
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Pomalejší počítač, odinstalace
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Pomalejší počítač, odinstalace
Zdravím. Combofix už běží cca 1 hodinu. Nyní tam už poslední 1/4 hodinu visí hláška: "Téměř hotovo ... Toto se za malou chvíli zavře. Prosím vyčkejte pár sekund na zobrazení logu. Log z ComboFixu bude umístěn v C:/combofix.txt".
Je možné, že to takto dlouho trvá? Mám čekat? Píšu z jiného PC.
Je možné, že to takto dlouho trvá? Mám čekat? Píšu z jiného PC.
Re: Pomalejší počítač, odinstalace
Jen jsem to odeslal Combofix skončil... 
ComboFix 15-11-23.01 - Probook 23.11.2015 19:42:35.1.4 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.3968.1623 [GMT 1:00]
Spuštěný z: c:\users\Probook\Desktop\ComboFix.exe
AV: ESET NOD32 Antivirus 7.0 *Disabled/Updated* {19259FAE-8396-A113-46DB-15B0E7DFA289}
SP: ESET NOD32 Antivirus 7.0 *Disabled/Updated* {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\Hotkey_61_setup.log
c:\users\Probook\AppData\Roaming\.#
c:\users\Probook\AppData\Roaming\DRPSu
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\dpinst.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\FORCED-NTx64-7661-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\FORCED-NTx64-HD500_20.19.15.4312-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\HP-FORCED-7x64-ACCELEROMETER-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Infineon-WinAll-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Intel-FORCED-HECI-NTx64-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Intel-FORCED-Chipset-NTx64-10.1.1.13-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Intel-FORCED-ISCT-NTx64-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Intel-FORCED-NTx64-14.7.0.1000_rste-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Intel-WinAll-Chipset-9.4.0.1027_22.08-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Intel_4.0.2.42-FORCED-7x64-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\matchver-FORCED-7x64-PCIe_7.094.1021.2015-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\NTx64-HP_nb-19.0.19.4-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Realtek-7x64-E_2023.15.0701.2015-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Realtek-NTx64-10.0.10240.11140-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\VS-FORCED-NTx64-WBF_003df_DRV-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-13-23-19.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-15-43-57.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-15-52-24.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-19-13.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-26-57.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-38-16.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-41-22.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-42-14.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-43-16.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-43-19.html
c:\users\Probook\AppData\Roaming\DRPSu\PROGRAMS\AIMP3.exe
c:\users\Probook\AppData\Roaming\DRPSu\PROGRAMS\downloader_elements.exe
c:\users\Probook\AppData\Roaming\DRPSu\PROGRAMS\DriverPack-EasySearch.exe
c:\users\Probook\AppData\Roaming\DRPSu\PROGRAMS\DriverPack-Notifier.exe
c:\users\Probook\AppData\Roaming\DRPSu\PROGRAMS\Firefox.exe
c:\users\Probook\AppData\Roaming\DRPSu\PROGRAMS\OperaBlink.exe
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_10615.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_11014.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_1106.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_18557.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_3306.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_38329.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_39871.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_40940.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_42110.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_45678.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_4626.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_47342.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_51737.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_54460.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_56622.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_59146.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_68993.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_72113.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_73506.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_73886.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_79081.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_81510.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_10615.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_11014.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_1106.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_18557.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_3306.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_38329.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_39871.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_40940.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_42110.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_45678.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_4626.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_47342.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_51737.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_54460.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_56622.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_59146.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_68993.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_72113.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_73506.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_73886.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_79081.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_81510.log
c:\windows\IsUn0405.exe
c:\windows\iun6002.exe
c:\windows\SET6CA4.tmp
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-10-23 do 2015-11-23 )))))))))))))))))))))))))))))))
.
.
2015-11-23 19:14 . 2015-11-23 19:14 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-11-23 18:51 . 2015-11-23 18:51 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5E0EF36D-92DB-4AC8-881D-4D1075B63CB7}\offreg.7972.dll
2015-11-23 05:55 . 2015-11-23 05:55 -------- d-----w- C:\rsit
2015-11-22 20:23 . 2015-11-23 18:28 192216 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-11-22 20:23 . 2015-11-22 20:23 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2015-11-22 20:23 . 2015-11-22 20:23 -------- d-----w- c:\programdata\Malwarebytes
2015-11-22 20:23 . 2015-10-05 08:50 63704 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-11-22 20:23 . 2015-10-05 08:50 109272 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-11-22 20:23 . 2015-10-05 08:50 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-11-22 11:36 . 2015-11-22 11:37 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2015-11-20 16:58 . 2015-11-20 18:41 -------- d-----w- C:\AdwCleaner
2015-11-20 16:39 . 2015-11-23 05:55 -------- d-----w- c:\program files (x86)\trend micro
2015-11-20 15:43 . 2015-11-21 16:20 -------- d-----w- c:\users\Probook\AppData\Roaming\AIMP3
2015-11-20 15:43 . 2015-11-20 15:43 -------- d-----w- c:\program files (x86)\AIMP3
2015-11-20 14:59 . 2015-11-20 15:16 -------- d-----w- c:\users\Probook\AppData\Local\Yandex
2015-11-20 14:59 . 2015-11-20 14:59 -------- d-----w- c:\users\Probook\AppData\Local\Chromium
2015-11-20 14:59 . 2015-11-20 15:16 -------- d-----w- c:\users\Probook\AppData\Roaming\Yandex
2015-11-20 14:59 . 2015-11-21 16:19 -------- d-----w- c:\program files (x86)\DriverPack Notifier
2015-11-20 14:59 . 2015-11-20 14:59 -------- d-----w- c:\users\Probook\AppData\Roaming\DriverPack Notifier
2015-11-20 14:59 . 2015-11-21 16:20 -------- d-----w- c:\users\Probook\AppData\Roaming\DriverPack Easy Search
2015-11-20 14:56 . 2015-10-21 01:10 82544 ----a-w- c:\windows\system32\SETFDF7.tmp
2015-11-20 14:55 . 2015-11-13 08:38 1601944 ----a-w- c:\windows\system32\SET21F3.tmp
2015-11-20 14:55 . 2015-11-13 08:38 122328 ----a-w- c:\windows\system32\CONEQMSAPOGUILibrary.dll
2015-11-20 14:55 . 2015-11-13 08:38 574760 ----a-w- c:\windows\system32\AERTAC64.dll
2015-11-20 14:55 . 2015-11-13 08:38 118600 ----a-w- c:\windows\system32\AERTAR64.dll
2015-11-20 12:33 . 2015-11-20 12:33 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5E0EF36D-92DB-4AC8-881D-4D1075B63CB7}\offreg.3396.dll
2015-11-20 07:12 . 2015-10-29 09:28 11138400 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5E0EF36D-92DB-4AC8-881D-4D1075B63CB7}\mpengine.dll
2015-11-18 20:06 . 2014-03-24 11:37 422400 ----a-w- c:\windows\SwUSB.exe
2015-11-18 20:06 . 2013-10-18 15:42 48856 ----a-w- c:\windows\runSW.exe
2015-11-18 20:06 . 2015-11-18 20:06 -------- d-----w- C:\DRIVERS
2015-11-18 19:36 . 2014-08-04 19:24 3502296 ----a-w- c:\windows\system32\drivers\rtwlane.sys
2015-11-13 07:11 . 2015-11-13 07:11 -------- d-----w- c:\users\Probook\AppData\Local\ElevatedDiagnostics
2015-11-12 11:23 . 2015-11-03 17:55 3211264 ----a-w- c:\windows\system32\win32k.sys
2015-11-11 08:59 . 2015-10-20 18:42 98816 ----a-w- c:\windows\system32\wudriver.dll
2015-11-11 08:58 . 2015-10-29 17:50 6656 ----a-w- c:\windows\system32\shimeng.dll
2015-11-11 08:58 . 2015-10-29 17:50 342016 ----a-w- c:\windows\system32\apphelp.dll
2015-11-11 08:58 . 2015-10-29 17:50 72192 ----a-w- c:\windows\system32\aelupsvc.dll
2015-11-11 08:58 . 2015-10-29 17:50 5120 ----a-w- c:\windows\SysWow64\shimeng.dll
2015-11-11 08:58 . 2015-10-29 17:50 23552 ----a-w- c:\windows\system32\sdbinst.exe
2015-11-11 08:58 . 2015-10-29 17:49 295936 ----a-w- c:\windows\SysWow64\apphelp.dll
2015-11-11 08:58 . 2015-10-29 17:49 20992 ----a-w- c:\windows\SysWow64\sdbinst.exe
2015-11-11 08:51 . 2015-10-13 04:57 950720 ----a-w- c:\windows\system32\drivers\ndis.sys
2015-11-11 08:28 . 2015-10-13 16:41 497664 ----a-w- c:\windows\system32\drivers\afd.sys
2015-11-11 08:28 . 2015-10-13 16:40 118272 ----a-w- c:\windows\system32\drivers\tdx.sys
2015-11-10 22:28 . 2015-11-10 22:28 5286088 ----a-w- c:\windows\SysWow64\FlashPlayerInstaller.exe
2015-10-27 08:55 . 2015-10-27 08:55 -------- d-----w- c:\users\Probook\AppData\Local\HP
2015-10-27 08:53 . 2015-10-27 08:53 -------- d-----w- c:\programdata\HP
2015-10-27 08:53 . 2015-11-17 14:55 -------- d-----w- c:\users\Probook\AppData\Roaming\HpUpdate
2015-10-27 08:52 . 2014-08-13 20:35 22768 ------w- c:\windows\system32\hppfaxprintermonui5.dll
2015-10-27 08:52 . 2014-08-13 20:35 28400 ------w- c:\windows\system32\hppfaxprintermon5.dll
2015-10-27 08:52 . 2015-10-27 08:52 608 --sha-w- c:\windows\system32\winzvprt5.sys
2015-10-27 08:52 . 2015-10-27 08:52 -------- d-----w- c:\users\Probook\AppData\Roaming\Hewlett-Packard Company
2015-10-27 08:51 . 2010-09-23 13:11 323584 ----a-w- c:\windows\system32\Spool\prtprocs\x64\hpcpp101.dll
2015-10-27 08:51 . 2010-09-23 13:10 176128 ----a-w- c:\windows\system32\hpcpn101.dll
2015-10-27 08:51 . 2010-09-23 13:05 305664 ----a-w- c:\windows\SysWow64\hpcc3101.dll
2015-10-27 08:51 . 2010-02-11 09:19 491008 ----a-w- c:\windows\SysWow64\hpcdmc32.dll
2015-10-27 08:50 . 2015-11-17 14:55 -------- d-----w- c:\program files (x86)\HP
2015-10-27 08:50 . 2010-12-14 20:08 976440 ----a-w- c:\windows\system32\hpxp1530_x64.dll
2015-10-27 08:50 . 2010-12-14 20:08 1150520 ----a-w- c:\windows\system32\hpptsp06_x64.dll
2015-10-27 08:50 . 2010-12-14 20:08 217656 ----a-w- c:\windows\system32\hppscancoins64.dll
2015-10-27 08:50 . 2010-12-14 20:07 751160 ----a-w- c:\windows\SysWow64\hpptsp06.dll
2015-10-27 08:50 . 2010-12-14 20:06 311296 ----a-w- c:\windows\system32\hpbcoins64.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-11-20 15:07 . 2014-08-16 15:25 10822 ----a-w- c:\windows\system32\drivers\rtkhdasetting.zip
2015-11-11 15:02 . 2014-09-26 15:52 145617392 ----a-w- c:\windows\system32\MRT.exe
2015-11-10 22:28 . 2014-10-03 20:23 780488 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2015-11-10 22:28 . 2014-10-03 20:23 142536 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-10-29 17:50 . 2015-11-11 08:58 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2015-10-29 17:50 . 2015-11-11 08:58 309248 ----a-w- c:\windows\apppatch\AppPatch64\AcGenral.dll
2015-10-29 17:50 . 2015-11-11 08:58 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2015-10-29 17:50 . 2015-11-11 08:58 103424 ----a-w- c:\windows\apppatch\AppPatch64\acspecfc.dll
2015-10-29 17:49 . 2015-11-11 08:58 562176 ----a-w- c:\windows\apppatch\AcLayers.dll
2015-10-29 17:49 . 2015-11-11 08:58 470528 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2015-10-29 17:49 . 2015-11-11 08:58 2178560 ----a-w- c:\windows\apppatch\AcGenral.dll
2015-10-29 17:49 . 2015-11-11 08:58 211968 ----a-w- c:\windows\apppatch\AcXtrnal.dll
2015-10-29 17:39 . 2015-11-11 08:58 2560 ----a-w- c:\windows\apppatch\AcRes.dll
2015-10-21 01:10 . 2014-08-16 15:28 116304 ----a-w- c:\windows\system32\SETFE66.tmp
2015-10-20 01:05 . 2015-11-11 08:30 344064 ----a-w- c:\windows\system32\schannel.dll
2015-10-20 00:45 . 2015-11-11 08:30 251392 ----a-w- c:\windows\SysWow64\schannel.dll
2015-10-20 00:45 . 2015-11-11 08:30 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2015-10-13 00:29 . 2015-10-13 00:29 875720 ----a-w- c:\windows\SysWow64\msvcr120_clr0400.dll
2015-10-13 00:22 . 2015-10-13 00:22 869568 ----a-w- c:\windows\system32\msvcr120_clr0400.dll
2015-10-05 07:04 . 2014-10-16 17:49 97888 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2015-10-01 18:06 . 2015-10-14 16:05 692672 ----a-w- c:\windows\system32\winload.efi
2015-10-01 18:04 . 2015-10-14 16:05 616360 ----a-w- c:\windows\system32\winresume.efi
2015-10-01 18:00 . 2015-10-14 16:05 63488 ----a-w- c:\windows\system32\setbcdlocale.dll
2015-10-01 18:00 . 2015-10-14 16:05 59392 ----a-w- c:\windows\system32\appidapi.dll
2015-10-01 18:00 . 2015-10-14 16:05 32768 ----a-w- c:\windows\system32\appidsvc.dll
2015-10-01 18:00 . 2015-10-14 16:05 147456 ----a-w- c:\windows\system32\appidpolicyconverter.exe
2015-10-01 18:00 . 2015-10-14 16:05 17920 ----a-w- c:\windows\system32\appidcertstorecheck.exe
2015-10-01 17:50 . 2015-10-14 16:05 50688 ----a-w- c:\windows\SysWow64\appidapi.dll
2015-10-01 17:00 . 2015-10-14 16:05 61440 ----a-w- c:\windows\system32\drivers\appid.sys
2015-09-18 19:22 . 2015-10-15 12:18 25432 ----a-w- c:\windows\system32\CompatTelRunner.exe
2015-09-18 19:19 . 2015-10-15 12:18 700416 ----a-w- c:\windows\system32\invagent.dll
2015-09-18 19:19 . 2015-10-15 12:18 766464 ----a-w- c:\windows\system32\generaltel.dll
2015-09-18 19:19 . 2015-10-15 12:18 503808 ----a-w- c:\windows\system32\devinv.dll
2015-09-18 19:19 . 2015-10-15 12:18 1291264 ----a-w- c:\windows\system32\appraiser.dll
2015-09-18 19:19 . 2015-10-15 12:18 73216 ----a-w- c:\windows\system32\acmigration.dll
2015-09-18 19:09 . 2015-10-15 12:18 1163776 ----a-w- c:\windows\system32\aeinv.dll
2015-09-07 18:14 . 2015-09-07 18:15 256168 ----a-w- c:\windows\system32\SynTPAPI.dll
2015-09-07 18:14 . 2015-09-07 18:15 212136 ----a-w- c:\windows\system32\SynTPCo20.dll
2015-09-07 18:14 . 2015-09-07 18:15 753320 ----a-w- c:\windows\system32\SETC51F.tmp
2015-09-02 03:04 . 2015-09-09 08:59 41984 ----a-w- c:\windows\system32\lpk.dll
2015-09-02 03:04 . 2015-09-09 08:59 100864 ----a-w- c:\windows\system32\fontsub.dll
2015-09-02 03:04 . 2015-09-09 08:59 14336 ----a-w- c:\windows\system32\dciman32.dll
2015-09-02 03:04 . 2015-09-09 08:59 46080 ----a-w- c:\windows\system32\atmlib.dll
2015-09-02 02:48 . 2015-09-09 08:59 70656 ----a-w- c:\windows\SysWow64\fontsub.dll
2015-09-02 02:48 . 2015-09-09 08:59 10240 ----a-w- c:\windows\SysWow64\dciman32.dll
2015-09-02 02:48 . 2015-09-09 08:59 34304 ----a-w- c:\windows\SysWow64\atmlib.dll
2015-09-02 02:47 . 2015-09-09 08:59 25600 ----a-w- c:\windows\SysWow64\lpk.dll
2015-09-02 01:47 . 2015-09-09 08:59 372736 ----a-w- c:\windows\system32\atmfd.dll
2015-09-02 01:33 . 2015-09-09 08:59 299520 ----a-w- c:\windows\SysWow64\atmfd.dll
2015-08-27 18:18 . 2015-09-09 09:00 2004480 ----a-w- c:\windows\system32\msxml6.dll
2015-08-27 18:18 . 2015-09-09 09:00 1887232 ----a-w- c:\windows\system32\msxml3.dll
2015-08-27 18:13 . 2015-09-09 09:00 2048 ----a-w- c:\windows\system32\msxml6r.dll
2015-08-27 18:13 . 2015-09-09 09:00 2048 ----a-w- c:\windows\system32\msxml3r.dll
2015-08-27 17:58 . 2015-09-09 09:00 1391104 ----a-w- c:\windows\SysWow64\msxml6.dll
2015-08-27 17:58 . 2015-09-09 09:00 1241088 ----a-w- c:\windows\SysWow64\msxml3.dll
2015-08-27 17:51 . 2015-09-09 09:00 2048 ----a-w- c:\windows\SysWow64\msxml6r.dll
2015-08-27 17:51 . 2015-09-09 09:00 2048 ----a-w- c:\windows\SysWow64\msxml3r.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="c:\program files\CCleaner\CCleaner64.exe" [2014-09-25 6480664]
"T-Mobile Communication Centre"="c:\program files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" [2012-08-22 1368768]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" [2005-09-25 94208]
"GarminExpressTrayApp"="c:\program files (x86)\Garmin\Express Tray\ExpressTray.exe" [2015-10-29 1403304]
"Gadwin PrintScreen"="c:\program files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe" [2011-05-03 487424]
"Zoner Photo Studio Autoupdate"="c:\program files\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE" [2015-07-12 563416]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2015-03-01 293872]
"YouCam Tray"="c:\program files (x86)\CyberLink\YouCam\YouCamTray.exe" [2013-09-16 167488]
"CLMLServer_For_P2G8"="c:\program files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe" [2013-08-05 111576]
"CLVirtualDrive"="c:\program files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" [2013-08-07 490760]
"PowerDVD13Agent"="c:\program files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe" [2013-07-05 517144]
"WinampAgent"="c:\program files (x86)\Winamp\winampa.exe" [2009-07-01 37888]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2009-09-04 417792]
"NeroFilterCheck"="c:\windows\SysWOW64\NeroCheck.exe" [2005-09-25 155648]
"Print2PDF Print Monitor"="c:\program files (x86)\Software602\Print2PDF\Print2PDF.exe" [2011-04-12 222776]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2015-08-04 597552]
"HPConnectionManager"="c:\program files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe" [2015-03-20 191112]
"ToolboxFX"="c:\program files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe" [2014-08-13 59632]
"AccelerometerSysTrayApplet"="c:\program files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe" [2015-07-08 127528]
"QLBController"="c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" [2015-08-03 430120]
"HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2013-05-30 96056]
"DriverPack Notifier"="c:\program files (x86)\DriverPack Notifier\DriverPackNotifier.exe" [2015-10-21 265456]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"GarminExpressTrayApp"="c:\program files (x86)\Garmin\Express Tray\ExpressTray.exe" [2015-10-29 1403304]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"osk.exe"="osk.exe" [2014-06-18 646144]
.
