27] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-27] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-27] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-27] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-27] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-27] ()
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7549616 2015-01-09] (Broadcom Corporation)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-01-02] (REALiX(tm))
S2 MLPTDR_Q; \??\C:\WINDOWS\system32\ [0 ] () <==== ATTENTION (zero size file/folder)
S2 MLPTDR_Q; \??\C:\WINDOWS\SysWOW64\ [0 ] () <==== ATTENTION (zero size file/folder)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2014-12-13] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
S3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [226304 2014-11-18] (Microsoft Corporation)
R2 sp_rsdrv2; C:\Windows\System32\DRIVERS\stflt.sys [51496 2014-04-24] (Windows (R) Win 7 DDK provider)
U4 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2014-12-12] (Avast Software)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
S3 cpuz137; \??\C:\Users\Coolbox\AppData\Local\Temp\cpuz137\cpuz137_x64.sys [X]
U3 idsvc; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-09 20:45 - 2015-02-09 20:46 - 00026026 _____ () C:\Users\Coolbox\Desktop\FRST.txt
2015-02-09 20:44 - 2015-02-09 20:45 - 00000000 ____D () C:\FRST
2015-02-09 20:43 - 2015-02-09 20:44 - 02132992 _____ (Farbar) C:\Users\Coolbox\Desktop\FRST64.exe
2015-02-08 19:28 - 2015-02-08 19:28 - 00326150 _____ () C:\Users\Coolbox\Desktop\teaser3.jpeg
2015-02-08 17:38 - 2015-02-08 17:46 - 182762852 _____ () C:\Users\Coolbox\Downloads\wetransfer-e3643c.zip
2015-02-08 13:53 - 2015-02-08 13:53 - 00168453 _____ () C:\Users\Coolbox\Desktop\teaser-pribeh.jpeg
2015-02-07 21:15 - 2015-02-07 21:15 - 05325208 _____ (Piriform Ltd) C:\Users\Coolbox\Downloads\ccsetup502.exe
2015-02-07 20:32 - 2015-02-07 20:32 - 00000161 _____ () C:\WINDOWS\AutoKMS.ini
2015-02-07 20:18 - 2015-02-07 20:18 - 00112640 _____ (forum.viry.cz) C:\Users\Coolbox\Desktop\FRSTLauncher.exe
2015-02-07 19:32 - 2015-02-07 19:32 - 02112512 _____ () C:\Users\Coolbox\Downloads\adwcleaner_4.110 (1).exe
2015-02-07 18:37 - 2015-02-07 20:27 - 00029696 _____ () C:\Users\Coolbox\AppData\Local\MSGBOX.EXE
2015-02-07 16:56 - 2015-02-07 19:57 - 00000000 ____D () C:\AdwCleaner
2015-02-07 16:51 - 2015-02-07 16:51 - 02112512 _____ () C:\Users\Coolbox\Downloads\adwcleaner_4.110.exe
2015-02-07 16:36 - 2015-02-07 18:50 - 00129752 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-02-07 16:36 - 2015-02-07 16:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-02-07 16:36 - 2015-02-07 16:36 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-07 16:36 - 2015-02-07 16:36 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-02-07 16:36 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-02-07 16:36 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-02-07 16:36 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-02-07 16:33 - 2015-02-07 16:34 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Coolbox\Downloads\mbam-setup-2.0.4.1028.exe
2015-02-07 12:23 - 2015-02-09 17:03 - 00000693 _____ () C:\WINDOWS\setupact.log
2015-02-07 12:23 - 2015-02-07 12:23 - 00000000 _____ () C:\WINDOWS\setuperr.log
2015-02-07 12:20 - 2015-02-07 17:07 - 00008032 _____ () C:\WINDOWS\PFRO.log
2015-02-07 11:36 - 2015-02-07 11:25 - 00176552 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaw.exe
2015-02-07 11:36 - 2015-02-07 11:25 - 00176552 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\java.exe
2015-02-07 11:36 - 2015-02-07 11:25 - 00098216 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2015-02-07 11:35 - 2015-02-07 11:35 - 00000000 ____D () C:\WINDOWS\Sun
2015-02-07 11:35 - 2015-02-07 11:35 - 00000000 ____D () C:\Users\Coolbox\AppData\Roaming\Oracle
2015-02-07 11:22 - 2015-02-07 11:42 - 00000304 _____ () C:\WINDOWS\Tasks\Uninstaller_SkipUac_coolbox.job
2015-02-07 11:22 - 2015-02-07 11:22 - 00002408 _____ () C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_coolbox
2015-02-07 11:20 - 2015-02-07 11:20 - 00639400 _____ (Oracle Corporation) C:\Users\Coolbox\Downloads\chromeinstall-8u31.exe
2015-02-07 11:07 - 2015-02-07 11:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Start Menu 8
2015-02-07 11:04 - 2015-02-07 11:05 - 09344920 _____ (IObit ) C:\Users\Coolbox\Downloads\startmenu-setup.exe
2015-02-07 09:27 - 2015-02-07 09:27 - 00000000 ___RH () C:\Users\Public\Documents\NTIMMV9P.dll
2015-02-07 09:07 - 2015-02-07 10:03 - 00000000 ____D () C:\Users\Coolbox\Desktop\gabi SD karta
2015-02-07 01:46 - 2015-02-07 01:46 - 00000000 ____D () C:\WINDOWS\SysWOW64\NV
2015-02-07 01:46 - 2015-02-07 01:46 - 00000000 ____D () C:\WINDOWS\system32\NV
2015-02-07 01:45 - 2015-02-07 01:45 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp
2015-02-07 01:45 - 2014-12-13 09:03 - 06859408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2015-02-07 01:45 - 2014-12-13 09:03 - 03513488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2015-02-07 01:45 - 2014-12-13 09:03 - 02558608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2015-02-07 01:45 - 2014-12-13 09:03 - 01097360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2015-02-07 01:45 - 2014-12-13 09:03 - 00935240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2015-02-07 01:45 - 2014-12-13 09:03 - 00386368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2015-02-07 01:45 - 2014-12-13 09:03 - 00075080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2015-02-07 01:45 - 2014-12-13 09:03 - 00062608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2015-02-07 01:45 - 2014-12-13 00:11 - 04151176 _____ () C:\WINDOWS\system32\nvcoproc.bin
2015-02-07 01:36 - 2015-02-07 01:36 - 32099472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 25460552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 24764232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 20465808 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 18594432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 17264312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 16040184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 14128496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 13288360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 13202520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 10770120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 10710160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 10345280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2015-02-07 01:36 - 2015-02-07 01:36 - 03610440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 03293136 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 03248968 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 02897824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 01895056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6434709.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 01556624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6434709.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00994384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00968336 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00942400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00928072 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00906560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00876976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00353224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00306328 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00178632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00165760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00031376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvpciflt.sys
2015-02-07 01:36 - 2015-02-07 01:36 - 00027983 _____ () C:\WINDOWS\system32\nvinfo.pb
2015-02-06 22:28 - 2015-02-06 22:29 - 00000000 ____D () C:\rsit
2015-02-06 22:28 - 2015-02-06 22:29 - 00000000 ____D () C:\Program Files\trend micro
2015-02-06 22:28 - 2015-02-06 22:28 - 01222144 _____ () C:\Users\Coolbox\Downloads\RSITx64.exe
2015-02-06 19:46 - 2015-02-03 20:31 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-02-06 19:46 - 2015-02-03 20:31 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-02-06 19:35 - 2015-02-09 20:41 - 01563039 _____ () C:\WINDOWS\WindowsUpdate.log
2015-02-05 10:09 - 2015-02-09 20:14 - 00000982 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-05 10:09 - 2015-02-09 17:07 - 00000978 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-04 21:04 - 2015-02-04 21:04 - 00000000 __SHD () C:\found.000
2015-02-04 20:36 - 2015-02-04 20:36 - 05070512 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
2015-02-04 20:30 - 2015-01-10 15:32 - 00128288 _____ (IObit) C:\WINDOWS\system32\IObitSmartDefragExtension.dll
2015-02-04 19:59 - 2015-02-04 19:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-02-04 19:58 - 2015-02-07 20:38 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-02-04 19:58 - 2014-11-27 21:37 - 00364512 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2015-02-02 22:29 - 2015-02-02 22:29 - 00000000 ____D () C:\WINDOWS\pss
2015-02-02 22:12 - 2015-02-02 22:12 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2012
2015-02-02 22:12 - 2015-02-02 22:12 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2012
2015-02-02 19:50 - 2015-02-02 19:51 - 00000000 ____D () C:\Users\Coolbox\Documents\Visual Studio 2012
2015-02-02 19:50 - 2015-02-02 19:50 - 00000000 ____D () C:\Program Files (x86)\NuGet
2015-02-02 19:13 - 2015-02-02 19:13 - 00000000 ____D () C:\Program Files (x86)\Windows Kits
2015-02-02 19:10 - 2015-02-04 19:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012 Express
2015-02-02 19:08 - 2015-02-04 19:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012
2015-02-02 19:08 - 2015-02-02 19:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft SDKs
2015-02-02 19:08 - 2015-02-02 19:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft Help Viewer
2015-02-02 19:00 - 2015-02-04 19:37 - 00000000 ____D () C:\WINDOWS\SysWOW64\1033
2015-02-02 19:00 - 2015-02-04 19:37 - 00000000 ____D () C:\WINDOWS\system32\1033
2015-02-02 18:56 - 2015-02-04 19:37 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2015-02-02 18:56 - 2015-02-02 19:47 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2015-02-02 18:50 - 2015-02-02 18:50 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2015-02-02 18:49 - 2015-02-02 19:09 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 11.0
2015-02-02 18:47 - 2015-02-04 19:37 - 00000000 ____D () C:\ProgramData\Package Cache
2015-01-29 23:09 - 2015-01-29 23:09 - 01772950 _____ () C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2015-01-29 23:08 - 2015-01-29 22:50 - 02604376 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 01560168 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2015-01-29 23:08 - 2015-01-29 22:50 - 00518896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00220512 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00211184 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00198896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00155888 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00121744 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00081248 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00078176 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2015-01-29 23:08 - 2015-01-29 22:49 - 00247560 ____N () C:\WINDOWS\system32\Drivers\RTConvEQ.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00039672 ____N () C:\WINDOWS\system32\Drivers\RtPCEE3.DAT
2015-01-29 23:08 - 2015-01-29 22:49 - 00003206 ____N () C:\WINDOWS\system32\Drivers\RtPCEE4.DAT
2015-01-29 23:08 - 2015-01-29 22:49 - 00001448 ____N () C:\WINDOWS\system32\Drivers\RtHdatEx.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00000520 ____N () C:\WINDOWS\system32\Drivers\RTEQEX3.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00000520 ____N () C:\WINDOWS\system32\Drivers\RTEQEX2.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00000520 ____N () C:\WINDOWS\system32\Drivers\RTEQEX1.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00000520 ____N () C:\WINDOWS\system32\Drivers\RTEQEX0.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00000176 ____N () C:\WINDOWS\system32\Drivers\RTHDAEQ1.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00000016 _____ () C:\WINDOWS\system32\Drivers\rtkhdaud.dat
2015-01-29 23:07 - 2015-01-29 22:50 - 03200104 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkAPO64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 03056360 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2015-01-29 23:07 - 2015-01-29 22:50 - 02518120 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 01827944 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 01501696 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2015-01-29 23:07 - 2015-01-29 22:50 - 01247848 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00375128 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00334680 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00332392 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00204120 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00149608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00101208 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00093800 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInst64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00078680 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2015-01-29 23:07 - 2015-01-29 22:49 - 03768152 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek.dll
2015-01-29 23:07 - 2011-05-02 07:27 - 03308376 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2015-01-29 23:07 - 2011-05-02 07:27 - 00426328 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2015-01-29 23:07 - 2011-05-02 07:27 - 00136024 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2015-01-29 23:07 - 2011-05-02 07:27 - 00118104 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2015-01-29 23:07 - 2011-05-02 07:27 - 00074072 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 02132824 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 02085440 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 01756264 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 01568360 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 01486952 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00728680 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00712296 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00693352 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00491112 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00432744 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00428648 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00341336 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00318808 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00241768 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2015-01-29 23:05 - 2015-01-29 22:49 - 01698408 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll
2015-01-29 23:05 - 2015-01-29 22:49 - 00200800 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2015-01-29 23:05 - 2015-01-29 22:49 - 00108960 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2015-01-29 22:55 - 2015-02-04 19:39 - 00000000 ____D () C:\Users\Coolbox\Documents\MgmtEngine_Intel_8.1.0.1263_W8x64UW8x86U_A
2015-01-29 22:49 - 2015-02-04 19:39 - 00000000 ____D () C:\Users\Coolbox\Documents\Audio_Realtek_6.0.1.6438_W8x64UW8x86U_A
2015-01-29 22:43 - 2012-07-09 13:43 - 00645952 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaStorA.sys
2015-01-29 22:42 - 2015-01-29 22:42 - 00000000 ____D () C:\Users\Coolbox\AppData\Roaming\InstallShield
2015-01-29 22:40 - 2015-02-04 19:39 - 00000000 ____D () C:\Users\Coolbox\Documents\AHCI_Intel_11.5.0.1207_W8x64UW8x86U_A
2015-01-26 22:20 - 2015-01-26 22:21 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-01-24 10:30 - 2015-01-24 10:30 - 00000132 _____ () C:\Users\Coolbox\AppData\Roaming\Adobe Formát AIFF CS6 – předvolby
2015-01-24 10:10 - 2015-01-24 10:12 - 03349781 _____ () C:\Users\Coolbox\Downloads\Prislusenstvi 600x400(2).rar
2015-01-24 09:50 - 2015-01-24 09:50 - 00458960 _____ (Broadcom Corporation) C:\WINDOWS\system32\Drivers\k57nd60a.sys
2015-01-23 17:43 - 2015-01-23 17:43 - 00939956 _____ () C:\Users\Coolbox\Downloads\7z465.exe
2015-01-23 16:26 - 2015-01-23 16:26 - 03349781 _____ () C:\Users\Coolbox\Downloads\Prislusenstvi 600x400(1).rar
2015-01-23 16:05 - 2015-01-23 16:05 - 03349781 _____ () C:\Users\Coolbox\Downloads\Prislusenstvi 600x400.rar
2015-01-19 13:24 - 2015-01-19 13:24 - 05558768 _____ () C:\Users\Coolbox\Downloads\wetransfer-96eb25.zip
2015-01-19 12:53 - 2015-01-19 12:53 - 01729240 _____ () C:\Users\Coolbox\Downloads\Hokejové lahve a termoobaly 5.11.2014.xlsx
2015-01-17 19:33 - 2015-01-17 19:35 - 26547281 _____ () C:\Users\Coolbox\Downloads\wetransfer-432164.zip
2015-01-17 19:20 - 2015-01-17 19:21 - 06047233 _____ () C:\Users\Coolbox\Downloads\prilohy_9519.zip
2015-01-16 21:10 - 2015-01-16 21:10 - 00000020 _____ () C:\Users\Coolbox\Downloads\Hlavní filtry.txt
2015-01-16 12:04 - 2015-01-16 12:24 - 157597886 _____ () C:\Users\Coolbox\Downloads\2007.zip
2015-01-16 11:27 - 2015-01-16 11:55 - 221388442 _____ () C:\Users\Coolbox\Downloads\2008.zip
2015-01-16 10:50 - 2015-01-16 11:05 - 115582172 _____ () C:\Users\Coolbox\Downloads\2011.zip
2015-01-16 10:42 - 2015-01-16 10:45 - 22127919 _____ () C:\Users\Coolbox\Downloads\2012.zip
2015-01-16 10:17 - 2015-01-16 10:18 - 06415617 _____ () C:\Users\Coolbox\Downloads\2010.zip
2015-01-16 09:37 - 2015-01-16 09:37 - 224768383 _____ () C:\Users\Coolbox\Downloads\Nepotvrzeno 197512.crdownload
2015-01-14 10:32 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2015-01-14 10:32 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2015-01-14 10:32 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2015-01-14 10:32 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2015-01-14 10:32 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2015-01-14 10:32 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-01-14 10:32 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2015-01-14 10:32 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-01-12 12:49 - 2015-01-12 12:50 - 00002323 _____ () C:\Users\Coolbox\Downloads\faktura.xml
2015-01-11 15:26 - 2015-01-11 21:02 - 00000247 _____ () C:\WINDOWS\system32\2015-01-11-14-26-15.099-aswFe.exe-1480.log
2015-01-11 15:26 - 2015-01-11 15:26 - 00000197 _____ () C:\WINDOWS\system32\2015-01-11-14-26-11.097-AvastVBoxSVC.exe-9212.log
2015-01-11 13:49 - 2015-01-11 13:49 - 00000247 _____ () C:\WINDOWS\system32\2015-01-11-12-49-31.051-aswFe.exe-8880.log
2015-01-11 13:39 - 2015-01-11 13:49 - 00000247 _____ () C:\WINDOWS\system32\2015-01-11-12-39-44.085-aswFe.exe-968.log
2015-01-11 13:39 - 2015-01-11 13:39 - 00000197 _____ () C:\WINDOWS\system32\2015-01-11-12-39-38.014-AvastVBoxSVC.exe-6712.log
2015-01-11 11:19 - 2015-01-11 12:19 - 00000247 _____ () C:\WINDOWS\system32\2015-01-11-10-19-51.079-aswFe.exe-8748.log
2015-01-11 11:19 - 2015-01-11 11:19 - 00000197 _____ () C:\WINDOWS\system32\2015-01-11-10-19-47.032-AvastVBoxSVC.exe-8000.log
2015-01-11 10:45 - 2015-01-11 11:03 - 00000247 _____ () C:\WINDOWS\system32\2015-01-11-09-45-25.037-aswFe.exe-5836.log
2015-01-11 10:45 - 2015-01-11 10:45 - 00000197 _____ () C:\WINDOWS\system32\2015-01-11-09-45-19.073-AvastVBoxSVC.exe-6108.log
2015-01-10 15:55 - 2015-01-10 15:55 - 00000197 _____ () C:\WINDOWS\system32\2015-01-10-14-55-09.098-AvastVBoxSVC.exe-2480.log
2015-01-10 15:26 - 2015-01-10 15:26 - 00000247 _____ () C:\WINDOWS\system32\2015-01-10-14-26-17.067-aswFe.exe-7988.log
2015-01-10 15:14 - 2015-01-10 15:26 - 00000247 _____ () C:\WINDOWS\system32\2015-01-10-14-14-20.052-aswFe.exe-9396.log
2015-01-10 15:14 - 2015-01-10 15:14 - 00000197 _____ () C:\WINDOWS\system32\2015-01-10-14-14-14.004-AvastVBoxSVC.exe-8264.log

