Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Velmi liny PC ..

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Premek84
Návštěvník
Návštěvník
Příspěvky: 188
Registrován: 11 pro 2008 15:34

Velmi liny PC ..

#1 Příspěvek od Premek84 »

Dobry den,

po delsi dobe opet prosim o kontrolu tentokrate muj stolni PC - nevim jak, ale dostalo se mi tam spoustu skodlivych programu ktere jsem vicemene odinstaloval - nevim jak se mi tam dostal prohlizec Crossbrowse z ktereho prave jsem prihlaseny a nemohu se ho zbavit...spolu s nim se mi natahalo spoustu kravin ktere jsem vicemene uspesne odinstaloval..az na vyjimky.... Spyware Terminator nasel par malwaru ktere jsme odebral a odinstaloval spoustu zbytecnych aplikaci ktere nepouzivam... a ted Vas prosim o kontrolu a pomoc...dekuji predem mnohokrat...

Logfile of random's system information tool 1.10 (written by random/random)
Run by Přemek at 2015-07-30 19:48:30
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 107 GB (17%) free of 610 GB
Total RAM: 766 MB (6% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:48:40, on 30.7.2015
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.21376)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\chk32\chk32.exe
C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\hnsw7E.tmp
C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40ST7.EXE
C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40RP7.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\jnsd7C.tmp
C:\Program Files\MiuiTab\ProtectService.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\MiuiTab\cmdshell.exe
C:\Program Files\MiuiTab\HPNotify.exe
C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsl173.tmp
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsz137.tmp
C:\WINDOWS\system32\IoctlSvc.exe
C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsm100.tmp
C:\Program Files\TP-LINK\TWCU\COMMON\RegistryWriter.exe
C:\Program Files\Spyware Terminator\st_rsser.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsb71.tmpfs
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Documents and Settings\Přemek\Local Settings\Data aplikací\SpeedCheckerService\speedchecker.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\chk32\packages\cfef4727-578a-4380-b7be-15f0bcbeb227\dchk.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
C:\Program Files\TP-LINK\TWCU\COMMON\TWCU.exe
C:\WINDOWS\system32\devldr32.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Program Files\Mozilla Thunderbird\thunderbird.exe
C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
C:\Documents and Settings\Přemek\Dokumenty\Downloads\RSIT.exe
C:\Program Files\trend micro\Přemek.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hppp ... 5914959149
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hppp ... 5914959149
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hppp ... 5914959149
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hppp ... 5914959149
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\WINDOWS\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: GoodTab Class - {1F91A9A1-01BA-4c81-863D-3BA0751E1419} - C:\Program Files\MiuiTab\SupTab.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Spyware Terminator 2015 Internet Guard - {82A76710-4F98-4957-92BE-99648A4E2475} - C:\PROGRA~1\SPYWAR~1\STINTE~1.DLL
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe
O4 - HKLM\..\Run: [SpywareTerminatorShield] C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
O4 - HKLM\..\Run: [SpywareTerminatorUpdater] C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [EPSON SX110 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE /FU "C:\DOCUME~1\PEMEK~1\LOCALS~1\Temp\E_S6F.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_0AF14EDADA47A1801C4F978B30612C0E] "C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe" --no-startup-window
O4 - HKUS\S-1-5-18\..\Run: [Google Update] "C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Google Update] "C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User 'Default user')
O4 - Global Startup: TP-LINK Wireless Utility.lnk = C:\Program Files\TP-LINK\TWCU\COMMON\TWCU.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MI699F~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Send by Bluetooth - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm
O8 - Extra context menu item: Send via &Message... - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{78BEDFF3-98F9-47B1-B25F-E31B7868F4ED}: NameServer = 52.18.92.32,8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\..\{CFE9BF9F-A343-48B8-AF48-CFB650BC8263}: NameServer = 52.18.92.32,8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\..\{ECE29EEE-7DF9-42DE-BC1D-D2A9CC3CACD3}: NameServer = 52.18.92.32,8.8.8.8
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)
O20 - AppInit_DLLs: C:\Documents and Settings\All Users\Data aplikací\SecurityUtility\SecurityUtility32.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe
O23 - Service: BlueSoleilCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O23 - Service: BsHelpCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
O23 - Service: BsMobileCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
O23 - Service: DCheck Service (chk32) - Unknown owner - C:\Program Files\chk32\chk32.exe
O23 - Service: Wire Professional Version (comyninu) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40ST7.EXE
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40RP7.EXE
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files\globalUpdate\Update\globalupdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files\globalUpdate\Update\globalupdate.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Key In Bold Italic (hyverumu) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: IHProtect Service - XTab system - C:\Program Files\MiuiTab\ProtectService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Workstation Save As (liqucybe) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: Graphic Design Operation (mekyturo) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
O23 - Service: Commercial Logical Operator (qemehypu) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: Ralink Registry Writer (RalinkRegistryWriter) - Unknown owner - C:\Program Files\TP-LINK\TWCU\COMMON\RegistryWriter.exe
O23 - Service: Spyware Terminator 2012 Realtime Shield Service (ST2012_Svc) - Crawler Group - C:\Program Files\Spyware Terminator\st_rsser.exe
O23 - Service: Start BT in service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\WINDOWS\Program Files\\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: Backspace Key User (vyhuxove) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: SpeedChecker Service 1.0.29 (YBC37) - Unknown owner - C:\Documents and Settings\Přemek\Local Settings\Data aplikací\SpeedCheckerService\speedchecker.exe