c:\users\Probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - c:\program files (x86)\Microsoft Office\Office14\ONENOTEM.EXE /tsr [2015-10-13 228552]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma Loader.lnk - c:\program files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2014-10-7 113664]
ISCTSystray.lnk - c:\program files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe [2013-9-7 5545448]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages REG_MULTI_SZ DPPassFilter scecli
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 cmshusbser;Mobile Connector USB Device for Legacy Serial Communication IN ANDROID DEVICE;c:\windows\system32\DRIVERS\cmshusbser.sys;c:\windows\SYSNATIVE\DRIVERS\cmshusbser.sys [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys;c:\windows\SYSNATIVE\DRIVERS\ew_hwusbdev.sys [x]
R3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jucdcacm.sys [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\System32\Drivers\RtsUStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUStor.sys [x]
R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\System32\Drivers\RtsUVStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUVStor.sys [x]
R3 RtkAvrcp;Realtek Bluetooth A/V Remote Control Target;c:\windows\system32\drivers\RtkAvrcp.sys;c:\windows\SYSNATIVE\drivers\RtkAvrcp.sys [x]
R3 RTL8168;Realtek 8168 NT Driver;c:\windows\system32\DRIVERS\Rt630x64.sys;c:\windows\SYSNATIVE\DRIVERS\Rt630x64.sys [x]
R3 RTSPER;Realtek PCIE Card Reader - PER;c:\windows\system32\DRIVERS\RtsPer.sys;c:\windows\SYSNATIVE\DRIVERS\RtsPer.sys [x]
R3 SmbDrv;SmbDrv;c:\windows\system32\drivers\Smb_driver_AMDASF.sys;c:\windows\SYSNATIVE\drivers\Smb_driver_AMDASF.sys [x]
R3 SmbDrvI;SmbDrvI;c:\windows\system32\drivers\Smb_driver_Intel.sys;c:\windows\SYSNATIVE\drivers\Smb_driver_Intel.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 iaStorA;iaStorA;c:\windows\system32\drivers\iaStorA.sys;c:\windows\SYSNATIVE\drivers\iaStorA.sys [x]
S0 iaStorF;iaStorF;c:\windows\system32\drivers\iaStorF.sys;c:\windows\SYSNATIVE\drivers\iaStorF.sys [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\drivers\iusb3hcs.sys;c:\windows\SYSNATIVE\drivers\iusb3hcs.sys [x]
S1 CLVirtualDrive;CLVirtualDrive;c:\windows\system32\DRIVERS\CLVirtualDrive.sys;c:\windows\SYSNATIVE\DRIVERS\CLVirtualDrive.sys [x]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys;c:\windows\SYSNATIVE\DRIVERS\eamonm.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys;c:\windows\SYSNATIVE\DRIVERS\ehdrv.sys [x]
S2 {09F57980-3432-4AFC-957D-27AC45FAE1F5};Power Control [2014/09/27 08:16];c:\program files (x86)\CyberLink\PowerDVD13\Common\NavFilter\000.fcl;c:\program files (x86)\CyberLink\PowerDVD13\Common\NavFilter\000.fcl [x]
S2 602XML Updater;602Updater;c:\program files (x86)\Common Files\soft602\602updsvc\602updsvc.exe;c:\program files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [x]
S2 ameisvc;Web'n'walk Manager mobile equipment installation service;c:\program files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe;c:\program files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe [x]
S2 AvrcpService;AvrcpService;c:\program files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe;c:\program files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe [x]
S2 BTDevManager;BTDevManager;c:\program files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe;c:\program files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [x]
S2 cpextender;Check Point SSL Network Extender;c:\program files (x86)\CheckPoint\SSL Network Extender\slimsvc.exe;c:\program files (x86)\CheckPoint\SSL Network Extender\slimsvc.exe [x]
S2 CyberLink PowerDVD 13 Media Server Monitor Service;CyberLink PowerDVD 13 Media Server Monitor Service;c:\program files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe;c:\program files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe [x]
S2 CyberLink PowerDVD 13 Media Server Service;CyberLink PowerDVD 13 Media Server Service;c:\program files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe;c:\program files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe [x]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe;c:\program files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [x]
S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys;c:\windows\SYSNATIVE\DRIVERS\epfwwfpr.sys [x]
S2 Garmin Device Interaction Service;Garmin Device Interaction Service;c:\program files (x86)\Garmin\Device Interaction Service\GarminService.exe;c:\program files (x86)\Garmin\Device Interaction Service\GarminService.exe [x]
S2 HP Hotkey Service;HP Hotkey Service;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HotkeyService.exe;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HotkeyService.exe [x]
S2 HP LaserJet Service;HP LaserJet Service;c:\program files (x86)\HP\HPLaserJetService\HPLaserJetService.exe;c:\program files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [x]
S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [x]
S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe;c:\windows\SYSNATIVE\Hpservice.exe [x]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service;c:\windows\system32\igfxCUIService.exe;c:\windows\SYSNATIVE\igfxCUIService.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 ISCTAgent;Intel(R) Smart Connect Technology Agent;c:\program files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe ;c:\program files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 RtkAudioService;Realtek Audio Service;c:\program files\Realtek\Audio\HDA\RtkAudioService64.exe;c:\program files\Realtek\Audio\HDA\RtkAudioService64.exe [x]
S2 RtkBleServ;RtkBleServ;c:\program files (x86)\REALTEK\Realtek Bluetooth\RtkBleServ.exe;c:\program files (x86)\REALTEK\Realtek Bluetooth\RtkBleServ.exe [x]
S2 SynTPEnhService;SynTPEnh Caller Service;c:\program files\Synaptics\SynTP\SynTPEnhService.exe;c:\program files\Synaptics\SynTP\SynTPEnhService.exe [x]
S2 valWBFPolicyService;Synaptics FP WBF Policy Service;c:\windows\system32\valWBFPolicyService.exe;c:\windows\SYSNATIVE\valWBFPolicyService.exe [x]
S2 vcsFPService;Validity VCS Fingerprint Service;c:\windows\system32\vcsFPService.exe;c:\windows\SYSNATIVE\vcsFPService.exe [x]
S3 hpCMSrv;HP Connection Manager 4 Service;c:\program files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe;c:\program files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [x]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jubusenum.sys [x]
S3 IFXTPM;IFXTPM;c:\windows\system32\DRIVERS\IFXTPM.SYS;c:\windows\SYSNATIVE\DRIVERS\IFXTPM.SYS [x]
S3 ikbevent;Intel Upper keyboard Class Filter Driver;c:\windows\system32\DRIVERS\ikbevent.sys;c:\windows\SYSNATIVE\DRIVERS\ikbevent.sys [x]
S3 imsevent;Intel Upper Mouse Class Filter Driver;c:\windows\system32\DRIVERS\imsevent.sys;c:\windows\SYSNATIVE\DRIVERS\imsevent.sys [x]
S3 INETMON;INETMON;c:\windows\System32\Drivers\INETMON.sys;c:\windows\SYSNATIVE\Drivers\INETMON.sys [x]
S3 ISCT;Intel(R) Smart Connect Technology Device Driver;c:\windows\system32\DRIVERS\ISCTD.sys;c:\windows\SYSNATIVE\DRIVERS\ISCTD.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 pcouffin;VSO Software pcouffin;c:\windows\system32\Drivers\pcouffin.sys;c:\windows\SYSNATIVE\Drivers\pcouffin.sys [x]
S3 RtkBtFilter;Realtek Bluetooth Filter Driver;c:\windows\system32\DRIVERS\RtkBtfilter.sys;c:\windows\SYSNATIVE\DRIVERS\RtkBtfilter.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 rtsuvc;HP Universal Camera Driver;c:\windows\system32\DRIVERS\rtsuvc.sys;c:\windows\SYSNATIVE\DRIVERS\rtsuvc.sys [x]
S3 RTWlanE;Realtek Wireless LAN 802.11n PCI-E Network Adapter;c:\windows\system32\DRIVERS\rtwlane.sys;c:\windows\SYSNATIVE\DRIVERS\rtwlane.sys [x]
S3 VNA;Check Point Virtual Network Adapter;c:\windows\system32\DRIVERS\vna.sys;c:\windows\SYSNATIVE\DRIVERS\vna.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-11-12 21:58 997704 ----a-w- c:\program files (x86)\Google\Chrome\Application\46.0.2490.86\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2015-11-23 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-10-03 22:28]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineCore1cfdf47ea6e0091.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0bf948d1a4342.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0e3b9d079cd95.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0efdf878589a9.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA1d041a6ad1647d6.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA1d08ecb1cb332d5.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0bf948d536449.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0e3b9d0d441df.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0efdf87d41712.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-22 c:\windows\Tasks\HPCeeScheduleForProbook.job
- c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15 11:43]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2015-06-14 7659224]
"BtServer"="c:\program files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe" [2014-07-03 226008]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2014-02-24 5581888]
"IAStorIcon"="c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" [2014-06-25 36352]
"RtsCM"="RTSCM64.EXE" [2015-06-14 167128]
"HP LaserJet Professional M1530 MFP Series Fax"="c:\program files (x86)\HP\Digital Imaging\Fax\Fax Driver 0.6 Base\hppfaxprintersrv.exe" [2014-08-13 3707120]
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/?clid=6826
uLocal Page = c:\windows\system32\blank.htm
mDefault_Page_URL = hxxp://www.bing.com?pc=CMNTDFJS
mStart Page = hxxp://www.bing.com?pc=CMNTDFJS
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 1.1.1.1 1.1.1.10
DPF: {414FB93D-DEDD-4FEF-AD7F-167992EBDB52} - hxxps://fw.ulz.cz/sslvpn/SNX/CSHELL/extender.cab
FF - ProfilePath - c:\users\Probook\AppData\Roaming\Mozilla\Firefox\Profiles\2nrq2654.default\
FF - prefs.js: browser.search.selectedEngine - Seznam
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/?clid=6826
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
HKLM_Wow6432Node-ActiveSetup-{438363A8-F486-4C37-834C-4955773CB3D3} - msiexec
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
AddRemove-Adobe Photoshop 7.0 CE - c:\windows\ISUN0405.EXE
AddRemove-Cool's_Codec_pack_4.12 - c:\windows\iun6002.exe
AddRemove-Marine Life Aquarium - c:\program files (x86)\ScreenSaverGift\Marine Life Aquarium\Marine Life Aquarium\Uninstall Marine Life Aquarium Screensaver.exe
AddRemove-{8C696B4B-6AB1-44BC-9416-96EAC474CABE} - c:\program files (x86)\InstallShield Installation Information\{8C696B4B-6AB1-44BC-9416-96EAC474CABE}\setup.exe
.
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\{09F57980-3432-4AFC-957D-27AC45FAE1F5}]
"ImagePath"="\??\c:\program files (x86)\CyberLink\PowerDVD13\Common\NavFilter\000.fcl"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\system32\\Macromed\\Flash\\FlashUtil64_19_0_0_245_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\windows\\system32\\Macromed\\Flash\\FlashUtil64_19_0_0_245_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_19_0_0_245_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_19_0_0_245_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_245.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.19"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_245.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_245.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_245.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0009\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0010\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2015-11-23 20:49:54
ComboFix-quarantined-files.txt 2015-11-23 19:49
.
Před spuštěním: Volných bajtů: 91 912 192 000
Po spuštění: Volných bajtů: 92 934 549 504
.
- - End Of File - - 8B1BB83CC92D134359635A562DA32E13
A36C5E4F47E84449FF07ED3517B43A31

ComboFix 15-11-23.01 - Probook 23.11.2015 19:42:35.1.4 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.3968.1623 [GMT 1:00]
Spuštěný z: c:\users\Probook\Desktop\ComboFix.exe
AV: ESET NOD32 Antivirus 7.0 *Disabled/Updated* {19259FAE-8396-A113-46DB-15B0E7DFA289}
SP: ESET NOD32 Antivirus 7.0 *Disabled/Updated* {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\Hotkey_61_setup.log
c:\users\Probook\AppData\Roaming\.#
c:\users\Probook\AppData\Roaming\DRPSu
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\dpinst.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\FORCED-NTx64-7661-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\FORCED-NTx64-HD500_20.19.15.4312-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\HP-FORCED-7x64-ACCELEROMETER-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Infineon-WinAll-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Intel-FORCED-HECI-NTx64-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Intel-FORCED-Chipset-NTx64-10.1.1.13-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Intel-FORCED-ISCT-NTx64-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Intel-FORCED-NTx64-14.7.0.1000_rste-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Intel-WinAll-Chipset-9.4.0.1027_22.08-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Intel_4.0.2.42-FORCED-7x64-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\matchver-FORCED-7x64-PCIe_7.094.1021.2015-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\NTx64-HP_nb-19.0.19.4-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Realtek-7x64-E_2023.15.0701.2015-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\Realtek-NTx64-10.0.10240.11140-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\DRIVERS\VS-FORCED-NTx64-WBF_003df_DRV-drp.zip
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-13-23-19.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-15-43-57.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-15-52-24.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-19-13.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-26-57.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-38-16.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-41-22.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-42-14.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-43-16.html
c:\users\Probook\AppData\Roaming\DRPSu\Logs\log___2015-11-20-16-43-19.html
c:\users\Probook\AppData\Roaming\DRPSu\PROGRAMS\AIMP3.exe
c:\users\Probook\AppData\Roaming\DRPSu\PROGRAMS\downloader_elements.exe
c:\users\Probook\AppData\Roaming\DRPSu\PROGRAMS\DriverPack-EasySearch.exe
c:\users\Probook\AppData\Roaming\DRPSu\PROGRAMS\DriverPack-Notifier.exe
c:\users\Probook\AppData\Roaming\DRPSu\PROGRAMS\Firefox.exe
c:\users\Probook\AppData\Roaming\DRPSu\PROGRAMS\OperaBlink.exe
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_10615.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_11014.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_1106.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_18557.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_3306.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_38329.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_39871.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_40940.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_42110.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_45678.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_4626.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_47342.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_51737.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_54460.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_56622.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_59146.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_68993.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_72113.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_73506.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_73886.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_79081.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_finished_81510.txt
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_10615.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_11014.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_1106.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_18557.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_3306.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_38329.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_39871.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_40940.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_42110.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_45678.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_4626.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_47342.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_51737.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_54460.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_56622.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_59146.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_68993.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_72113.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_73506.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_73886.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_79081.log
c:\users\Probook\AppData\Roaming\DRPSu\temp\wget_log_81510.log
c:\windows\IsUn0405.exe
c:\windows\iun6002.exe
c:\windows\SET6CA4.tmp
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2015-10-23 do 2015-11-23 )))))))))))))))))))))))))))))))
.
.