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-09 20:45 - 2013-02-03 12:01 - 00000000 ____D () C:\Users\Coolbox\AppData\Roaming\Skype
2015-02-09 20:35 - 2013-02-03 13:44 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-02-09 20:12 - 2013-10-20 17:49 - 00003842 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{13C664F0-4296-4DEB-9073-1ADADDC4AB0B}
2015-02-09 20:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-02-09 17:08 - 2013-02-03 22:23 - 00000000 ____D () C:\ProgramData\clear.fi
2015-02-09 17:04 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-02-09 13:01 - 2013-02-05 20:50 - 02160640 ___SH () C:\Users\Coolbox\Desktop\Thumbs.db
2015-02-09 07:32 - 2013-10-19 20:36 - 00000000 ____D () C:\Users\Coolbox
2015-02-08 22:27 - 2014-12-09 09:12 - 00001480 _____ () C:\Users\Coolbox\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2015-02-08 22:27 - 2013-05-07 13:51 - 00000000 ____D () C:\Users\Coolbox\Desktop\COOLBOX Fotky
2015-02-08 22:19 - 2015-01-07 13:49 - 00000132 _____ () C:\Users\Coolbox\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2015-02-07 20:38 - 2013-02-13 16:41 - 00000000 ____D () C:\Users\Coolbox\Desktop\nepoužívané programy
2015-02-07 19:58 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-02-07 18:17 - 2013-02-04 18:42 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3442833130-3731506892-1951788502-1001
2015-02-07 18:11 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-02-07 13:08 - 2014-11-13 21:49 - 00000000 ____D () C:\Program Files (x86)\IObit
2015-02-07 12:27 - 2015-01-02 23:47 - 00002858 _____ () C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (coolbox)
2015-02-07 11:37 - 2014-10-15 15:22 - 00000000 ____D () C:\Program Files (x86)\Java
2015-02-07 11:25 - 2014-12-06 16:22 - 00272296 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaws.exe
2015-02-07 11:24 - 2013-09-14 10:14 - 00000000 ____D () C:\ProgramData\Oracle
2015-02-07 11:07 - 2014-11-13 21:48 - 00000000 ____D () C:\Users\Coolbox\AppData\Roaming\IObit
2015-02-07 09:17 - 2014-01-05 20:19 - 00000000 ____D () C:\Program Files\Recuva
2015-02-07 09:07 - 2012-11-22 20:17 - 00000000 ____D () C:\Users\Coolbox\Desktop\gaba telefon
2015-02-07 08:59 - 2013-10-19 20:49 - 01749406 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-02-07 08:59 - 2013-09-30 04:56 - 00740962 _____ () C:\WINDOWS\system32\perfh005.dat
2015-02-07 08:59 - 2013-09-30 04:56 - 00152146 _____ () C:\WINDOWS\system32\perfc005.dat
2015-02-07 01:46 - 2014-08-05 20:32 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-02-07 01:45 - 2013-10-19 20:30 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-02-07 01:45 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Help
2015-02-07 01:44 - 2014-08-05 21:34 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-02-07 01:43 - 2013-10-19 20:30 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-02-07 01:30 - 2014-06-03 19:44 - 00000000 ____D () C:\WINDOWS\Minidump
2015-02-06 20:38 - 2013-02-03 12:02 - 00001155 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-02-06 19:47 - 2012-07-26 08:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-02-06 19:36 - 2013-10-20 17:47 - 00000000 ____D () C:\ProgramData\StartW8
2015-02-05 22:24 - 2014-01-26 13:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Repair Video Master
2015-02-05 10:37 - 2013-05-28 09:39 - 00000000 ____D () C:\Users\Coolbox\Desktop\Jiřík telefon
2015-02-05 10:09 - 2014-12-03 22:04 - 00003954 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-02-05 10:09 - 2014-12-03 22:04 - 00003718 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-02-05 05:20 - 2013-04-05 08:48 - 02577408 ___SH () C:\Users\Coolbox\Downloads\Thumbs.db
2015-02-04 21:16 - 2014-11-28 15:33 - 108724224 _____ () C:\WINDOWS\system32\config\SOFTWARE.iodefrag
2015-02-04 21:16 - 2014-11-28 15:33 - 02383872 _____ () C:\WINDOWS\system32\config\DEFAULT.iodefrag
2015-02-04 21:16 - 2014-11-28 15:33 - 00114688 _____ () C:\WINDOWS\system32\config\SAM.iodefrag
2015-02-04 21:16 - 2014-11-28 15:33 - 00028672 _____ () C:\WINDOWS\system32\config\SECURITY.iodefrag
2015-02-04 21:16 - 2014-11-13 22:13 - 108724224 _____ () C:\WINDOWS\system32\config\SOFTWARE.iodefrag.bak
2015-02-04 21:16 - 2014-11-13 22:13 - 02383872 _____ () C:\WINDOWS\system32\config\DEFAULT.iodefrag.bak
2015-02-04 21:16 - 2014-11-13 22:13 - 00114688 _____ () C:\WINDOWS\system32\config\SAM.iodefrag.bak
2015-02-04 21:16 - 2014-11-13 22:13 - 00028672 _____ () C:\WINDOWS\system32\config\SECURITY.iodefrag.bak
2015-02-04 20:36 - 2013-02-03 13:44 - 00003826 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-02-04 20:13 - 2014-12-18 21:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
2015-02-04 19:41 - 2014-11-24 18:47 - 00000000 ____D () C:\Users\SimonAndrej
2015-02-04 19:40 - 2014-12-18 21:14 - 00000000 ____D () C:\Program Files (x86)\BlueStacks
2015-02-04 19:40 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\WinMetadata
2015-02-04 19:40 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\WinMetadata
2015-02-04 19:40 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2015-02-04 19:40 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer
2015-02-04 19:40 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager
2015-02-04 19:40 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera
2015-02-04 19:39 - 2014-12-18 21:14 - 00000000 ____D () C:\ProgramData\BlueStacks
2015-02-04 19:39 - 2014-11-13 21:51 - 00000000 ____D () C:\Users\Coolbox\AppData\Roaming\ProductData
2015-02-04 19:39 - 2014-08-05 20:52 - 00000000 ____D () C:\Users\Coolbox\Documents\VGA_NVIDIA_9.18.13.0630_W8x64U_A
2015-02-04 19:39 - 2013-12-02 12:26 - 00000000 ____D () C:\Users\Coolbox\Documents\Cobia300R2_Adriatic_11Q1_MapPatch_R01
2015-02-04 19:39 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2015-02-04 19:39 - 2013-02-03 11:43 - 00000000 ____D () C:\Users\Coolbox\AppData\Local\PowerCinema
2015-02-04 19:25 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\registration
2015-02-04 19:20 - 2014-05-07 13:53 - 00000000 ____D () C:\ProgramData\Samsung
2015-02-04 19:19 - 2013-10-19 21:23 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-02-02 22:45 - 2013-02-26 14:39 - 00007601 _____ () C:\Users\Coolbox\AppData\Local\resmon.resmoncfg
2015-02-02 22:38 - 2013-11-06 14:05 - 00485376 ___SH () C:\Users\Coolbox\Documents\Thumbs.db
2015-01-29 23:09 - 2013-10-19 20:29 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM
2015-01-29 23:09 - 2013-02-03 10:53 - 00000000 ___HD () C:\Program Files (x86)\Temp
2015-01-29 23:02 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI(2854)
2015-01-29 22:44 - 2011-05-28 07:16 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2015-01-29 22:42 - 2011-05-28 07:15 - 00000000 ____D () C:\Program Files (x86)\Intel
2015-01-29 22:11 - 2014-12-13 21:20 - 00030720 _____ () C:\Users\Coolbox\Desktop\orientacní ceny 2015.xls
2015-01-27 19:05 - 2013-02-03 12:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-26 22:08 - 2014-11-13 21:50 - 00000000 ____D () C:\ProgramData\ProductData
2015-01-25 17:34 - 2013-02-03 12:04 - 00000000 ____D () C:\Users\Coolbox\Desktop\FILMY
2015-01-23 17:43 - 2014-08-05 21:59 - 00000000 ____D () C:\Program Files (x86)\7-Zip
2015-01-21 16:36 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-01-17 21:06 - 2013-02-21 11:52 - 00000000 ____D () C:\Users\Coolbox\Desktop\Aqua aerobic
2015-01-17 00:43 - 2013-02-03 13:00 - 00000000 ____D () C:\Users\Coolbox\AppData\Roaming\GHISLER
2015-01-14 22:32 - 2013-02-05 20:22 - 00000000 ____D () C:\Users\Coolbox\AppData\Local\Microsoft Help
2015-01-14 18:33 - 2013-07-18 08:58 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-01-14 18:23 - 2013-02-05 20:09 - 113365784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