--
End of file - 13295 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\02100641-4d5c-4415-a5f1-6134dd556f9d-1-6.job - C:\Program Files\SavePass 1.1\02100641-4d5c-4415-a5f1-6134dd556f9d-1-6.exe /rawdata=Y7GgTRRdenKVxvTRb1zeKpMvFAcm6OF/G/B+7KsPBOUJhj79AOmMFcNFEeKlE/jh7MZbSp0k8Hy02iwE9zlKuGcbhGQcAmiMbBML9zuAePYUUS3aRkm0m73K6+DuBsh66Wl41TPX0RBny1uA1dT+Pk/zQXvKPVdJLpqhjUu6ClgQuss7ydNR0scHK7+eIWmnqjwMHniWqq/05vP/MH5c1RMEmkfRt9gs48eTl2RmhbsWZgjNmDAoL2dUwCAACzD+ehTL8jiBHgvAFoHZ646favOPUkEfkIy5pBArk/M2mieuV5fI4Y8KWKz8SLQMnvznR8MY7K7CIAJeXiROZOSoV1bDc8zfNx0gl6wgiyRadn6/trK5F3ND6AseocMlpg9mtckK7ccjh84NgszB1T5FTtzpl2V5PCjCrUM1c1qx3wNVm5GcSnEgEfKIibeFtmsMVkECitIx8GnDaUM1V8m89jbqdqaH7vWSh+6v657e2FJF8Z8pSz5pS2P1WCep+hePM9XHRMaOMzv9aCXkSq11o1lj4LQAQmcWMegTkmpI2nPuJmazuSXIFgyGK1Gpmd0HqsbbM/L3n9mqQp0aA4sB7C4LWitDRtYhxx5Ij4j+TuIAaDy2/Zhwxb+LJkH3WvRC1v1xm7fsU2JFRQQRQpTrQCE7Xs4aJxmaqI0fqhw/4lUsOHH4EoZKkqGb7QDqRmX5eQ8G7OmJekp7VWctTGJJsz4Fh1Wvwz+d39emQhPASFM+885PEHS1Jt2CDaffM87u9Q5NuVWZsMpm4jnqqD6b9SK9BwOyipvkxDgm4U0qikmGHzLwLW3ZgzP62io9bpMfW/jks6w3At8BsD0JORjjEKXIDkg0YfFvcnUAi6S6bnzCSI12In9tEjkmZDAW6LlN+EMf6ygVmkHUZcWBxskLZTyggAajhFO+lIhdxAa+XAI+PprVqkgIdJlkuoWwtLJ+xmxZbQCQt64Wx4vnCq8cb3nJ7t9tYdt9O0XwPxGf0uxK2NgiC8peyYD9G5crpRnbWhv7/N2eCqB4Lh4veXqslFNfq1mYU7HrxdHtFZMulWpEpFuMxoWjdqg94LT3FmAnbYfTI0YI0y9UrvLZ+OKwQAUXCndHNpdbk/NkUC40JrYBVRaR0FFcZQ476CSH2UhiDt/RO9oJ4a2jVVEoGWQV4Tp1jLM9Cz+5dT0+S7h/jQcqQv6IYPSngT/2uNOFJcXELt1q9Xinhi1f7jVwV7cToX41Ty541K2q1++XgtxJDY2QGRTGGtJQc/V7ZloI0KU26L9rwx5KWRtudpPJ9W5ADoEu0YHx3QjqWFoLCrOAVBIXXlbDXSE1aNMSP2ncdwolYtCx9N/+P5m8tWRTBU3XkA==
C:\WINDOWS\tasks\02100641-4d5c-4415-a5f1-6134dd556f9d-1-7.job - C:\Program Files\SavePass 1.1\02100641-4d5c-4415-a5f1-6134dd556f9d-1-7.exe /rawdata=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
C:\WINDOWS\tasks\02100641-4d5c-4415-a5f1-6134dd556f9d-10_user.job - C:\Program Files\SavePass 1.1\02100641-4d5c-4415-a5f1-6134dd556f9d-10.exe /rawdata=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
C:\WINDOWS\tasks\02100641-4d5c-4415-a5f1-6134dd556f9d-11.job - C:\Program Files\SavePass 1.1\02100641-4d5c-4415-a5f1-6134dd556f9d-11.exe /rawdata=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
C:\WINDOWS\tasks\02100641-4d5c-4415-a5f1-6134dd556f9d-3.job - C:\Program Files\SavePass 1.1\02100641-4d5c-4415-a5f1-6134dd556f9d-3.exe /rawdata=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
C:\WINDOWS\tasks\02100641-4d5c-4415-a5f1-6134dd556f9d-4.job - C:\Program Files\SavePass 1.1\02100641-4d5c-4415-a5f1-6134dd556f9d-4.exe /rawdata=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
C:\WINDOWS\tasks\02100641-4d5c-4415-a5f1-6134dd556f9d-5.job - C:\Program Files\SavePass 1.1\02100641-4d5c-4415-a5f1-6134dd556f9d-5.exe /rawdata=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
C:\WINDOWS\tasks\02100641-4d5c-4415-a5f1-6134dd556f9d-6.job - C:\Program Files\SavePass 1.1\02100641-4d5c-4415-a5f1-6134dd556f9d-6.exe /rawdata=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
C:\WINDOWS\tasks\02100641-4d5c-4415-a5f1-6134dd556f9d-7.job - C:\Program Files\SavePass 1.1\02100641-4d5c-4415-a5f1-6134dd556f9d-7.exe /rawdata=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
C:\WINDOWS\tasks\69edc5bf-aa48-4cf8-a5cc-27b97fa09236-5.job - C:\Program Files\CinemaP-1.9cV18.02\69edc5bf-aa48-4cf8-a5cc-27b97fa09236-5.exe /rawdata=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
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\APSnotifierPP1.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 3A
C:\WINDOWS\tasks\APSnotifierPP2.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 4
C:\WINDOWS\tasks\APSnotifierPP3.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 6
C:\WINDOWS\tasks\Crossbrowse.job - C:\Program Files\Crossbrowse\Crossbrowse\Application\utility.exe /rawdata='ZspDjAkLVybr4ix01P2v2NesKe2KVbU76dAKox1OL3TsQye3MHDBbWhMDoAUyLu+cLcaLuBi+V5UNzZnBP2WrOc4BHeWLWlGdP1YrqHglM4Et66nSaMcwDZU3Gq8Zt0pky41ei1+sV3zULfOXok1Zc+ToIP2jRgdz8gEpFShnC6OJlJxzHbdN1UU2NWRmwAzni18LVv9vNx3M33KPDR3bJ9s0bUgp7DjbkLiI1oWbWs6zlH/ELysBsNS7A8JypQJ76JsqicGDL5u4irVc5im61BdW3dRu1F7Py+VuhyThYBiwaRN3jYRN8duk5A4u5kzpDnoyUynMN3uDpT+kgH1Uw=='
C:\WINDOWS\tasks\f706a8f7-287f-4a40-893c-ca55c01ea0aa-1-6.job - C:\Program Files\CinemaPlus-3.2cV29.07\f706a8f7-287f-4a40-893c-ca55c01ea0aa-1-6.exe /rawdata=hH22gX27uT7x/y2vLvOFXhak+nh0B9SuIrMaXuM1rW+md1u1/4mwIyeicK5biQnSWloRv+s8ZIE89si+/xH0HGTzx+950naeXmJxPbSvP78R9JezxWj0yepNcJuAXNvRUKUzVvpfOIifE59E/YPTul6X/+EpfuSoMk8KXKiObr4uSQ4pjLBkjBL+yOgPJS/YXPUthDYSdhYhQrSh7anK+iPE6iD/O2zq5WnuvA6cjKDRGq+CrgF0k7rzmax6YF64LGbo1nwyk7/jX6nbmhTNnBnR8OQjPajdTfT+KyX8rZMgYo8WK1rMDoE/6KesCpHgeWklGCjfRCmYsq3p7Yj4F2e5e9YrG+deIogOjsQPxFcDazMSCFF3dzhmycYVlvk9I+E1apmZ5NVlm5asiJkbSxzu9SIVORwXvhj/d5WtDkzEukhlLrn8QDHWdp93ROK0yPJ7XN2gj8E/3yot+bkWIUo0+nYcO+hM1AF1yAT8dfVEvxwlVLJapB52+fnjQhAxxjX/8IRoIf1p1AxwEwN7AnPUoixVu6Z/1dhofOJeu3aXXm7GndhJ38S+Z9D8Gdk6JOKv6TUiR2I4elHQTL9FAfF1GIifFYVlsKYalsbB0R6ixSWGv0PxQrh+62WVi4vTROdFuQvLxDThGICnizwWaTat1i2OzleMalYTD2ZUUWeIcCKl0L6xaaXkoyez62qY6rKIyVN1o8rAHMxKqCOxlR/hufgsGgFXby1Sskq5NgPEF9Y+VMxQfhbOsg5OZ8rry/uCAOnXpFQzPNA+NJ4T1EnBIZ0L8OaGPKIhcZadV6bc8uBZtdv3FDFzGjE0RFrcI9xccJ331HQiXmCMMeMExmO8RakNg6WFPYDier7kK0cS33kIoUY2xxNL0Fi42qaVzGU5DtrbaRHiQC6vk5bMklFK4mbLYvWB3c5GYhIYjnbgZAP/BMcN+b7WV8ib2cUy0wLZh2dpIaDcIH3EbBP3hOxGK35kUqZ0J7wT8UpINcrEgItlDdVpIiYR2ZLtTrUXcH6P+3HxUmGevWZSTEIoNMuhtT9jiplOw9k35G2z+J7Vqjah2YXhzEe/vB69Tt4uDTILrx8jw9fNXZhfDr8Z7nQ8vBScaxL4aBDWYH2x4/ScIsqonP9XBUBncu/hr3KBO1rNgXOTz1EMQjma6/oqYZ0hCpJYzFH4CtyGJGt11TmOR7IXzgnx0aloxKUiK/Eudo/Xyc7YgyK45vDF0VyVsqu/7mCUeynwvVDmWWsynPSN2B3uRs0USFmk5J3bclCbhkEj7K0NlAj+o6u0XzYgywz2x9TgxUGAjaU/a8v7EF6RIQrIFLI3LPGhwwc+CCzMZnuoNOqmWqpl5VV6XUZL5g==
C:\WINDOWS\tasks\f706a8f7-287f-4a40-893c-ca55c01ea0aa-1-7.job - C:\Program Files\CinemaPlus-3.2cV29.07\f706a8f7-287f-4a40-893c-ca55c01ea0aa-1-7.exe /rawdata=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
C:\WINDOWS\tasks\f706a8f7-287f-4a40-893c-ca55c01ea0aa-10_user.job - C:\Program Files\CinemaPlus-3.2cV29.07\f706a8f7-287f-4a40-893c-ca55c01ea0aa-10.exe /rawdata=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
C:\WINDOWS\tasks\f706a8f7-287f-4a40-893c-ca55c01ea0aa-11.job - C:\Program Files\CinemaPlus-3.2cV29.07\f706a8f7-287f-4a40-893c-ca55c01ea0aa-11.exe /rawdata=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
C:\WINDOWS\tasks\f706a8f7-287f-4a40-893c-ca55c01ea0aa-3.job - C:\Program Files\CinemaPlus-3.2cV29.07\f706a8f7-287f-4a40-893c-ca55c01ea0aa-3.exe /rawdata=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
C:\WINDOWS\tasks\f706a8f7-287f-4a40-893c-ca55c01ea0aa-4.job - C:\Program Files\CinemaPlus-3.2cV29.07\f706a8f7-287f-4a40-893c-ca55c01ea0aa-4.exe /rawdata=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
C:\WINDOWS\tasks\f706a8f7-287f-4a40-893c-ca55c01ea0aa-5.job - C:\Program Files\CinemaPlus-3.2cV29.07\f706a8f7-287f-4a40-893c-ca55c01ea0aa-5.exe /rawdata=F9sO4xln61H7pkl01nwjhoX5R+P0roa2iPBVkNmHa8FiionD/kxxBu1QAhlOt+f3hc9gEtrFpTQCrt5uq8EAN4gbS4NvGM2BOM2h/8FEwCDQnqnSigw5w5Gv3qs3Qh2iifGAlmXOVgtnNjQfpCXoZiHwMsTSupk0sOUHzzUBTXgMRs9ASx0T2t5qJwHA1jEtAAgzt8i9xAgLYppdjiaP4F7JmQdq0lRTU7DQ4XZ5TV1ab+7tlC8tvQ7nxTH/CXuBdnGWYTyH+6llrOZfTXd8z6ozcanc62XjsXPmw+6Rn5UkqkzsCMXjpyzBgo0U9RqyMxWO3Mt3i7uGZiOSoTEBnEvElJH55uGelYuPnvARUXvmNqB9Xo1eKSfNUksE9qhfjP/4NrJGapurjxJUBQPAN/wTOi0xiFiF5BTwyjjO/eCa2ONiKZPPgqsPshvSvhfVLGWotRCvGO2ybMDRIPKWeXKBRub+0MT8TxRKeckVyPEUpe7ThfYNCOZUUa5O1xzULvo8L7EeSplIrHKUGd4ooNgCOe+YOQfN0hFNCP0ZcKMLnAciwbBcm8Xtcdf/H5XKGCj+YeMoxbKlMkt6X2HtoHEO6IVUiFQuWR1Yiixxz1DPvb3rODvU9lnAy5pujvtnUvsKsrr9BOzmC/iY+tTjVdUZIynHLYxZq/ixXqiOxlBjhwclQ9lN8g7AA1zxfGBSSqTmE3nHT5r+eztb4Bwypcks20fOS8w5h+1gQqccq+tvfiwD7BlUsQjlhDJg1S5sSLrOoM5mFAatNfL4iCttaiwvbBrEzmI7MMtnTLU5PS253ZqDFWXW/0LWPdsU14wIm9PR0IzhHs/LC+rnTZ487D03K29+JqYGGwtlfQwq6fxMEviXn4tYfl4jmv8LAfVNe11+9QfOiG8qtJzL7BNb7lTY4j4D82I+OgxucSdLvp2xvx46iFrlfUeIoirHrbvVsNfAKxtv1RY4KEh5EcoTXa/6OMBcstai1j3RhMukzdrfPdeXN9xGh/Y7j+PVs0Za
C:\WINDOWS\tasks\f706a8f7-287f-4a40-893c-ca55c01ea0aa-6.job - C:\Program Files\CinemaPlus-3.2cV29.07\f706a8f7-287f-4a40-893c-ca55c01ea0aa-6.exe /rawdata=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
C:\WINDOWS\tasks\f706a8f7-287f-4a40-893c-ca55c01ea0aa-7.job - C:\Program Files\CinemaPlus-3.2cV29.07\f706a8f7-287f-4a40-893c-ca55c01ea0aa-7.exe /rawdata=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
C:\WINDOWS\tasks\FOBNFKRHFL1.job - C:\Documents and Settings\All Users\Data aplikac■\SecurityUtility\SecurityUtility.exe
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineCore.job - C:\Program Files\globalUpdate\Update\globalupdate.exe /c
C:\WINDOWS\tasks\globalUpdateUpdateTaskMachineUA.job - C:\Program Files\globalUpdate\Update\globalupdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18Core.job - C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18UA.job - C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\Opera scheduled Autoupdate 1438197161.job - C:\Program Files\Opera\launcher.exe --scheduledautoupdate
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
C:\WINDOWS\tasks\ReclaimerUpdateFiles_Přemek.job - C:\Documents and Settings\Přemek\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe /UpdateFiles
C:\WINDOWS\tasks\ReclaimerUpdateXML_Přemek.job - C:\Documents and Settings\Přemek\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe /UpdateXML
C:\WINDOWS\tasks\RNUpgradeHelperLogonPrompt_Přemek.job - C:\Documents and Settings\Přemek\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe /prompt os_boot
C:\WINDOWS\tasks\sp4lmiAD6ff0Mn6YhMR.job - C:\Documents and Settings\Pemek\Data aplikac\sp4lmiAD6ff0Mn6YhMR.exe --c=lRtbLYPVL6dH6HmyzHajESVUwfwJbsSQsO5kdcp+vDHt9NGF8sHpqeqao7Xa7ZoKffU49e9R981cv7BhxIGzhExrEQ8xchKU7kTr6Y+Rl6a0/IqM/djv4FSPbTq3g6WJDFUcixbbTJuSijPvxc+wZOM/0It1IAxM5gEtO1Srz3M2XEydDCPWI2uxwCgquxU2pjtaua7JpJz1pfczrqUk4C/U3lxs4GSxlc3Imtxwn9bvZm9RJg3NWjmiIjy1o2BK7G4zj6BVPM6dbci/C1I3aAgfP0BD23Fi//pSnIDPnXlspTDlxKB1JvEu+TlMmrIH39gYWmp1jLeS6TzBOwLz2Q==
C:\WINDOWS\tasks\Tempo Runner soc6hen.job - C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe /dgad="C:\Documents and Settings\All Users\Data aplikací\DhmReu\soc6hen.exe"
C:\WINDOWS\tasks\temp_f706a8f7-287f-4a40-893c-ca55c01ea0aa-1-6.job - C:\Program Files\CinemaPlus-3.2cV29.07\f706a8f7-287f-4a40-893c-ca55c01ea0aa-1-6.exe /rawdata=hH22gX27uT7x/y2vLvOFXhak+nh0B9SuIrMaXuM1rW+md1u1/4mwIyeicK5biQnSWloRv+s8ZIE89si+/xH0HGTzx+950naeXmJxPbSvP78R9JezxWj0yepNcJuAXNvRUKUzVvpfOIifE59E/YPTul6X/+EpfuSoMk8KXKiObr4uSQ4pjLBkjBL+yOgPJS/YXPUthDYSdhYhQrSh7anK+iPE6iD/O2zq5WnuvA6cjKDRGq+CrgF0k7rzmax6YF64LGbo1nwyk7/jX6nbmhTNnBnR8OQjPajdTfT+KyX8rZMgYo8WK1rMDoE/6KesCpHgeWklGCjfRCmYsq3p7Yj4F2e5e9YrG+deIogOjsQPxFcDazMSCFF3dzhmycYVlvk9I+E1apmZ5NVlm5asiJkbSxzu9SIVORwXvhj/d5WtDkzEukhlLrn8QDHWdp93ROK0yPJ7XN2gj8E/3yot+bkWIUo0+nYcO+hM1AF1yAT8dfVEvxwlVLJapB52+fnjQhAxxjX/8IRoIf1p1AxwEwN7AnPUoixVu6Z/1dhofOJeu3aXXm7GndhJ38S+Z9D8Gdk6JOKv6TUiR2I4elHQTL9FAfF1GIifFYVlsKYalsbB0R6ixSWGv0PxQrh+62WVi4vTROdFuQvLxDThGICnizwWaTat1i2OzleMalYTD2ZUUWeIcCKl0L6xaaXkoyez62qY6rKIyVN1o8rAHMxKqCOxlR/hufgsGgFXby1Sskq5NgPEF9Y+VMxQfhbOsg5OZ8rry/uCAOnXpFQzPNA+NJ4T1EnBIZ0L8OaGPKIhcZadV6bc8uBZtdv3FDFzGjE0RFrcI9xccJ331HQiXmCMMeMExmO8RakNg6WFPYDier7kK0cS33kIoUY2xxNL0Fi42qaVzGU5DtrbaRHiQC6vk5bMklFK4mbLYvWB3c5GYhIYjnbgZAP/BMcN+b7WV8ib2cUy0wLZh2dpIaDcIH3EbBP3hOxGK35kUqZ0J7wT8UpINcrEgItlDdVpIiYR2ZLtTrUXcH6P+3HxUmGevWZSTEIoNMuhtT9jiplOw9k35G2z+J7Vqjah2YXhzEe/vB69Tt4uDTILrx8jw9fNXZhfDr8Z7nQ8vBScaxL4aBDWYH2x4/ScIsqonP9XBUBncu/hr3KBO1rNgXOTz1EMQjma6/oqYZ0hCpJYzFH4CtyGJGt11TlQkMVqP1+Su740CJ4LXcrTN6Okivi8v2Bc/t0p3XcKVrdCW4hNIvYrb9IKMg9wGVgltzazoLga6MHbz01YOW8Jxt20A5PP+iFnPf1kAJ23VnB+NZPwOUAtBbd1VGzRCZceOrYLlwEkfd/dkAIIxX/COb7iZwTUV2DrFsFwWqtH7g==
C:\WINDOWS\tasks\YhpdcDxzl.job - C:\Documents and Settings\Pemek\Data aplikac\YhpdcDxzl.exe --c=Dv0PbaOY+qwPZ2Jam6XFT2Zq1HMVOXNyzCJyxZ7fxA/E+eBHQs8c2h7UiJXKiEBglTINTVX4YC/zyOKFCvq3Zd39ksW2XXNLqzEP9P2WhRS0PEBXM/bBPtPXMDUiGSonEs7bN4pAVd3DgmBs7TUdgxw8nDrKzj1Zn8TYauyEUEM0xy0c67eWusxWmGhdfoKylMUoLylOWHLZHVveAzrHwO4JLiRiuygbsTsTSvqLnA6SAO+RoS9dpuxvbX94TebaYhy3TbV/w0Nsl5cnesLVFVTyaP+5jfGKpgTccoWMuSqKfiDLTZjQjp3EYYXNAZ637rLkY4/XhmJqoLXdD6pKGg==

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default

prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.startup.homepage" - "http://www.mystartsearch.com/?type=hppp ... 5914959149"

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.79.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.79.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=12.0.1.609]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprjplug;version=12.0.1.609]
"Description"=RealJukebox Netscape Plugin
"Path"=C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.609]
"Description"=RealPlayer(tm) HTML5VideoShim Plug-In
"Path"=C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.609]
"Description"=12.0.1.609
"Path"=C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Program Files\Mozilla Firefox\components\
nppl3260.xpt
nsjsrealplayerplugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
NPOFFICE.DLL
nppdf32.dll
nppl3260.dll
nprjplug.dll
nprpjplug.dll

C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\extensions\
389579c4-efa9-4d96-a1dd-3c86f7bd1a51@gmail.com
abs@avira.com
d4db60df25f14dae9dd18@185c395f9e794c9ab86be3eb.com