2015-11-23 19:14 . 2015-11-23 19:14 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-11-23 18:51 . 2015-11-23 18:51 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5E0EF36D-92DB-4AC8-881D-4D1075B63CB7}\offreg.7972.dll
2015-11-23 05:55 . 2015-11-23 05:55 -------- d-----w- C:\rsit
2015-11-22 20:23 . 2015-11-23 18:28 192216 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-11-22 20:23 . 2015-11-22 20:23 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2015-11-22 20:23 . 2015-11-22 20:23 -------- d-----w- c:\programdata\Malwarebytes
2015-11-22 20:23 . 2015-10-05 08:50 63704 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-11-22 20:23 . 2015-10-05 08:50 109272 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-11-22 20:23 . 2015-10-05 08:50 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-11-22 11:36 . 2015-11-22 11:37 -------- d-----w- c:\program files (x86)\CrystalDiskInfo
2015-11-20 16:58 . 2015-11-20 18:41 -------- d-----w- C:\AdwCleaner
2015-11-20 16:39 . 2015-11-23 05:55 -------- d-----w- c:\program files (x86)\trend micro
2015-11-20 15:43 . 2015-11-21 16:20 -------- d-----w- c:\users\Probook\AppData\Roaming\AIMP3
2015-11-20 15:43 . 2015-11-20 15:43 -------- d-----w- c:\program files (x86)\AIMP3
2015-11-20 14:59 . 2015-11-20 15:16 -------- d-----w- c:\users\Probook\AppData\Local\Yandex
2015-11-20 14:59 . 2015-11-20 14:59 -------- d-----w- c:\users\Probook\AppData\Local\Chromium
2015-11-20 14:59 . 2015-11-20 15:16 -------- d-----w- c:\users\Probook\AppData\Roaming\Yandex
2015-11-20 14:59 . 2015-11-21 16:19 -------- d-----w- c:\program files (x86)\DriverPack Notifier
2015-11-20 14:59 . 2015-11-20 14:59 -------- d-----w- c:\users\Probook\AppData\Roaming\DriverPack Notifier
2015-11-20 14:59 . 2015-11-21 16:20 -------- d-----w- c:\users\Probook\AppData\Roaming\DriverPack Easy Search
2015-11-20 14:56 . 2015-10-21 01:10 82544 ----a-w- c:\windows\system32\SETFDF7.tmp
2015-11-20 14:55 . 2015-11-13 08:38 1601944 ----a-w- c:\windows\system32\SET21F3.tmp
2015-11-20 14:55 . 2015-11-13 08:38 122328 ----a-w- c:\windows\system32\CONEQMSAPOGUILibrary.dll
2015-11-20 14:55 . 2015-11-13 08:38 574760 ----a-w- c:\windows\system32\AERTAC64.dll
2015-11-20 14:55 . 2015-11-13 08:38 118600 ----a-w- c:\windows\system32\AERTAR64.dll
2015-11-20 12:33 . 2015-11-20 12:33 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5E0EF36D-92DB-4AC8-881D-4D1075B63CB7}\offreg.3396.dll
2015-11-20 07:12 . 2015-10-29 09:28 11138400 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5E0EF36D-92DB-4AC8-881D-4D1075B63CB7}\mpengine.dll
2015-11-18 20:06 . 2014-03-24 11:37 422400 ----a-w- c:\windows\SwUSB.exe
2015-11-18 20:06 . 2013-10-18 15:42 48856 ----a-w- c:\windows\runSW.exe
2015-11-18 20:06 . 2015-11-18 20:06 -------- d-----w- C:\DRIVERS
2015-11-18 19:36 . 2014-08-04 19:24 3502296 ----a-w- c:\windows\system32\drivers\rtwlane.sys
2015-11-13 07:11 . 2015-11-13 07:11 -------- d-----w- c:\users\Probook\AppData\Local\ElevatedDiagnostics
2015-11-12 11:23 . 2015-11-03 17:55 3211264 ----a-w- c:\windows\system32\win32k.sys
2015-11-11 08:59 . 2015-10-20 18:42 98816 ----a-w- c:\windows\system32\wudriver.dll
2015-11-11 08:58 . 2015-10-29 17:50 6656 ----a-w- c:\windows\system32\shimeng.dll
2015-11-11 08:58 . 2015-10-29 17:50 342016 ----a-w- c:\windows\system32\apphelp.dll
2015-11-11 08:58 . 2015-10-29 17:50 72192 ----a-w- c:\windows\system32\aelupsvc.dll
2015-11-11 08:58 . 2015-10-29 17:50 5120 ----a-w- c:\windows\SysWow64\shimeng.dll
2015-11-11 08:58 . 2015-10-29 17:50 23552 ----a-w- c:\windows\system32\sdbinst.exe
2015-11-11 08:58 . 2015-10-29 17:49 295936 ----a-w- c:\windows\SysWow64\apphelp.dll
2015-11-11 08:58 . 2015-10-29 17:49 20992 ----a-w- c:\windows\SysWow64\sdbinst.exe
2015-11-11 08:51 . 2015-10-13 04:57 950720 ----a-w- c:\windows\system32\drivers\ndis.sys
2015-11-11 08:28 . 2015-10-13 16:41 497664 ----a-w- c:\windows\system32\drivers\afd.sys
2015-11-11 08:28 . 2015-10-13 16:40 118272 ----a-w- c:\windows\system32\drivers\tdx.sys
2015-11-10 22:28 . 2015-11-10 22:28 5286088 ----a-w- c:\windows\SysWow64\FlashPlayerInstaller.exe
2015-10-27 08:55 . 2015-10-27 08:55 -------- d-----w- c:\users\Probook\AppData\Local\HP
2015-10-27 08:53 . 2015-10-27 08:53 -------- d-----w- c:\programdata\HP
2015-10-27 08:53 . 2015-11-17 14:55 -------- d-----w- c:\users\Probook\AppData\Roaming\HpUpdate
2015-10-27 08:52 . 2014-08-13 20:35 22768 ------w- c:\windows\system32\hppfaxprintermonui5.dll
2015-10-27 08:52 . 2014-08-13 20:35 28400 ------w- c:\windows\system32\hppfaxprintermon5.dll
2015-10-27 08:52 . 2015-10-27 08:52 608 --sha-w- c:\windows\system32\winzvprt5.sys
2015-10-27 08:52 . 2015-10-27 08:52 -------- d-----w- c:\users\Probook\AppData\Roaming\Hewlett-Packard Company
2015-10-27 08:51 . 2010-09-23 13:11 323584 ----a-w- c:\windows\system32\Spool\prtprocs\x64\hpcpp101.dll
2015-10-27 08:51 . 2010-09-23 13:10 176128 ----a-w- c:\windows\system32\hpcpn101.dll
2015-10-27 08:51 . 2010-09-23 13:05 305664 ----a-w- c:\windows\SysWow64\hpcc3101.dll
2015-10-27 08:51 . 2010-02-11 09:19 491008 ----a-w- c:\windows\SysWow64\hpcdmc32.dll
2015-10-27 08:50 . 2015-11-17 14:55 -------- d-----w- c:\program files (x86)\HP
2015-10-27 08:50 . 2010-12-14 20:08 976440 ----a-w- c:\windows\system32\hpxp1530_x64.dll
2015-10-27 08:50 . 2010-12-14 20:08 1150520 ----a-w- c:\windows\system32\hpptsp06_x64.dll
2015-10-27 08:50 . 2010-12-14 20:08 217656 ----a-w- c:\windows\system32\hppscancoins64.dll
2015-10-27 08:50 . 2010-12-14 20:07 751160 ----a-w- c:\windows\SysWow64\hpptsp06.dll
2015-10-27 08:50 . 2010-12-14 20:06 311296 ----a-w- c:\windows\system32\hpbcoins64.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-11-20 15:07 . 2014-08-16 15:25 10822 ----a-w- c:\windows\system32\drivers\rtkhdasetting.zip
2015-11-11 15:02 . 2014-09-26 15:52 145617392 ----a-w- c:\windows\system32\MRT.exe
2015-11-10 22:28 . 2014-10-03 20:23 780488 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2015-11-10 22:28 . 2014-10-03 20:23 142536 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-10-29 17:50 . 2015-11-11 08:58 350208 ----a-w- c:\windows\apppatch\AppPatch64\AcLayers.dll
2015-10-29 17:50 . 2015-11-11 08:58 309248 ----a-w- c:\windows\apppatch\AppPatch64\AcGenral.dll
2015-10-29 17:50 . 2015-11-11 08:58 135168 ----a-w- c:\windows\apppatch\AppPatch64\AcXtrnal.dll
2015-10-29 17:50 . 2015-11-11 08:58 103424 ----a-w- c:\windows\apppatch\AppPatch64\acspecfc.dll
2015-10-29 17:49 . 2015-11-11 08:58 562176 ----a-w- c:\windows\apppatch\AcLayers.dll
2015-10-29 17:49 . 2015-11-11 08:58 470528 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2015-10-29 17:49 . 2015-11-11 08:58 2178560 ----a-w- c:\windows\apppatch\AcGenral.dll
2015-10-29 17:49 . 2015-11-11 08:58 211968 ----a-w- c:\windows\apppatch\AcXtrnal.dll
2015-10-29 17:39 . 2015-11-11 08:58 2560 ----a-w- c:\windows\apppatch\AcRes.dll
2015-10-21 01:10 . 2014-08-16 15:28 116304 ----a-w- c:\windows\system32\SETFE66.tmp
2015-10-20 01:05 . 2015-11-11 08:30 344064 ----a-w- c:\windows\system32\schannel.dll
2015-10-20 00:45 . 2015-11-11 08:30 251392 ----a-w- c:\windows\SysWow64\schannel.dll
2015-10-20 00:45 . 2015-11-11 08:30 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2015-10-13 00:29 . 2015-10-13 00:29 875720 ----a-w- c:\windows\SysWow64\msvcr120_clr0400.dll
2015-10-13 00:22 . 2015-10-13 00:22 869568 ----a-w- c:\windows\system32\msvcr120_clr0400.dll
2015-10-05 07:04 . 2014-10-16 17:49 97888 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2015-10-01 18:06 . 2015-10-14 16:05 692672 ----a-w- c:\windows\system32\winload.efi
2015-10-01 18:04 . 2015-10-14 16:05 616360 ----a-w- c:\windows\system32\winresume.efi
2015-10-01 18:00 . 2015-10-14 16:05 63488 ----a-w- c:\windows\system32\setbcdlocale.dll
2015-10-01 18:00 . 2015-10-14 16:05 59392 ----a-w- c:\windows\system32\appidapi.dll
2015-10-01 18:00 . 2015-10-14 16:05 32768 ----a-w- c:\windows\system32\appidsvc.dll
2015-10-01 18:00 . 2015-10-14 16:05 147456 ----a-w- c:\windows\system32\appidpolicyconverter.exe
2015-10-01 18:00 . 2015-10-14 16:05 17920 ----a-w- c:\windows\system32\appidcertstorecheck.exe
2015-10-01 17:50 . 2015-10-14 16:05 50688 ----a-w- c:\windows\SysWow64\appidapi.dll
2015-10-01 17:00 . 2015-10-14 16:05 61440 ----a-w- c:\windows\system32\drivers\appid.sys
2015-09-18 19:22 . 2015-10-15 12:18 25432 ----a-w- c:\windows\system32\CompatTelRunner.exe
2015-09-18 19:19 . 2015-10-15 12:18 700416 ----a-w- c:\windows\system32\invagent.dll
2015-09-18 19:19 . 2015-10-15 12:18 766464 ----a-w- c:\windows\system32\generaltel.dll
2015-09-18 19:19 . 2015-10-15 12:18 503808 ----a-w- c:\windows\system32\devinv.dll
2015-09-18 19:19 . 2015-10-15 12:18 1291264 ----a-w- c:\windows\system32\appraiser.dll
2015-09-18 19:19 . 2015-10-15 12:18 73216 ----a-w- c:\windows\system32\acmigration.dll
2015-09-18 19:09 . 2015-10-15 12:18 1163776 ----a-w- c:\windows\system32\aeinv.dll
2015-09-07 18:14 . 2015-09-07 18:15 256168 ----a-w- c:\windows\system32\SynTPAPI.dll
2015-09-07 18:14 . 2015-09-07 18:15 212136 ----a-w- c:\windows\system32\SynTPCo20.dll
2015-09-07 18:14 . 2015-09-07 18:15 753320 ----a-w- c:\windows\system32\SETC51F.tmp
2015-09-02 03:04 . 2015-09-09 08:59 41984 ----a-w- c:\windows\system32\lpk.dll
2015-09-02 03:04 . 2015-09-09 08:59 100864 ----a-w- c:\windows\system32\fontsub.dll
2015-09-02 03:04 . 2015-09-09 08:59 14336 ----a-w- c:\windows\system32\dciman32.dll
2015-09-02 03:04 . 2015-09-09 08:59 46080 ----a-w- c:\windows\system32\atmlib.dll
2015-09-02 02:48 . 2015-09-09 08:59 70656 ----a-w- c:\windows\SysWow64\fontsub.dll
2015-09-02 02:48 . 2015-09-09 08:59 10240 ----a-w- c:\windows\SysWow64\dciman32.dll
2015-09-02 02:48 . 2015-09-09 08:59 34304 ----a-w- c:\windows\SysWow64\atmlib.dll
2015-09-02 02:47 . 2015-09-09 08:59 25600 ----a-w- c:\windows\SysWow64\lpk.dll
2015-09-02 01:47 . 2015-09-09 08:59 372736 ----a-w- c:\windows\system32\atmfd.dll
2015-09-02 01:33 . 2015-09-09 08:59 299520 ----a-w- c:\windows\SysWow64\atmfd.dll
2015-08-27 18:18 . 2015-09-09 09:00 2004480 ----a-w- c:\windows\system32\msxml6.dll
2015-08-27 18:18 . 2015-09-09 09:00 1887232 ----a-w- c:\windows\system32\msxml3.dll
2015-08-27 18:13 . 2015-09-09 09:00 2048 ----a-w- c:\windows\system32\msxml6r.dll
2015-08-27 18:13 . 2015-09-09 09:00 2048 ----a-w- c:\windows\system32\msxml3r.dll
2015-08-27 17:58 . 2015-09-09 09:00 1391104 ----a-w- c:\windows\SysWow64\msxml6.dll
2015-08-27 17:58 . 2015-09-09 09:00 1241088 ----a-w- c:\windows\SysWow64\msxml3.dll
2015-08-27 17:51 . 2015-09-09 09:00 2048 ----a-w- c:\windows\SysWow64\msxml6r.dll
2015-08-27 17:51 . 2015-09-09 09:00 2048 ----a-w- c:\windows\SysWow64\msxml3r.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="c:\program files\CCleaner\CCleaner64.exe" [2014-09-25 6480664]
"T-Mobile Communication Centre"="c:\program files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" [2012-08-22 1368768]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" [2005-09-25 94208]
"GarminExpressTrayApp"="c:\program files (x86)\Garmin\Express Tray\ExpressTray.exe" [2015-10-29 1403304]
"Gadwin PrintScreen"="c:\program files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe" [2011-05-03 487424]
"Zoner Photo Studio Autoupdate"="c:\program files\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE" [2015-07-12 563416]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2015-03-01 293872]
"YouCam Tray"="c:\program files (x86)\CyberLink\YouCam\YouCamTray.exe" [2013-09-16 167488]
"CLMLServer_For_P2G8"="c:\program files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe" [2013-08-05 111576]
"CLVirtualDrive"="c:\program files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" [2013-08-07 490760]
"PowerDVD13Agent"="c:\program files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe" [2013-07-05 517144]
"WinampAgent"="c:\program files (x86)\Winamp\winampa.exe" [2009-07-01 37888]
"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2009-09-04 417792]
"NeroFilterCheck"="c:\windows\SysWOW64\NeroCheck.exe" [2005-09-25 155648]
"Print2PDF Print Monitor"="c:\program files (x86)\Software602\Print2PDF\Print2PDF.exe" [2011-04-12 222776]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2015-08-04 597552]
"HPConnectionManager"="c:\program files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe" [2015-03-20 191112]
"ToolboxFX"="c:\program files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe" [2014-08-13 59632]
"AccelerometerSysTrayApplet"="c:\program files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe" [2015-07-08 127528]
"QLBController"="c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" [2015-08-03 430120]
"HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2013-05-30 96056]
"DriverPack Notifier"="c:\program files (x86)\DriverPack Notifier\DriverPackNotifier.exe" [2015-10-21 265456]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"GarminExpressTrayApp"="c:\program files (x86)\Garmin\Express Tray\ExpressTray.exe" [2015-10-29 1403304]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"osk.exe"="osk.exe" [2014-06-18 646144]
.
c:\users\Probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - c:\program files (x86)\Microsoft Office\Office14\ONENOTEM.EXE /tsr [2015-10-13 228552]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma Loader.lnk - c:\program files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2014-10-7 113664]
ISCTSystray.lnk - c:\program files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe [2013-9-7 5545448]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages REG_MULTI_SZ DPPassFilter scecli
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 cmshusbser;Mobile Connector USB Device for Legacy Serial Communication IN ANDROID DEVICE;c:\windows\system32\DRIVERS\cmshusbser.sys;c:\windows\SYSNATIVE\DRIVERS\cmshusbser.sys [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys;c:\windows\SYSNATIVE\DRIVERS\ew_hwusbdev.sys [x]
R3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jucdcacm.sys [x]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\System32\Drivers\RtsUStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUStor.sys [x]
R3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader;c:\windows\System32\Drivers\RtsUVStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUVStor.sys [x]
R3 RtkAvrcp;Realtek Bluetooth A/V Remote Control Target;c:\windows\system32\drivers\RtkAvrcp.sys;c:\windows\SYSNATIVE\drivers\RtkAvrcp.sys [x]
R3 RTL8168;Realtek 8168 NT Driver;c:\windows\system32\DRIVERS\Rt630x64.sys;c:\windows\SYSNATIVE\DRIVERS\Rt630x64.sys [x]
R3 RTSPER;Realtek PCIE Card Reader - PER;c:\windows\system32\DRIVERS\RtsPer.sys;c:\windows\SYSNATIVE\DRIVERS\RtsPer.sys [x]
R3 SmbDrv;SmbDrv;c:\windows\system32\drivers\Smb_driver_AMDASF.sys;c:\windows\SYSNATIVE\drivers\Smb_driver_AMDASF.sys [x]
R3 SmbDrvI;SmbDrvI;c:\windows\system32\drivers\Smb_driver_Intel.sys;c:\windows\SYSNATIVE\drivers\Smb_driver_Intel.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 iaStorA;iaStorA;c:\windows\system32\drivers\iaStorA.sys;c:\windows\SYSNATIVE\drivers\iaStorA.sys [x]
S0 iaStorF;iaStorF;c:\windows\system32\drivers\iaStorF.sys;c:\windows\SYSNATIVE\drivers\iaStorF.sys [x]
S0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\drivers\iusb3hcs.sys;c:\windows\SYSNATIVE\drivers\iusb3hcs.sys [x]
S1 CLVirtualDrive;CLVirtualDrive;c:\windows\system32\DRIVERS\CLVirtualDrive.sys;c:\windows\SYSNATIVE\DRIVERS\CLVirtualDrive.sys [x]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys;c:\windows\SYSNATIVE\DRIVERS\eamonm.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys;c:\windows\SYSNATIVE\DRIVERS\ehdrv.sys [x]
S2 {09F57980-3432-4AFC-957D-27AC45FAE1F5};Power Control [2014/09/27 08:16];c:\program files (x86)\CyberLink\PowerDVD13\Common\NavFilter\000.fcl;c:\program files (x86)\CyberLink\PowerDVD13\Common\NavFilter\000.fcl [x]
S2 602XML Updater;602Updater;c:\program files (x86)\Common Files\soft602\602updsvc\602updsvc.exe;c:\program files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [x]
S2 ameisvc;Web'n'walk Manager mobile equipment installation service;c:\program files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe;c:\program files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe [x]
S2 AvrcpService;AvrcpService;c:\program files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe;c:\program files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe [x]
S2 BTDevManager;BTDevManager;c:\program files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe;c:\program files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [x]
S2 cpextender;Check Point SSL Network Extender;c:\program files (x86)\CheckPoint\SSL Network Extender\slimsvc.exe;c:\program files (x86)\CheckPoint\SSL Network Extender\slimsvc.exe [x]
S2 CyberLink PowerDVD 13 Media Server Monitor Service;CyberLink PowerDVD 13 Media Server Monitor Service;c:\program files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe;c:\program files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe [x]
S2 CyberLink PowerDVD 13 Media Server Service;CyberLink PowerDVD 13 Media Server Service;c:\program files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe;c:\program files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe [x]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe;c:\program files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [x]
S2 epfwwfpr;epfwwfpr;c:\windows\system32\DRIVERS\epfwwfpr.sys;c:\windows\SYSNATIVE\DRIVERS\epfwwfpr.sys [x]
S2 Garmin Device Interaction Service;Garmin Device Interaction Service;c:\program files (x86)\Garmin\Device Interaction Service\GarminService.exe;c:\program files (x86)\Garmin\Device Interaction Service\GarminService.exe [x]
S2 HP Hotkey Service;HP Hotkey Service;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HotkeyService.exe;c:\program files (x86)\Hewlett-Packard\HP Hotkey Support\HotkeyService.exe [x]
S2 HP LaserJet Service;HP LaserJet Service;c:\program files (x86)\HP\HPLaserJetService\HPLaserJetService.exe;c:\program files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [x]
S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [x]
S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe;c:\windows\SYSNATIVE\Hpservice.exe [x]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service;c:\windows\system32\igfxCUIService.exe;c:\windows\SYSNATIVE\igfxCUIService.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 ISCTAgent;Intel(R) Smart Connect Technology Agent;c:\program files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe ;c:\program files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 RtkAudioService;Realtek Audio Service;c:\program files\Realtek\Audio\HDA\RtkAudioService64.exe;c:\program files\Realtek\Audio\HDA\RtkAudioService64.exe [x]
S2 RtkBleServ;RtkBleServ;c:\program files (x86)\REALTEK\Realtek Bluetooth\RtkBleServ.exe;c:\program files (x86)\REALTEK\Realtek Bluetooth\RtkBleServ.exe [x]
S2 SynTPEnhService;SynTPEnh Caller Service;c:\program files\Synaptics\SynTP\SynTPEnhService.exe;c:\program files\Synaptics\SynTP\SynTPEnhService.exe [x]
S2 valWBFPolicyService;Synaptics FP WBF Policy Service;c:\windows\system32\valWBFPolicyService.exe;c:\windows\SYSNATIVE\valWBFPolicyService.exe [x]
S2 vcsFPService;Validity VCS Fingerprint Service;c:\windows\system32\vcsFPService.exe;c:\windows\SYSNATIVE\vcsFPService.exe [x]
S3 hpCMSrv;HP Connection Manager 4 Service;c:\program files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe;c:\program files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [x]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jubusenum.sys [x]
S3 IFXTPM;IFXTPM;c:\windows\system32\DRIVERS\IFXTPM.SYS;c:\windows\SYSNATIVE\DRIVERS\IFXTPM.SYS [x]
S3 ikbevent;Intel Upper keyboard Class Filter Driver;c:\windows\system32\DRIVERS\ikbevent.sys;c:\windows\SYSNATIVE\DRIVERS\ikbevent.sys [x]
S3 imsevent;Intel Upper Mouse Class Filter Driver;c:\windows\system32\DRIVERS\imsevent.sys;c:\windows\SYSNATIVE\DRIVERS\imsevent.sys [x]
S3 INETMON;INETMON;c:\windows\System32\Drivers\INETMON.sys;c:\windows\SYSNATIVE\Drivers\INETMON.sys [x]
S3 ISCT;Intel(R) Smart Connect Technology Device Driver;c:\windows\system32\DRIVERS\ISCTD.sys;c:\windows\SYSNATIVE\DRIVERS\ISCTD.sys [x]
S3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3hub.sys [x]
S3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0;c:\windows\system32\DRIVERS\iusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\iusb3xhc.sys [x]
S3 pcouffin;VSO Software pcouffin;c:\windows\system32\Drivers\pcouffin.sys;c:\windows\SYSNATIVE\Drivers\pcouffin.sys [x]
S3 RtkBtFilter;Realtek Bluetooth Filter Driver;c:\windows\system32\DRIVERS\RtkBtfilter.sys;c:\windows\SYSNATIVE\DRIVERS\RtkBtfilter.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 rtsuvc;HP Universal Camera Driver;c:\windows\system32\DRIVERS\rtsuvc.sys;c:\windows\SYSNATIVE\DRIVERS\rtsuvc.sys [x]
S3 RTWlanE;Realtek Wireless LAN 802.11n PCI-E Network Adapter;c:\windows\system32\DRIVERS\rtwlane.sys;c:\windows\SYSNATIVE\DRIVERS\rtwlane.sys [x]
S3 VNA;Check Point Virtual Network Adapter;c:\windows\system32\DRIVERS\vna.sys;c:\windows\SYSNATIVE\DRIVERS\vna.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-11-12 21:58 997704 ----a-w- c:\program files (x86)\Google\Chrome\Application\46.0.2490.86\Installer\chrmstp.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2015-11-23 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-10-03 22:28]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineCore1cfdf47ea6e0091.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0bf948d1a4342.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0e3b9d079cd95.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0efdf878589a9.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA1d041a6ad1647d6.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA1d08ecb1cb332d5.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0bf948d536449.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0e3b9d0d441df.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-23 c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0efdf87d41712.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-10-03 06:53]
.