==================== Files in the root of some directories =======

2015-01-24 10:30 - 2015-01-24 10:30 - 0000132 _____ () C:\Users\Coolbox\AppData\Roaming\Adobe Formát AIFF CS6 – předvolby
2015-01-07 13:49 - 2015-02-08 22:19 - 0000132 _____ () C:\Users\Coolbox\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2014-12-09 09:12 - 2015-02-08 22:27 - 0001480 _____ () C:\Users\Coolbox\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2015-02-07 18:37 - 2015-02-07 20:27 - 0029696 _____ () C:\Users\Coolbox\AppData\Local\MSGBOX.EXE
2013-02-26 14:39 - 2015-02-02 22:45 - 0007601 _____ () C:\Users\Coolbox\AppData\Local\resmon.resmoncfg
2013-02-03 11:07 - 2013-02-03 11:10 - 0015245 _____ () C:\ProgramData\ArcadeDeluxe5.log
2011-05-28 07:27 - 2010-03-02 22:59 - 0131984 _____ () C:\ProgramData\FullRemove.exe

Some content of TEMP:
====================
C:\Users\Coolbox\AppData\Local\Temp\Quarantine.exe
C:\Users\Coolbox\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-04 14:27

==================== End Of Log ============================

gabrin
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 06 Ún 2015 22:24

Re: problem s NT bookem posílám LOG, děkuji

#10 Příspěvek od gabrin »

Addition
----------------------------------
dditional scan result of Farbar Recovery Scan Tool (x64) Version: 08-02-2015
Ran by coolbox at 2015-02-09 20:48:30
Running from C:\Users\Coolbox\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