C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\
icqplugin-11.xml
icqplugin-12.xml
icqplugin-13.xml
icqplugin-14.xml
icqplugin-15.xml
icqplugin-16.xml
icqplugin-17.xml
icqplugin-18.xml
icqplugin-19.xml
icqplugin-20.xml
icqplugin-21.xml
icqplugin-22.xml
icqplugin-23.xml
V9.xml
yahoo_ff.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\WINDOWS\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1F91A9A1-01BA-4c81-863D-3BA0751E1419}]
GoodTab Class - C:\Program Files\MiuiTab\SupTab.dll [2015-07-23 544952]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2015-06-17 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{82A76710-4F98-4957-92BE-99648A4E2475}]
Spyware Terminator 2015 Internet Guard - C:\PROGRA~1\SPYWAR~1\STINTE~1.DLL [2015-07-27 1255248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-06-17 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RaidTool"=C:\Program Files\VIA\RAID\raid_tool.exe [2004-10-11 589824]
"SpywareTerminatorShield"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2015-07-27 3884368]
"SpywareTerminatorUpdater"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2015-07-27 5473104]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2015-04-10 271744]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"SetDefaultMIDI"=MIDIDef.exe []
"EPSON SX110 Series"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE [2008-09-27 199680]
"GoogleDriveSync"=C:\Program Files\Google\Drive\googledrivesync.exe [2015-06-20 22012688]
"GoogleChromeAutoLaunch_0AF14EDADA47A1801C4F978B30612C0E"=C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [2015-05-11 770048]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\WINDOWS\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced System~Protector_startup]
C:\Program Files\ASP\AdvancedSystemProtector.exe autolaunch []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Boxoft Tools]
C:\Documents and Settings\All Users\Data aplikací\Boxtools\Boxofttoolbox.exe [2010-12-15 514048]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BtTray]
C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe [2008-08-04 226816]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUS EPM tray]
C:\Program Files\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe [2013-03-29 2081792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EEventManager]
C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe [2008-12-04 665424]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX110 Series]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE [2008-09-27 199680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX110 Series (kopie 1)]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE [2008-09-27 199680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX110 Series (kopie 2)]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE [2008-09-27 199680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FrameManager]
C:\Program Files\Samsung\FrameManager\FrameManager.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_0AF14EDADA47A1801C4F978B30612C0E]
C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [2015-05-11 770048]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSpeedUp]
C:\Program Files\Zrychleni Pocitace\PCSUNotifier.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RDReminder]
C:\Program Files\RCP\RegCleanPro.exe -rem []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SeznamInstall-uninstall:0760a3c4409022d5826981eff0624d3c]
C:\DOCUME~1\PEMEK~1\LOCALS~1\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe [2015-02-08 534528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SystweakASP]
C:\Program Files\RCP\systweakasp.exe /verysilent []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UninstallFrameManager]
C:\WINDOWS\UninstallFrameManager.bat [2015-07-29 295]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^BlueSoleil.lnk]
C:\PROGRA~1\IVTCOR~1\BLUESO~1\BLUESO~1.EXE [2007-05-01 1441792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Přemek^Nabídka Start^Programy^Po spuštění^crossbrowse.lnk]
C:\PROGRA~1\CROSSB~1\CROSSB~1\APPLIC~1\CROSSB~1.EXE [2015-05-11 770048]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
TP-LINK Wireless Utility.lnk - C:\Program Files\TP-LINK\TWCU\COMMON\TWCU.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Documents and Settings\All Users\Data aplikací\SecurityUtility\SecurityUtility32.dll "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2008-05-08 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Epson Software\Event Manager\EEventManager.exe"="C:\Program Files\Epson Software\Event Manager\EEventManager.exe:*:Enabled:EEventManager Application"
"C:\Program Files\BitTorrent\BitTorrent.exe"="C:\Program Files\BitTorrent\BitTorrent.exe:*:Enabled:BitTorrent"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe"="C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe:*:Enabled:BlueSoleil"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\DataServer\DataServer.exe"="C:\DataServer\DataServer.exe:*:Enabled:Datový server"
"C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe"="C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe:*:Enabled:BlueSoleilCS"
"C:\Program Files\Spyware Terminator\SpywareTerminator.exe"="C:\Program Files\Spyware Terminator\SpywareTerminator.exe:*:Enabled:Spyware Terminator 2012"
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"="C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Spyware Terminator 2012"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"
"C:\Program Files\Google\Chrome\Application\chrome.exe"="C:\Program Files\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"
"C:\Program Files\Java\jre7\bin\javaw.exe"="C:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe"="C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe:*:Enabled:jamalookan"
"C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe"="C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe:*:Enabled:Crossbrowse"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe"="C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe:*:Enabled:jamalookan"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=ctwdm32.dll
"MSVideo8"=VfWWDM32.dll
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave3"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=ctwdm32.dll
"msacm.l3fhg"=mp3fhg.acm
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll
"wave1"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux2"=ctwdm32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"msacm.lameacm"=LameACM.acm

======List of files/folders created in the last 1 month======

2015-07-30 05:54:43 ----D---- C:\Program Files\AnyProtectEx
2015-07-29 23:40:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\JWinManProJ
2015-07-29 23:15:03 ----D---- C:\rsit
2015-07-29 23:10:07 ----D---- C:\Program Files\FriendlyError
2015-07-29 23:09:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\7WinManPro7
2015-07-29 22:53:26 ----D---- C:\Documents and Settings\All Users\Data aplikací\DWinManProD
2015-07-29 22:39:58 ----D---- C:\WINDOWS\system32\Flash
2015-07-29 22:37:26 ----D---- C:\Program Files\2ca13b38-0996-461b-8076-e78d4d2854b0
2015-07-29 22:36:40 ----D---- C:\Program Files\CinemaPlus-3.2cV29.07
2015-07-29 22:36:07 ----SHD---- C:\Documents and Settings\Přemek\Data aplikací\AnyProtectEx
2015-07-29 22:35:38 ----A---- C:\WINDOWS\system32\roboot.exe
2015-07-29 22:35:28 ----D---- C:\Documents and Settings\Přemek\Data aplikací\systweak
2015-07-29 22:32:20 ----D---- C:\Program Files\Crossbrowse
2015-07-29 22:32:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\gWinManProg
2015-07-29 22:31:40 ----D---- C:\Documents and Settings\Přemek\Data aplikací\mystartsearch
2015-07-29 22:23:48 ----A---- C:\WINDOWS\Reimage.ini
2015-07-29 22:23:37 ----D---- C:\Program Files\chk32
2015-07-29 22:22:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\DhmReu
2015-07-29 22:22:09 ----D---- C:\Program Files\cd44c280-8184-4e6f-88a4-bf1ec76f556e
2015-07-29 22:21:53 ----D---- C:\Program Files\globalUpdate
2015-07-29 22:21:49 ----D---- C:\Program Files\SavePass 1.1
2015-07-29 22:21:35 ----D---- C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF
2015-07-29 22:18:32 ----D---- C:\WINDOWS\pss
2015-07-29 22:14:10 ----A---- C:\WINDOWS\UninstallFrameManager.bat
2015-07-29 22:12:23 ----D---- C:\UpdateChromeLinksLogs
2015-07-29 22:12:17 ----A---- C:\WINDOWS\system32\mfc71.dll
2015-07-29 21:20:04 ----D---- C:\Documents and Settings\Přemek\Data aplikací\dlg
2015-07-29 21:17:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\7b24ec7cc000461ebe26d116b88142c8
2015-07-29 21:17:30 ----D---- C:\Documents and Settings\All Users\Data aplikací\SecurityUtility
2015-07-29 21:16:39 ----D---- C:\Documents and Settings\All Users\Data aplikací\IHProtectUpDate
2015-07-29 21:16:30 ----D---- C:\Program Files\MiuiTab
2015-07-29 21:16:14 ----D---- C:\Documents and Settings\All Users\Data aplikací\4WinManPro4
2015-07-29 21:16:08 ----A---- C:\WINDOWS\prleth.sys
2015-07-29 21:16:08 ----A---- C:\WINDOWS\hgfs.sys
2015-07-29 21:13:13 ----D---- C:\Documents and Settings\Přemek\Data aplikací\Opera Software
2015-07-29 21:09:47 ----D---- C:\Program Files\Opera
2015-07-28 20:18:59 ----D---- C:\Program Files\HD Tune
2015-07-07 22:13:45 ----D---- C:\Program Files\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2015-07-30 19:48:34 ----D---- C:\Program Files\trend micro
2015-07-30 19:42:26 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2015-07-30 19:37:46 ----D---- C:\WINDOWS\Temp
2015-07-30 19:37:39 ----D---- C:\WINDOWS\system32
2015-07-30 19:36:15 ----D---- C:\WINDOWS
2015-07-30 05:56:57 ----SD---- C:\WINDOWS\Tasks
2015-07-30 05:54:43 ----RD---- C:\Program Files
2015-07-30 04:59:00 ----A---- C:\WINDOWS\SchedLgU.Txt
2015-07-29 23:29:02 ----D---- C:\WINDOWS\Microsoft.NET
2015-07-29 23:09:18 ----D---- C:\WINDOWS\SoftwareDistribution
2015-07-29 23:08:49 ----D---- C:\WINDOWS\system32\CatRoot2
2015-07-29 23:08:19 ----D---- C:\Program Files\SpeedFan
2015-07-29 23:02:22 ----SHD---- C:\WINDOWS\Installer
2015-07-29 22:57:09 ----D---- C:\Program Files\Samsung
2015-07-29 22:57:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\Package Cache
2015-07-29 22:51:40 ----D---- C:\WINDOWS\system32\drivers
2015-07-29 22:51:08 ----D---- C:\Program Files\HD Tune Pro
2015-07-29 22:47:37 ----HD---- C:\WINDOWS\inf
2015-07-29 22:47:37 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-07-29 22:45:32 ----D---- C:\Program Files\Compiled Driver Disk (MediaTek)
2015-07-29 22:43:43 ----D---- C:\Program Files\Compiled Driver Disc (Full)
2015-07-29 22:38:35 ----D---- C:\Program Files\Common Files
2015-07-29 22:37:42 ----D---- C:\Program Files\Adobe
2015-07-29 22:29:02 ----D---- C:\Documents and Settings\Přemek\Data aplikací\Winamp
2015-07-29 22:29:00 ----D---- C:\Documents and Settings\Přemek\Data aplikací\BitTorrent
2015-07-29 22:28:43 ----D---- C:\WINDOWS\Debug
2015-07-29 22:21:59 ----D---- C:\WINDOWS\system32\drivers\etc
2015-07-29 22:15:25 ----RSD---- C:\WINDOWS\assembly
2015-07-29 22:14:22 ----HD---- C:\Program Files\InstallShield Installation Information
2015-07-29 22:12:40 ----D---- C:\WINDOWS\Prefetch
2015-07-29 22:12:07 ----D---- C:\Program Files\CDex
2015-07-29 22:06:16 ----D---- C:\Program Files\Android
2015-07-29 20:35:00 ----A---- C:\WINDOWS\NeroDigital.ini
2015-07-27 21:25:42 ----D---- C:\Program Files\Spyware Terminator
2015-07-22 22:00:23 ----D---- C:\Program Files\Google
2015-07-09 20:19:33 ----D---- C:\Program Files\Mozilla Maintenance Service

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 BtHidBus;Bluetooth HID Bus Service; C:\WINDOWS\System32\Drivers\BtHidBus.sys [2008-07-31 20616]
R0 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\System32\Drivers\vbtenum.sys [2007-03-05 20880]
R0 BTHidMgr;Bluetooth HID Manager Service; C:\WINDOWS\System32\Drivers\BTHidMgr.sys [2007-03-05 35600]
R0 gagp30kx;Filtr Microsoft Generic AGPv3.0 pro procesorovou platformu K8; C:\WINDOWS\system32\DRIVERS\gagp30kx.sys [2008-04-14 46464]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2012-12-11 466008]
R0 viamraid;viamraid; C:\WINDOWS\system32\DRIVERS\viamraid.sys [2004-07-06 60672]
R0 viasraid;viasraid; C:\WINDOWS\system32\drivers\viasraid.sys [2003-06-12 75904]
R0 videX32;videX32; C:\WINDOWS\system32\DRIVERS\videX32.sys [2006-10-17 9216]
R0 xfilt;VIA SATA IDE Hot-plug Driver; C:\WINDOWS\system32\DRIVERS\xfilt.sys [2006-10-18 17920]
R1 sp_rsdrv2;Spyware Terminator 2012 Realtime Shield Driver; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2006-07-24 5632]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.7.5.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2013-01-13 21361]
R2 PfModNT;PfModNT; \??\C:\WINDOWS\system32\PfModNT.sys []
R3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys [2007-03-05 34576]
R3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\WINDOWS\system32\DRIVERS\BlueletSCOAudio.sys [2007-03-05 27792]
R3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys [2007-03-05 18320]
R3 ctljystk;Game port pro zařízení Creative SB Live!; C:\WINDOWS\system32\DRIVERS\ctljystk.sys [2001-08-17 3712]
R3 emu10k;Creative SB Live! (WDM); C:\WINDOWS\system32\drivers\emu10k1m.sys [2001-08-17 283904]
R3 emu10k1;Creative Interface Manager Driver (WDM); C:\WINDOWS\system32\drivers\ctlfacem.sys [2001-08-17 6912]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IvtBtBUs;IVT Bluetooth Bus Service; C:\WINDOWS\System32\Drivers\IvtBtBus.sys [2008-07-02 26248]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-04-13 1897408]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-25 5888]
R3 rt2870;TP-LINK Wireless Adapter; C:\WINDOWS\system32\DRIVERS\rt2870.sys [2010-05-27 829792]
R3 sfman;Creative SoundFont Manager Driver (WDM); C:\WINDOWS\system32\drivers\sfmanm.sys [2001-08-17 36480]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys [2007-03-05 34448]
R3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys [2007-03-05 44304]
S1 iSafeKrnlMon;YAC Monitor Driver; \??\C:\Program Files\Elex-tech\YAC\iSafeKrnlMon.sys []
S3 AR9271;Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athuw.sys [2010-01-05 1714176]
S3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2004-08-17 701440]
S3 atinrvxx;ATI WDM Rage Theater Video (Microsoft Corporation); C:\WINDOWS\system32\DRIVERS\atinrvxx.sys [2004-08-04 104960]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys [2008-07-02 38920]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2013-06-05 84248]
S3 epmntdrv;epmntdrv; \??\C:\WINDOWS\system32\epmntdrv.sys []
S3 EuGdiDrv;EuGdiDrv; \??\C:\WINDOWS\system32\EuGdiDrv.sys []
S3 FTDIBUS;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2012-11-19 61704]
S3 FTSER2K;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2012-11-19 73096]
S3 MSI_DVD_010507;MSI_DVD_010507; \??\C:\Program Files\MSI\Live Update 5\DVDSYS32_100507.sys []
S3 MSI_MSIBIOS_010507;MSI_MSIBIOS_010507; \??\C:\Program Files\MSI\Live Update 5\msibios32_100507.sys []
S3 MSI_VGASYS_010507;MSI_VGASYS_010507; \??\C:\Program Files\MSI\Live Update 5\VGASYS32_100507.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 MVDCODEC;ATI WDM Specialized MVD Codec (Microsoft Corporation); C:\WINDOWS\system32\DRIVERS\atinmdxx.sys [2004-08-04 13824]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-14 40320]
S3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files\MSI\Live Update 5\NTIOLib.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys []
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 SNP2STD;USB2.0 PC Camera (SNP2STD); C:\WINDOWS\system32\DRIVERS\snp2sxp.sys []
S3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys []
S3 SODI;SODI; C:\WINDOWS\system32\DRIVERS\sam_miniport.sys [2010-01-07 14464]
S3 SONYPVU1;Sony USB Filter Driver (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2013-06-05 181912]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 usbser;USB Serial emulation modem driver; C:\WINDOWS\system32\DRIVERS\usbser.sys [2013-08-29 26240]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-07-17 123008]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\WINDOWS\system32\DRIVERS\wdcsam.sys []
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 WinUSB;SAMSUNG Android USB Driver; C:\WINDOWS\system32\DRIVERS\WinUSB.sys [2006-11-02 39368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2004-08-11 18944]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-05-08 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-05-08 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 comyninu;Wire Professional Version; C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\hnsw7E.tmp [2015-07-29 161792]
R2 EPSON_EB_RPCV4_01;EPSON V5 Service4(01); C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40ST7.EXE [2007-12-17 143872]
R2 EPSON_PM_RPCV4_01;EPSON V3 Service4(01); C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40RP7.EXE [2007-01-11 113664]
R2 hyverumu;Key In Bold Italic; C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\jnsd7C.tmp [2015-07-29 209920]
R2 chk32;DCheck Service; C:\Program Files\chk32\chk32.exe [2015-07-29 376832]
R2 IHProtect Service;IHProtect Service; C:\Program Files\MiuiTab\ProtectService.exe [2015-07-23 125112]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2015-06-17 182696]
R2 liqucybe;Workstation Save As; C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsl173.tmp [2015-07-30 784896]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 mekyturo;Graphic Design Operation; C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsz137.tmp [2015-07-30 302592]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
R2 qemehypu;Commercial Logical Operator; C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsm100.tmp [2015-07-30 296960]
R2 RalinkRegistryWriter;Ralink Registry Writer; C:\Program Files\TP-LINK\TWCU\COMMON\RegistryWriter.exe [2009-06-17 69632]
R2 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service; C:\Program Files\Spyware Terminator\st_rsser.exe [2015-01-22 1998672]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 vyhuxove;Backspace Key User; C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsb71.tmpfs [2015-07-29 293888]
R2 WMDM PMSP Service;WMDM PMSP Service; C:\WINDOWS\system32\MsPMSPSv.exe [2000-06-26 53520]
R2 YBC37;SpeedChecker Service 1.0.29; C:\Documents and Settings\Přemek\Local Settings\Data aplikací\SpeedCheckerService\speedchecker.exe [2015-07-29 34304]
S2 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
S2 BlueSoleilCS;BlueSoleilCS; C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe [2008-07-09 775168]
S2 BsMobileCS;BsMobileCS; C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe [2008-08-01 143467]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 globalUpdate;globalUpdate Update Service (globalUpdate); C:\Program Files\globalUpdate\Update\globalupdate.exe [2015-07-29 68608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-12-11 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-04 267440]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 BsHelpCS;BsHelpCS; C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe [2008-08-01 69735]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files\globalUpdate\Update\globalupdate.exe [2015-07-29 68608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-12-11 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-06-11 136120]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-07-07 148136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 Start BT in service;Start BT in service; C:\Program Files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe [2007-04-21 52080]
S3 SwitchBoard;SwitchBoard; C:\WINDOWS\Program Files\\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]

-----------------EOF-----------------

Premek84
Návštěvník
Návštěvník
Příspěvky: 188
Registrován: 11 pro 2008 15:34

Re: Velmi liny PC ..