2015-11-22 c:\windows\Tasks\HPCeeScheduleForProbook.job
- c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15 11:43]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2015-06-14 7659224]
"BtServer"="c:\program files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe" [2014-07-03 226008]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2014-02-24 5581888]
"IAStorIcon"="c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" [2014-06-25 36352]
"RtsCM"="RTSCM64.EXE" [2015-06-14 167128]
"HP LaserJet Professional M1530 MFP Series Fax"="c:\program files (x86)\HP\Digital Imaging\Fax\Fax Driver 0.6 Base\hppfaxprintersrv.exe" [2014-08-13 3707120]
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/?clid=6826
uLocal Page = c:\windows\system32\blank.htm
mDefault_Page_URL = hxxp://www.bing.com?pc=CMNTDFJS
mStart Page = hxxp://www.bing.com?pc=CMNTDFJS
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 1.1.1.1 1.1.1.10
DPF: {414FB93D-DEDD-4FEF-AD7F-167992EBDB52} - hxxps://fw.ulz.cz/sslvpn/SNX/CSHELL/extender.cab
FF - ProfilePath - c:\users\Probook\AppData\Roaming\Mozilla\Firefox\Profiles\2nrq2654.default\
FF - prefs.js: browser.search.selectedEngine - Seznam
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/?clid=6826
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
HKLM_Wow6432Node-ActiveSetup-{438363A8-F486-4C37-834C-4955773CB3D3} - msiexec
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
AddRemove-Adobe Photoshop 7.0 CE - c:\windows\ISUN0405.EXE
AddRemove-Cool's_Codec_pack_4.12 - c:\windows\iun6002.exe
AddRemove-Marine Life Aquarium - c:\program files (x86)\ScreenSaverGift\Marine Life Aquarium\Marine Life Aquarium\Uninstall Marine Life Aquarium Screensaver.exe
AddRemove-{8C696B4B-6AB1-44BC-9416-96EAC474CABE} - c:\program files (x86)\InstallShield Installation Information\{8C696B4B-6AB1-44BC-9416-96EAC474CABE}\setup.exe
.
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\{09F57980-3432-4AFC-957D-27AC45FAE1F5}]
"ImagePath"="\??\c:\program files (x86)\CyberLink\PowerDVD13\Common\NavFilter\000.fcl"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\system32\\Macromed\\Flash\\FlashUtil64_19_0_0_245_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\windows\\system32\\Macromed\\Flash\\FlashUtil64_19_0_0_245_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_19_0_0_245_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_19_0_0_245_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_245.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.19"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_245.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_245.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_245.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0009\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0010\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2015-11-23 20:49:54
ComboFix-quarantined-files.txt 2015-11-23 19:49
.
Před spuštěním: Volných bajtů: 91 912 192 000
Po spuštění: Volných bajtů: 92 934 549 504
.
- - End Of File - - 8B1BB83CC92D134359635A562DA32E13
A36C5E4F47E84449FF07ED3517B43A31
- Rudy
- Site Admin
- Příspěvky: 119316
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Pomalejší počítač, odinstalace
Ještě dočistíme. Otevřte poznámkový blok a zkopírujte do něj:

Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu ComboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.KillAll::
Folder::
c:\users\Probook\AppData\Local\Yandex
c:\users\Probook\AppData\Roaming\Yandex
File::
c:\windows\system32\SETFDF7.tmp
c:\windows\system32\SET21F3.tmp
c:\windows\system32\SETFE66.tmp
c:\windows\system32\SETC51F.tmp
c:\windows\Tasks\GoogleUpdateTaskMachineCore1cfdf47ea6e0091.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0bf948d1a4342.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0e3b9d079cd95.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0efdf878589a9.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d041a6ad1647d6.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d08ecb1cb332d5.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0bf948d536449.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0e3b9d0d441df.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0efdf87d41712.job
Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-
RegLock::
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0009\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0010\AllUserSettings]
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
Reboot::

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Pomalejší počítač, odinstalace
ComboFix 15-11-23.01 - Probook 23.11.2015 21:37:05.2.4 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.3968.1303 [GMT 1:00]
Spuštěný z: C:\Users\Probook\Desktop\ComboFix.exe
Použité ovládací přepínače :: C:\Users\Probook\Desktop\CFScript.txt
AV: ESET NOD32 Antivirus 7.0 *Disabled/Updated* {19259FAE-8396-A113-46DB-15B0E7DFA289}
SP: ESET NOD32 Antivirus 7.0 *Disabled/Updated* {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FILE ::
"c:\windows\system32\SET21F3.tmp"
"c:\windows\system32\SETC51F.tmp"
"c:\windows\system32\SETFDF7.tmp"
"c:\windows\system32\SETFE66.tmp"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore1cfdf47ea6e0091.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0bf948d1a4342.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0e3b9d079cd95.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0efdf878589a9.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA1d041a6ad1647d6.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA1d08ecb1cb332d5.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0bf948d536449.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0e3b9d0d441df.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0efdf87d41712.job"
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
c:\users\Probook\AppData\Local\Yandex
c:\users\Probook\AppData\Local\Yandex\Praetorian\praetorian.log
c:\users\Probook\AppData\Local\Yandex\Updater2\res
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Bookmarks
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Bookmarks.bak
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\data_0
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\data_1
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\data_2
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\data_3
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000001
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000002
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000003
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000004
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000005
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000006
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000007
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000008
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000009
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_00000a
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_00000b
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_00000c
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_00000d
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\index
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cookies-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cookies
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Current Session
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Current Tabs
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Favicons-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Favicons
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\GPUCache\data_0
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\GPUCache\data_1
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\GPUCache\data_2
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\GPUCache\data_3
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\GPUCache\index
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\History-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\History Provider Cache
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\History
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\ChromeDWriteFontCache
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Last Session
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Last Tabs
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Local Storage\https_browser.yandex.ru_0.localstorage-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Local Storage\https_browser.yandex.ru_0.localstorage
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Login Data-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Login Data
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Media Cache\data_0
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Media Cache\data_1
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Media Cache\data_2
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Media Cache\data_3
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Media Cache\f_000001
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Media Cache\index
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Network Action Predictor-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Network Action Predictor
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Password Checker-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Password Checker
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Preferences
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Secure Preferences
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Service Value Store\Binary Cache-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Service Value Store\Binary Cache
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Service Value Store\Serialized Cache-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Service Value Store\Serialized Cache
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Shortcuts-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Shortcuts
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Tablo Cache\data_0
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Tablo Cache\data_1
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Tablo Cache\data_2
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Tablo Cache\data_3
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Tablo Cache\index
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Tablo
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Top Sites-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Top Sites
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\TransportSecurity
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Visited Links
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Web Data-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Web Data
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Yandex Profile.ico
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\First Run
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Local State
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Permanent State
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Safe Browsing Cookies-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Safe Browsing Cookies
c:\users\Probook\AppData\Local\Yandex\yapin\Yandex.exe
c:\users\Probook\AppData\Roaming\Yandex
c:\users\Probook\AppData\Roaming\Yandex\ui
c:\windows\system32\SET21F3.tmp
c:\windows\system32\SETC51F.tmp
c:\windows\system32\SETFDF7.tmp
c:\windows\system32\SETFE66.tmp
c:\windows\Tasks\GoogleUpdateTaskMachineCore1cfdf47ea6e0091.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0bf948d1a4342.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0e3b9d079cd95.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0efdf878589a9.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d041a6ad1647d6.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d08ecb1cb332d5.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0bf948d536449.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0e3b9d0d441df.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0efdf87d41712.job
((((((((((((((((((((((((( Soubory vytvořené od 2015-10-23 do 2015-11-23 )))))))))))))))))))))))))))))))
2015-11-23 21:23:00 . 2015-11-23 21:23:00 75888 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5E0EF36D-92DB-4AC8-881D-4D1075B63CB7}\offreg.3440.dll
2015-11-23 21:10:42 . 2015-11-23 21:10:42 -------- d-----w- C:\Users\Default\AppData\Local\temp
2015-11-23 05:55:07 . 2015-11-23 05:55:34 -------- d-----w- C:\rsit
2015-11-22 20:23:50 . 2015-11-23 21:16:00 192216 ----a-w- C:\windows\system32\drivers\MBAMSwissArmy.sys
2015-11-22 20:23:24 . 2015-11-22 20:23:27 -------- d-----w- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-11-22 20:23:24 . 2015-11-22 20:23:24 -------- d-----w- C:\ProgramData\Malwarebytes
2015-11-22 20:23:24 . 2015-10-05 08:50:18 63704 ----a-w- C:\windows\system32\drivers\mwac.sys
2015-11-22 20:23:24 . 2015-10-05 08:50:10 109272 ----a-w- C:\windows\system32\drivers\mbamchameleon.sys
2015-11-22 20:23:24 . 2015-10-05 08:50:06 25816 ----a-w- C:\windows\system32\drivers\mbam.sys
2015-11-22 11:36:32 . 2015-11-22 11:37:42 -------- d-----w- C:\Program Files (x86)\CrystalDiskInfo
2015-11-20 16:58:48 . 2015-11-20 18:41:35 -------- d-----w- C:\AdwCleaner
2015-11-20 16:39:14 . 2015-11-23 05:55:32 -------- d-----w- C:\Program Files (x86)\trend micro
2015-11-20 15:43:58 . 2015-11-21 16:20:10 -------- d-----w- C:\Users\Probook\AppData\Roaming\AIMP3
2015-11-20 15:43:53 . 2015-11-20 15:43:57 -------- d-----w- C:\Program Files (x86)\AIMP3
2015-11-20 14:59:19 . 2015-11-20 14:59:19 -------- d-----w- C:\Users\Probook\AppData\Local\Chromium
2015-11-20 14:59:12 . 2015-11-23 21:16:24 -------- d-----w- C:\Users\Probook\AppData\Roaming\DriverPack Notifier
2015-11-20 14:59:12 . 2015-11-21 16:19:43 -------- d-----w- C:\Program Files (x86)\DriverPack Notifier
2015-11-20 14:59:08 . 2015-11-21 16:20:10 -------- d-----w- C:\Users\Probook\AppData\Roaming\DriverPack Easy Search
2015-11-20 14:56:52 . 2015-08-21 23:43:30 33960 ----a-w- C:\windows\system32\drivers\Smb_driver_Intel_Aux.sys
2015-11-20 14:55:54 . 2015-11-13 08:38:40 122328 ----a-w- C:\windows\system32\CONEQMSAPOGUILibrary.dll
2015-11-20 14:55:53 . 2015-11-13 08:38:40 574760 ----a-w- C:\windows\system32\AERTAC64.dll
2015-11-20 14:55:53 . 2015-11-13 08:38:40 118600 ----a-w- C:\windows\system32\AERTAR64.dll
2015-11-20 12:33:20 . 2015-11-20 12:33:20 75888 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5E0EF36D-92DB-4AC8-881D-4D1075B63CB7}\offreg.3396.dll
2015-11-20 07:12:02 . 2015-10-29 09:28:50 11138400 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5E0EF36D-92DB-4AC8-881D-4D1075B63CB7}\mpengine.dll
2015-11-18 20:06:30 . 2014-03-24 11:37:24 422400 ----a-w- C:\windows\SwUSB.exe
2015-11-18 20:06:30 . 2013-10-18 15:42:34 48856 ----a-w- C:\windows\runSW.exe
2015-11-18 20:06:05 . 2015-11-18 20:06:05 -------- d-----w- C:\DRIVERS
2015-11-18 19:36:47 . 2014-08-04 19:24:06 3502296 ----a-w- C:\windows\system32\drivers\rtwlane.sys
2015-11-13 07:11:23 . 2015-11-13 07:11:23 -------- d-----w- C:\Users\Probook\AppData\Local\ElevatedDiagnostics
2015-11-12 11:23:53 . 2015-11-03 17:55:32 3211264 ----a-w- C:\windows\system32\win32k.sys
2015-11-11 08:59:51 . 2015-10-20 18:42:14 98816 ----a-w- C:\windows\system32\wudriver.dll
2015-11-11 08:58:46 . 2015-10-29 17:50:44 6656 ----a-w- C:\windows\system32\shimeng.dll
2015-11-11 08:58:46 . 2015-10-29 17:50:30 342016 ----a-w- C:\windows\system32\apphelp.dll
2015-11-11 08:58:46 . 2015-10-29 17:50:29 72192 ----a-w- C:\windows\system32\aelupsvc.dll
2015-11-11 08:58:46 . 2015-10-29 17:50:21 5120 ----a-w- C:\windows\SysWow64\shimeng.dll
2015-11-11 08:58:46 . 2015-10-29 17:50:14 23552 ----a-w- C:\windows\system32\sdbinst.exe
2015-11-11 08:58:46 . 2015-10-29 17:49:58 295936 ----a-w- C:\windows\SysWow64\apphelp.dll
2015-11-11 08:58:46 . 2015-10-29 17:49:35 20992 ----a-w- C:\windows\SysWow64\sdbinst.exe
2015-11-11 08:51:17 . 2015-10-13 04:57:21 950720 ----a-w- C:\windows\system32\drivers\ndis.sys
2015-11-11 08:28:48 . 2015-10-13 16:41:05 497664 ----a-w- C:\windows\system32\drivers\afd.sys
2015-11-11 08:28:48 . 2015-10-13 16:40:33 118272 ----a-w- C:\windows\system32\drivers\tdx.sys
2015-11-10 22:28:07 . 2015-11-10 22:28:07 5286088 ----a-w- C:\windows\SysWow64\FlashPlayerInstaller.exe
2015-10-27 08:55:29 . 2015-10-27 08:55:29 -------- d-----w- C:\Users\Probook\AppData\Local\HP
2015-10-27 08:53:07 . 2015-10-27 08:53:08 -------- d-----w- C:\ProgramData\HP
2015-10-27 08:53:05 . 2015-11-17 14:55:11 -------- d-----w- C:\Users\Probook\AppData\Roaming\HpUpdate
2015-10-27 08:52:52 . 2014-08-13 20:35:48 22768 ------w- C:\windows\system32\hppfaxprintermonui5.dll
2015-10-27 08:52:52 . 2014-08-13 20:35:00 28400 ------w- C:\windows\system32\hppfaxprintermon5.dll
2015-10-27 08:52:51 . 2015-10-27 08:52:51 608 --sha-w- C:\windows\system32\winzvprt5.sys
2015-10-27 08:52:41 . 2015-10-27 08:52:41 -------- d-----w- C:\Users\Probook\AppData\Roaming\Hewlett-Packard Company
2015-10-27 08:51:48 . 2010-09-23 13:11:00 323584 ----a-w- C:\windows\system32\Spool\prtprocs\x64\hpcpp101.dll
2015-10-27 08:51:07 . 2010-09-23 13:10:58 176128 ----a-w- C:\windows\system32\hpcpn101.dll
2015-10-27 08:51:07 . 2010-09-23 13:05:56 305664 ----a-w- C:\windows\SysWow64\hpcc3101.dll
2015-10-27 08:51:07 . 2010-02-11 09:19:44 491008 ----a-w- C:\windows\SysWow64\hpcdmc32.dll
2015-10-27 08:50:49 . 2015-11-17 14:55:34 -------- d-----w- C:\Program Files (x86)\HP
2015-10-27 08:50:14 . 2010-12-14 20:08:11 976440 ----a-w- C:\windows\system32\hpxp1530_x64.dll
2015-10-27 08:50:13 . 2010-12-14 20:08:16 1150520 ----a-w- C:\windows\system32\hpptsp06_x64.dll
2015-10-27 08:50:13 . 2010-12-14 20:08:05 217656 ----a-w- C:\windows\system32\hppscancoins64.dll
2015-10-27 08:50:13 . 2010-12-14 20:07:12 751160 ----a-w- C:\windows\SysWow64\hpptsp06.dll
2015-10-27 08:50:11 . 2010-12-14 20:06:21 311296 ----a-w- C:\windows\system32\hpbcoins64.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
2015-11-20 15:07:09 . 2014-08-16 15:25:48 10822 ----a-w- C:\windows\system32\drivers\rtkhdasetting.zip