3D RealityMaps Viewer 1.6.8.0 (HKLM-x32\...\AlpenOnlineViewer_is1) (Version: 1.6.8.0 - 3D RealityMaps GmbH)
64 Bit HP CIO Components Installer (Version: 16.2.1 - Hewlett-Packard) Hidden
7-Zip 4.65 (HKLM-x32\...\7-Zip) (Version: - Somoto Ltd) <==== ATTENTION
Acer Backup Manager (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.99 - NTI Corporation)
Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1626 - CyberLink Corp.)
Acer Crystal Eye Webcam (x32 Version: 1.0.1626 - CyberLink Corp.) Hidden
Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3007 - Acer Incorporated)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3501 - Acer Incorporated)
Acer GameZone Console (HKLM-x32\...\{C97623E2-0614-4845-B199-8E8BEC8E131C}_is1) (Version: 6.1.0.40497 - Oberon Media, Inc.)
Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.04.3502 - Acer Incorporated)
Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0519.2011 - Acer Incorporated)
Acer System Information (HKLM-x32\...\{72199E33-4F2A-4B7F-8E25-95DDDD50A678}) (Version: 1.0.0 - Acer)
Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe Acrobat X Pro - Eastern European (Group 1) (HKLM-x32\...\{AC76BA86-1029-4770-7760-000000000005}) (Version: 10.1.13 - Adobe Systems)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 16.0.0.245 - Adobe Systems Incorporated)
Adobe Creative Suite 6 Master Collection (HKLM-x32\...\{E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0}) (Version: 6 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.6.156 - Adobe Systems, Inc.)
Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.)
Aktualizace NVIDIA 16.18.9 (Version: 16.18.9 - NVIDIA Corporation) Hidden
Argazki Galeria (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software)
Backup Manager V3 (x32 Version: 3.0.0.99 - NTI Corporation) Hidden
Banner Effect Trial (HKLM-x32\...\Banner Effect Trial_is1) (Version: 1.3.15 - Devsoft, Inc.)
bl (x32 Version: 1.0.0 - Your Company Name) Hidden
Broadcom Card Reader Driver Installer (HKLM\...\{4710662C-8204-4334-A977-B1AC9E547819}) (Version: 14.8.2.2 - Broadcom Corporation)
Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 14.8.4.1 - Broadcom Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
clear.fi (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 1.0.1720.00 - CyberLink Corp.)
clear.fi (x32 Version: 1.0.1517_36458 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 1.0.1720.00 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 9.0.7709 - CyberLink Corp.) Hidden
clear.fi Client (HKLM-x32\...\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}) (Version: 1.00.3500 - Acer Incorporated)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.7000.4 - Dolby Laboratories Inc)
Dropbox (HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Dropbox) (Version: 2.6.24 - Dropbox, Inc.)
Entity Framework Designer for Visual Studio 2012 - enu (HKLM-x32\...\{32136776-FE3F-453D-80DA-CDD993BDB2A3}) (Version: 11.1.20810.00 - Microsoft Corporation)
ETDWare PS/2-X64 8.0.6.0_WHQL (HKLM\...\Elantech) (Version: 8.0.6.0 - ELAN Microelectronic Corp.)
FormatFactory 3.2.1.0 (HKLM-x32\...\FormatFactory) (Version: 3.2.1.0 - Free Time)
Fotogaléria (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalerija (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalleri (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalleriet (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotoğraf Galerisi (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotótár (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria de Fotografias (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria de Fotos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galería de fotos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria fotogràfica (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria fotografii (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galerie de photos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galerie foto (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galerija fotografija (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Google AdWords Editor (HKLM-x32\...\{6145B982-ACC5-46A3-9166-9ADADE6D17E2}) (Version: 10.3.2 - Google)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.111 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
ICQ 8.2 (verze 7138) (HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\ICQ) (Version: 8.2.7138.0 - ICQ)
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3501 - Acer Incorporated)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3517 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.0.1207 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.8 - HTC)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Junk Mail filter update (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
K-Lite Codec Pack 10.9.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.9.0 - )
KONICA MINOLTA PagePro 1350W (HKLM\...\KONICA MINOLTA PagePro 1350W) (Version: - )
Launch Manager (HKLM-x32\...\LManager) (Version: 5.2.1 - Acer Inc.)
Malwarebytes Anti-Malware verze 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{5CBFF3F3-2D40-34EE-BCA5-A95BC19E400D}) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{1948E039-EC79-4591-951D-9867A8C14C90}) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Help Viewer 2.0 (HKLM-x32\...\Microsoft Help Viewer 2.0) (Version: 2.0.50727 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SkyDrive (HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\SkyDriveSetup.exe) (Version: 17.0.2003.1112 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2012 Data-Tier App Framework (HKLM\...\{36E619BC-A234-4EC3-849B-779A7C865A45}) (Version: 11.0.2316.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{FBA6F90E-36EC-4FC9-9B25-3834E3BD46A8}) (Version: 11.0.2316.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{13D558FE-A863-402C-B115-160007277033}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{DA1C1761-5F4F-4332-AB9D-29EDF3F8EA0A}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{FA0A244E-F3C2-4589-B42A-3D522DE79A42}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL Compiler Service (HKLM\...\{BEB0F91E-F2EA-48A1-B938-7857ABF2A93D}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{0E8670B8-3965-4930-ADA6-570348B67153}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 T-SQL Language Service (HKLM-x32\...\{6D6D43E5-218C-4B05-92D3-2240810F4760}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools - enu (11.1.20828.01) (HKLM-x32\...\{4F2B8233-35EE-4197-8C3B-EACCBF712029}) (Version: 11.1.20828.01 - Microsoft Corporation)
Microsoft SQL Server Data Tools Build Utilities - enu (11.1.20828.01) (HKLM-x32\...\{FAE0523E-08A4-4717-8E8E-6EC6F32CBE88}) (Version: 11.1.20828.01 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2012 (HKLM-x32\...\{E2082604-4BA5-44BB-BBFB-AF0F3CB8C6AB}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{F1949145-EB64-4DE7-9D81-E6D27937146C}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual J# 2.0 Redistributable Package (HKLM-x32\...\Microsoft Visual J# 2.0 Redistributable Package) (Version: - Microsoft Corporation)
Microsoft Visual Studio Express 2012 for Windows Desktop - ENU (HKLM-x32\...\{e0efdce9-a486-4676-8aa5-65bb08cbf34c}) (Version: 11.0.50727.42 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 35.0.1 (x86 cs) (HKLM-x32\...\Mozilla Firefox 35.0.1 (x86 cs)) (Version: 35.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla)
MyWinLocker (Version: 4.0.14.11 - Egis Technology Inc.) Hidden
MyWinLocker 4 (x32 Version: 4.0.14.11 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.11 - Egis Technology Inc.)
MyWinLocker Suite (x32 Version: 4.0.14.11 - Egis Technology Inc.) Hidden
NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.8942 - NTI Corporation)
NTI Media Maker 9 (x32 Version: 9.0.2.8942 - NTI Corporation) Hidden
NVIDIA GeForce Experience 2.1.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.5 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
OpenOffice.org 3.4.1 (HKLM-x32\...\{1E0AF527-0B8E-4F8A-BA27-CB3C359998C6}) (Version: 3.41.9593 - Apache Software Foundation)
Ovládací panel NVIDIA 347.09 (Version: 347.09 - NVIDIA Corporation) Hidden
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
ph (x32 Version: 1.0.0 - Your Company Name) Hidden
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Poczta usługi Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Pošta Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Prerequisites for SSDT (HKLM-x32\...\{9169C939-ED01-446A-BD0C-29873BAF4E48}) (Version: 11.0.2100.60 - Microsoft Corporation)
ProFact 4.0 (HKLM-x32\...\ProFact 4.0_is1) (Version: - eXmind)
Raccolta foto (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6438 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.34.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0 - Renesas Electronics Corporation) Hidden
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
SGP Baltie 3.0.71.76 (HKLM-x32\...\SGP Baltík 3_is1) (Version: - SGP Systems, s.r.o.)
SGP Baltík 3 (HKLM-x32\...\SGP Baltík_is1) (Version: - SGP Systems, s.r.o.)
SHIELD Streaming (Version: 3.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 16.18.9 - NVIDIA Corporation) Hidden
Shredder (Version: 2.0.8.7 - Egis Technology Inc.) Hidden
Shredder (x32 Version: 2.0.8.7 - Egis Technology Inc.) Hidden
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Spyware Terminator 2012 (HKLM-x32\...\{56736259-613E-4A3B-B428-6235F2E76F44}_is1) (Version: 3.0.0.80 - Crawler.com)
Start Menu 8 (HKLM-x32\...\IObit_StartMenu8_is1) (Version: 2.0.1 - IObit)
Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab for Intel (HKLM-x32\...\{04C4B49D-45D9-4A28-9ED1-B45CBD99B8C7}) (Version: 4.5.24.0 - Husdawg, LLC)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH)
Unity Web Player (HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\UnityWebPlayer) (Version: 4.6.1f1 - Unity Technologies ApS)
Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Valokuvavalikoima (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3501 - Acer Incorporated)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Συλλογή φωτογραφιών (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 16.4.3505.0912 - Корпорация Майкрософт) Hidden
Фотоальбом (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Фотогалерия (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Фотографии (общедоступная версия) (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
גלריית התמונות (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
بريد Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
معرض الصور (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
影像中心 (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Coolbox\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Coolbox\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Coolbox\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Coolbox\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Coolbox\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\FileSyncApi64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)

==================== Restore Points =========================

29-01-2015 13:56:23 Naplánovaný kontrolní bod
02-02-2015 18:38:09 Windows Update
02-02-2015 18:40:03 Microsoft Visual Studio Express 2012 for Windows Desktop - ENU
04-02-2015 18:37:23 Removed Microsoft SQL Server 2012 Command Line Utilities
04-02-2015 19:00:55 Removed Microsoft SQL Server 2012 Data-Tier App Framework
04-02-2015 19:11:26 Operace obnovení
07-02-2015 01:34:25 Driver Booster : Display

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2014-11-28 10:21 - 2015-02-07 00:53 - 00001990 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 192.150.14.69
127.0.0.1 192.150.18.101
127.0.0.1 192.150.18.108
127.0.0.1 192.150.22.40
127.0.0.1 192.150.8.100
127.0.0.1 192.150.8.118
127.0.0.1 209-34-83-73.ood.opsource.net
127.0.0.1 3dns-1.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-4.adobe.com
127.0.0.1 3dns.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 activate.adobe.com
127.0.0.1 activate.adobe.com
127.0.0.1 activate.wip.adobe.com
127.0.0.1 activate.wip1.adobe.com
127.0.0.1 activate.wip2.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 activate.wip4.adobe.com
127.0.0.1 adobe-dns-1.adobe.com
127.0.0.1 adobe-dns-2.adobe.com
127.0.0.1 adobe-dns-2.adobe.com

There are 35 more lines.