#2 Příspěvek od Premek84 »

Jeste jeden dulezity-nedulezity poznatek...do doby nez spustim emailoveho klienta Thunderbird PC jede jakz takz slusne...po spusteni klienta coz je kazdy den...a pouzivam ho skoro porad... od te doby je PC uplne nepouzitelny :(

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Velmi liny PC ..

#3 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Premek84
Návštěvník
Návštěvník
Příspěvky: 188
Registrován: 11 pro 2008 15:34

Re: Velmi liny PC ..

#4 Příspěvek od Premek84 »

Dekuji za rychlost Rudy...

zasilam log:

# AdwCleaner v4.208 - Log vytvořen 30/07/2015 v 20:52:46
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-07-26.2 [Server]
# Operační system : Microsoft Windows XP Service Pack 3 (x86)
# Uživatelské jméno : Přemek - PREMEK
# Spuštěno z : C:\Documents and Settings\Přemek\Dokumenty\Stažené soubory\adwcleaner_4.208.exe
# Nastavení : Čištění

***** [ Služby ] *****

[#] Služba Smazáno : globalUpdate
[#] Služba Smazáno : globalUpdatem
[#] Služba Smazáno : IHProtect Service
[#] Služba Smazáno : iSafeKrnlMon
Služba Smazáno : sp_rsdrv2
[#] Služba Smazáno : WindowsMangerProtect

***** [ Soubory / Složky ] *****

Složka Smazáno : C:\Documents and Settings\All Users\Data aplikací\IHProtectUpDate
Složka Smazáno : C:\Documents and Settings\All Users\Data aplikací\SecurityUtility
Složka Smazáno : C:\Documents and Settings\All Users\Data aplikací\DhmReu
Složka Smazáno : C:\Documents and Settings\All Users\Nabídka Start\Programy\Crossbrowse
Složka Smazáno : C:\Program Files\AnyProtectEx
Složka Smazáno : C:\Program Files\globalUpdate
Složka Smazáno : C:\Program Files\SavePass 1.1
Složka Smazáno : C:\Program Files\Crossbrowse
Složka Smazáno : C:\Program Files\miuitab
Složka Smazáno : C:\Program Files\FriendlyError
Složka Smazáno : C:\Program Files\CinemaP-1.9cV18.02
Složka Smazáno : C:\Program Files\CinemaPlus-3.2cV29.07
Složka Smazáno : C:\Documents and Settings\Přemek\Local Settings\Data aplikací\globalUpdate
Složka Smazáno : C:\Documents and Settings\Přemek\Local Settings\Data aplikací\Crossbrowse
Složka Smazáno : C:\Documents and Settings\Přemek\Data aplikací\AnyProtectEx
Složka Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Systweak
Složka Smazáno : C:\Documents and Settings\Přemek\Data aplikací\mystartsearch
Složka Smazáno : C:\Documents and Settings\Přemek\Nabídka Start\Programy\AnyProtect PC Backup
Složka Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\Extensions\389579c4-efa9-4d96-a1dd-3c86f7bd1a51@gmail.com
Složka Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\Extensions\d4db60df25f14dae9dd18@185c395f9e794c9ab86be3eb.com
Složka Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Opera Software\Opera Stable\Extensions\akaelkiagnbfcccfnmbimdbplecgbikh
Složka Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Opera Software\Opera Stable\Extensions\papbadoldddalgcjcicnikcfenodpghp
Soubor Smazáno : C:\Documents and Settings\All Users\Plocha\crossbrowse.lnk
Soubor Smazáno : C:\WINDOWS\Reimage.ini
Soubor Smazáno : C:\WINDOWS\system32\roboot.exe
Soubor Smazáno : C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
Soubor Smazáno : C:\DOCUME~1\PEMEK~1\LOCALS~1\Temp\ReimageRepair.exe
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Microsoft\Internet Explorer\Quick Launch\crossbrowse.lnk
Soubor Smazáno : C:\Documents and Settings\Přemek\Plocha\AnyProtect.lnk
Soubor Smazáno : C:\Documents and Settings\Přemek\Plocha\Live PC Help.lnk
Soubor Smazáno : C:\Program Files\Mozilla Firefox\browser\searchplugins\mystartsearch.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\v9.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\yahoo_ff.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\user.js
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\icqplugin-11.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\icqplugin-12.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\icqplugin-13.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\icqplugin-14.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\icqplugin-15.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\icqplugin-16.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\icqplugin-17.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\icqplugin-18.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\icqplugin-19.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\icqplugin-20.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\icqplugin-21.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\icqplugin-22.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\searchplugins\icqplugin-23.xml
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Opera Software\Opera Stable\Local Storage\hxxp_www.mystartsearch.com_0.localstorage
Soubor Smazáno : C:\Documents and Settings\Přemek\Data aplikací\Opera Software\Opera Stable\Local Storage\hxxp_www.mystartsearch.com_0.localstorage-journal

***** [ Naplánované úlohy ] *****

Úloha Smazáno : APSnotifierPP1
Úloha Smazáno : APSnotifierPP2
Úloha Smazáno : APSnotifierPP3
Úloha Smazáno : Crossbrowse
Úloha Smazáno : globalUpdateUpdateTaskMachineCore
Úloha Smazáno : globalUpdateUpdateTaskMachineUA
Úloha Smazáno : 02100641-4d5c-4415-a5f1-6134dd556f9d-1-6
Úloha Smazáno : 02100641-4d5c-4415-a5f1-6134dd556f9d-1-7
Úloha Smazáno : 02100641-4d5c-4415-a5f1-6134dd556f9d-10_user
Úloha Smazáno : 02100641-4d5c-4415-a5f1-6134dd556f9d-11
Úloha Smazáno : 02100641-4d5c-4415-a5f1-6134dd556f9d-3
Úloha Smazáno : 02100641-4d5c-4415-a5f1-6134dd556f9d-4
Úloha Smazáno : 02100641-4d5c-4415-a5f1-6134dd556f9d-5
Úloha Smazáno : 02100641-4d5c-4415-a5f1-6134dd556f9d-6
Úloha Smazáno : 02100641-4d5c-4415-a5f1-6134dd556f9d-7
Úloha Smazáno : 69edc5bf-aa48-4cf8-a5cc-27b97fa09236-5
Úloha Smazáno : f706a8f7-287f-4a40-893c-ca55c01ea0aa-1-6
Úloha Smazáno : f706a8f7-287f-4a40-893c-ca55c01ea0aa-1-7
Úloha Smazáno : f706a8f7-287f-4a40-893c-ca55c01ea0aa-10_user
Úloha Smazáno : f706a8f7-287f-4a40-893c-ca55c01ea0aa-11
Úloha Smazáno : f706a8f7-287f-4a40-893c-ca55c01ea0aa-3
Úloha Smazáno : f706a8f7-287f-4a40-893c-ca55c01ea0aa-4
Úloha Smazáno : f706a8f7-287f-4a40-893c-ca55c01ea0aa-5
Úloha Smazáno : f706a8f7-287f-4a40-893c-ca55c01ea0aa-6
Úloha Smazáno : f706a8f7-287f-4a40-893c-ca55c01ea0aa-7

***** [ Zástupci ] *****

Zástupce Vyléčeno : C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
Zástupce Vyléčeno : C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
Zástupce Vyléčeno : C:\Documents and Settings\All Users\Plocha\Opera.lnk
Zástupce Vyléčeno : C:\Documents and Settings\Přemek\Plocha\Mozilla Firefox.lnk
Zástupce Vyléčeno : C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
Zástupce Vyléčeno : C:\Documents and Settings\All Users\Nabídka Start\Programy\Opera.lnk
Zástupce Vyléčeno : C:\Documents and Settings\All Users\Nabídka Start\Programy\Google Chrome\Google Chrome.lnk
Zástupce Vyléčeno : C:\Documents and Settings\Přemek\Nabídka Start\Programy\Internet Explorer.lnk
Zástupce Vyléčeno : C:\Documents and Settings\Přemek\Nabídka Start\Programy\Příslušenství\Systémové nástroje\Internet Explorer (bez doplňků).lnk
Zástupce Vyléčeno : C:\Documents and Settings\Přemek\Data aplikací\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
Zástupce Vyléčeno : C:\Documents and Settings\Přemek\Data aplikací\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
Zástupce Vyléčeno : C:\Documents and Settings\Přemek\Data aplikací\Microsoft\Internet Explorer\Quick Launch\Opera.lnk
Zástupce Vyléčeno : C:\Documents and Settings\Přemek\Data aplikací\Microsoft\Internet Explorer\Quick Launch\Spustit prohlížeč Internet Explorer.lnk

***** [ Registry ] *****

Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Klíč Smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Klíč Smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Klíč Smazáno : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Klíč Smazáno : HKLM\SOFTWARE\microsoft\shared tools\msconfig\startupreg\PCSpeedUp
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
Klíč Smazáno : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
Klíč Smazáno : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Mediaplayer\Shiminclusionlist\crossbrowse.exe
Klíč Smazáno : HKLM\SOFTWARE\Clients\StartMenuInternet\crossbrowse.exe
Klíč Smazáno : HKLM\SOFTWARE\Classes\CRSBRWSHTML
Klíč Smazáno : HKLM\SOFTWARE\Clients\StartMenuInternet\Crossbrowse
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\crossbrowse.exe
Hodnota Smazáno : HKLM\SOFTWARE\Classes\.htm\OpenWithProgids [CRSBRWSHTML]
Hodnota Smazáno : HKLM\SOFTWARE\Classes\.html\OpenWithProgids [CRSBRWSHTML]
Hodnota Smazáno : HKLM\SOFTWARE\RegisteredApplications [Crossbrowse]
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\globalupdate.exe
Klíč Smazáno : HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\WinZipper
Hodnota Smazáno : HKLM\SOFTWARE\Classes\.xht\OpenWithProgIDs [CRSBRWSHTML]
Hodnota Smazáno : HKLM\SOFTWARE\Classes\.webp\OpenWithProgIDs [CRSBRWSHTML]
Hodnota Smazáno : HKLM\SOFTWARE\Classes\.shtml\OpenWithProgIDs [CRSBRWSHTML]
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.001
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.7z
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.arj
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.bz2
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.bzip2
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.cab
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.cpio
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.deb
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.dmg
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.fat
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.gz
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.gzip
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.hfs
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.iso
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.lha
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.lzh
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.lzma
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.ntfs
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.rar
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.rpm
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.squashfs
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.swm
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.tar
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.taz
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.tbz
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.tbz2
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.tgz
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.tpz
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.txz
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.vhd
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.wim
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.xar
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.xz
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.z
Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZipper.zip
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{6EDBF8C0-C94C-4A13-956F-E393BCA5BA4B}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{1F91A9A1-01BA-4C81-863D-3BA0751E1419}
Klíč Smazáno : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Klíč Smazáno : HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
Klíč Smazáno : HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1F91A9A1-01BA-4C81-863D-3BA0751E1419}
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1F91A9A1-01BA-4C81-863D-3BA0751E1419}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Data Obnoveno : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Data Obnoveno : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command
Data Obnoveno : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{425ED333-6083-428a-92C9-0CFC28B9D1BF}
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{A7239D0B-B037-4EBA-876F-DA492464BD5E}
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{F4EA05E7-E8E5-4D7D-ACF4-A98B1F73E08E}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{425ED333-6083-428a-92C9-0CFC28B9D1BF}
Hodnota Smazáno : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe]
Klíč Smazáno : HKCU\Software\AnyProtect
Klíč Smazáno : HKCU\Software\APN PIP
Klíč Smazáno : HKCU\Software\AskPartnerNetwork
Klíč Smazáno : HKCU\Software\Crossrider
Klíč Smazáno : HKCU\Software\GlobalUpdate
Klíč Smazáno : HKCU\Software\HomeTab
Klíč Smazáno : HKCU\Software\InstalledBrowserExtensions
Klíč Smazáno : HKCU\Software\SavePass 1.1
Klíč Smazáno : HKCU\Software\simplytech
Klíč Smazáno : HKCU\Software\systweak
Klíč Smazáno : HKCU\Software\Reimage
Klíč Smazáno : HKCU\Software\WajIEnhance
Klíč Smazáno : HKCU\Software\TNT2
Klíč Smazáno : HKCU\Software\WajIntEnhance
Klíč Smazáno : HKCU\Software\CrossBrowser
Klíč Smazáno : HKCU\Software\SearchProtectWS
Klíč Smazáno : HKCU\Software\Crossbrowse
Klíč Smazáno : HKCU\Software\Linkey
Klíč Smazáno : HKCU\Software\YorkNewCin
Klíč Smazáno : HKCU\Software\HighDefAction
Klíč Smazáno : HKCU\Software\ArenaHD
Klíč Smazáno : HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885}
Klíč Smazáno : HKCU\Software\Kromtech
Klíč Smazáno : HKCU\Software\CinemaP-1.9cV18.02
Klíč Smazáno : HKCU\Software\CinemaPlus-3.2cV29.07
Klíč Smazáno : HKCU\Software\CinemaPlus-3.2cV29.07-nv
Klíč Smazáno : HKCU\Software\CinemaPlus-3.2cV29.07-nv-ie
Klíč Smazáno : HKLM\SOFTWARE\AskPartnerNetwork
Klíč Smazáno : HKLM\SOFTWARE\Conduit
Klíč Smazáno : HKLM\SOFTWARE\Crossrider
Klíč Smazáno : HKLM\SOFTWARE\GlobalUpdate
Klíč Smazáno : HKLM\SOFTWARE\Iminent
Klíč Smazáno : HKLM\SOFTWARE\InstalledBrowserExtensions
Klíč Smazáno : HKLM\SOFTWARE\SavePass 1.1
Klíč Smazáno : HKLM\SOFTWARE\SearchProtect
Klíč Smazáno : HKLM\SOFTWARE\SupDp
Klíč Smazáno : HKLM\SOFTWARE\SupTab
Klíč Smazáno : HKLM\SOFTWARE\supWindowsMangerProtect
Klíč Smazáno : HKLM\SOFTWARE\systweak
Klíč Smazáno : HKLM\SOFTWARE\Reimage
Klíč Smazáno : HKLM\SOFTWARE\mystartsearchSoftware
Klíč Smazáno : HKLM\SOFTWARE\IHProtect
Klíč Smazáno : HKLM\SOFTWARE\WajIntEnhance
Klíč Smazáno : HKLM\SOFTWARE\Crossbrowse
Klíč Smazáno : HKLM\SOFTWARE\SpeedBit
Klíč Smazáno : HKLM\SOFTWARE\AIM Toolbar
Klíč Smazáno : HKLM\SOFTWARE\YorkNewCin
Klíč Smazáno : HKLM\SOFTWARE\HighDefAction
Klíč Smazáno : HKLM\SOFTWARE\ArenaHD
Klíč Smazáno : HKLM\SOFTWARE\SecurityUtility
Klíč Smazáno : HKLM\SOFTWARE\searchult
Klíč Smazáno : HKLM\SOFTWARE\CinemaP-1.9cV18.02
Klíč Smazáno : HKLM\SOFTWARE\CinemaPlus-3.2cV29.07
Klíč Smazáno : HKLM\SOFTWARE\CinemaPlus-3.2cV29.07-nv
Klíč Smazáno : HKLM\SOFTWARE\CinemaPlus-3.2cV29.07-nv-ie
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AnyProtect
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SavePass 1.1
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mystartsearch uninstall
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Crossbrowse
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FriendlyError
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CinemaP-1.9cV18.02
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CinemaPlus-3.2cV29.07
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SavePass 1.1
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\VOPackage
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\CinemaP-1.9cV18.02
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\CinemaPlus-3.2cV29.07
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\globalupdate.exe