2015-11-11 15:02:10 . 2014-09-26 15:52:16 145617392 ----a-w- C:\windows\system32\MRT.exe
2015-11-10 22:28:16 . 2014-10-03 20:23:22 780488 ----a-w- C:\windows\SysWow64\FlashPlayerApp.exe
2015-11-10 22:28:16 . 2014-10-03 20:23:22 142536 ----a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-10-29 17:50:29 . 2015-11-11 08:58:46 350208 ----a-w- C:\windows\apppatch\AppPatch64\AcLayers.dll
2015-10-29 17:50:29 . 2015-11-11 08:58:46 309248 ----a-w- C:\windows\apppatch\AppPatch64\AcGenral.dll
2015-10-29 17:50:29 . 2015-11-11 08:58:46 135168 ----a-w- C:\windows\apppatch\AppPatch64\AcXtrnal.dll
2015-10-29 17:50:29 . 2015-11-11 08:58:46 103424 ----a-w- C:\windows\apppatch\AppPatch64\acspecfc.dll
2015-10-29 17:49:57 . 2015-11-11 08:58:46 562176 ----a-w- C:\windows\apppatch\AcLayers.dll
2015-10-29 17:49:57 . 2015-11-11 08:58:46 470528 ----a-w- C:\windows\apppatch\AcSpecfc.dll
2015-10-29 17:49:57 . 2015-11-11 08:58:46 2178560 ----a-w- C:\windows\apppatch\AcGenral.dll
2015-10-29 17:49:57 . 2015-11-11 08:58:46 211968 ----a-w- C:\windows\apppatch\AcXtrnal.dll
2015-10-29 17:39:57 . 2015-11-11 08:58:46 2560 ----a-w- C:\windows\apppatch\AcRes.dll
2015-10-20 01:05:47 . 2015-11-11 08:30:33 344064 ----a-w- C:\windows\system32\schannel.dll
2015-10-20 00:45:44 . 2015-11-11 08:30:33 251392 ----a-w- C:\windows\SysWow64\schannel.dll
2015-10-20 00:45:25 . 2015-11-11 08:30:24 44032 ----a-w- C:\windows\apppatch\acwow64.dll
2015-10-13 00:29:08 . 2015-10-13 00:29:08 875720 ----a-w- C:\windows\SysWow64\msvcr120_clr0400.dll
2015-10-13 00:22:02 . 2015-10-13 00:22:02 869568 ----a-w- C:\windows\system32\msvcr120_clr0400.dll
2015-10-05 07:04:57 . 2014-10-16 17:49:40 97888 ----a-w- C:\windows\SysWow64\WindowsAccessBridge-32.dll
2015-10-01 18:06:49 . 2015-10-14 16:05:30 692672 ----a-w- C:\windows\system32\winload.efi
2015-10-01 18:04:11 . 2015-10-14 16:05:31 616360 ----a-w- C:\windows\system32\winresume.efi
2015-10-01 18:00:59 . 2015-10-14 16:05:25 63488 ----a-w- C:\windows\system32\setbcdlocale.dll
2015-10-01 18:00:43 . 2015-10-14 16:05:26 59392 ----a-w- C:\windows\system32\appidapi.dll
2015-10-01 18:00:43 . 2015-10-14 16:05:26 32768 ----a-w- C:\windows\system32\appidsvc.dll
2015-10-01 18:00:06 . 2015-10-14 16:05:27 147456 ----a-w- C:\windows\system32\appidpolicyconverter.exe
2015-10-01 18:00:06 . 2015-10-14 16:05:25 17920 ----a-w- C:\windows\system32\appidcertstorecheck.exe
2015-10-01 17:50:35 . 2015-10-14 16:05:27 50688 ----a-w- C:\windows\SysWow64\appidapi.dll
2015-10-01 17:00:54 . 2015-10-14 16:05:24 61440 ----a-w- C:\windows\system32\drivers\appid.sys
2015-09-18 19:22:39 . 2015-10-15 12:18:35 25432 ----a-w- C:\windows\system32\CompatTelRunner.exe
2015-09-18 19:19:26 . 2015-10-15 12:18:36 700416 ----a-w- C:\windows\system32\invagent.dll
2015-09-18 19:19:23 . 2015-10-15 12:18:35 766464 ----a-w- C:\windows\system32\generaltel.dll
2015-09-18 19:19:20 . 2015-10-15 12:18:36 503808 ----a-w- C:\windows\system32\devinv.dll
2015-09-18 19:19:17 . 2015-10-15 12:18:36 1291264 ----a-w- C:\windows\system32\appraiser.dll
2015-09-18 19:19:17 . 2015-10-15 12:18:35 73216 ----a-w- C:\windows\system32\acmigration.dll
2015-09-18 19:09:15 . 2015-10-15 12:18:35 1163776 ----a-w- C:\windows\system32\aeinv.dll
2015-09-07 18:14:36 . 2015-09-07 18:15:01 256168 ----a-w- C:\windows\system32\SynTPAPI.dll
2015-09-07 18:14:36 . 2015-09-07 18:15:01 212136 ----a-w- C:\windows\system32\SynTPCo20.dll
2015-09-02 03:04:49 . 2015-09-09 08:59:50 41984 ----a-w- C:\windows\system32\lpk.dll
2015-09-02 03:04:46 . 2015-09-09 08:59:50 100864 ----a-w- C:\windows\system32\fontsub.dll
2015-09-02 03:04:44 . 2015-09-09 08:59:50 14336 ----a-w- C:\windows\system32\dciman32.dll
2015-09-02 03:04:42 . 2015-09-09 08:59:50 46080 ----a-w- C:\windows\system32\atmlib.dll
2015-09-02 02:48:31 . 2015-09-09 08:59:50 70656 ----a-w- C:\windows\SysWow64\fontsub.dll
2015-09-02 02:48:28 . 2015-09-09 08:59:50 10240 ----a-w- C:\windows\SysWow64\dciman32.dll
2015-09-02 02:48:25 . 2015-09-09 08:59:50 34304 ----a-w- C:\windows\SysWow64\atmlib.dll
2015-09-02 02:47:18 . 2015-09-09 08:59:50 25600 ----a-w- C:\windows\SysWow64\lpk.dll
2015-09-02 01:47:08 . 2015-09-09 08:59:50 372736 ----a-w- C:\windows\system32\atmfd.dll
2015-09-02 01:33:48 . 2015-09-09 08:59:50 299520 ----a-w- C:\windows\SysWow64\atmfd.dll
2015-08-27 18:18:27 . 2015-09-09 09:00:10 2004480 ----a-w- C:\windows\system32\msxml6.dll
2015-08-27 18:18:27 . 2015-09-09 09:00:10 1887232 ----a-w- C:\windows\system32\msxml3.dll
2015-08-27 18:13:03 . 2015-09-09 09:00:08 2048 ----a-w- C:\windows\system32\msxml6r.dll
2015-08-27 18:13:03 . 2015-09-09 09:00:08 2048 ----a-w- C:\windows\system32\msxml3r.dll
2015-08-27 17:58:14 . 2015-09-09 09:00:09 1391104 ----a-w- C:\windows\SysWow64\msxml6.dll
2015-08-27 17:58:14 . 2015-09-09 09:00:08 1241088 ----a-w- C:\windows\SysWow64\msxml3.dll
2015-08-27 17:51:26 . 2015-09-09 09:00:08 2048 ----a-w- C:\windows\SysWow64\msxml6r.dll
2015-08-27 17:51:26 . 2015-09-09 09:00:08 2048 ----a-w- C:\windows\SysWow64\msxml3r.dll
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe" [2014-09-25 14:45:06 6480664]
"T-Mobile Communication Centre"="C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" [2012-08-22 13:12:37 1368768]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" [2005-09-25 17:11:20 94208]
"GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" [2015-10-29 07:31:30 1403304]
"Gadwin PrintScreen"="C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe" [2011-05-03 09:18:01 487424]
"Zoner Photo Studio Autoupdate"="C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE" [2015-07-12 13:05:00 563416]
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.3968.1303 [GMT 1:00]
Spuštěný z: C:\Users\Probook\Desktop\ComboFix.exe
Použité ovládací přepínače :: C:\Users\Probook\Desktop\CFScript.txt
AV: ESET NOD32 Antivirus 7.0 *Disabled/Updated* {19259FAE-8396-A113-46DB-15B0E7DFA289}
SP: ESET NOD32 Antivirus 7.0 *Disabled/Updated* {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FILE ::
"c:\windows\system32\SET21F3.tmp"
"c:\windows\system32\SETC51F.tmp"
"c:\windows\system32\SETFDF7.tmp"
"c:\windows\system32\SETFE66.tmp"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore1cfdf47ea6e0091.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0bf948d1a4342.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0e3b9d079cd95.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0efdf878589a9.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA1d041a6ad1647d6.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA1d08ecb1cb332d5.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0bf948d536449.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0e3b9d0d441df.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0efdf87d41712.job"
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
c:\users\Probook\AppData\Local\Yandex
c:\users\Probook\AppData\Local\Yandex\Praetorian\praetorian.log
c:\users\Probook\AppData\Local\Yandex\Updater2\res
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Bookmarks
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Bookmarks.bak
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\data_0
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\data_1
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\data_2
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\data_3
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000001
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000002
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000003
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000004
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000005
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000006
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000007
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000008
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_000009
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_00000a
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_00000b
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_00000c
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\f_00000d
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache\index
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cookies-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cookies
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Current Session
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Current Tabs
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Favicons-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Favicons
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\GPUCache\data_0
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\GPUCache\data_1
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\GPUCache\data_2
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\GPUCache\data_3
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\GPUCache\index
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\History-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\History Provider Cache
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\History
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\ChromeDWriteFontCache
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Last Session
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Last Tabs
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Local Storage\https_browser.yandex.ru_0.localstorage-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Local Storage\https_browser.yandex.ru_0.localstorage
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Login Data-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Login Data
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Media Cache\data_0
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Media Cache\data_1
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Media Cache\data_2
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Media Cache\data_3
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Media Cache\f_000001
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Media Cache\index
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Network Action Predictor-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Network Action Predictor
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Password Checker-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Password Checker
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Preferences
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Secure Preferences
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Service Value Store\Binary Cache-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Service Value Store\Binary Cache
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Service Value Store\Serialized Cache-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Service Value Store\Serialized Cache
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Shortcuts-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Shortcuts
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Tablo Cache\data_0
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Tablo Cache\data_1
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Tablo Cache\data_2
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Tablo Cache\data_3
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Tablo Cache\index
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Tablo
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Top Sites-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Top Sites
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\TransportSecurity
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Visited Links
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Web Data-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Web Data
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Default\Yandex Profile.ico
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\First Run
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Local State
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Permanent State
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Safe Browsing Cookies-journal
c:\users\Probook\AppData\Local\Yandex\YandexBrowser\User Data\Safe Browsing Cookies
c:\users\Probook\AppData\Local\Yandex\yapin\Yandex.exe
c:\users\Probook\AppData\Roaming\Yandex
c:\users\Probook\AppData\Roaming\Yandex\ui
c:\windows\system32\SET21F3.tmp
c:\windows\system32\SETC51F.tmp
c:\windows\system32\SETFDF7.tmp
c:\windows\system32\SETFE66.tmp
c:\windows\Tasks\GoogleUpdateTaskMachineCore1cfdf47ea6e0091.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0bf948d1a4342.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0e3b9d079cd95.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore1d0efdf878589a9.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d041a6ad1647d6.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d08ecb1cb332d5.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0bf948d536449.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0e3b9d0d441df.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA1d0efdf87d41712.job
((((((((((((((((((((((((( Soubory vytvořené od 2015-10-23 do 2015-11-23 )))))))))))))))))))))))))))))))
2015-11-23 21:23:00 . 2015-11-23 21:23:00 75888 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5E0EF36D-92DB-4AC8-881D-4D1075B63CB7}\offreg.3440.dll
2015-11-23 21:10:42 . 2015-11-23 21:10:42 -------- d-----w- C:\Users\Default\AppData\Local\temp
2015-11-23 05:55:07 . 2015-11-23 05:55:34 -------- d-----w- C:\rsit
2015-11-22 20:23:50 . 2015-11-23 21:16:00 192216 ----a-w- C:\windows\system32\drivers\MBAMSwissArmy.sys
2015-11-22 20:23:24 . 2015-11-22 20:23:27 -------- d-----w- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-11-22 20:23:24 . 2015-11-22 20:23:24 -------- d-----w- C:\ProgramData\Malwarebytes
2015-11-22 20:23:24 . 2015-10-05 08:50:18 63704 ----a-w- C:\windows\system32\drivers\mwac.sys
2015-11-22 20:23:24 . 2015-10-05 08:50:10 109272 ----a-w- C:\windows\system32\drivers\mbamchameleon.sys
2015-11-22 20:23:24 . 2015-10-05 08:50:06 25816 ----a-w- C:\windows\system32\drivers\mbam.sys
2015-11-22 11:36:32 . 2015-11-22 11:37:42 -------- d-----w- C:\Program Files (x86)\CrystalDiskInfo
2015-11-20 16:58:48 . 2015-11-20 18:41:35 -------- d-----w- C:\AdwCleaner
2015-11-20 16:39:14 . 2015-11-23 05:55:32 -------- d-----w- C:\Program Files (x86)\trend micro
2015-11-20 15:43:58 . 2015-11-21 16:20:10 -------- d-----w- C:\Users\Probook\AppData\Roaming\AIMP3
2015-11-20 15:43:53 . 2015-11-20 15:43:57 -------- d-----w- C:\Program Files (x86)\AIMP3
2015-11-20 14:59:19 . 2015-11-20 14:59:19 -------- d-----w- C:\Users\Probook\AppData\Local\Chromium
2015-11-20 14:59:12 . 2015-11-23 21:16:24 -------- d-----w- C:\Users\Probook\AppData\Roaming\DriverPack Notifier
2015-11-20 14:59:12 . 2015-11-21 16:19:43 -------- d-----w- C:\Program Files (x86)\DriverPack Notifier
2015-11-20 14:59:08 . 2015-11-21 16:20:10 -------- d-----w- C:\Users\Probook\AppData\Roaming\DriverPack Easy Search
2015-11-20 14:56:52 . 2015-08-21 23:43:30 33960 ----a-w- C:\windows\system32\drivers\Smb_driver_Intel_Aux.sys
2015-11-20 14:55:54 . 2015-11-13 08:38:40 122328 ----a-w- C:\windows\system32\CONEQMSAPOGUILibrary.dll
2015-11-20 14:55:53 . 2015-11-13 08:38:40 574760 ----a-w- C:\windows\system32\AERTAC64.dll
2015-11-20 14:55:53 . 2015-11-13 08:38:40 118600 ----a-w- C:\windows\system32\AERTAR64.dll
2015-11-20 12:33:20 . 2015-11-20 12:33:20 75888 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5E0EF36D-92DB-4AC8-881D-4D1075B63CB7}\offreg.3396.dll
2015-11-20 07:12:02 . 2015-10-29 09:28:50 11138400 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5E0EF36D-92DB-4AC8-881D-4D1075B63CB7}\mpengine.dll
2015-11-18 20:06:30 . 2014-03-24 11:37:24 422400 ----a-w- C:\windows\SwUSB.exe
2015-11-18 20:06:30 . 2013-10-18 15:42:34 48856 ----a-w- C:\windows\runSW.exe
2015-11-18 20:06:05 . 2015-11-18 20:06:05 -------- d-----w- C:\DRIVERS
2015-11-18 19:36:47 . 2014-08-04 19:24:06 3502296 ----a-w- C:\windows\system32\drivers\rtwlane.sys
2015-11-13 07:11:23 . 2015-11-13 07:11:23 -------- d-----w- C:\Users\Probook\AppData\Local\ElevatedDiagnostics
2015-11-12 11:23:53 . 2015-11-03 17:55:32 3211264 ----a-w- C:\windows\system32\win32k.sys
2015-11-11 08:59:51 . 2015-10-20 18:42:14 98816 ----a-w- C:\windows\system32\wudriver.dll
2015-11-11 08:58:46 . 2015-10-29 17:50:44 6656 ----a-w- C:\windows\system32\shimeng.dll
2015-11-11 08:58:46 . 2015-10-29 17:50:30 342016 ----a-w- C:\windows\system32\apphelp.dll
2015-11-11 08:58:46 . 2015-10-29 17:50:29 72192 ----a-w- C:\windows\system32\aelupsvc.dll
2015-11-11 08:58:46 . 2015-10-29 17:50:21 5120 ----a-w- C:\windows\SysWow64\shimeng.dll
2015-11-11 08:58:46 . 2015-10-29 17:50:14 23552 ----a-w- C:\windows\system32\sdbinst.exe
2015-11-11 08:58:46 . 2015-10-29 17:49:58 295936 ----a-w- C:\windows\SysWow64\apphelp.dll
2015-11-11 08:58:46 . 2015-10-29 17:49:35 20992 ----a-w- C:\windows\SysWow64\sdbinst.exe
2015-11-11 08:51:17 . 2015-10-13 04:57:21 950720 ----a-w- C:\windows\system32\drivers\ndis.sys
2015-11-11 08:28:48 . 2015-10-13 16:41:05 497664 ----a-w- C:\windows\system32\drivers\afd.sys
2015-11-11 08:28:48 . 2015-10-13 16:40:33 118272 ----a-w- C:\windows\system32\drivers\tdx.sys
2015-11-10 22:28:07 . 2015-11-10 22:28:07 5286088 ----a-w- C:\windows\SysWow64\FlashPlayerInstaller.exe
2015-10-27 08:55:29 . 2015-10-27 08:55:29 -------- d-----w- C:\Users\Probook\AppData\Local\HP
2015-10-27 08:53:07 . 2015-10-27 08:53:08 -------- d-----w- C:\ProgramData\HP
2015-10-27 08:53:05 . 2015-11-17 14:55:11 -------- d-----w- C:\Users\Probook\AppData\Roaming\HpUpdate
2015-10-27 08:52:52 . 2014-08-13 20:35:48 22768 ------w- C:\windows\system32\hppfaxprintermonui5.dll
2015-10-27 08:52:52 . 2014-08-13 20:35:00 28400 ------w- C:\windows\system32\hppfaxprintermon5.dll
2015-10-27 08:52:51 . 2015-10-27 08:52:51 608 --sha-w- C:\windows\system32\winzvprt5.sys
2015-10-27 08:52:41 . 2015-10-27 08:52:41 -------- d-----w- C:\Users\Probook\AppData\Roaming\Hewlett-Packard Company
2015-10-27 08:51:48 . 2010-09-23 13:11:00 323584 ----a-w- C:\windows\system32\Spool\prtprocs\x64\hpcpp101.dll
2015-10-27 08:51:07 . 2010-09-23 13:10:58 176128 ----a-w- C:\windows\system32\hpcpn101.dll