==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0FBAE7B2-680F-4BC6-88EE-57106D995CC4} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-01-14] (Microsoft Corporation)
Task: {1C883209-55B9-453C-B1D0-27B4B0A8D389} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {200AE2A2-C92A-4922-842B-F4C340B998B4} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {2096490B-8E3C-4C20-80BF-0CCD798F16D8} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe
Task: {212F6EC9-8D07-477D-B868-1E77F9E7BB41} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {2A85467A-D6E8-4694-AC6F-A31CE1066EB3} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe
Task: {4931EA79-9D88-4647-8C17-6A8117D3B7B8} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2014-12-12] ()
Task: {544FD324-A4BB-45B5-939D-8F7C4F91397F} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe
Task: {549873FA-1D3D-4EE5-841F-74EC0E10B51D} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {55E7790A-C1AE-4F66-BDE6-28BFFD009BBD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-04] (Adobe Systems Incorporated)
Task: {6F388FB0-19E0-4760-8992-9AE41FCCC123} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe
Task: {6FCB14A9-E2A5-4A25-9562-1B20F55A116A} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe
Task: {707A62B1-89D8-4039-9C9A-439C48A40CB7} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {798AB08A-23FB-4B19-8D32-7FB183177C51} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
Task: {8344A204-7413-449E-942C-6D0DD0A64A13} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {8D1DC646-0130-43E4-8DF8-E1251985BA98} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-03] (Google Inc.)
Task: {8D298CD1-87BD-4CA0-A543-0012E21127F8} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe
Task: {8E6F137A-2287-4BE6-B81C-067C6E0E7DD9} - System32\Tasks\Uninstaller_SkipUac_coolbox => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {8FEF982C-46C6-41C3-9026-368E3DB2C14A} - System32\Tasks\clear.fiAgent => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [2011-05-20] (CyberLink Corp.)
Task: {90294DD6-B288-4A1C-B83E-78528FC843DB} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {9382EA56-F9FB-420E-981A-D822A5709409} - System32\Tasks\{F4464FF3-D57C-4822-BEFA-F002C6C8B835} => pcalua.exe -a D:\MioDVD.exe -d D:\
Task: {93B6B55E-86C7-4910-8140-8EB7F303663F} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe
Task: {97161742-3590-4AB0-8DA2-F6FF3C8E88FB} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe
Task: {98F456B1-924E-494F-895B-868A5F829A5B} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe
Task: {9AE0844D-BCAD-400E-BC8C-2535ADAC28F1} - System32\Tasks\Driver Booster SkipUAC (coolbox) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
Task: {AA15927A-8A6F-4F08-935D-13FC749BD553} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe
Task: {B0D56ED3-3E67-424B-B334-8464D03787EB} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {B841691B-BD90-40BC-B49A-F98DBB8F402C} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe
Task: {BCB2C3E4-91AD-48F3-9135-3D966B547756} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe
Task: {C7FDD02B-DEC3-47DA-9DC8-5CC474A592DD} - System32\Tasks\clear.fi => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [2011-05-20] (Acer Incorporated)
Task: {D0EEC873-F85C-46D1-8B6E-44D263EE477D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-03] (Google Inc.)
Task: {D5AA84D4-CB12-4B0F-A14D-CECFB3709CEA} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe
Task: {DE755320-5EB0-49B5-970A-0C6FE067717D} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe
Task: {E7BA0A43-1D7A-4755-9E50-7B3BF5C95133} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-11-27] (AVAST Software)
Task: {EA6AA7B7-66F4-4FDE-AE2D-E0B6B767FA4C} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe
Task: {EEC5D9B5-0B17-4240-B5A3-D9D07ABDE426} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {F76E9AF7-3926-4C8E-ACCF-3F894B2D24F8} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {F8BE833E-9B9C-47FE-B0E0-F6765C43BF09} - System32\Tasks\DMREngine => C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [2011-05-20] (CyberLink)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_coolbox.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe

==================== Loaded Modules (whitelisted) ==============

2015-02-07 01:45 - 2014-12-13 09:03 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-04-11 12:02 - 2014-04-11 12:02 - 00034304 _____ () C:\WINDOWS\System32\sst9clm.dll
2014-12-12 18:53 - 2014-12-12 18:53 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll
2014-12-12 18:54 - 2014-12-12 18:54 - 05851328 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll
2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2012-12-14 02:42 - 2012-12-14 02:42 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-12-12 23:25 - 2014-12-12 23:25 - 00053248 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2015-02-09 16:43 - 2015-02-09 16:43 - 02912768 _____ () C:\Program Files\AVAST Software\Avast\defs\15020900\algo.dll
2014-12-12 18:54 - 2014-12-12 18:54 - 04495336 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll
2014-11-13 21:50 - 2014-10-16 10:26 - 00622880 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll
2015-02-07 11:07 - 2015-01-14 16:14 - 00348960 _____ () C:\Program Files (x86)\IObit\Start Menu 8\madExcept_.bpl
2015-02-07 11:07 - 2015-01-14 16:14 - 00183584 _____ () C:\Program Files (x86)\IObit\Start Menu 8\madBasic_.bpl
2015-02-07 11:07 - 2015-01-14 16:14 - 00050976 _____ () C:\Program Files (x86)\IObit\Start Menu 8\madDisAsm_.bpl
2015-02-07 11:07 - 2015-01-14 16:15 - 00268920 _____ () C:\Program Files (x86)\IObit\Start Menu 8\sqlite3.dll
2015-02-07 11:07 - 2015-01-14 16:15 - 00053024 _____ () C:\Program Files (x86)\IObit\Start Menu 8\parseAuto.dll
2015-02-07 11:07 - 2015-01-14 16:15 - 00622880 _____ () C:\Program Files (x86)\IObit\Start Menu 8\ProductStatistics.dll
2015-02-07 11:07 - 2015-01-14 16:15 - 00041248 _____ () C:\Program Files (x86)\IObit\Start Menu 8\winkey.dll
2011-05-20 11:13 - 2011-05-20 11:13 - 00206216 _____ () C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLNetMediaDMA.dll
2011-04-24 02:29 - 2011-04-24 02:29 - 00465640 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll
2014-12-12 18:55 - 2014-12-12 18:55 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-02-06 11:16 - 2015-02-04 10:02 - 01117512 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libglesv2.dll
2015-02-06 11:16 - 2015-02-04 10:02 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libegl.dll
2015-02-06 11:16 - 2015-02-04 10:02 - 09170760 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\pdf.dll
2015-02-06 11:16 - 2015-02-04 10:02 - 14965064 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\PepperFlash\pepflashplayer.dll
2015-01-26 22:21 - 2015-01-26 22:21 - 03925104 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:56E2E879
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
AlternateDataStreams: C:\Users\Coolbox\SkyDrive:ms-properties

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\str => ""="service"

==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Registry Areas =====================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Coolbox\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: cphs => 3
MSCONFIG\Services: DsiWMIService => 2
MSCONFIG\Services: EgisTec Ticket Service => 3
MSCONFIG\Services: ePowerSvc => 2
MSCONFIG\Services: FLEXnet Licensing Service => 3
MSCONFIG\Services: GfExperienceService => 2
MSCONFIG\Services: GREGService => 2
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: gusvc => 3
MSCONFIG\Services: IAStorDataMgrSvc => 2
MSCONFIG\Services: ICCS => 3
MSCONFIG\Services: IMFservice => 2
MSCONFIG\Services: Intel(R) Capability Licensing Service Interface => 2
MSCONFIG\Services: Live Updater Service => 2
MSCONFIG\Services: LiveUpdateSvc => 2
MSCONFIG\Services: LMS => 2
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: NTI IScheduleSvc => 2
MSCONFIG\Services: NvNetworkService => 2
MSCONFIG\Services: NvStreamSvc => 2
MSCONFIG\Services: PassThru Service => 2
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\Services: ST2012_Svc => 2
MSCONFIG\Services: StartW8Service => 2
MSCONFIG\Services: SwitchBoard => 3
MSCONFIG\Services: UNS => 2
HKLM\...\StartupApproved\Run: => "KONICA MINOLTA PagePro 1350WStatusDisplay"
HKLM\...\StartupApproved\Run: => "SpywareTerminatorShield"
HKLM\...\StartupApproved\Run: => "SpywareTerminatorUpdater"
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKLM\...\StartupApproved\Run32: => "SuiteTray"
HKLM\...\StartupApproved\Run32: => "ETDCtrl"
HKLM\...\StartupApproved\Run32: => "SpywareTerminatorUpdater"
HKLM\...\StartupApproved\Run32: => "SpywareTerminatorShield"
HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0"
HKLM\...\StartupApproved\Run32: => "BlueStacks Agent"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\StartupApproved\Run: => "FLV Player"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\StartupApproved\Run: => "EEDSpeedLauncher"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\StartupApproved\Run: => "icq"

==================== Accounts: =============================

Administrator (S-1-5-21-3442833130-3731506892-1951788502-500 - Administrator - Disabled)
coolbox (S-1-5-21-3442833130-3731506892-1951788502-1001 - Administrator - Enabled) => C:\Users\Coolbox
Guest (S-1-5-21-3442833130-3731506892-1951788502-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3442833130-3731506892-1951788502-1070 - Limited - Enabled)
SimonAndrej (S-1-5-21-3442833130-3731506892-1951788502-1072 - Limited - Enabled) => C:\Users\SimonAndrej

==================== Faulty Device Manager Devices =============

Name: Microsoft Visual Studio Location Simulator Sensor
Description: Microsoft Visual Studio Location Simulator Sensor
Class Guid: {5175d334-c371-4806-b3ba-71fd53c9258d}
Manufacturer: Microsoft Corporation
Service: SensorsSimulatorDriver
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver


==================== Event log errors: =========================

Application errors:
==================
Error: (02/09/2015 05:08:19 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Oznámení pro svazek C:\ nejsou aktivní.

Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)

Error: (02/09/2015 07:46:21 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (02/09/2015 07:33:43 AM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Oznámení pro svazek C:\ nejsou aktivní.

Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)

Error: (02/08/2015 02:18:44 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Oznámení pro svazek C:\ nejsou aktivní.

Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)

Error: (02/07/2015 10:49:40 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (02/07/2015 08:13:31 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Oznámení pro svazek C:\ nejsou aktivní.

Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)

Error: (02/07/2015 00:13:19 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (02/07/2015 00:13:18 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (02/07/2015 11:42:44 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: plugin-container.exe, verze: 35.0.1.5500, časové razítko: 0x54c1f9f3
Název chybujícího modulu: mozalloc.dll, verze: 35.0.1.5500, časové razítko: 0x54c1f224
Kód výjimky: 0x80000003
Posun chyby: 0x00001425
ID chybujícího procesu: 0x47c
Čas spuštění chybující aplikace: 0xplugin-container.exe0
Cesta k chybující aplikaci: plugin-container.exe1
Cesta k chybujícímu modulu: plugin-container.exe2
ID zprávy: plugin-container.exe3
Úplný název chybujícího balíčku: plugin-container.exe4
ID aplikace související s chybujícím balíčkem: plugin-container.exe5

Error: (02/07/2015 11:42:43 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program firefox.exe verze 35.0.1.5500 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: ec8

Čas spuštění: 01d042aac8a7c451

Čas ukončení: 499

Cesta k aplikaci: C:\Program Files (x86)\Mozilla Firefox\firefox.exe

ID hlášení: cafd06fb-aeb5-11e4-8057-b870f4b13fec

Úplný název chybujícího balíčku:

ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (02/09/2015 06:43:34 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (02/09/2015 06:43:30 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (02/09/2015 06:30:07 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (02/09/2015 06:30:02 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (02/09/2015 06:22:56 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (02/09/2015 06:22:52 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (02/09/2015 05:04:57 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5

Error: (02/09/2015 05:04:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba MLPTDR_Q neuspěla při spuštění v důsledku následující chyby:
%%193

Error: (02/09/2015 05:03:41 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (16:39:26, ‎9. ‎2. ‎2015) bylo neočekávané.

Error: (02/09/2015 02:29:00 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.


Microsoft Office Sessions:
=========================
Error: (02/09/2015 05:08:19 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)
C:\

Error: (02/09/2015 07:46:21 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (02/09/2015 07:33:43 AM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)
C:\

Error: (02/08/2015 02:18:44 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)
C:\

Error: (02/07/2015 10:49:40 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (02/07/2015 08:13:31 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)
C:\

Error: (02/07/2015 00:13:19 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (02/07/2015 00:13:18 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (02/07/2015 11:42:44 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe35.0.1.550054c1f9f3mozalloc.dll35.0.1.550054c1f224800000030000142547c01d042af417a12d2C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll0c263937-aeb6-11e4-8057-b870f4b13fec

Error: (02/07/2015 11:42:43 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: firefox.exe35.0.1.5500ec801d042aac8a7c451499C:\Program Files (x86)\Mozilla Firefox\firefox.execafd06fb-aeb5-11e4-8057-b870f4b13fec


CodeIntegrity Errors:
===================================
Date: 2014-11-28 10:58:36.943
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:58:36.583
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:47.774
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:47.389
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:46.882
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:46.507
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:46.085
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:45.663
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:45.061
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:44.608
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i3-2310M CPU @ 2.10GHz
Percentage of memory in use: 64%
Total physical RAM: 3947.86 MB
Available physical RAM: 1409.1 MB
Total Pagefile: 7915.86 MB
Available Pagefile: 4857.11 MB
Total Virtual: 131072 MB
Available Virtual: 131071.8 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:916.41 GB) (Free:244.88 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: DF339300)
Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=916.4 GB) - (Type=07 NTFS)

==================== End Of Log ============================

altrok
Moderátor
Moderátor
Příspěvky: 7328
Registrován: 15 Lis 2012 22:26
Místo/Bydliště: Znojmo

Re: problem s NT bookem posílám LOG, děkuji

#11 Příspěvek od altrok »

:arrow: Minimalne bych zakazal spousteni Spyware Terminatora pri startu a vypnul jeho real-time ochranu - kolize s avastem.


  • Stahnete Crystal Disk Info (CDI) http://sourceforge.jp/frs/redir.php?m=j ... o6_2_2.zip
  • archiv extrahujte a spustte vyextrahovany soubor DiskInfo.exe
  • ve spustenem programu kliknete nahore na Upravy -> Kopirovat (log mate nyni zkopirovany ve schrance)
  • log vlozte do dalsi odpovedi (Ctrl + V)


  • Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
  • ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
  • znovu spustte FRST a kliknete na Fix
  • po restartu na Vas vyskoci fixlog (pripadne bude ulozen na Plose), jehoz obsah mi vlozte do pristi odpovedi

    Kód: Vybrat vše

    Start
    CloseProcesses:
    HKLM\...\Run: [AutoKMS] => C:\WINDOWS\AutoKMS.exe [615936 2014-12-13] ()
    C:\WINDOWS\AutoKMS.exe
    HKLM-x32\...\Run: [ArcadeMovieService] => C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [177448 2011-05-09] (CyberLink Corp.)
    HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
    HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1131632 2014-08-05] (Dritek System Inc.)
    HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [] => [X]
    HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41360 2014-12-03] (Adobe Systems Incorporated)
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [AdobeBridge] => [X]
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {1867392d-805b-11e4-bff9-b870f4b13fec} - "F:\setup.exe"
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {2695d6dd-e571-11e3-bf76-b870f4b13fec} - "E:\setup.exe"
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {be70bbf9-ddb9-11e3-bf70-b870f4b13fec} - "E:\setup.exe"
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {e0934027-51e7-11e4-bfbe-b870f4b13fec} - "E:\setup.exe"
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {e0a597f3-2c6c-11e4-bfa2-b870f4b13fec} - "E:\setup.exe" 
    
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=sp-006&q={searchTerms}
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=sp-006&q={searchTerms}
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
    SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=sp-006&q={searchTerms}
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=sp-006&q={searchTerms}
    BHO: No Name -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> No File
    FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
    FF SearchEngineOrder.1: Google (avast)
    FF SelectedSearchEngine: Google
    FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\Extensions\iobitascsurfingprotection@iobit.com [2015-02-07]
    CHR HKLM-x32\...\Chrome\Extension: [iphahelpmejkbidhiecfeicblienleon] - No Path
    
    S3 cpuz137; \??\C:\Users\Coolbox\AppData\Local\Temp\cpuz137\cpuz137_x64.sys [X]
    U3 idsvc; No ImagePath
    
    2015-02-09 20:45 - 2015-02-09 20:46 - 00026026 _____ () C:\Users\Coolbox\Desktop\FRST.txt
    2015-02-07 20:32 - 2015-02-07 20:32 - 00000161 _____ () C:\WINDOWS\AutoKMS.ini
    2015-02-07 20:18 - 2015-02-07 20:18 - 00112640 _____ (forum.viry.cz) C:\Users\Coolbox\Desktop\FRSTLauncher.exe
    2015-02-07 19:32 - 2015-02-07 19:32 - 02112512 _____ () C:\Users\Coolbox\Downloads\adwcleaner_4.110 (1).exe
    2015-02-07 18:37 - 2015-02-07 20:27 - 00029696 _____ () C:\Users\Coolbox\AppData\Local\MSGBOX.EXE
    2015-02-07 16:56 - 2015-02-07 19:57 - 00000000 ____D () C:\AdwCleaner
    2015-02-07 16:51 - 2015-02-07 16:51 - 02112512 _____ () C:\Users\Coolbox\Downloads\adwcleaner_4.110.exe
    2011-05-28 07:27 - 2010-03-02 22:59 - 0131984 _____ () C:\ProgramData\FullRemove.exe
    Task: {212F6EC9-8D07-477D-B868-1E77F9E7BB41} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
    Task: {8E6F137A-2287-4BE6-B81C-067C6E0E7DD9} - System32\Tasks\Uninstaller_SkipUac_coolbox => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
    Task: {9382EA56-F9FB-420E-981A-D822A5709409} - System32\Tasks\{F4464FF3-D57C-4822-BEFA-F002C6C8B835} => pcalua.exe -a D:\MioDVD.exe -d D:\
    Task: {9AE0844D-BCAD-400E-BC8C-2535ADAC28F1} - System32\Tasks\Driver Booster SkipUAC (coolbox) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
    Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_coolbox.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
    AlternateDataStreams: C:\ProgramData\Temp:56E2E879
    AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
    EmptyTemp:
    End
    
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

gabrin
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 06 Ún 2015 22:24

Re: problem s NT bookem posílám LOG, děkuji

#12 Příspěvek od gabrin »