***** [ Prohlížeče ] *****

-\\ Internet Explorer v7.0.6000.21376

Nastavení Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Nastavení Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Nastavení Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavení Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [SearchAssistant]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [CustomizeSearch]

-\\ Mozilla Firefox v39.0 (x86 cs)

[1j5nitmv.default\prefs.js] - Řádek Smazáno : user_pref("browser.newtab.url", "hxxp://www.mystartsearch.com/newtab/?type=nt&t ... 5914959149");
[1j5nitmv.default\prefs.js] - Řádek Smazáno : user_pref("browser.search.defaultenginename", "mystartsearch");
[1j5nitmv.default\prefs.js] - Řádek Smazáno : user_pref("browser.search.selectedEngine", "mystartsearch");
[1j5nitmv.default\prefs.js] - Řádek Smazáno : user_pref("browser.startup.homepage", "hxxp://www.mystartsearch.com/?type=hppp&ts=143 ... 5914959149");
[1j5nitmv.default\prefs.js] - Řádek Smazáno : user_pref("extensions.a389579c4efa94d96a1dd3c86f7bd1a51gmailcom69829.69829.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22deal[...]
[1j5nitmv.default\prefs.js] - Řádek Smazáno : user_pref("extensions.ad4db60df25f14dae9dd18185c395f9e794c9ab86be3ebcom72893.72893.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%22amazon[...]
[1j5nitmv.default\prefs.js] - Řádek Smazáno : user_pref("extensions.ad4db60df25f14dae9dd18185c395f9e794c9ab86be3ebcom72893.72893.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2[...]
[1j5nitmv.default\prefs.js] - Řádek Smazáno : user_pref("extensions.crossrider.bic", "14edb7cfe3aee8fd8a75f65dc0ad5c08");

-\\ Google Chrome v44.0.2403.125

[C:\Documents and Settings\Přemek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://www.mystartsearch.com/web/?type=dspp&ts ... earchTerms}
[C:\Documents and Settings\Přemek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://www.mystartsearch.com/web/?type=dspp&ts ... earchTerms}
[C:\Documents and Settings\Přemek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1 ... earchTerms}
[C:\Documents and Settings\Přemek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://www.mystartsearch.com/web/?type=ds&ts=1 ... earchTerms}
[C:\Documents and Settings\Přemek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Homepage] : hxxp://www.mystartsearch.com/?type=hppp&ts=143 ... 5914959149
[C:\Documents and Settings\Přemek\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Startup_URLs] : F98D5ECA66DE9FDD7BA6CF1DF69EBBC7CCA3DFA7400993C610CA017E86E122C6"},"software_reporter":{"prompt_reason":"56F054262261ABC4D2B31EFE578AF1F7366D7F2A7126ECEC13524517A923D499","prompt_seed":"E689B892F501F974CDA2B7EEDC372D9C107324AEE793BE3A8E63AB5B7CF8B4B6","prompt_version":"50B4307DF679D7549FBDEE2DB42F8608795916E617E38110773BA8F5BA37C79B"},"sync":{"remaining_rollback_tries":"0525DD1B40E0775B5C0D3889CF6519153DBFB78B61401705D5444309685DEBA5"}},"super_mac":"0E3C715A722E347EEC9641C11D6B09D11CCA36DB100FD73C314D8572C27FBB47"},"session":{"restore_on_startup":4,"startup_urls":["hxxp://www.mystartsearch.com/?type=hppp&ts=143 ... 5914959149

-\\ Opera v30.0.1835.125


*************************

AdwCleaner[R0].txt - [1522 bytů] - [15/09/2013 22:34:26]
AdwCleaner[R1].txt - [305 bytů] - [15/09/2013 22:41:58]
AdwCleaner[R2].txt - [2133 bytů] - [09/10/2013 21:14:45]
AdwCleaner[R3].txt - [36574 bytů] - [28/10/2014 11:44:06]
AdwCleaner[R4].txt - [36635 bytů] - [28/10/2014 11:57:00]
AdwCleaner[R5].txt - [11079 bytů] - [07/02/2015 22:04:49]
AdwCleaner[R6].txt - [33166 bytů] - [30/07/2015 20:49:44]
AdwCleaner[S0].txt - [1599 bytů] - [15/09/2013 22:35:18]
AdwCleaner[S1].txt - [2210 bytů] - [09/10/2013 21:32:25]
AdwCleaner[S2].txt - [37410 bytů] - [28/10/2014 11:58:36]
AdwCleaner[S3].txt - [11158 bytů] - [07/02/2015 22:12:27]
AdwCleaner[S4].txt - [29073 bytů] - [30/07/2015 20:52:46]

########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [29132 bytů] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Velmi liny PC ..

#5 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Premek84
Návštěvník
Návštěvník
Příspěvky: 188
Registrován: 11 pro 2008 15:34

Re: Velmi liny PC ..

#6 Příspěvek od Premek84 »

Vkladam.... uz pozoruji velike zlepseni.... dokonce pred spustenim toho Vaseho programu byl PC jen s prohlizecem totalne nepouzitelny...same reklamy..same okna....CPU vytizeny...ted je to o 100% lepsi.... :D

Logfile of random's system information tool 1.10 (written by random/random)
Run by Přemek at 2015-07-30 21:04:13
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 105 GB (17%) free of 610 GB
Total RAM: 766 MB (8% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:04:28, on 30.7.2015
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.21376)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\chk32\chk32.exe
C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\hnsw7E.tmp
C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40ST7.EXE
C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40RP7.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\jnsd7C.tmp
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsl173.tmp
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsz137.tmp
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\IoctlSvc.exe
C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsm100.tmp
C:\Program Files\TP-LINK\TWCU\COMMON\RegistryWriter.exe
C:\Program Files\Spyware Terminator\st_rsser.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsb71.tmpfs
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Documents and Settings\Přemek\Local Settings\Data aplikací\SpeedCheckerService\speedchecker.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\TP-LINK\TWCU\COMMON\TWCU.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\devldr32.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\chk32\packages\cfef4727-578a-4380-b7be-15f0bcbeb227\dchk.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
C:\Program Files\Microsoft Office\OFFICE11\1033\msohelp.exe
C:\Documents and Settings\Přemek\Dokumenty\Stažené soubory\RSIT(1).exe
C:\Program Files\trend micro\Přemek.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\WINDOWS\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Spyware Terminator 2015 Internet Guard - {82A76710-4F98-4957-92BE-99648A4E2475} - C:\PROGRA~1\SPYWAR~1\STINTE~1.DLL
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe
O4 - HKLM\..\Run: [SpywareTerminatorShield] C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
O4 - HKLM\..\Run: [SpywareTerminatorUpdater] C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [EPSON SX110 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE /FU "C:\DOCUME~1\PEMEK~1\LOCALS~1\Temp\E_S6F.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_0AF14EDADA47A1801C4F978B30612C0E] "C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe" --no-startup-window
O4 - HKUS\S-1-5-18\..\Run: [Google Update] "C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Google Update] "C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User 'Default user')
O4 - Global Startup: TP-LINK Wireless Utility.lnk = C:\Program Files\TP-LINK\TWCU\COMMON\TWCU.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MI699F~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Send by Bluetooth - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm
O8 - Extra context menu item: Send via &Message... - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{3DA22621-CEAB-44ED-B0D7-2F2B50903383}: NameServer = 8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\..\{78BEDFF3-98F9-47B1-B25F-E31B7868F4ED}: NameServer = 52.17.204.69,52.18.92.32,8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\..\{CFE9BF9F-A343-48B8-AF48-CFB650BC8263}: NameServer = 52.17.204.69,52.18.92.32,8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\..\{ECE29EEE-7DF9-42DE-BC1D-D2A9CC3CACD3}: NameServer = 52.17.204.69,52.18.92.32,8.8.8.8
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)
O20 - AppInit_DLLs: C:\Documents and Settings\All Users\Data aplikací\SecurityUtility\SecurityUtility32.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe
O23 - Service: BlueSoleilCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O23 - Service: BsHelpCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
O23 - Service: BsMobileCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
O23 - Service: DCheck Service (chk32) - Unknown owner - C:\Program Files\chk32\chk32.exe
O23 - Service: Wire Professional Version (comyninu) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40ST7.EXE
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40RP7.EXE
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Key In Bold Italic (hyverumu) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Workstation Save As (liqucybe) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: Graphic Design Operation (mekyturo) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
O23 - Service: Commercial Logical Operator (qemehypu) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: Ralink Registry Writer (RalinkRegistryWriter) - Unknown owner - C:\Program Files\TP-LINK\TWCU\COMMON\RegistryWriter.exe
O23 - Service: Spyware Terminator 2012 Realtime Shield Service (ST2012_Svc) - Crawler Group - C:\Program Files\Spyware Terminator\st_rsser.exe
O23 - Service: Start BT in service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\WINDOWS\Program Files\\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: Backspace Key User (vyhuxove) - Unknown owner - C:\Program.exe (file missing)
O23 - Service: SpeedChecker Service 1.0.29 (YBC37) - Unknown owner - C:\Documents and Settings\Přemek\Local Settings\Data aplikací\SpeedCheckerService\speedchecker.exe

--
End of file - 10307 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\FOBNFKRHFL1.job - C:\Documents and Settings\All Users\Data aplikac■\SecurityUtility\SecurityUtility.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18Core.job - C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18UA.job - C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\Opera scheduled Autoupdate 1438197161.job - C:\Program Files\Opera\launcher.exe --scheduledautoupdate
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
C:\WINDOWS\tasks\ReclaimerUpdateFiles_Přemek.job - C:\Documents and Settings\Přemek\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe /UpdateFiles
C:\WINDOWS\tasks\ReclaimerUpdateXML_Přemek.job - C:\Documents and Settings\Přemek\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe /UpdateXML
C:\WINDOWS\tasks\RNUpgradeHelperLogonPrompt_Přemek.job - C:\Documents and Settings\Přemek\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe /prompt os_boot
C:\WINDOWS\tasks\sp4lmiAD6ff0Mn6YhMR.job - C:\Documents and Settings\Pemek\Data aplikac\sp4lmiAD6ff0Mn6YhMR.exe --c=lRtbLYPVL6dH6HmyzHajESVUwfwJbsSQsO5kdcp+vDHt9NGF8sHpqeqao7Xa7ZoKffU49e9R981cv7BhxIGzhExrEQ8xchKU7kTr6Y+Rl6a0/IqM/djv4FSPbTq3g6WJDFUcixbbTJuSijPvxc+wZOM/0It1IAxM5gEtO1Srz3M2XEydDCPWI2uxwCgquxU2pjtaua7JpJz1pfczrqUk4C/U3lxs4GSxlc3Imtxwn9bvZm9RJg3NWjmiIjy1o2BK7G4zj6BVPM6dbci/C1I3aAgfP0BD23Fi//pSnIDPnXlspTDlxKB1JvEu+TlMmrIH39gYWmp1jLeS6TzBOwLz2Q==
C:\WINDOWS\tasks\Tempo Runner soc6hen.job - C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe /dgad="C:\Documents and Settings\All Users\Data aplikací\DhmReu\soc6hen.exe"
C:\WINDOWS\tasks\temp_f706a8f7-287f-4a40-893c-ca55c01ea0aa-1-6.job - C:\Program Files\CinemaPlus-3.2cV29.07\f706a8f7-287f-4a40-893c-ca55c01ea0aa-1-6.exe /rawdata=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
C:\WINDOWS\tasks\YhpdcDxzl.job - C:\Documents and Settings\Pemek\Data aplikac\YhpdcDxzl.exe --c=Dv0PbaOY+qwPZ2Jam6XFT2Zq1HMVOXNyzCJyxZ7fxA/E+eBHQs8c2h7UiJXKiEBglTINTVX4YC/zyOKFCvq3Zd39ksW2XXNLqzEP9P2WhRS0PEBXM/bBPtPXMDUiGSonEs7bN4pAVd3DgmBs7TUdgxw8nDrKzj1Zn8TYauyEUEM0xy0c67eWusxWmGhdfoKylMUoLylOWHLZHVveAzrHwO4JLiRiuygbsTsTSvqLnA6SAO+RoS9dpuxvbX94TebaYhy3TbV/w0Nsl5cnesLVFVTyaP+5jfGKpgTccoWMuSqKfiDLTZjQjp3EYYXNAZ637rLkY4/XhmJqoLXdD6pKGg==