2015-10-27 08:51:07 . 2010-09-23 13:05:56 305664 ----a-w- C:\windows\SysWow64\hpcc3101.dll
2015-10-27 08:51:07 . 2010-02-11 09:19:44 491008 ----a-w- C:\windows\SysWow64\hpcdmc32.dll
2015-10-27 08:50:49 . 2015-11-17 14:55:34 -------- d-----w- C:\Program Files (x86)\HP
2015-10-27 08:50:14 . 2010-12-14 20:08:11 976440 ----a-w- C:\windows\system32\hpxp1530_x64.dll
2015-10-27 08:50:13 . 2010-12-14 20:08:16 1150520 ----a-w- C:\windows\system32\hpptsp06_x64.dll
2015-10-27 08:50:13 . 2010-12-14 20:08:05 217656 ----a-w- C:\windows\system32\hppscancoins64.dll
2015-10-27 08:50:13 . 2010-12-14 20:07:12 751160 ----a-w- C:\windows\SysWow64\hpptsp06.dll
2015-10-27 08:50:11 . 2010-12-14 20:06:21 311296 ----a-w- C:\windows\system32\hpbcoins64.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
2015-11-20 15:07:09 . 2014-08-16 15:25:48 10822 ----a-w- C:\windows\system32\drivers\rtkhdasetting.zip
2015-11-11 15:02:10 . 2014-09-26 15:52:16 145617392 ----a-w- C:\windows\system32\MRT.exe
2015-11-10 22:28:16 . 2014-10-03 20:23:22 780488 ----a-w- C:\windows\SysWow64\FlashPlayerApp.exe
2015-11-10 22:28:16 . 2014-10-03 20:23:22 142536 ----a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-10-29 17:50:29 . 2015-11-11 08:58:46 350208 ----a-w- C:\windows\apppatch\AppPatch64\AcLayers.dll
2015-10-29 17:50:29 . 2015-11-11 08:58:46 309248 ----a-w- C:\windows\apppatch\AppPatch64\AcGenral.dll
2015-10-29 17:50:29 . 2015-11-11 08:58:46 135168 ----a-w- C:\windows\apppatch\AppPatch64\AcXtrnal.dll
2015-10-29 17:50:29 . 2015-11-11 08:58:46 103424 ----a-w- C:\windows\apppatch\AppPatch64\acspecfc.dll
2015-10-29 17:49:57 . 2015-11-11 08:58:46 562176 ----a-w- C:\windows\apppatch\AcLayers.dll
2015-10-29 17:49:57 . 2015-11-11 08:58:46 470528 ----a-w- C:\windows\apppatch\AcSpecfc.dll
2015-10-29 17:49:57 . 2015-11-11 08:58:46 2178560 ----a-w- C:\windows\apppatch\AcGenral.dll
2015-10-29 17:49:57 . 2015-11-11 08:58:46 211968 ----a-w- C:\windows\apppatch\AcXtrnal.dll
2015-10-29 17:39:57 . 2015-11-11 08:58:46 2560 ----a-w- C:\windows\apppatch\AcRes.dll
2015-10-20 01:05:47 . 2015-11-11 08:30:33 344064 ----a-w- C:\windows\system32\schannel.dll
2015-10-20 00:45:44 . 2015-11-11 08:30:33 251392 ----a-w- C:\windows\SysWow64\schannel.dll
2015-10-20 00:45:25 . 2015-11-11 08:30:24 44032 ----a-w- C:\windows\apppatch\acwow64.dll
2015-10-13 00:29:08 . 2015-10-13 00:29:08 875720 ----a-w- C:\windows\SysWow64\msvcr120_clr0400.dll
2015-10-13 00:22:02 . 2015-10-13 00:22:02 869568 ----a-w- C:\windows\system32\msvcr120_clr0400.dll
2015-10-05 07:04:57 . 2014-10-16 17:49:40 97888 ----a-w- C:\windows\SysWow64\WindowsAccessBridge-32.dll
2015-10-01 18:06:49 . 2015-10-14 16:05:30 692672 ----a-w- C:\windows\system32\winload.efi
2015-10-01 18:04:11 . 2015-10-14 16:05:31 616360 ----a-w- C:\windows\system32\winresume.efi
2015-10-01 18:00:59 . 2015-10-14 16:05:25 63488 ----a-w- C:\windows\system32\setbcdlocale.dll
2015-10-01 18:00:43 . 2015-10-14 16:05:26 59392 ----a-w- C:\windows\system32\appidapi.dll
2015-10-01 18:00:43 . 2015-10-14 16:05:26 32768 ----a-w- C:\windows\system32\appidsvc.dll
2015-10-01 18:00:06 . 2015-10-14 16:05:27 147456 ----a-w- C:\windows\system32\appidpolicyconverter.exe
2015-10-01 18:00:06 . 2015-10-14 16:05:25 17920 ----a-w- C:\windows\system32\appidcertstorecheck.exe
2015-10-01 17:50:35 . 2015-10-14 16:05:27 50688 ----a-w- C:\windows\SysWow64\appidapi.dll
2015-10-01 17:00:54 . 2015-10-14 16:05:24 61440 ----a-w- C:\windows\system32\drivers\appid.sys
2015-09-18 19:22:39 . 2015-10-15 12:18:35 25432 ----a-w- C:\windows\system32\CompatTelRunner.exe
2015-09-18 19:19:26 . 2015-10-15 12:18:36 700416 ----a-w- C:\windows\system32\invagent.dll
2015-09-18 19:19:23 . 2015-10-15 12:18:35 766464 ----a-w- C:\windows\system32\generaltel.dll
2015-09-18 19:19:20 . 2015-10-15 12:18:36 503808 ----a-w- C:\windows\system32\devinv.dll
2015-09-18 19:19:17 . 2015-10-15 12:18:36 1291264 ----a-w- C:\windows\system32\appraiser.dll
2015-09-18 19:19:17 . 2015-10-15 12:18:35 73216 ----a-w- C:\windows\system32\acmigration.dll
2015-09-18 19:09:15 . 2015-10-15 12:18:35 1163776 ----a-w- C:\windows\system32\aeinv.dll
2015-09-07 18:14:36 . 2015-09-07 18:15:01 256168 ----a-w- C:\windows\system32\SynTPAPI.dll
2015-09-07 18:14:36 . 2015-09-07 18:15:01 212136 ----a-w- C:\windows\system32\SynTPCo20.dll
2015-09-02 03:04:49 . 2015-09-09 08:59:50 41984 ----a-w- C:\windows\system32\lpk.dll
2015-09-02 03:04:46 . 2015-09-09 08:59:50 100864 ----a-w- C:\windows\system32\fontsub.dll
2015-09-02 03:04:44 . 2015-09-09 08:59:50 14336 ----a-w- C:\windows\system32\dciman32.dll
2015-09-02 03:04:42 . 2015-09-09 08:59:50 46080 ----a-w- C:\windows\system32\atmlib.dll
2015-09-02 02:48:31 . 2015-09-09 08:59:50 70656 ----a-w- C:\windows\SysWow64\fontsub.dll
2015-09-02 02:48:28 . 2015-09-09 08:59:50 10240 ----a-w- C:\windows\SysWow64\dciman32.dll
2015-09-02 02:48:25 . 2015-09-09 08:59:50 34304 ----a-w- C:\windows\SysWow64\atmlib.dll
2015-09-02 02:47:18 . 2015-09-09 08:59:50 25600 ----a-w- C:\windows\SysWow64\lpk.dll
2015-09-02 01:47:08 . 2015-09-09 08:59:50 372736 ----a-w- C:\windows\system32\atmfd.dll
2015-09-02 01:33:48 . 2015-09-09 08:59:50 299520 ----a-w- C:\windows\SysWow64\atmfd.dll
2015-08-27 18:18:27 . 2015-09-09 09:00:10 2004480 ----a-w- C:\windows\system32\msxml6.dll
2015-08-27 18:18:27 . 2015-09-09 09:00:10 1887232 ----a-w- C:\windows\system32\msxml3.dll
2015-08-27 18:13:03 . 2015-09-09 09:00:08 2048 ----a-w- C:\windows\system32\msxml6r.dll
2015-08-27 18:13:03 . 2015-09-09 09:00:08 2048 ----a-w- C:\windows\system32\msxml3r.dll
2015-08-27 17:58:14 . 2015-09-09 09:00:09 1391104 ----a-w- C:\windows\SysWow64\msxml6.dll
2015-08-27 17:58:14 . 2015-09-09 09:00:08 1241088 ----a-w- C:\windows\SysWow64\msxml3.dll
2015-08-27 17:51:26 . 2015-09-09 09:00:08 2048 ----a-w- C:\windows\SysWow64\msxml6r.dll
2015-08-27 17:51:26 . 2015-09-09 09:00:08 2048 ----a-w- C:\windows\SysWow64\msxml3r.dll
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe" [2014-09-25 14:45:06 6480664]
"T-Mobile Communication Centre"="C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" [2012-08-22 13:12:37 1368768]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" [2005-09-25 17:11:20 94208]
"GarminExpressTrayApp"="C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" [2015-10-29 07:31:30 1403304]
"Gadwin PrintScreen"="C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe" [2011-05-03 09:18:01 487424]
"Zoner Photo Studio Autoupdate"="C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE" [2015-07-12 13:05:00 563416]
- Rudy
- Site Admin
- Příspěvky: 119316
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Pomalejší počítač, odinstalace
Log sice není kompletní, je ale z něj zřejmé, že položky byly smazány. CF přejmenujte na uninstall a spusťte. Bude odinstalován.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Pomalejší počítač, odinstalace
Odinstalováno... Něco dál? Pošlu RSIT?
- Rudy
- Site Admin
- Příspěvky: 119316
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Pomalejší počítač, odinstalace
Jak se teď PC chová?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Pomalejší počítač, odinstalace
Zdravím.
1. Po dlouhodobějším usnutí PC, bohužel nastává vlastně restart ve smyslu "Zotavení systému Windows z chyb". Tam na černé obrazovce volím "Spustit běžným způsobem".
2. Po takovémto spuštění naběhne panel s hláškou "Systém Windows byl po neočekávaném vypnutí obnoven. Systém Windows může vyhledat řešení problému online". Zkusil jsem a nic nenašel.
3. Stále nejde odinstalovat AIMP3.
Díky.
M.
1. Po dlouhodobějším usnutí PC, bohužel nastává vlastně restart ve smyslu "Zotavení systému Windows z chyb". Tam na černé obrazovce volím "Spustit běžným způsobem".
2. Po takovémto spuštění naběhne panel s hláškou "Systém Windows byl po neočekávaném vypnutí obnoven. Systém Windows může vyhledat řešení problému online". Zkusil jsem a nic nenašel.
3. Stále nejde odinstalovat AIMP3.
Díky.
M.
- Rudy
- Site Admin
- Příspěvky: 119316
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Pomalejší počítač, odinstalace
Vypadá to na nějakou systémovou chybu. AIMP3 se pokuste odinstalovat pomocí TotalUninstall: http://www.stahuj.centrum.cz/utility_a_ ... uninstall/ .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Pomalejší počítač, odinstalace
Logfile of random's system information tool 1.09 (written by random/random)
Run by Probook at 2015-11-25 20:27:42
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 98 GB (21%) free of 461 GB
Total RAM: 3968 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:27:45, on 25.11.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18098)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe
C:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTray.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\Program Files (x86)\Software602\Print2PDF\Print2PDF.exe
C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\windows\SysWOW64\mshta.exe
C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE
C:\Users\Probook\Desktop\RSIT.exe
C:\Program Files (x86)\trend micro\Probook.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=6826
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [YouCam Tray] "c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [PowerDVD13Agent] "C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\windows\SysWOW64\NeroCheck.exe
O4 - HKLM\..\Run: [Print2PDF Print Monitor] "C:\Program Files (x86)\Software602\Print2PDF\Print2PDF.exe" /server
O4 - HKLM\..\Run: [ToolboxFX] "C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [DriverPack Notifier] C:\Program Files (x86)\DriverPack Notifier\DriverPackNotifier.exe --run startup
O4 - HKLM\..\Run: [HPConnectionManager] C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
O4 - HKCU\..\Run: [Gadwin PrintScreen] C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE"
O4 - HKUS\S-1-5-18\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [osk.exe] osk.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [osk.exe] osk.exe (User 'Default user')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: ISCTSystray.lnk = C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {414FB93D-DEDD-4FEF-AD7F-167992EBDB52} (SlimClient Class) - https://fw.ulz.cz/sslvpn/SNX/CSHELL/extender.cab
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: AvrcpService - Realtek Semiconductor Corporation - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BTDevManager - Unknown owner - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe
O23 - Service: Check Point SSL Network Extender (cpextender) - Check Point Software Technologies - C:\Program Files (x86)\CheckPoint\SSL Network Extender\slimsvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe
O23 - Service: CyberLink PowerDVD 13 Media Server Monitor Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe
O23 - Service: CyberLink PowerDVD 13 Media Server Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe
O23 - Service: @C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Hotkey Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HotkeyService.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: RtkBleServ - Realtek Semiconductor Corporation - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\RtkBleServ.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Synaptics FP WBF Policy Service (valWBFPolicyService) - Unknown owner - C:\windows\system32\valWBFPolicyService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 16368 bytes
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\HPCeeScheduleForProbook.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Probook\AppData\Roaming\Mozilla\Firefox\Profiles\2nrq2654.default
prefs.js - "browser.search.useDBForOrder" - false
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/?clid=6826"
"dpmaxz_ng@jetpack"=C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 19.0.0.245 Plugin
"Path"=C:\windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.60.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.60.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=602XML Filler Plugin
"Path"=C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\digitalpersona.com/ChromeDPAgent]
"Description"=
"Path"=C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\components\npChromeDPAgent.dll
C:\Users\Probook\AppData\Roaming\Mozilla\Firefox\Profiles\2nrq2654.default\extensions\
{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}
C:\Users\Probook\AppData\Roaming\Mozilla\Firefox\Profiles\2nrq2654.default\searchplugins\
firmy.cz-155924.xml
seznam.cz-155924.xml
videa.seznam.cz-155924.xml
zbozi.cz-155924.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-10-05 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-10-05 172640]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2015-03-01 293872]
"YouCam Tray"=c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [2013-09-16 167488]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-08-05 111576]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2013-08-07 490760]
"PowerDVD13Agent"=C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe [2013-07-05 517144]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2009-07-01 37888]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2009-09-05 417792]
"NeroFilterCheck"=C:\windows\SysWOW64\NeroCheck.exe [2005-09-25 155648]
"Print2PDF Print Monitor"=C:\Program Files (x86)\Software602\Print2PDF\Print2PDF.exe [2011-04-12 222776]
"ToolboxFX"=C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe [2014-08-13 59632]
"AccelerometerSysTrayApplet"=C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [2015-07-08 127528]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2015-08-03 430120]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
"DriverPack Notifier"=C:\Program Files (x86)\DriverPack Notifier\DriverPackNotifier.exe [2015-10-21 265456]
"HPConnectionManager"=C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [2015-10-08 191200]
""= []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-09-25 6480664]
"T-Mobile Communication Centre"=C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe [2012-08-22 1368768]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2005-09-25 94208]
"GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2015-10-29 1403304]
"Gadwin PrintScreen"=C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe [2011-05-03 487424]
"Zoner Photo Studio Autoupdate"=C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE [2015-07-12 563416]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma Loader.lnk - C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
ISCTSystray.lnk - C:\Program Files (x86)\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
C:\Users\Probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"msacm.l3codecp"=l3codecp.acm
"vidc.XVID"=xvidvfw.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2015-11-25 20:08:39 ----D---- C:\ProgramData\Martau
2015-11-25 05:49:22 ----SHD---- C:\$RECYCLE.BIN
2015-11-24 00:18:16 ----D---- C:\Program Files (x86)\Common Files\Telespree
2015-11-23 19:41:02 ----D---- C:\windows\erdnt
2015-11-23 06:55:07 ----D---- C:\rsit
2015-11-22 21:23:24 ----D---- C:\ProgramData\Malwarebytes
2015-11-22 21:23:24 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-11-22 12:36:32 ----D---- C:\Program Files (x86)\CrystalDiskInfo
2015-11-20 17:58:48 ----D---- C:\AdwCleaner
2015-11-20 17:39:14 ----D---- C:\Program Files (x86)\trend micro
2015-11-20 15:59:12 ----D---- C:\Users\Probook\AppData\Roaming\DriverPack Notifier
2015-11-20 15:59:12 ----D---- C:\Program Files (x86)\DriverPack Notifier
2015-11-20 15:59:08 ----D---- C:\Users\Probook\AppData\Roaming\DriverPack Easy Search
2015-11-20 15:57:25 ----A---- C:\windows\SysWOW64\RtCamX.dll
2015-11-20 15:57:24 ----A---- C:\windows\SysWOW64\RsDecode.dll
2015-11-20 15:57:24 ----A---- C:\windows\RtCamU64.exe
2015-11-20 15:57:04 ----A---- C:\windows\SysWOW64\SynCom.dll
2015-11-20 15:56:19 ----A---- C:\windows\SysWOW64\SRCOM.dll
2015-11-18 21:06:30 ----A---- C:\windows\SwUSB.exe
2015-11-18 21:06:30 ----A---- C:\windows\runSW.exe
2015-11-18 21:06:05 ----D---- C:\DRIVERS
2015-11-11 20:03:14 ----A---- C:\windows\SysWOW64\urlmon.dll
2015-11-11 20:03:14 ----A---- C:\windows\SysWOW64\occache.dll
2015-11-11 20:03:14 ----A---- C:\windows\SysWOW64\mshtmled.dll
2015-11-11 20:03:14 ----A---- C:\windows\SysWOW64\MshtmlDac.dll
2015-11-11 20:03:14 ----A---- C:\windows\SysWOW64\ieetwproxystub.dll
2015-11-11 20:03:14 ----A---- C:\windows\SysWOW64\iedkcs32.dll
2015-11-11 20:03:13 ----A---- C:\windows\SysWOW64\vbscript.dll
2015-11-11 20:03:13 ----A---- C:\windows\SysWOW64\mshtml.dll
2015-11-11 20:03:13 ----A---- C:\windows\SysWOW64\msfeeds.dll
2015-11-11 20:03:13 ----A---- C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-11-11 20:03:13 ----A---- C:\windows\SysWOW64\dxtrans.dll
2015-11-11 20:03:11 ----A---- C:\windows\SysWOW64\iesetup.dll
2015-11-11 20:03:11 ----A---- C:\windows\SysWOW64\iertutil.dll
2015-11-11 20:03:11 ----A---- C:\windows\SysWOW64\ieapfltr.dll
2015-11-11 20:03:10 ----A---- C:\windows\SysWOW64\jsproxy.dll
2015-11-11 20:03:10 ----A---- C:\windows\SysWOW64\jscript9diag.dll
2015-11-11 20:03:10 ----A---- C:\windows\SysWOW64\jscript.dll
2015-11-11 20:03:10 ----A---- C:\windows\SysWOW64\ieui.dll
2015-11-11 20:03:10 ----A---- C:\windows\SysWOW64\iernonce.dll
2015-11-11 20:03:10 ----A---- C:\windows\SysWOW64\dxtmsft.dll
2015-11-11 20:03:09 ----A---- C:\windows\SysWOW64\ieframe.dll
2015-11-11 20:03:06 ----A---- C:\windows\SysWOW64\wininet.dll
2015-11-11 20:03:06 ----A---- C:\windows\SysWOW64\webcheck.dll
2015-11-11 20:03:06 ----A---- C:\windows\SysWOW64\mshtmlmedia.dll
2015-11-11 20:03:06 ----A---- C:\windows\SysWOW64\jscript9.dll
2015-11-11 20:03:06 ----A---- C:\windows\SysWOW64\ieUnatt.exe
2015-11-11 20:03:05 ----A---- C:\windows\SysWOW64\msrating.dll
2015-11-11 09:59:51 ----A---- C:\windows\SysWOW64\wuwebv.dll
2015-11-11 09:59:51 ----A---- C:\windows\SysWOW64\wudriver.dll
2015-11-11 09:59:51 ----A---- C:\windows\SysWOW64\wuapi.dll
2015-11-11 09:59:50 ----A---- C:\windows\SysWOW64\wups.dll
2015-11-11 09:59:50 ----A---- C:\windows\SysWOW64\wuapp.exe