----------------------------------------------------------------------------
CrystalDiskInfo 6.2.2 (C) 2008-2014 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 8.1 Pro [6.3 Build 9600] (x64)
Date : 2015/02/09 22:27:02

-- Controller Map ----------------------------------------------------------
+ Intel(R) Mobile Express Chipset SATA AHCI Controller [ATA]
- TOSHIBA MK1059GSM
- Slimtype DVD A DS8A5SH
- Řadič prostorů úložišť [SCSI]
- Broadcom Memory Stick [SCSI]

-- Disk List ---------------------------------------------------------------
(1) TOSHIBA MK1059GSM : 1000,2 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) TOSHIBA MK1059GSM
----------------------------------------------------------------------------
Model : TOSHIBA MK1059GSM
Firmware : GL001J
Serial Number : 71CQT0DJT
Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,2)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300 | SATA/300
Power On Hours : 7275 hod.
Power On Count : 2921 krát
Temperature : 41 C (105 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _50 000000000000 Počet chyb čtení
02 100 100 _50 000000000000 Průchodnost disku
03 100 100 __1 000000000CFD Čas na roztočení ploten
04 100 100 __0 000000000C70 Počet spuštění/zastavení
05 100 100 _50 000000000000 Počet přemapovaných sektorů
07 100 100 _50 000000000000 Počet chybných hledání
08 100 100 _50 000000000000 Čas potřebný na vyhledání
09 _82 _82 __0 000000001C6B Hodin v činnosti
0A 163 100 _30 000000000000 Počet opakovaných pokusů o roztočení ploten
0C 100 100 __0 000000000B69 Počet cyklů zapnutí zařízení
BF 100 100 __0 000000002A29 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000064 Počet vypnutí disku
C1 _98 _98 __0 00000000572D Počet cyklů načítání/vymazání
C2 100 100 __0 0036000F0029 Teplota
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 0000000000A0 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
DC 100 100 __0 00000000003E Posunutí disku vůči ose
DE _83 _83 __0 000000001B83 Počet hodin zalažení budoucího mechanismu magnetických hlav
DF 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony
E0 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené napětím mechanických částí
E2 100 100 __0 000000000166 Celkový čas zatížení budiče magnetických hlav
F0 100 100 __1 000000000000 Čas nastavování hlaviček - v hodinách

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2037 3143 5154 3044 4A54
020: 0000 4000 0000 474C 3030 314A 2020 544F 5348 4942
030: 4120 4D4B 3130 3539 4753 4D20 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0000 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0007 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0F06 0004 004C 0048
080: 01F8 0000 746B 7D09 6163 7469 BC09 6163 203F 008E
090: 008E 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 6003 0000 5000 0393
110: 61C8 3867 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0080 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 89A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 0B 00 64 64 00 00 00 00 00 00 00 02 05
010: 00 64 64 00 00 00 00 00 00 00 03 27 00 64 64 FD
020: 0C 00 00 00 00 00 04 32 00 64 64 70 0C 00 00 00
030: 00 00 05 33 00 64 64 00 00 00 00 00 00 00 07 0B
040: 00 64 64 00 00 00 00 00 00 00 08 05 00 64 64 00
050: 00 00 00 00 00 00 09 32 00 52 52 6B 1C 00 00 00
060: 00 00 0A 33 00 A3 64 00 00 00 00 00 00 00 0C 32
070: 00 64 64 69 0B 00 00 00 00 00 BF 32 00 64 64 29
080: 2A 00 00 00 00 00 C0 32 00 64 64 64 00 00 00 00
090: 00 00 C1 32 00 62 62 2D 57 00 00 00 00 00 C2 22
0A0: 00 64 64 29 00 0F 00 36 00 00 C4 32 00 64 64 00
0B0: 00 00 00 00 00 00 C5 32 00 64 64 A0 00 00 00 00
0C0: 00 00 C6 30 00 64 64 00 00 00 00 00 00 00 C7 32
0D0: 00 C8 C8 00 00 00 00 00 00 00 DC 02 00 64 64 3E
0E0: 00 00 00 00 00 00 DE 32 00 53 53 83 1B 00 00 00
0F0: 00 00 DF 32 00 64 64 00 00 00 00 00 00 00 E0 22
100: 00 64 64 00 00 00 00 00 00 00 E2 26 00 64 64 66
110: 01 00 00 00 00 00 F0 01 00 64 64 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 78 00 00 5B
170: 03 00 01 00 02 FF 00 31 01 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4D

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 32 00 00 00 00 00 00 00 00 00 00 02 32
010: 00 00 00 00 00 00 00 00 00 00 03 01 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 32 00 00 00 00 00 00 00 00 00 00 07 32
040: 00 00 00 00 00 00 00 00 00 00 08 32 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 1E 00 00 00 00 00 00 00 00 00 00 0C 00
070: 00 00 00 00 00 00 00 00 00 00 BF 00 00 00 00 00
080: 00 00 00 00 00 00 C0 00 00 00 00 00 00 00 00 00
090: 00 00 C1 00 00 00 00 00 00 00 00 00 00 00 C2 00
0A0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00
0B0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00
0C0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00
0D0: 00 00 00 00 00 00 00 00 00 00 DC 00 00 00 00 00
0E0: 00 00 00 00 00 00 DE 00 00 00 00 00 00 00 00 00
0F0: 00 00 DF 00 00 00 00 00 00 00 00 00 00 00 E0 00
100: 00 00 00 00 00 00 00 00 00 00 E2 00 00 00 00 00
110: 00 00 00 00 00 00 F0 01 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 36

gabrin
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 06 Ún 2015 22:24

Re: problem s NT bookem posílám LOG, děkuji

#13 Příspěvek od gabrin »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 08-02-2015
Ran by coolbox at 2015-02-09 22:33:53 Run:1
Running from C:\Users\Coolbox\Desktop
Loaded Profiles: coolbox (Available profiles: coolbox & SimonAndrej)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
HKLM\...\Run: [AutoKMS] => C:\WINDOWS\AutoKMS.exe [615936 2014-12-13] ()
C:\WINDOWS\AutoKMS.exe
HKLM-x32\...\Run: [ArcadeMovieService] => C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [177448 2011-05-09] (CyberLink Corp.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1131632 2014-08-05] (Dritek System Inc.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41360 2014-12-03] (Adobe Systems Incorporated)
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {1867392d-805b-11e4-bff9-b870f4b13fec} - "F:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {2695d6dd-e571-11e3-bf76-b870f4b13fec} - "E:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {be70bbf9-ddb9-11e3-bf70-b870f4b13fec} - "E:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {e0934027-51e7-11e4-bfbe-b870f4b13fec} - "E:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {e0a597f3-2c6c-11e4-bfa2-b870f4b13fec} - "E:\setup.exe"

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
BHO: No Name -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> No File
FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SelectedSearchEngine: Google
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\Extensions\iobitascsurfingprotection@iobit.com [2015-02-07]
CHR HKLM-x32\...\Chrome\Extension: [iphahelpmejkbidhiecfeicblienleon] - No Path

S3 cpuz137; \??\C:\Users\Coolbox\AppData\Local\Temp\cpuz137\cpuz137_x64.sys [X]
U3 idsvc; No ImagePath