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default

prefs.js - "browser.search.suggest.enabled" - false

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.79.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.79.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=12.0.1.609]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprjplug;version=12.0.1.609]
"Description"=RealJukebox Netscape Plugin
"Path"=C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.609]
"Description"=RealPlayer(tm) HTML5VideoShim Plug-In
"Path"=C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.609]
"Description"=12.0.1.609
"Path"=C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Program Files\Mozilla Firefox\components\
nppl3260.xpt
nsjsrealplayerplugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
NPOFFICE.DLL
nppdf32.dll
nppl3260.dll
nprjplug.dll
nprpjplug.dll

C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\extensions\
abs@avira.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\WINDOWS\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2015-06-17 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{82A76710-4F98-4957-92BE-99648A4E2475}]
Spyware Terminator 2015 Internet Guard - C:\PROGRA~1\SPYWAR~1\STINTE~1.DLL [2015-07-27 1255248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-06-17 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RaidTool"=C:\Program Files\VIA\RAID\raid_tool.exe [2004-10-11 589824]
"SpywareTerminatorShield"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2015-07-27 3884368]
"SpywareTerminatorUpdater"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2015-07-27 5473104]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2015-04-10 271744]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"SetDefaultMIDI"=MIDIDef.exe []
"EPSON SX110 Series"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE [2008-09-27 199680]
"GoogleDriveSync"=C:\Program Files\Google\Drive\googledrivesync.exe [2015-06-20 22012688]
"GoogleChromeAutoLaunch_0AF14EDADA47A1801C4F978B30612C0E"=C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe --no-startup-window []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\WINDOWS\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced System~Protector_startup]
C:\Program Files\ASP\AdvancedSystemProtector.exe autolaunch []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Boxoft Tools]
C:\Documents and Settings\All Users\Data aplikací\Boxtools\Boxofttoolbox.exe [2010-12-15 514048]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BtTray]
C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe [2008-08-04 226816]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUS EPM tray]
C:\Program Files\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe [2013-03-29 2081792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EEventManager]
C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe [2008-12-04 665424]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX110 Series]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE [2008-09-27 199680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX110 Series (kopie 1)]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE [2008-09-27 199680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX110 Series (kopie 2)]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE [2008-09-27 199680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FrameManager]
C:\Program Files\Samsung\FrameManager\FrameManager.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_0AF14EDADA47A1801C4F978B30612C0E]
C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe --no-startup-window []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RDReminder]
C:\Program Files\RCP\RegCleanPro.exe -rem []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SeznamInstall-uninstall:0760a3c4409022d5826981eff0624d3c]
C:\DOCUME~1\PEMEK~1\LOCALS~1\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe [2015-02-08 534528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SystweakASP]
C:\Program Files\RCP\systweakasp.exe /verysilent []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UninstallFrameManager]
C:\WINDOWS\UninstallFrameManager.bat [2015-07-29 295]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^BlueSoleil.lnk]
C:\PROGRA~1\IVTCOR~1\BLUESO~1\BLUESO~1.EXE [2007-05-01 1441792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Přemek^Nabídka Start^Programy^Po spuštění^crossbrowse.lnk]
C:\PROGRA~1\CROSSB~1\CROSSB~1\APPLIC~1\CROSSB~1.EXE []

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
TP-LINK Wireless Utility.lnk - C:\Program Files\TP-LINK\TWCU\COMMON\TWCU.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Documents and Settings\All Users\Data aplikací\SecurityUtility\SecurityUtility32.dll "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2008-05-08 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Epson Software\Event Manager\EEventManager.exe"="C:\Program Files\Epson Software\Event Manager\EEventManager.exe:*:Enabled:EEventManager Application"
"C:\Program Files\BitTorrent\BitTorrent.exe"="C:\Program Files\BitTorrent\BitTorrent.exe:*:Enabled:BitTorrent"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe"="C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe:*:Enabled:BlueSoleil"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\DataServer\DataServer.exe"="C:\DataServer\DataServer.exe:*:Enabled:Datový server"
"C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe"="C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe:*:Enabled:BlueSoleilCS"
"C:\Program Files\Spyware Terminator\SpywareTerminator.exe"="C:\Program Files\Spyware Terminator\SpywareTerminator.exe:*:Enabled:Spyware Terminator 2012"
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"="C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Spyware Terminator 2012"
"C:\Program Files\Google\Chrome\Application\chrome.exe"="C:\Program Files\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"
"C:\Program Files\Java\jre7\bin\javaw.exe"="C:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe"="C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe:*:Enabled:jamalookan"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe"="C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe:*:Enabled:jamalookan"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=ctwdm32.dll
"MSVideo8"=VfWWDM32.dll
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave3"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=ctwdm32.dll
"msacm.l3fhg"=mp3fhg.acm
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll
"wave1"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux2"=ctwdm32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"msacm.lameacm"=LameACM.acm

======List of files/folders created in the last 1 month======

2015-07-30 20:56:33 ----A---- C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
2015-07-30 20:11:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\MWinManProM
2015-07-29 23:40:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\JWinManProJ
2015-07-29 23:15:03 ----D---- C:\rsit
2015-07-29 23:09:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\7WinManPro7
2015-07-29 22:53:26 ----D---- C:\Documents and Settings\All Users\Data aplikací\DWinManProD
2015-07-29 22:39:58 ----D---- C:\WINDOWS\system32\Flash
2015-07-29 22:37:26 ----D---- C:\Program Files\2ca13b38-0996-461b-8076-e78d4d2854b0
2015-07-29 22:32:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\gWinManProg
2015-07-29 22:23:37 ----D---- C:\Program Files\chk32
2015-07-29 22:22:09 ----D---- C:\Program Files\cd44c280-8184-4e6f-88a4-bf1ec76f556e
2015-07-29 22:21:35 ----D---- C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF
2015-07-29 22:18:32 ----D---- C:\WINDOWS\pss
2015-07-29 22:14:10 ----A---- C:\WINDOWS\UninstallFrameManager.bat
2015-07-29 22:12:23 ----D---- C:\UpdateChromeLinksLogs
2015-07-29 22:12:17 ----A---- C:\WINDOWS\system32\mfc71.dll
2015-07-29 21:20:04 ----D---- C:\Documents and Settings\Přemek\Data aplikací\dlg
2015-07-29 21:17:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\7b24ec7cc000461ebe26d116b88142c8
2015-07-29 21:16:14 ----D---- C:\Documents and Settings\All Users\Data aplikací\4WinManPro4
2015-07-29 21:16:08 ----A---- C:\WINDOWS\prleth.sys
2015-07-29 21:16:08 ----A---- C:\WINDOWS\hgfs.sys
2015-07-29 21:13:13 ----D---- C:\Documents and Settings\Přemek\Data aplikací\Opera Software
2015-07-29 21:09:47 ----D---- C:\Program Files\Opera
2015-07-28 20:18:59 ----D---- C:\Program Files\HD Tune
2015-07-07 22:13:45 ----D---- C:\Program Files\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2015-07-30 21:04:14 ----D---- C:\Program Files\trend micro
2015-07-30 20:57:33 ----D---- C:\WINDOWS\Temp
2015-07-30 20:56:35 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2015-07-30 20:56:33 ----D---- C:\WINDOWS\system32\drivers
2015-07-30 20:56:22 ----D---- C:\WINDOWS
2015-07-30 20:54:42 ----A---- C:\WINDOWS\SchedLgU.Txt
2015-07-30 20:54:05 ----D---- C:\AdwCleaner
2015-07-30 20:53:51 ----SD---- C:\WINDOWS\Tasks
2015-07-30 20:53:47 ----D---- C:\WINDOWS\system32
2015-07-30 20:53:33 ----RD---- C:\Program Files
2015-07-30 20:09:36 ----D---- C:\WINDOWS\system32\CatRoot2
2015-07-30 19:56:25 ----D---- C:\Program Files\Mozilla Maintenance Service
2015-07-29 23:29:02 ----D---- C:\WINDOWS\Microsoft.NET
2015-07-29 23:09:18 ----D---- C:\WINDOWS\SoftwareDistribution
2015-07-29 23:08:19 ----D---- C:\Program Files\SpeedFan
2015-07-29 23:02:22 ----SHD---- C:\WINDOWS\Installer
2015-07-29 22:57:09 ----D---- C:\Program Files\Samsung
2015-07-29 22:57:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\Package Cache
2015-07-29 22:51:08 ----D---- C:\Program Files\HD Tune Pro
2015-07-29 22:47:37 ----HD---- C:\WINDOWS\inf
2015-07-29 22:47:37 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-07-29 22:45:32 ----D---- C:\Program Files\Compiled Driver Disk (MediaTek)
2015-07-29 22:43:43 ----D---- C:\Program Files\Compiled Driver Disc (Full)
2015-07-29 22:38:35 ----D---- C:\Program Files\Common Files
2015-07-29 22:37:42 ----D---- C:\Program Files\Adobe
2015-07-29 22:29:02 ----D---- C:\Documents and Settings\Přemek\Data aplikací\Winamp
2015-07-29 22:29:00 ----D---- C:\Documents and Settings\Přemek\Data aplikací\BitTorrent
2015-07-29 22:28:43 ----D---- C:\WINDOWS\Debug
2015-07-29 22:21:59 ----D---- C:\WINDOWS\system32\drivers\etc
2015-07-29 22:15:25 ----RSD---- C:\WINDOWS\assembly
2015-07-29 22:14:22 ----HD---- C:\Program Files\InstallShield Installation Information
2015-07-29 22:12:40 ----D---- C:\WINDOWS\Prefetch
2015-07-29 22:12:07 ----D---- C:\Program Files\CDex
2015-07-29 22:06:16 ----D---- C:\Program Files\Android
2015-07-29 20:35:00 ----A---- C:\WINDOWS\NeroDigital.ini
2015-07-27 21:25:42 ----D---- C:\Program Files\Spyware Terminator
2015-07-22 22:00:23 ----D---- C:\Program Files\Google

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 BtHidBus;Bluetooth HID Bus Service; C:\WINDOWS\System32\Drivers\BtHidBus.sys [2008-07-31 20616]
R0 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\System32\Drivers\vbtenum.sys [2007-03-05 20880]
R0 BTHidMgr;Bluetooth HID Manager Service; C:\WINDOWS\System32\Drivers\BTHidMgr.sys [2007-03-05 35600]
R0 gagp30kx;Filtr Microsoft Generic AGPv3.0 pro procesorovou platformu K8; C:\WINDOWS\system32\DRIVERS\gagp30kx.sys [2008-04-14 46464]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2012-12-11 466008]
R0 viamraid;viamraid; C:\WINDOWS\system32\DRIVERS\viamraid.sys [2004-07-06 60672]
R0 viasraid;viasraid; C:\WINDOWS\system32\drivers\viasraid.sys [2003-06-12 75904]
R0 videX32;videX32; C:\WINDOWS\system32\DRIVERS\videX32.sys [2006-10-17 9216]
R0 xfilt;VIA SATA IDE Hot-plug Driver; C:\WINDOWS\system32\DRIVERS\xfilt.sys [2006-10-18 17920]
R1 sp_rsdrv2;Spyware Terminator 2015 Realtime Shield Driver; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2006-07-24 5632]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.7.5.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2013-01-13 21361]
R2 PfModNT;PfModNT; \??\C:\WINDOWS\system32\PfModNT.sys []
R3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys [2007-03-05 34576]
R3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\WINDOWS\system32\DRIVERS\BlueletSCOAudio.sys [2007-03-05 27792]
R3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys [2007-03-05 18320]
R3 ctljystk;Game port pro zařízení Creative SB Live!; C:\WINDOWS\system32\DRIVERS\ctljystk.sys [2001-08-17 3712]
R3 emu10k;Creative SB Live! (WDM); C:\WINDOWS\system32\drivers\emu10k1m.sys [2001-08-17 283904]
R3 emu10k1;Creative Interface Manager Driver (WDM); C:\WINDOWS\system32\drivers\ctlfacem.sys [2001-08-17 6912]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IvtBtBUs;IVT Bluetooth Bus Service; C:\WINDOWS\System32\Drivers\IvtBtBus.sys [2008-07-02 26248]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-04-13 1897408]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-25 5888]
R3 rt2870;TP-LINK Wireless Adapter; C:\WINDOWS\system32\DRIVERS\rt2870.sys [2010-05-27 829792]
R3 sfman;Creative SoundFont Manager Driver (WDM); C:\WINDOWS\system32\drivers\sfmanm.sys [2001-08-17 36480]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys [2007-03-05 34448]
R3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys [2007-03-05 44304]
S3 AR9271;Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athuw.sys [2010-01-05 1714176]
S3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2004-08-17 701440]
S3 atinrvxx;ATI WDM Rage Theater Video (Microsoft Corporation); C:\WINDOWS\system32\DRIVERS\atinrvxx.sys [2004-08-04 104960]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys [2008-07-02 38920]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2013-06-05 84248]
S3 epmntdrv;epmntdrv; \??\C:\WINDOWS\system32\epmntdrv.sys []
S3 EuGdiDrv;EuGdiDrv; \??\C:\WINDOWS\system32\EuGdiDrv.sys []
S3 FTDIBUS;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2012-11-19 61704]
S3 FTSER2K;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2012-11-19 73096]
S3 MSI_DVD_010507;MSI_DVD_010507; \??\C:\Program Files\MSI\Live Update 5\DVDSYS32_100507.sys []
S3 MSI_MSIBIOS_010507;MSI_MSIBIOS_010507; \??\C:\Program Files\MSI\Live Update 5\msibios32_100507.sys []
S3 MSI_VGASYS_010507;MSI_VGASYS_010507; \??\C:\Program Files\MSI\Live Update 5\VGASYS32_100507.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 MVDCODEC;ATI WDM Specialized MVD Codec (Microsoft Corporation); C:\WINDOWS\system32\DRIVERS\atinmdxx.sys [2004-08-04 13824]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-14 40320]
S3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files\MSI\Live Update 5\NTIOLib.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys []
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 SNP2STD;USB2.0 PC Camera (SNP2STD); C:\WINDOWS\system32\DRIVERS\snp2sxp.sys []
S3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys []
S3 SODI;SODI; C:\WINDOWS\system32\DRIVERS\sam_miniport.sys [2010-01-07 14464]
S3 SONYPVU1;Sony USB Filter Driver (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2013-06-05 181912]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 usbser;USB Serial emulation modem driver; C:\WINDOWS\system32\DRIVERS\usbser.sys [2013-08-29 26240]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-07-17 123008]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\WINDOWS\system32\DRIVERS\wdcsam.sys []
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 WinUSB;SAMSUNG Android USB Driver; C:\WINDOWS\system32\DRIVERS\WinUSB.sys [2006-11-02 39368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2004-08-11 18944]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-05-08 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-05-08 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 comyninu;Wire Professional Version; C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\hnsw7E.tmp [2015-07-29 161792]
R2 EPSON_EB_RPCV4_01;EPSON V5 Service4(01); C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40ST7.EXE [2007-12-17 143872]
R2 EPSON_PM_RPCV4_01;EPSON V3 Service4(01); C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40RP7.EXE [2007-01-11 113664]
R2 hyverumu;Key In Bold Italic; C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\jnsd7C.tmp [2015-07-29 209920]
R2 chk32;DCheck Service; C:\Program Files\chk32\chk32.exe [2015-07-29 376832]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2015-06-17 182696]
R2 liqucybe;Workstation Save As; C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsl173.tmp [2015-07-30 784896]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 mekyturo;Graphic Design Operation; C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsz137.tmp [2015-07-30 302592]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
R2 qemehypu;Commercial Logical Operator; C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsm100.tmp [2015-07-30 296960]
R2 RalinkRegistryWriter;Ralink Registry Writer; C:\Program Files\TP-LINK\TWCU\COMMON\RegistryWriter.exe [2009-06-17 69632]
R2 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service; C:\Program Files\Spyware Terminator\st_rsser.exe [2015-01-22 1998672]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 vyhuxove;Backspace Key User; C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF\knsb71.tmpfs [2015-07-29 293888]
R2 WMDM PMSP Service;WMDM PMSP Service; C:\WINDOWS\system32\MsPMSPSv.exe [2000-06-26 53520]
R2 YBC37;SpeedChecker Service 1.0.29; C:\Documents and Settings\Přemek\Local Settings\Data aplikací\SpeedCheckerService\speedchecker.exe [2015-07-29 34304]
S2 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
S2 BlueSoleilCS;BlueSoleilCS; C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe [2008-07-09 775168]
S2 BsMobileCS;BsMobileCS; C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe [2008-08-01 143467]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-12-11 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-04 267440]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 BsHelpCS;BsHelpCS; C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe [2008-08-01 69735]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-12-11 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-06-11 136120]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-07-07 148136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 Start BT in service;Start BT in service; C:\Program Files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe [2007-04-21 52080]
S3 SwitchBoard;SwitchBoard; C:\WINDOWS\Program Files\\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Velmi liny PC ..