2015-11-11 09:58:46 ----A---- C:\windows\SysWOW64\shimeng.dll
2015-11-11 09:58:46 ----A---- C:\windows\SysWOW64\sdbinst.exe
2015-11-11 09:58:46 ----A---- C:\windows\SysWOW64\apphelp.dll
2015-11-11 09:30:33 ----A---- C:\windows\SysWOW64\schannel.dll
2015-11-11 09:30:33 ----A---- C:\windows\SysWOW64\kerberos.dll
2015-11-11 09:30:31 ----A---- C:\windows\SysWOW64\ncrypt.dll
2015-11-11 09:30:30 ----A---- C:\windows\SysWOW64\ntoskrnl.exe
2015-11-11 09:30:30 ----A---- C:\windows\SysWOW64\ntkrnlpa.exe
2015-11-11 09:30:29 ----A---- C:\windows\SysWOW64\bcryptprimitives.dll
2015-11-11 09:30:27 ----A---- C:\windows\SysWOW64\ntdll.dll
2015-11-11 09:30:25 ----A---- C:\windows\SysWOW64\msv1_0.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\wdigest.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\TSpkg.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\srclient.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\setup16.exe
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\secur32.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\rpcrt4.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\ntvdm64.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\cryptbase.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\credssp.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\auditpol.exe
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-11-11 09:30:23 ----A---- C:\windows\SysWOW64\wow32.dll
2015-11-11 09:30:23 ----A---- C:\windows\SysWOW64\sspicli.dll
2015-11-11 09:30:23 ----A---- C:\windows\SysWOW64\KernelBase.dll
2015-11-11 09:30:23 ----A---- C:\windows\SysWOW64\kernel32.dll
2015-11-11 09:30:22 ----AH---- C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-11-11 09:30:22 ----AH---- C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-11-11 09:30:22 ----AH---- C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-11-11 09:30:22 ----AH---- C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-11-11 09:30:22 ----A---- C:\windows\SysWOW64\instnm.exe
2015-11-11 09:30:22 ----A---- C:\windows\SysWOW64\apisetschema.dll
2015-11-11 09:30:21 ----A---- C:\windows\SysWOW64\user.exe
2015-11-11 09:30:20 ----A---- C:\windows\SysWOW64\adtschema.dll
2015-11-11 09:30:16 ----A---- C:\windows\SysWOW64\msaudite.dll
2015-11-11 09:30:14 ----A---- C:\windows\SysWOW64\msobjs.dll
2015-11-11 09:16:17 ----A---- C:\windows\SysWOW64\InkEd.dll
2015-11-10 23:28:07 ----A---- C:\windows\SysWOW64\FlashPlayerInstaller.exe
2015-11-06 20:47:06 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-11-01 18:50:23 ----A---- C:\windows\HPSetLog.txt
2015-10-27 09:53:07 ----D---- C:\ProgramData\HP
2015-10-27 09:53:05 ----D---- C:\Users\Probook\AppData\Roaming\HpUpdate
2015-10-27 09:52:41 ----D---- C:\Users\Probook\AppData\Roaming\Hewlett-Packard Company
2015-10-27 09:51:07 ----A---- C:\windows\SysWOW64\hpcdmc32.dll
2015-10-27 09:51:07 ----A---- C:\windows\SysWOW64\hpcc3101.dll
2015-10-27 09:50:49 ----D---- C:\Program Files (x86)\HP
2015-10-27 09:50:13 ----A---- C:\windows\SysWOW64\hpptsp06.dll
======List of files/folders modified in the last 1 month======
2015-11-25 20:27:45 ----D---- C:\windows\Prefetch
2015-11-25 20:27:43 ----D---- C:\windows\Temp
2015-11-25 20:26:19 ----RD---- C:\Program Files (x86)
2015-11-25 20:11:15 ----SHD---- C:\System Volume Information
2015-11-25 20:08:40 ----D---- C:\Windows
2015-11-25 20:08:40 ----D---- C:\ProgramData
2015-11-25 20:08:36 ----RD---- C:\Program Files
2015-11-25 19:57:58 ----D---- C:\windows\System32
2015-11-25 19:57:58 ----D---- C:\windows\inf
2015-11-25 19:51:00 ----D---- C:\ProgramData\Validity
2015-11-25 05:48:42 ----D---- C:\windows\Minidump
2015-11-24 00:20:35 ----SHD---- C:\windows\Installer
2015-11-24 00:20:28 ----D---- C:\ProgramData\Package Cache
2015-11-24 00:20:20 ----D---- C:\SWSETUP
2015-11-24 00:18:24 ----RSD---- C:\windows\assembly
2015-11-24 00:18:24 ----D---- C:\ProgramData\Hewlett-Packard
2015-11-24 00:18:16 ----D---- C:\Program Files (x86)\Common Files
2015-11-24 00:18:13 ----D---- C:\Program Files (x86)\Hewlett-Packard
2015-11-23 22:17:12 ----A---- C:\windows\system.ini
2015-11-23 22:01:34 ----D---- C:\windows\Tasks
2015-11-23 21:40:28 ----D---- C:\windows\SysWOW64\drivers
2015-11-23 21:40:28 ----D---- C:\windows\SysWOW64
2015-11-23 21:40:28 ----D---- C:\windows\AppPatch
2015-11-23 21:33:30 ----D---- C:\Users\Probook\AppData\Roaming\Skype
2015-11-22 20:27:56 ----D---- C:\Program Files (x86)\Opera
2015-11-22 20:22:37 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-11-22 17:55:24 ----D---- C:\Program Files (x86)\Realtek
2015-11-21 17:20:10 ----D---- C:\Users\Probook\AppData\Roaming\vlc
2015-11-21 17:19:46 ----D---- C:\Program Files (x86)\SereneScreen
2015-11-21 17:19:38 ----D---- C:\windows\registration
2015-11-20 22:51:10 ----D---- C:\windows\ModemLogs
2015-11-20 16:06:31 ----D---- C:\windows\SysWOW64\RTCOM
2015-11-18 21:06:28 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-11-18 07:50:56 ----D---- C:\Users\Probook\AppData\Roaming\hpqLog
2015-11-17 15:54:29 ----D---- C:\windows\Hewlett-Packard
2015-11-12 17:30:10 ----D---- C:\windows\winsxs
2015-11-12 14:41:27 ----D---- C:\windows\rescache
2015-11-12 12:09:33 ----D---- C:\windows\SysWOW64\en-US
2015-11-12 12:09:32 ----D---- C:\Program Files (x86)\Internet Explorer
2015-11-12 07:06:13 ----D---- C:\ProgramData\Microsoft Help
2015-11-11 19:19:17 ----D---- C:\windows\Microsoft.NET
2015-11-11 19:11:32 ----D---- C:\windows\SysWOW64\cs-CZ
2015-11-11 15:48:09 ----A---- C:\windows\SysWOW64\PerfStringBackup.INI
2015-11-10 23:28:16 ----A---- C:\windows\SysWOW64\FlashPlayerApp.exe
2015-11-07 09:44:48 ----D---- C:\Program Files (x86)\Garmin
2015-10-27 09:52:40 ----D---- C:\windows\twain_32
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 hpdskflt;HP Filter; C:\windows\system32\drivers\hpdskflt.sys []
R0 iaStorA;iaStorA; C:\windows\system32\drivers\iaStorA.sys []
R0 iaStorF;iaStorF; C:\windows\system32\drivers\iaStorF.sys []
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\windows\system32\drivers\iusb3hcs.sys []
R0 pciide;pciide; C:\windows\system32\drivers\pciide.sys []
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys []
R0 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys []
R1 CLVirtualDrive;CLVirtualDrive; C:\windows\system32\DRIVERS\CLVirtualDrive.sys []
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys []
R1 eamonm;eamonm; C:\windows\system32\DRIVERS\eamonm.sys []
R1 ehdrv;ehdrv; C:\windows\system32\DRIVERS\ehdrv.sys []
R1 ElbyCDIO;ElbyCDIO Driver; C:\windows\System32\Drivers\ElbyCDIO.sys []
R2 epfwwfpr;epfwwfpr; C:\windows\system32\DRIVERS\epfwwfpr.sys []
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys []
R3 BthEnum;Služba Bluetooth Enumerator; C:\windows\system32\DRIVERS\BthEnum.sys []
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\windows\system32\DRIVERS\bthpan.sys []
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys []
R3 CVPNDRVA;Cisco Systems Inc. IPSec Driver; \??\C:\windows\system32\Drivers\CVPNDRVA.sys []
R3 DNE;Deterministic Network Enhancer Miniport; C:\windows\system32\DRIVERS\dne64x.sys []
R3 ElbyDelay;ElbyDelay; C:\windows\System32\Drivers\ElbyDelay.sys [2007-02-16 14032]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys []
R3 IFXTPM;IFXTPM; C:\windows\system32\DRIVERS\IFXTPM.SYS []
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys []
R3 ikbevent;Intel Upper keyboard Class Filter Driver; C:\windows\system32\DRIVERS\ikbevent.sys []
R3 imsevent;Intel Upper Mouse Class Filter Driver; C:\windows\system32\DRIVERS\imsevent.sys []
R3 INETMON;INETMON; \??\C:\windows\System32\Drivers\INETMON.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys []
R3 ISCT;Intel(R) Smart Connect Technology Device Driver; C:\windows\system32\DRIVERS\ISCTD.sys []
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\windows\system32\DRIVERS\iusb3hub.sys []
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\windows\system32\DRIVERS\iusb3xhc.sys []
R3 MBAMProtector;MBAMProtector; \??\C:\windows\system32\drivers\mbam.sys []
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\windows\system32\drivers\MBAMSwissArmy.sys []
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\windows\system32\drivers\mwac.sys []
R3 MEIx64;Intel(R) Management Engine Interface ; C:\windows\system32\DRIVERS\TeeDriverx64.sys []
R3 pcouffin;VSO Software pcouffin; C:\windows\System32\Drivers\pcouffin.sys []
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\windows\system32\DRIVERS\rfcomm.sys []
R3 RtkBtFilter;Realtek Bluetooth Filter Driver; C:\windows\system32\DRIVERS\RtkBtfilter.sys []
R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys []
R3 rtsuvc;HP Universal Camera Driver; C:\windows\system32\DRIVERS\rtsuvc.sys []
R3 RTWlanE;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\windows\system32\DRIVERS\rtwlane.sys []
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\windows\system32\DRIVERS\serscan.sys []
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys []
S1 InCDPass;InCDPass; C:\windows\system32\drivers\InCDPass.sys []
S1 InCDRm;InCD Reader; C:\windows\system32\drivers\InCDRm.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\windows\system32\DRIVERS\bridge.sys []
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys []
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 cmshusbser;Mobile Connector USB Device for Legacy Serial Communication IN ANDROID DEVICE; C:\windows\system32\DRIVERS\cmshusbser.sys []
S3 CVirtA;Cisco Systems VPN Adapter for 64-bit Windows; C:\windows\system32\DRIVERS\CVirtA64.sys []
S3 dmvsc;dmvsc; C:\windows\system32\drivers\dmvsc.sys []
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys []
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys []
S3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys []
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\windows\System32\drivers\rdpvideominiport.sys []
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys []
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys []
S3 RtkAvrcp;Realtek Bluetooth A/V Remote Control Target; C:\windows\system32\drivers\RtkAvrcp.sys []
S3 RTL8168;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys []
S3 RTSPER;Realtek PCIE Card Reader - PER; C:\windows\system32\DRIVERS\RtsPer.sys []
S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys []
S3 SmbDrv;SmbDrv; C:\windows\system32\drivers\Smb_driver_AMDASF.sys []
S3 SmbDrvI;SmbDrvI; C:\windows\system32\drivers\Smb_driver_Intel.sys []
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys []
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys []
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys []
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys []
S4 InCDFs;InCD File System; C:\windows\system32\drivers\InCDFs.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 602XML Updater;602Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [2011-03-14 84520]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe [2012-08-22 123320]
R2 AvrcpService;AvrcpService; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe [2014-07-03 43224]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 BTDevManager;BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [2014-10-11 98816]
R2 cpextender;Check Point SSL Network Extender; C:\Program Files (x86)\CheckPoint\SSL Network Extender\slimsvc.exe [2015-02-23 368272]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 CVPND;Cisco Systems, Inc. VPN Service; C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe [2010-02-16 1528616]
R2 CyberLink PowerDVD 13 Media Server Monitor Service;CyberLink PowerDVD 13 Media Server Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe [2013-07-05 77576]
R2 CyberLink PowerDVD 13 Media Server Service;CyberLink PowerDVD 13 Media Server Service; C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe [2013-07-05 327432]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 DpHost;@C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2014-07-28 500048]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2014-02-24 1343408]
R2 HP Hotkey Service;HP Hotkey Service; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HotkeyService.exe [2015-08-03 850144]
R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [2010-10-25 145920]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2015-05-19 99128]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe []
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-06-25 16232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\windows\system32\igfxCUIService.exe []
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 ISCTAgent;Intel(R) Smart Connect Technology Agent; c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [2013-09-07 198120]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-10-10 158496]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-10-10 409376]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-06-14 292568]
R2 RtkBleServ;RtkBleServ; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\RtkBleServ.exe [2014-07-03 50392]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-08-22 237736]
R2 valWBFPolicyService;Synaptics FP WBF Policy Service; C:\windows\system32\valWBFPolicyService.exe []
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2013-09-12 2741648]
R3 hpCMSrv;HP Connection Manager 4 Service; C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2015-10-08 1527520]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2015-07-01 1102376]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 Garmin Device Interaction Service;Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [2015-10-29 777744]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-10 269000]
S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 20992]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2015-06-14 279952]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe /V []
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-11-06 147624]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 20992]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Run by Probook at 2015-11-25 20:27:42
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 98 GB (21%) free of 461 GB
Total RAM: 3968 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:27:45, on 25.11.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18098)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe
C:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTray.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\Program Files (x86)\Software602\Print2PDF\Print2PDF.exe
C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\windows\SysWOW64\mshta.exe
C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE
C:\Users\Probook\Desktop\RSIT.exe
C:\Program Files (x86)\trend micro\Probook.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=6826
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [YouCam Tray] "c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [PowerDVD13Agent] "C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\windows\SysWOW64\NeroCheck.exe
O4 - HKLM\..\Run: [Print2PDF Print Monitor] "C:\Program Files (x86)\Software602\Print2PDF\Print2PDF.exe" /server
O4 - HKLM\..\Run: [ToolboxFX] "C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [DriverPack Notifier] C:\Program Files (x86)\DriverPack Notifier\DriverPackNotifier.exe --run startup
O4 - HKLM\..\Run: [HPConnectionManager] C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [T-Mobile Communication Centre] "C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe" -autorun
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
O4 - HKCU\..\Run: [Gadwin PrintScreen] C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE"
O4 - HKUS\S-1-5-18\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [osk.exe] osk.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [osk.exe] osk.exe (User 'Default user')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: ISCTSystray.lnk = C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {414FB93D-DEDD-4FEF-AD7F-167992EBDB52} (SlimClient Class) - https://fw.ulz.cz/sslvpn/SNX/CSHELL/extender.cab
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Web'n'walk Manager mobile equipment installation service (ameisvc) - Gemfor s.r.o. - C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe
O23 - Service: AvrcpService - Realtek Semiconductor Corporation - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BTDevManager - Unknown owner - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe
O23 - Service: Check Point SSL Network Extender (cpextender) - Check Point Software Technologies - C:\Program Files (x86)\CheckPoint\SSL Network Extender\slimsvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe
O23 - Service: CyberLink PowerDVD 13 Media Server Monitor Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe
O23 - Service: CyberLink PowerDVD 13 Media Server Service - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe
O23 - Service: @C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Garmin Device Interaction Service - Garmin Ltd. or its subsidiaries - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Hotkey Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HotkeyService.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Connection Manager 4 Service (hpCMSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: RtkBleServ - Realtek Semiconductor Corporation - C:\Program Files (x86)\REALTEK\Realtek Bluetooth\RtkBleServ.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Synaptics FP WBF Policy Service (valWBFPolicyService) - Unknown owner - C:\windows\system32\valWBFPolicyService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 16368 bytes
======Scheduled tasks folder======
C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\HPCeeScheduleForProbook.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Probook\AppData\Roaming\Mozilla\Firefox\Profiles\2nrq2654.default
prefs.js - "browser.search.useDBForOrder" - false
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/?clid=6826"
"dpmaxz_ng@jetpack"=C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 19.0.0.245 Plugin