2015-02-09 20:45 - 2015-02-09 20:46 - 00026026 _____ () C:\Users\Coolbox\Desktop\FRST.txt
2015-02-07 20:32 - 2015-02-07 20:32 - 00000161 _____ () C:\WINDOWS\AutoKMS.ini
2015-02-07 20:18 - 2015-02-07 20:18 - 00112640 _____ (forum.viry.cz) C:\Users\Coolbox\Desktop\FRSTLauncher.exe
2015-02-07 19:32 - 2015-02-07 19:32 - 02112512 _____ () C:\Users\Coolbox\Downloads\adwcleaner_4.110 (1).exe
2015-02-07 18:37 - 2015-02-07 20:27 - 00029696 _____ () C:\Users\Coolbox\AppData\Local\MSGBOX.EXE
2015-02-07 16:56 - 2015-02-07 19:57 - 00000000 ____D () C:\AdwCleaner
2015-02-07 16:51 - 2015-02-07 16:51 - 02112512 _____ () C:\Users\Coolbox\Downloads\adwcleaner_4.110.exe
2011-05-28 07:27 - 2010-03-02 22:59 - 0131984 _____ () C:\ProgramData\FullRemove.exe
Task: {212F6EC9-8D07-477D-B868-1E77F9E7BB41} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {8E6F137A-2287-4BE6-B81C-067C6E0E7DD9} - System32\Tasks\Uninstaller_SkipUac_coolbox => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {9382EA56-F9FB-420E-981A-D822A5709409} - System32\Tasks\{F4464FF3-D57C-4822-BEFA-F002C6C8B835} => pcalua.exe -a D:\MioDVD.exe -d D:\
Task: {9AE0844D-BCAD-400E-BC8C-2535ADAC28F1} - System32\Tasks\Driver Booster SkipUAC (coolbox) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_coolbox.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
AlternateDataStreams: C:\ProgramData\Temp:56E2E879
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AutoKMS => value deleted successfully.
C:\WINDOWS\AutoKMS.exe => Moved successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ArcadeMovieService => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\BCSSync => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\LManager => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS6ServiceManager => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Acrobat Speed Launcher => value deleted successfully.
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value deleted successfully.
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => value deleted successfully.
"HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1867392d-805b-11e4-bff9-b870f4b13fec}" => Key deleted successfully.
HKCR\CLSID\{1867392d-805b-11e4-bff9-b870f4b13fec} => Key not found.
"HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2695d6dd-e571-11e3-bf76-b870f4b13fec}" => Key deleted successfully.
HKCR\CLSID\{2695d6dd-e571-11e3-bf76-b870f4b13fec} => Key not found.
"HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{be70bbf9-ddb9-11e3-bf70-b870f4b13fec}" => Key deleted successfully.
HKCR\CLSID\{be70bbf9-ddb9-11e3-bf70-b870f4b13fec} => Key not found.
"HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e0934027-51e7-11e4-bfbe-b870f4b13fec}" => Key deleted successfully.
HKCR\CLSID\{e0934027-51e7-11e4-bfbe-b870f4b13fec} => Key not found.
"HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e0a597f3-2c6c-11e4-bfa2-b870f4b13fec}" => Key deleted successfully.
HKCR\CLSID\{e0a597f3-2c6c-11e4-bfa2-b870f4b13fec} => Key not found.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main\\Search Bar => value deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} => Key not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}" => Key deleted successfully.
HKCR\CLSID\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}" => Key deleted successfully.
HKCR\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814} => Key not found.
Firefox DefaultSearchUrl deleted successfully.
Firefox SearchEngineOrder.1 deleted successfully.
Firefox SelectedSearchEngine deleted successfully.
C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\Extensions\iobitascsurfingprotection@iobit.com not found.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\iphahelpmejkbidhiecfeicblienleon" => Key deleted successfully.
cpuz137 => Service deleted successfully.
idsvc => Service deleted successfully.
C:\Users\Coolbox\Desktop\FRST.txt => Moved successfully.
C:\WINDOWS\AutoKMS.ini => Moved successfully.
C:\Users\Coolbox\Desktop\FRSTLauncher.exe => Moved successfully.
C:\Users\Coolbox\Downloads\adwcleaner_4.110 (1).exe => Moved successfully.
C:\Users\Coolbox\AppData\Local\MSGBOX.EXE => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Coolbox\Downloads\adwcleaner_4.110.exe => Moved successfully.
C:\ProgramData\FullRemove.exe => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{212F6EC9-8D07-477D-B868-1E77F9E7BB41}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{212F6EC9-8D07-477D-B868-1E77F9E7BB41}" => Key deleted successfully.
C:\Windows\System32\Tasks\Uninstaller_SkipUac_Administrator => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Uninstaller_SkipUac_Administrator" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8E6F137A-2287-4BE6-B81C-067C6E0E7DD9}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8E6F137A-2287-4BE6-B81C-067C6E0E7DD9}" => Key deleted successfully.
C:\Windows\System32\Tasks\Uninstaller_SkipUac_coolbox => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Uninstaller_SkipUac_coolbox" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9382EA56-F9FB-420E-981A-D822A5709409}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9382EA56-F9FB-420E-981A-D822A5709409}" => Key deleted successfully.
C:\Windows\System32\Tasks\{F4464FF3-D57C-4822-BEFA-F002C6C8B835} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F4464FF3-D57C-4822-BEFA-F002C6C8B835}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9AE0844D-BCAD-400E-BC8C-2535ADAC28F1}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9AE0844D-BCAD-400E-BC8C-2535ADAC28F1}" => Key deleted successfully.
C:\Windows\System32\Tasks\Driver Booster SkipUAC (coolbox) => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster SkipUAC (coolbox)" => Key deleted successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job => Moved successfully.
C:\WINDOWS\Tasks\Uninstaller_SkipUac_coolbox.job => Moved successfully.
C:\ProgramData\Temp => ":56E2E879" ADS removed successfully.
C:\ProgramData\Temp => ":D1B5B4F1" ADS removed successfully.
EmptyTemp: => Removed 889.3 MB temporary data.


The system needed a reboot.

==== End of Fixlog 22:35:16 ====

altrok
Moderátor
Moderátor
Příspěvky: 7328
Registrován: 15 Lis 2012 22:26
Místo/Bydliště: Znojmo

Re: problem s NT bookem posílám LOG, děkuji

#14 Příspěvek od altrok »

Doporucuju casteji zalohovat data.
  • Win + X (Win je klavesa mezi levym Ctrl a Altem)
  • vyberte moznost Prikazovy radek (spravce)
  • vepiste
  • chkdsk /r
  • odentrujte a restartujte PC
  • tato kontrola a pripadna oprava probihaji pred nactenim OS a trvaji az nekolik hodin, takze ji pustte napr. pres noc
Pak bych rad videl aktualni stav HDD (novy log z CDI).

Jinak je to z cisteni vsechno... pokud se stav PC zlepsil, uz jen uklidime.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

gabrin
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 06 Ún 2015 22:24

Re: problem s NT bookem posílám LOG, děkuji

#15 Příspěvek od gabrin »

----------------------------------------------------------------------------
CrystalDiskInfo 6.2.2 (C) 2008-2014 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 8.1 Pro [6.3 Build 9600] (x64)
Date : 2015/02/10 5:28:44

-- Controller Map ----------------------------------------------------------
+ Intel(R) Mobile Express Chipset SATA AHCI Controller [ATA]
- TOSHIBA MK1059GSM
- Slimtype DVD A DS8A5SH
- Řadič prostorů úložišť [SCSI]
- Broadcom Memory Stick [SCSI]

-- Disk List ---------------------------------------------------------------
(1) TOSHIBA MK1059GSM : 1000,2 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) TOSHIBA MK1059GSM
----------------------------------------------------------------------------
Model : TOSHIBA MK1059GSM
Firmware : GL001J
Serial Number : 71CQT0DJT
Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,2)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300 | SATA/300
Power On Hours : 7282 hod.
Power On Count : 2921 krát
Temperature : 38 C (100 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _50 000000000000 Počet chyb čtení
02 100 100 _50 000000000000 Průchodnost disku
03 100 100 __1 000000000CFD Čas na roztočení ploten
04 100 100 __0 000000000C70 Počet spuštění/zastavení
05 100 100 _50 000000000000 Počet přemapovaných sektorů
07 100 100 _50 000000000000 Počet chybných hledání
08 100 100 _50 000000000000 Čas potřebný na vyhledání
09 _82 _82 __0 000000001C72 Hodin v činnosti
0A 163 100 _30 000000000000 Počet opakovaných pokusů o roztočení ploten
0C 100 100 __0 000000000B69 Počet cyklů zapnutí zařízení
BF 100 100 __0 000000002A2E Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000064 Počet vypnutí disku
C1 _98 _98 __0 000000005740 Počet cyklů načítání/vymazání
C2 100 100 __0 0036000F0026 Teplota
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000138 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
DC 100 100 __0 00000000003E Posunutí disku vůči ose
DE _83 _83 __0 000000001B8A Počet hodin zalažení budoucího mechanismu magnetických hlav
DF 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony
E0 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené napětím mechanických částí
E2 100 100 __0 0000000001A7 Celkový čas zatížení budiče magnetických hlav
F0 100 100 __1 000000000000 Čas nastavování hlaviček - v hodinách

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2037 3143 5154 3044 4A54
020: 0000 4000 0000 474C 3030 314A 2020 544F 5348 4942
030: 4120 4D4B 3130 3539 4753 4D20 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0000 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0007 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0F06 0004 004C 0048
080: 01F8 0000 746B 7D09 6163 7469 BC09 6163 203F 008E
090: 008E 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 6003 0000 5000 0393
110: 61C8 3867 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0080 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 89A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 0B 00 64 64 00 00 00 00 00 00 00 02 05
010: 00 64 64 00 00 00 00 00 00 00 03 27 00 64 64 FD
020: 0C 00 00 00 00 00 04 32 00 64 64 70 0C 00 00 00
030: 00 00 05 33 00 64 64 00 00 00 00 00 00 00 07 0B
040: 00 64 64 00 00 00 00 00 00 00 08 05 00 64 64 00
050: 00 00 00 00 00 00 09 32 00 52 52 72 1C 00 00 00
060: 00 00 0A 33 00 A3 64 00 00 00 00 00 00 00 0C 32
070: 00 64 64 69 0B 00 00 00 00 00 BF 32 00 64 64 2E
080: 2A 00 00 00 00 00 C0 32 00 64 64 64 00 00 00 00
090: 00 00 C1 32 00 62 62 40 57 00 00 00 00 00 C2 22
0A0: 00 64 64 26 00 0F 00 36 00 00 C4 32 00 64 64 00
0B0: 00 00 00 00 00 00 C5 32 00 64 64 38 01 00 00 00
0C0: 00 00 C6 30 00 64 64 00 00 00 00 00 00 00 C7 32
0D0: 00 C8 C8 00 00 00 00 00 00 00 DC 02 00 64 64 3E
0E0: 00 00 00 00 00 00 DE 32 00 53 53 8A 1B 00 00 00
0F0: 00 00 DF 32 00 64 64 00 00 00 00 00 00 00 E0 22
100: 00 64 64 00 00 00 00 00 00 00 E2 26 00 64 64 A7
110: 01 00 00 00 00 00 F0 01 00 64 64 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 78 00 00 5B
170: 03 00 01 00 02 FF 00 31 01 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 50

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 32 00 00 00 00 00 00 00 00 00 00 02 32
010: 00 00 00 00 00 00 00 00 00 00 03 01 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 32 00 00 00 00 00 00 00 00 00 00 07 32
040: 00 00 00 00 00 00 00 00 00 00 08 32 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 1E 00 00 00 00 00 00 00 00 00 00 0C 00
070: 00 00 00 00 00 00 00 00 00 00 BF 00 00 00 00 00
080: 00 00 00 00 00 00 C0 00 00 00 00 00 00 00 00 00
090: 00 00 C1 00 00 00 00 00 00 00 00 00 00 00 C2 00
0A0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00
0B0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00
0C0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00
0D0: 00 00 00 00 00 00 00 00 00 00 DC 00 00 00 00 00
0E0: 00 00 00 00 00 00 DE 00 00 00 00 00 00 00 00 00
0F0: 00 00 DF 00 00 00 00 00 00 00 00 00 00 00 E0 00
100: 00 00 00 00 00 00 00 00 00 00 E2 00 00 00 00 00
110: 00 00 00 00 00 00 F0 01 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 36

Odpovědět