#7 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files\FFFFFFFF-1438201295-FFFF-FFFF-FFFFFFFFFFFF
C:\Program Files\chk32\packages\cfef4727-578a-4380-b7be-15f0bcbeb227
C:\WINDOWS\tasks\FOBNFKRHFL1.jobam Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-18UA.job
C:\Documents and Settings\All Users\Data aplikac■\SecurityUtility
C:\WINDOWS\tasks\sp4lmiAD6ff0Mn6YhMR.job
c:\Documents and Settings\Pemek\Data aplikac\sp4lmiAD6ff0Mn6YhMR.exe
C:\WINDOWS\tasks\Tempo Runner soc6hen.job
C:\WINDOWS\tasks\temp_f706a8f7-287f-4a40-893c-ca55c01ea0aa-1-6.job
C:\WINDOWS\tasks\YhpdcDxzl.job
C:\Documents and Settings\Pemek\Data aplikac\YhpdcDxzl.exe
C:\Documents and Settings\All Users\Data aplikací\Boxtools
C:\DOCUME~1\PEMEK~1\LOCALS~1\Temp

:reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Boxoft Tools]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SeznamInstall-uninstall:0760a3c4409022d5826981eff0624d3c]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""

:services
comyninu
hyverumu
liqucybe
mekyturo
qemehypu
vyhuxove
chk32

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Premek84
Návštěvník
Návštěvník
Příspěvky: 188
Registrován: 11 pro 2008 15:34

Re: Velmi liny PC ..

#8 Příspěvek od Premek84 »

vkladam...

Logfile of random's system information tool 1.10 (written by random/random)
Run by Přemek at 2015-07-30 22:51:54
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 106 GB (17%) free of 610 GB
Total RAM: 766 MB (6% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:52:11, on 30.7.2015
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.21376)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Documents and Settings\All Users\Data aplikací\2WinManPro2\ProtectWindowsManager.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40ST7.EXE
C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40RP7.EXE
C:\Program Files\MiuiTab\ProtectService.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\IoctlSvc.exe
C:\Program Files\TP-LINK\TWCU\COMMON\RegistryWriter.exe
C:\Program Files\Spyware Terminator\st_rsser.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Documents and Settings\Přemek\Local Settings\Data aplikací\SpeedCheckerService\speedchecker.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\TP-LINK\TWCU\COMMON\TWCU.exe
C:\WINDOWS\system32\devldr32.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\MiuiTab\cmdshell.exe
C:\Program Files\MiuiTab\HPNotify.exe
C:\Program Files\Mozilla Thunderbird\thunderbird.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Přemek\Dokumenty\Stažené soubory\RSIT(1).exe
C:\Program Files\trend micro\Přemek.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... 5914959149
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hp&t ... 5914959149
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... 5914959149
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... earchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hp&t ... 5914959149
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\WINDOWS\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: GoodTab Class - {1F91A9A1-01BA-4c81-863D-3BA0751E1419} - C:\Program Files\MiuiTab\SupTab.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Spyware Terminator 2015 Internet Guard - {82A76710-4F98-4957-92BE-99648A4E2475} - C:\PROGRA~1\SPYWAR~1\STINTE~1.DLL
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe
O4 - HKLM\..\Run: [SpywareTerminatorShield] C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
O4 - HKLM\..\Run: [SpywareTerminatorUpdater] C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [EPSON SX110 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE /FU "C:\DOCUME~1\PEMEK~1\LOCALS~1\Temp\E_S6F.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_0AF14EDADA47A1801C4F978B30612C0E] "C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe" --no-startup-window
O4 - HKUS\S-1-5-18\..\Run: [Google Update] "C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Google Update] "C:\WINDOWS\system32\config\systemprofile\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c (User 'Default user')
O4 - Global Startup: TP-LINK Wireless Utility.lnk = C:\Program Files\TP-LINK\TWCU\COMMON\TWCU.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MI699F~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Send by Bluetooth - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm
O8 - Extra context menu item: Send via &Message... - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{3DA22621-CEAB-44ED-B0D7-2F2B50903383}: NameServer = 52.17.204.69
O17 - HKLM\System\CCS\Services\Tcpip\..\{78BEDFF3-98F9-47B1-B25F-E31B7868F4ED}: NameServer = 8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\..\{CFE9BF9F-A343-48B8-AF48-CFB650BC8263}: NameServer = 52.17.204.69,52.18.92.32,8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\..\{ECE29EEE-7DF9-42DE-BC1D-D2A9CC3CACD3}: NameServer = 52.17.204.69,52.18.92.32,8.8.8.8
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe
O23 - Service: BlueSoleilCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O23 - Service: BsHelpCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
O23 - Service: BsMobileCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
O23 - Service: EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40ST7.EXE
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40RP7.EXE
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: IHProtect Service - XTab system - C:\Program Files\MiuiTab\ProtectService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
O23 - Service: Ralink Registry Writer (RalinkRegistryWriter) - Unknown owner - C:\Program Files\TP-LINK\TWCU\COMMON\RegistryWriter.exe
O23 - Service: Spyware Terminator 2012 Realtime Shield Service (ST2012_Svc) - Crawler Group - C:\Program Files\Spyware Terminator\st_rsser.exe
O23 - Service: Start BT in service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\WINDOWS\Program Files\\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - DTools LIMITED - C:\Documents and Settings\All Users\Data aplikací\2WinManPro2\ProtectWindowsManager.exe
O23 - Service: SpeedChecker Service 1.0.29 (YBC37) - Unknown owner - C:\Documents and Settings\Přemek\Local Settings\Data aplikací\SpeedCheckerService\speedchecker.exe

--
End of file - 11683 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\APSnotifierPP1.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 3A
C:\WINDOWS\tasks\APSnotifierPP2.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 4
C:\WINDOWS\tasks\APSnotifierPP3.job - C:\Program Files\AnyProtectEx\AnyProtect.exe --notifier 6
C:\WINDOWS\tasks\FOBNFKRHFL1.job - C:\Documents and Settings\All Users\Data aplikac■\SecurityUtility\SecurityUtility.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\Opera scheduled Autoupdate 1438197161.job - C:\Program Files\Opera\launcher.exe --scheduledautoupdate
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
C:\WINDOWS\tasks\ReclaimerUpdateFiles_Přemek.job - C:\Documents and Settings\Přemek\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe /UpdateFiles
C:\WINDOWS\tasks\ReclaimerUpdateXML_Přemek.job - C:\Documents and Settings\Přemek\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe /UpdateXML
C:\WINDOWS\tasks\RNUpgradeHelperLogonPrompt_Přemek.job - C:\Documents and Settings\Přemek\Data aplikací\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe /prompt os_boot

=========Mozilla firefox=========

ProfilePath - C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default

prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.startup.homepage" - "http://www.mystartsearch.com/?type=hp&t ... 5914959149"

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.79.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.79.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=12.0.1.609]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprjplug;version=12.0.1.609]
"Description"=RealJukebox Netscape Plugin
"Path"=C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.609]
"Description"=RealPlayer(tm) HTML5VideoShim Plug-In
"Path"=C:\Documents and Settings\All Users\Data aplikací\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.609]
"Description"=12.0.1.609
"Path"=C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Program Files\Mozilla Firefox\components\
nppl3260.xpt
nsjsrealplayerplugin.xpt

C:\Program Files\Mozilla Firefox\plugins\
NPOFFICE.DLL
nppdf32.dll
nppl3260.dll
nprjplug.dll
nprpjplug.dll

C:\Documents and Settings\Přemek\Data aplikací\Mozilla\Firefox\Profiles\1j5nitmv.default\extensions\
abs@avira.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\WINDOWS\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05 63912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1F91A9A1-01BA-4c81-863D-3BA0751E1419}]
GoodTab Class - C:\Program Files\MiuiTab\SupTab.dll [2015-07-23 544952]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2015-06-17 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{82A76710-4F98-4957-92BE-99648A4E2475}]
Spyware Terminator 2015 Internet Guard - C:\PROGRA~1\SPYWAR~1\STINTE~1.DLL [2015-07-27 1255248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-06-17 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll [2008-04-02 266240]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RaidTool"=C:\Program Files\VIA\RAID\raid_tool.exe [2004-10-11 589824]
"SpywareTerminatorShield"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2015-07-27 3884368]
"SpywareTerminatorUpdater"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2015-07-27 5473104]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"SetDefaultMIDI"=MIDIDef.exe []
"EPSON SX110 Series"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE [2008-09-27 199680]
"GoogleDriveSync"=C:\Program Files\Google\Drive\googledrivesync.exe [2015-06-20 22012688]
"GoogleChromeAutoLaunch_0AF14EDADA47A1801C4F978B30612C0E"=C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe --no-startup-window []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\WINDOWS\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced System~Protector_startup]
C:\Program Files\ASP\AdvancedSystemProtector.exe autolaunch []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BtTray]
C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe [2008-08-04 226816]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EaseUS EPM tray]
C:\Program Files\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe [2013-03-29 2081792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EEventManager]
C:\PROGRA~1\EPSONS~1\EVENTM~1\EEventManager.exe [2008-12-04 665424]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX110 Series]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE [2008-09-27 199680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX110 Series (kopie 1)]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE [2008-09-27 199680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON SX110 Series (kopie 2)]
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIFBE.EXE [2008-09-27 199680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FrameManager]
C:\Program Files\Samsung\FrameManager\FrameManager.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_0AF14EDADA47A1801C4F978B30612C0E]
C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe --no-startup-window []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RDReminder]
C:\Program Files\RCP\RegCleanPro.exe -rem []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\seznam-listicka-distribuce]
C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SystweakASP]
C:\Program Files\RCP\systweakasp.exe /verysilent []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UninstallFrameManager]
C:\WINDOWS\UninstallFrameManager.bat [2015-07-29 295]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^BlueSoleil.lnk]
C:\PROGRA~1\IVTCOR~1\BLUESO~1\BLUESO~1.EXE [2007-05-01 1441792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Přemek^Nabídka Start^Programy^Po spuštění^crossbrowse.lnk]
C:\PROGRA~1\CROSSB~1\CROSSB~1\APPLIC~1\CROSSB~1.EXE []

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
TP-LINK Wireless Utility.lnk - C:\Program Files\TP-LINK\TWCU\COMMON\TWCU.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2008-05-08 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Epson Software\Event Manager\EEventManager.exe"="C:\Program Files\Epson Software\Event Manager\EEventManager.exe:*:Enabled:EEventManager Application"
"C:\Program Files\BitTorrent\BitTorrent.exe"="C:\Program Files\BitTorrent\BitTorrent.exe:*:Enabled:BitTorrent"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe"="C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe:*:Enabled:BlueSoleil"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\Winamp\winamp.exe"="C:\Program Files\Winamp\winamp.exe:*:Enabled:Winamp"
"C:\DataServer\DataServer.exe"="C:\DataServer\DataServer.exe:*:Enabled:Datový server"
"C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe"="C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe:*:Enabled:BlueSoleilCS"
"C:\Program Files\Spyware Terminator\SpywareTerminator.exe"="C:\Program Files\Spyware Terminator\SpywareTerminator.exe:*:Enabled:Spyware Terminator 2012"
"C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"="C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Spyware Terminator 2012"
"C:\Program Files\Google\Chrome\Application\chrome.exe"="C:\Program Files\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"
"C:\Program Files\Java\jre7\bin\javaw.exe"="C:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe"="C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe:*:Enabled:jamalookan"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox (C:\Program Files\Mozilla Firefox)"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe"="C:\Documents and Settings\All Users\Data aplikací\DhmReu\socahen.exe:*:Enabled:jamalookan"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=ctwdm32.dll
"MSVideo8"=VfWWDM32.dll
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave3"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=ctwdm32.dll
"msacm.l3fhg"=mp3fhg.acm
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"VIDC.FFDS"=ff_vfw.dll
"wave1"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux2"=ctwdm32.dll
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave4"=wdmaud.drv
"mixer4"=wdmaud.drv
"msacm.lameacm"=LameACM.acm

======List of files/folders created in the last 1 month======

2015-07-30 22:13:23 ----D---- C:\_OTM
2015-07-30 21:32:07 ----D---- C:\Program Files\AnyProtectEx
2015-07-30 21:32:06 ----SHD---- C:\Documents and Settings\Přemek\Data aplikací\AnyProtectEx
2015-07-30 21:31:13 ----D---- C:\Program Files\FriendlyError
2015-07-30 21:30:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\IHProtectUpDate
2015-07-30 21:30:38 ----D---- C:\Program Files\MiuiTab
2015-07-30 21:30:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\2WinManPro2
2015-07-30 21:30:01 ----D---- C:\Documents and Settings\Přemek\Data aplikací\mystartsearch
2015-07-30 20:56:33 ----A---- C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
2015-07-30 20:11:42 ----D---- C:\Documents and Settings\All Users\Data aplikací\MWinManProM
2015-07-29 23:40:46 ----D---- C:\Documents and Settings\All Users\Data aplikací\JWinManProJ
2015-07-29 23:15:03 ----D---- C:\rsit
2015-07-29 23:09:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\7WinManPro7
2015-07-29 22:53:26 ----D---- C:\Documents and Settings\All Users\Data aplikací\DWinManProD
2015-07-29 22:39:58 ----D---- C:\WINDOWS\system32\Flash
2015-07-29 22:37:26 ----D---- C:\Program Files\2ca13b38-0996-461b-8076-e78d4d2854b0
2015-07-29 22:32:04 ----D---- C:\Documents and Settings\All Users\Data aplikací\gWinManProg
2015-07-29 22:23:37 ----D---- C:\Program Files\chk32
2015-07-29 22:22:09 ----D---- C:\Program Files\cd44c280-8184-4e6f-88a4-bf1ec76f556e
2015-07-29 22:18:32 ----D---- C:\WINDOWS\pss
2015-07-29 22:14:10 ----A---- C:\WINDOWS\UninstallFrameManager.bat
2015-07-29 22:12:23 ----D---- C:\UpdateChromeLinksLogs
2015-07-29 22:12:17 ----A---- C:\WINDOWS\system32\mfc71.dll
2015-07-29 21:20:04 ----D---- C:\Documents and Settings\Přemek\Data aplikací\dlg
2015-07-29 21:17:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\7b24ec7cc000461ebe26d116b88142c8
2015-07-29 21:16:14 ----D---- C:\Documents and Settings\All Users\Data aplikací\4WinManPro4
2015-07-29 21:16:08 ----A---- C:\WINDOWS\prleth.sys
2015-07-29 21:16:08 ----A---- C:\WINDOWS\hgfs.sys
2015-07-29 21:13:13 ----D---- C:\Documents and Settings\Přemek\Data aplikací\Opera Software
2015-07-29 21:09:47 ----D---- C:\Program Files\Opera
2015-07-28 20:18:59 ----D---- C:\Program Files\HD Tune
2015-07-07 22:13:45 ----D---- C:\Program Files\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2015-07-30 22:51:57 ----D---- C:\Program Files\trend micro
2015-07-30 22:35:53 ----D---- C:\WINDOWS\system32
2015-07-30 22:34:29 ----A---- C:\WINDOWS\SchedLgU.Txt
2015-07-30 22:34:18 ----D---- C:\Documents and Settings\All Users\Data aplikací\Spyware Terminator
2015-07-30 22:34:12 ----D---- C:\WINDOWS\Temp
2015-07-30 22:19:39 ----D---- C:\WINDOWS
2015-07-30 22:14:14 ----SD---- C:\WINDOWS\Tasks
2015-07-30 22:14:13 ----RD---- C:\Program Files
2015-07-30 21:29:50 ----D---- C:\WINDOWS\system32\CatRoot2
2015-07-30 20:56:33 ----D---- C:\WINDOWS\system32\drivers
2015-07-30 20:54:05 ----D---- C:\AdwCleaner
2015-07-30 19:56:25 ----D---- C:\Program Files\Mozilla Maintenance Service
2015-07-29 23:29:02 ----D---- C:\WINDOWS\Microsoft.NET
2015-07-29 23:09:18 ----D---- C:\WINDOWS\SoftwareDistribution
2015-07-29 23:08:19 ----D---- C:\Program Files\SpeedFan
2015-07-29 23:02:22 ----SHD---- C:\WINDOWS\Installer
2015-07-29 22:57:09 ----D---- C:\Program Files\Samsung
2015-07-29 22:57:09 ----D---- C:\Documents and Settings\All Users\Data aplikací\Package Cache
2015-07-29 22:51:08 ----D---- C:\Program Files\HD Tune Pro
2015-07-29 22:47:37 ----HD---- C:\WINDOWS\inf
2015-07-29 22:47:37 ----DC---- C:\WINDOWS\system32\DRVSTORE
2015-07-29 22:45:32 ----D---- C:\Program Files\Compiled Driver Disk (MediaTek)
2015-07-29 22:43:43 ----D---- C:\Program Files\Compiled Driver Disc (Full)
2015-07-29 22:38:35 ----D---- C:\Program Files\Common Files
2015-07-29 22:37:42 ----D---- C:\Program Files\Adobe
2015-07-29 22:29:02 ----D---- C:\Documents and Settings\Přemek\Data aplikací\Winamp
2015-07-29 22:29:00 ----D---- C:\Documents and Settings\Přemek\Data aplikací\BitTorrent
2015-07-29 22:28:43 ----D---- C:\WINDOWS\Debug
2015-07-29 22:21:59 ----D---- C:\WINDOWS\system32\drivers\etc
2015-07-29 22:15:25 ----RSD---- C:\WINDOWS\assembly
2015-07-29 22:14:22 ----HD---- C:\Program Files\InstallShield Installation Information
2015-07-29 22:12:40 ----D---- C:\WINDOWS\Prefetch
2015-07-29 22:12:07 ----D---- C:\Program Files\CDex
2015-07-29 22:06:16 ----D---- C:\Program Files\Android
2015-07-29 20:35:00 ----A---- C:\WINDOWS\NeroDigital.ini
2015-07-27 21:25:42 ----D---- C:\Program Files\Spyware Terminator
2015-07-22 22:00:23 ----D---- C:\Program Files\Google

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 BtHidBus;Bluetooth HID Bus Service; C:\WINDOWS\System32\Drivers\BtHidBus.sys [2008-07-31 20616]
R0 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\System32\Drivers\vbtenum.sys [2007-03-05 20880]
R0 BTHidMgr;Bluetooth HID Manager Service; C:\WINDOWS\System32\Drivers\BTHidMgr.sys [2007-03-05 35600]
R0 gagp30kx;Filtr Microsoft Generic AGPv3.0 pro procesorovou platformu K8; C:\WINDOWS\system32\DRIVERS\gagp30kx.sys [2008-04-14 46464]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2011-03-04 45648]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2012-12-11 466008]
R0 viamraid;viamraid; C:\WINDOWS\system32\DRIVERS\viamraid.sys [2004-07-06 60672]
R0 viasraid;viasraid; C:\WINDOWS\system32\drivers\viasraid.sys [2003-06-12 75904]
R0 videX32;videX32; C:\WINDOWS\system32\DRIVERS\videX32.sys [2006-10-17 9216]
R0 xfilt;VIA SATA IDE Hot-plug Driver; C:\WINDOWS\system32\DRIVERS\xfilt.sys [2006-10-18 17920]
R1 sp_rsdrv2;Spyware Terminator 2015 Realtime Shield Driver; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2006-07-24 5632]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.7.5.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2013-01-13 21361]
R2 PfModNT;PfModNT; \??\C:\WINDOWS\system32\PfModNT.sys []
R3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys [2007-03-05 34576]
R3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\WINDOWS\system32\DRIVERS\BlueletSCOAudio.sys [2007-03-05 27792]
R3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys [2007-03-05 18320]
R3 ctljystk;Game port pro zařízení Creative SB Live!; C:\WINDOWS\system32\DRIVERS\ctljystk.sys [2001-08-17 3712]
R3 emu10k;Creative SB Live! (WDM); C:\WINDOWS\system32\drivers\emu10k1m.sys [2001-08-17 283904]
R3 emu10k1;Creative Interface Manager Driver (WDM); C:\WINDOWS\system32\drivers\ctlfacem.sys [2001-08-17 6912]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IvtBtBUs;IVT Bluetooth Bus Service; C:\WINDOWS\System32\Drivers\IvtBtBus.sys [2008-07-02 26248]
R3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-25 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-04-13 1897408]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-25 5888]
R3 rt2870;TP-LINK Wireless Adapter; C:\WINDOWS\system32\DRIVERS\rt2870.sys [2010-05-27 829792]
R3 sfman;Creative SoundFont Manager Driver (WDM); C:\WINDOWS\system32\drivers\sfmanm.sys [2001-08-17 36480]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
R3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
R3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys [2007-03-05 34448]
R3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys [2007-03-05 44304]
S3 AR9271;Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athuw.sys [2010-01-05 1714176]
S3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2004-08-17 701440]
S3 atinrvxx;ATI WDM Rage Theater Video (Microsoft Corporation); C:\WINDOWS\system32\DRIVERS\atinrvxx.sys [2004-08-04 104960]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys [2008-07-02 38920]
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2013-06-05 84248]
S3 epmntdrv;epmntdrv; \??\C:\WINDOWS\system32\epmntdrv.sys []
S3 EuGdiDrv;EuGdiDrv; \??\C:\WINDOWS\system32\EuGdiDrv.sys []
S3 FTDIBUS;USB Serial Converter Driver; C:\WINDOWS\system32\drivers\ftdibus.sys [2012-11-19 61704]
S3 FTSER2K;USB Serial Port Driver; C:\WINDOWS\system32\drivers\ftser2k.sys [2012-11-19 73096]
S3 MSI_DVD_010507;MSI_DVD_010507; \??\C:\Program Files\MSI\Live Update 5\DVDSYS32_100507.sys []
S3 MSI_MSIBIOS_010507;MSI_MSIBIOS_010507; \??\C:\Program Files\MSI\Live Update 5\msibios32_100507.sys []
S3 MSI_VGASYS_010507;MSI_VGASYS_010507; \??\C:\Program Files\MSI\Live Update 5\VGASYS32_100507.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 MVDCODEC;ATI WDM Specialized MVD Codec (Microsoft Corporation); C:\WINDOWS\system32\DRIVERS\atinmdxx.sys [2004-08-04 13824]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nm;Ovladač programu Sledování sítě; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-14 40320]
S3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files\MSI\Live Update 5\NTIOLib.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys []
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 SNP2STD;USB2.0 PC Camera (SNP2STD); C:\WINDOWS\system32\DRIVERS\snp2sxp.sys []
S3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\WINDOWS\system32\DRIVERS\snp2uvc.sys []
S3 SODI;SODI; C:\WINDOWS\system32\DRIVERS\sam_miniport.sys [2010-01-07 14464]
S3 SONYPVU1;Sony USB Filter Driver (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2013-06-05 181912]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbser;USB Serial emulation modem driver; C:\WINDOWS\system32\DRIVERS\usbser.sys [2013-08-29 26240]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-07-17 123008]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\WINDOWS\system32\DRIVERS\wdcsam.sys []
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 WinUSB;SAMSUNG Android USB Driver; C:\WINDOWS\system32\DRIVERS\WinUSB.sys [2006-11-02 39368]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2004-08-11 18944]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-05-08 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-05-08 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 EPSON_EB_RPCV4_01;EPSON V5 Service4(01); C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40ST7.EXE [2007-12-17 143872]
R2 EPSON_PM_RPCV4_01;EPSON V3 Service4(01); C:\Documents and Settings\All Users\Data aplikací\EPSON\EPW!3 SSRP\E_S40RP7.EXE [2007-01-11 113664]
R2 IHProtect Service;IHProtect Service; C:\Program Files\MiuiTab\ProtectService.exe [2015-07-23 125112]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2015-06-17 182696]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
R2 RalinkRegistryWriter;Ralink Registry Writer; C:\Program Files\TP-LINK\TWCU\COMMON\RegistryWriter.exe [2009-06-17 69632]
R2 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service; C:\Program Files\Spyware Terminator\st_rsser.exe [2015-01-22 1998672]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 WindowsMangerProtect;WindowsMangerProtect Service; C:\Documents and Settings\All Users\Data aplikací\2WinManPro2\ProtectWindowsManager.exe [2015-07-30 435880]
R2 WMDM PMSP Service;WMDM PMSP Service; C:\WINDOWS\system32\MsPMSPSv.exe [2000-06-26 53520]
R2 YBC37;SpeedChecker Service 1.0.29; C:\Documents and Settings\Přemek\Local Settings\Data aplikací\SpeedCheckerService\speedchecker.exe [2015-07-29 34304]
S2 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
S2 BlueSoleilCS;BlueSoleilCS; C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe [2008-07-09 775168]
S2 BsMobileCS;BsMobileCS; C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe [2008-08-01 143467]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-12-11 116648]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-04 267440]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 BsHelpCS;BsHelpCS; C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe [2008-08-01 69735]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-12-11 116648]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-06-11 136120]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-07-07 148136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 Start BT in service;Start BT in service; C:\Program Files\IVT Corporation\BlueSoleil\StartSkysolSvc.exe [2007-04-21 52080]
S3 SwitchBoard;SwitchBoard; C:\WINDOWS\Program Files\\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Velmi liny PC ..

#9 Příspěvek od Rudy »

Dvouklikem na soubor C:\Program Files\trend micro\Přemek.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... 5914959149
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... 4959149&q={searchTerms}
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... 4959149&q={searchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hp&t ... 5914959149
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&t ... 5914959149
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type= ... 4959149&q={searchTerms}
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type= ... 4959149&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hp&t ... 5914959149
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.mystartsearch.com/web/?type= ... 4959149&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.mystartsearch.com/web/?type= ... 4959149&q={searchTerms}
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Premek84
Návštěvník
Návštěvník
Příspěvky: 188
Registrován: 11 pro 2008 15:34

Re: Velmi liny PC ..

#10 Příspěvek od Premek84 »

Omlouvam se rudy za zpozdeni - nebyl jsem doma...provedeno - zda se, ze to pomohlo.... :P dekuji...

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Velmi liny PC ..

#11 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Premek84
Návštěvník
Návštěvník
Příspěvky: 188
Registrován: 11 pro 2008 15:34

Re: Velmi liny PC ..

#12 Příspěvek od Premek84 »

Mam jeste prosbicku - i kdyz jsme pomoci HiJacka odstranili ten mysearch - staci restart PC a opet tam je..i v tom HiJacku - zkousel jsem to 2x odebrat, ale vzdy se to tam ukaze..neni to nic co bych neprezil, ale jen tak informuji :) i tak diky :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119675
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Velmi liny PC ..

#13 Příspěvek od Rudy »

Zkuste ještě kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Premek84
Návštěvník
Návštěvník
Příspěvky: 188
Registrován: 11 pro 2008 15:34

Re: Velmi liny PC ..

#14 Příspěvek od Premek84 »

Bohuzel mi momentalne ani ted ..ani v minulosti se MBAM nepodarilo nainstalovat...tedy nainstaluji, ale pri spusteni to hazi chybky...

AppName: mbam.exe AppVer: 2.3.55.0 ModName: msvcr100.dll
ModVer: 10.0.40219.325 Offset: 0008d6fd

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: Velmi liny PC ..

#15 Příspěvek od cernohous13 »

Zdravím a jen jednorázový vstup :hide:

:arrow: nejprve odinstaluj MBAM ver.2 http://www.malwarebytes.org/mbam-clean.exe - ta na WinXP nechodí

:arrow: Stáhni a nainstaluj MBAM zde http://www.bleepingcomputer.com/downloa ... re/dl/241/ verzi 1.75
Při instalaci ti jako první nabídne instalaci nové verze (případně i při spuštění) - dáš Storno - bude aktualizována jen databáze
Po instalaci Spustit -> na 1.záložce "Kontrolor" -> Úplná kontrola -> Prohledat
po dokončení scanu vyskočí okno Notepad s výsledkem - obsah zkopíruj do své odpovědi
zatím nic nemazat - počkej na posouzení a program nezavírej, jen minimalizuj
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

Odpovědět