"Path"=C:\windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.60.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.60.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=602XML Filler Plugin
"Path"=C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\digitalpersona.com/ChromeDPAgent]
"Description"=
"Path"=C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\components\npChromeDPAgent.dll
C:\Users\Probook\AppData\Roaming\Mozilla\Firefox\Profiles\2nrq2654.default\extensions\
{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}
C:\Users\Probook\AppData\Roaming\Mozilla\Firefox\Profiles\2nrq2654.default\searchplugins\
firmy.cz-155924.xml
seznam.cz-155924.xml
videa.seznam.cz-155924.xml
zbozi.cz-155924.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-10-05 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-10-05 172640]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2015-03-01 293872]
"YouCam Tray"=c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [2013-09-16 167488]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-08-05 111576]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2013-08-07 490760]
"PowerDVD13Agent"=C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe [2013-07-05 517144]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2009-07-01 37888]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2009-09-05 417792]
"NeroFilterCheck"=C:\windows\SysWOW64\NeroCheck.exe [2005-09-25 155648]
"Print2PDF Print Monitor"=C:\Program Files (x86)\Software602\Print2PDF\Print2PDF.exe [2011-04-12 222776]
"ToolboxFX"=C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe [2014-08-13 59632]
"AccelerometerSysTrayApplet"=C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [2015-07-08 127528]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2015-08-03 430120]
"HP Software Update"=C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
"DriverPack Notifier"=C:\Program Files (x86)\DriverPack Notifier\DriverPackNotifier.exe [2015-10-21 265456]
"HPConnectionManager"=C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [2015-10-08 191200]
""= []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-09-25 6480664]
"T-Mobile Communication Centre"=C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe [2012-08-22 1368768]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [2005-09-25 94208]
"GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2015-10-29 1403304]
"Gadwin PrintScreen"=C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe [2011-05-03 487424]
"Zoner Photo Studio Autoupdate"=C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE [2015-07-12 563416]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma Loader.lnk - C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
ISCTSystray.lnk - C:\Program Files (x86)\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
C:\Users\Probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"msacm.l3codecp"=l3codecp.acm
"vidc.XVID"=xvidvfw.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2015-11-25 20:08:39 ----D---- C:\ProgramData\Martau
2015-11-25 05:49:22 ----SHD---- C:\$RECYCLE.BIN
2015-11-24 00:18:16 ----D---- C:\Program Files (x86)\Common Files\Telespree
2015-11-23 19:41:02 ----D---- C:\windows\erdnt
2015-11-23 06:55:07 ----D---- C:\rsit
2015-11-22 21:23:24 ----D---- C:\ProgramData\Malwarebytes
2015-11-22 21:23:24 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-11-22 12:36:32 ----D---- C:\Program Files (x86)\CrystalDiskInfo
2015-11-20 17:58:48 ----D---- C:\AdwCleaner
2015-11-20 17:39:14 ----D---- C:\Program Files (x86)\trend micro
2015-11-20 15:59:12 ----D---- C:\Users\Probook\AppData\Roaming\DriverPack Notifier
2015-11-20 15:59:12 ----D---- C:\Program Files (x86)\DriverPack Notifier
2015-11-20 15:59:08 ----D---- C:\Users\Probook\AppData\Roaming\DriverPack Easy Search
2015-11-20 15:57:25 ----A---- C:\windows\SysWOW64\RtCamX.dll
2015-11-20 15:57:24 ----A---- C:\windows\SysWOW64\RsDecode.dll
2015-11-20 15:57:24 ----A---- C:\windows\RtCamU64.exe
2015-11-20 15:57:04 ----A---- C:\windows\SysWOW64\SynCom.dll
2015-11-20 15:56:19 ----A---- C:\windows\SysWOW64\SRCOM.dll
2015-11-18 21:06:30 ----A---- C:\windows\SwUSB.exe
2015-11-18 21:06:30 ----A---- C:\windows\runSW.exe
2015-11-18 21:06:05 ----D---- C:\DRIVERS
2015-11-11 20:03:14 ----A---- C:\windows\SysWOW64\urlmon.dll
2015-11-11 20:03:14 ----A---- C:\windows\SysWOW64\occache.dll
2015-11-11 20:03:14 ----A---- C:\windows\SysWOW64\mshtmled.dll
2015-11-11 20:03:14 ----A---- C:\windows\SysWOW64\MshtmlDac.dll
2015-11-11 20:03:14 ----A---- C:\windows\SysWOW64\ieetwproxystub.dll
2015-11-11 20:03:14 ----A---- C:\windows\SysWOW64\iedkcs32.dll
2015-11-11 20:03:13 ----A---- C:\windows\SysWOW64\vbscript.dll
2015-11-11 20:03:13 ----A---- C:\windows\SysWOW64\mshtml.dll
2015-11-11 20:03:13 ----A---- C:\windows\SysWOW64\msfeeds.dll
2015-11-11 20:03:13 ----A---- C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-11-11 20:03:13 ----A---- C:\windows\SysWOW64\dxtrans.dll
2015-11-11 20:03:11 ----A---- C:\windows\SysWOW64\iesetup.dll
2015-11-11 20:03:11 ----A---- C:\windows\SysWOW64\iertutil.dll
2015-11-11 20:03:11 ----A---- C:\windows\SysWOW64\ieapfltr.dll
2015-11-11 20:03:10 ----A---- C:\windows\SysWOW64\jsproxy.dll
2015-11-11 20:03:10 ----A---- C:\windows\SysWOW64\jscript9diag.dll
2015-11-11 20:03:10 ----A---- C:\windows\SysWOW64\jscript.dll
2015-11-11 20:03:10 ----A---- C:\windows\SysWOW64\ieui.dll
2015-11-11 20:03:10 ----A---- C:\windows\SysWOW64\iernonce.dll
2015-11-11 20:03:10 ----A---- C:\windows\SysWOW64\dxtmsft.dll
2015-11-11 20:03:09 ----A---- C:\windows\SysWOW64\ieframe.dll
2015-11-11 20:03:06 ----A---- C:\windows\SysWOW64\wininet.dll
2015-11-11 20:03:06 ----A---- C:\windows\SysWOW64\webcheck.dll
2015-11-11 20:03:06 ----A---- C:\windows\SysWOW64\mshtmlmedia.dll
2015-11-11 20:03:06 ----A---- C:\windows\SysWOW64\jscript9.dll
2015-11-11 20:03:06 ----A---- C:\windows\SysWOW64\ieUnatt.exe
2015-11-11 20:03:05 ----A---- C:\windows\SysWOW64\msrating.dll
2015-11-11 09:59:51 ----A---- C:\windows\SysWOW64\wuwebv.dll
2015-11-11 09:59:51 ----A---- C:\windows\SysWOW64\wudriver.dll
2015-11-11 09:59:51 ----A---- C:\windows\SysWOW64\wuapi.dll
2015-11-11 09:59:50 ----A---- C:\windows\SysWOW64\wups.dll
2015-11-11 09:59:50 ----A---- C:\windows\SysWOW64\wuapp.exe
2015-11-11 09:58:46 ----A---- C:\windows\SysWOW64\shimeng.dll
2015-11-11 09:58:46 ----A---- C:\windows\SysWOW64\sdbinst.exe
2015-11-11 09:58:46 ----A---- C:\windows\SysWOW64\apphelp.dll
2015-11-11 09:30:33 ----A---- C:\windows\SysWOW64\schannel.dll
2015-11-11 09:30:33 ----A---- C:\windows\SysWOW64\kerberos.dll
2015-11-11 09:30:31 ----A---- C:\windows\SysWOW64\ncrypt.dll
2015-11-11 09:30:30 ----A---- C:\windows\SysWOW64\ntoskrnl.exe
2015-11-11 09:30:30 ----A---- C:\windows\SysWOW64\ntkrnlpa.exe
2015-11-11 09:30:29 ----A---- C:\windows\SysWOW64\bcryptprimitives.dll
2015-11-11 09:30:27 ----A---- C:\windows\SysWOW64\ntdll.dll
2015-11-11 09:30:25 ----A---- C:\windows\SysWOW64\msv1_0.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\wdigest.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\TSpkg.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\srclient.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\setup16.exe
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\secur32.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\rpcrt4.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\ntvdm64.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\cryptbase.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\credssp.dll
2015-11-11 09:30:24 ----A---- C:\windows\SysWOW64\auditpol.exe
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-11-11 09:30:23 ----AH---- C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-11-11 09:30:23 ----A---- C:\windows\SysWOW64\wow32.dll
2015-11-11 09:30:23 ----A---- C:\windows\SysWOW64\sspicli.dll
2015-11-11 09:30:23 ----A---- C:\windows\SysWOW64\KernelBase.dll
2015-11-11 09:30:23 ----A---- C:\windows\SysWOW64\kernel32.dll
2015-11-11 09:30:22 ----AH---- C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-11-11 09:30:22 ----AH---- C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-11-11 09:30:22 ----AH---- C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-11-11 09:30:22 ----AH---- C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-11-11 09:30:22 ----A---- C:\windows\SysWOW64\instnm.exe
2015-11-11 09:30:22 ----A---- C:\windows\SysWOW64\apisetschema.dll
2015-11-11 09:30:21 ----A---- C:\windows\SysWOW64\user.exe
2015-11-11 09:30:20 ----A---- C:\windows\SysWOW64\adtschema.dll
2015-11-11 09:30:16 ----A---- C:\windows\SysWOW64\msaudite.dll
2015-11-11 09:30:14 ----A---- C:\windows\SysWOW64\msobjs.dll
2015-11-11 09:16:17 ----A---- C:\windows\SysWOW64\InkEd.dll
2015-11-10 23:28:07 ----A---- C:\windows\SysWOW64\FlashPlayerInstaller.exe
2015-11-06 20:47:06 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-11-01 18:50:23 ----A---- C:\windows\HPSetLog.txt
2015-10-27 09:53:07 ----D---- C:\ProgramData\HP
2015-10-27 09:53:05 ----D---- C:\Users\Probook\AppData\Roaming\HpUpdate
2015-10-27 09:52:41 ----D---- C:\Users\Probook\AppData\Roaming\Hewlett-Packard Company
2015-10-27 09:51:07 ----A---- C:\windows\SysWOW64\hpcdmc32.dll
2015-10-27 09:51:07 ----A---- C:\windows\SysWOW64\hpcc3101.dll
2015-10-27 09:50:49 ----D---- C:\Program Files (x86)\HP
2015-10-27 09:50:13 ----A---- C:\windows\SysWOW64\hpptsp06.dll
======List of files/folders modified in the last 1 month======
2015-11-25 20:27:45 ----D---- C:\windows\Prefetch
2015-11-25 20:27:43 ----D---- C:\windows\Temp
2015-11-25 20:26:19 ----RD---- C:\Program Files (x86)
2015-11-25 20:11:15 ----SHD---- C:\System Volume Information
2015-11-25 20:08:40 ----D---- C:\Windows
2015-11-25 20:08:40 ----D---- C:\ProgramData
2015-11-25 20:08:36 ----RD---- C:\Program Files
2015-11-25 19:57:58 ----D---- C:\windows\System32
2015-11-25 19:57:58 ----D---- C:\windows\inf
2015-11-25 19:51:00 ----D---- C:\ProgramData\Validity
2015-11-25 05:48:42 ----D---- C:\windows\Minidump
2015-11-24 00:20:35 ----SHD---- C:\windows\Installer
2015-11-24 00:20:28 ----D---- C:\ProgramData\Package Cache
2015-11-24 00:20:20 ----D---- C:\SWSETUP
2015-11-24 00:18:24 ----RSD---- C:\windows\assembly
2015-11-24 00:18:24 ----D---- C:\ProgramData\Hewlett-Packard
2015-11-24 00:18:16 ----D---- C:\Program Files (x86)\Common Files
2015-11-24 00:18:13 ----D---- C:\Program Files (x86)\Hewlett-Packard
2015-11-23 22:17:12 ----A---- C:\windows\system.ini
2015-11-23 22:01:34 ----D---- C:\windows\Tasks
2015-11-23 21:40:28 ----D---- C:\windows\SysWOW64\drivers
2015-11-23 21:40:28 ----D---- C:\windows\SysWOW64
2015-11-23 21:40:28 ----D---- C:\windows\AppPatch
2015-11-23 21:33:30 ----D---- C:\Users\Probook\AppData\Roaming\Skype
2015-11-22 20:27:56 ----D---- C:\Program Files (x86)\Opera
2015-11-22 20:22:37 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-11-22 17:55:24 ----D---- C:\Program Files (x86)\Realtek
2015-11-21 17:20:10 ----D---- C:\Users\Probook\AppData\Roaming\vlc
2015-11-21 17:19:46 ----D---- C:\Program Files (x86)\SereneScreen
2015-11-21 17:19:38 ----D---- C:\windows\registration
2015-11-20 22:51:10 ----D---- C:\windows\ModemLogs
2015-11-20 16:06:31 ----D---- C:\windows\SysWOW64\RTCOM
2015-11-18 21:06:28 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-11-18 07:50:56 ----D---- C:\Users\Probook\AppData\Roaming\hpqLog
2015-11-17 15:54:29 ----D---- C:\windows\Hewlett-Packard
2015-11-12 17:30:10 ----D---- C:\windows\winsxs
2015-11-12 14:41:27 ----D---- C:\windows\rescache
2015-11-12 12:09:33 ----D---- C:\windows\SysWOW64\en-US
2015-11-12 12:09:32 ----D---- C:\Program Files (x86)\Internet Explorer
2015-11-12 07:06:13 ----D---- C:\ProgramData\Microsoft Help
2015-11-11 19:19:17 ----D---- C:\windows\Microsoft.NET
2015-11-11 19:11:32 ----D---- C:\windows\SysWOW64\cs-CZ
2015-11-11 15:48:09 ----A---- C:\windows\SysWOW64\PerfStringBackup.INI
2015-11-10 23:28:16 ----A---- C:\windows\SysWOW64\FlashPlayerApp.exe
2015-11-07 09:44:48 ----D---- C:\Program Files (x86)\Garmin
2015-10-27 09:52:40 ----D---- C:\windows\twain_32
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 hpdskflt;HP Filter; C:\windows\system32\drivers\hpdskflt.sys []
R0 iaStorA;iaStorA; C:\windows\system32\drivers\iaStorA.sys []
R0 iaStorF;iaStorF; C:\windows\system32\drivers\iaStorF.sys []
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\windows\system32\drivers\iusb3hcs.sys []
R0 pciide;pciide; C:\windows\system32\drivers\pciide.sys []
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys []
R0 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys []
R1 CLVirtualDrive;CLVirtualDrive; C:\windows\system32\DRIVERS\CLVirtualDrive.sys []
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys []
R1 eamonm;eamonm; C:\windows\system32\DRIVERS\eamonm.sys []
R1 ehdrv;ehdrv; C:\windows\system32\DRIVERS\ehdrv.sys []
R1 ElbyCDIO;ElbyCDIO Driver; C:\windows\System32\Drivers\ElbyCDIO.sys []
R2 epfwwfpr;epfwwfpr; C:\windows\system32\DRIVERS\epfwwfpr.sys []
R3 Accelerometer;HP Mobile Data Protection Sensor; C:\windows\system32\DRIVERS\Accelerometer.sys []
R3 BthEnum;Služba Bluetooth Enumerator; C:\windows\system32\DRIVERS\BthEnum.sys []
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\windows\system32\DRIVERS\bthpan.sys []
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys []
R3 CVPNDRVA;Cisco Systems Inc. IPSec Driver; \??\C:\windows\system32\Drivers\CVPNDRVA.sys []
R3 DNE;Deterministic Network Enhancer Miniport; C:\windows\system32\DRIVERS\dne64x.sys []
R3 ElbyDelay;ElbyDelay; C:\windows\System32\Drivers\ElbyDelay.sys [2007-02-16 14032]
R3 huawei_enumerator;huawei_enumerator; C:\windows\system32\DRIVERS\ew_jubusenum.sys []
R3 IFXTPM;IFXTPM; C:\windows\system32\DRIVERS\IFXTPM.SYS []
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys []
R3 ikbevent;Intel Upper keyboard Class Filter Driver; C:\windows\system32\DRIVERS\ikbevent.sys []
R3 imsevent;Intel Upper Mouse Class Filter Driver; C:\windows\system32\DRIVERS\imsevent.sys []
R3 INETMON;INETMON; \??\C:\windows\System32\Drivers\INETMON.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHD64.sys []
R3 ISCT;Intel(R) Smart Connect Technology Device Driver; C:\windows\system32\DRIVERS\ISCTD.sys []
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\windows\system32\DRIVERS\iusb3hub.sys []
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\windows\system32\DRIVERS\iusb3xhc.sys []
R3 MBAMProtector;MBAMProtector; \??\C:\windows\system32\drivers\mbam.sys []
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\windows\system32\drivers\MBAMSwissArmy.sys []
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\windows\system32\drivers\mwac.sys []
R3 MEIx64;Intel(R) Management Engine Interface ; C:\windows\system32\DRIVERS\TeeDriverx64.sys []
R3 pcouffin;VSO Software pcouffin; C:\windows\System32\Drivers\pcouffin.sys []
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\windows\system32\DRIVERS\rfcomm.sys []
R3 RtkBtFilter;Realtek Bluetooth Filter Driver; C:\windows\system32\DRIVERS\RtkBtfilter.sys []
R3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys []
R3 rtsuvc;HP Universal Camera Driver; C:\windows\system32\DRIVERS\rtsuvc.sys []
R3 RTWlanE;Realtek Wireless LAN 802.11n PCI-E Network Adapter; C:\windows\system32\DRIVERS\rtwlane.sys []
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\windows\system32\DRIVERS\serscan.sys []
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys []
S1 InCDPass;InCDPass; C:\windows\system32\drivers\InCDPass.sys []
S1 InCDRm;InCD Reader; C:\windows\system32\drivers\InCDRm.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\windows\system32\DRIVERS\bridge.sys []
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys []
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 cmshusbser;Mobile Connector USB Device for Legacy Serial Communication IN ANDROID DEVICE; C:\windows\system32\DRIVERS\cmshusbser.sys []
S3 CVirtA;Cisco Systems VPN Adapter for 64-bit Windows; C:\windows\system32\DRIVERS\CVirtA64.sys []
S3 dmvsc;dmvsc; C:\windows\system32\drivers\dmvsc.sys []
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\windows\system32\DRIVERS\ew_hwusbdev.sys []
S3 huawei_cdcacm;huawei_cdcacm; C:\windows\system32\DRIVERS\ew_jucdcacm.sys []
S3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys []
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\windows\System32\drivers\rdpvideominiport.sys []
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys []
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys []
S3 RtkAvrcp;Realtek Bluetooth A/V Remote Control Target; C:\windows\system32\drivers\RtkAvrcp.sys []
S3 RTL8168;Realtek 8168 NT Driver; C:\windows\system32\DRIVERS\Rt630x64.sys []
S3 RTSPER;Realtek PCIE Card Reader - PER; C:\windows\system32\DRIVERS\RtsPer.sys []
S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys []
S3 SmbDrv;SmbDrv; C:\windows\system32\drivers\Smb_driver_AMDASF.sys []
S3 SmbDrvI;SmbDrvI; C:\windows\system32\drivers\Smb_driver_Intel.sys []
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys []
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys []
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys []
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys []
S4 InCDFs;InCD File System; C:\windows\system32\drivers\InCDFs.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 602XML Updater;602Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [2011-03-14 84520]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-10-28 82128]
R2 ameisvc;Web'n'walk Manager mobile equipment installation service; C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe [2012-08-22 123320]
R2 AvrcpService;AvrcpService; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe [2014-07-03 43224]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 BTDevManager;BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [2014-10-11 98816]
R2 cpextender;Check Point SSL Network Extender; C:\Program Files (x86)\CheckPoint\SSL Network Extender\slimsvc.exe [2015-02-23 368272]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 CVPND;Cisco Systems, Inc. VPN Service; C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe [2010-02-16 1528616]
R2 CyberLink PowerDVD 13 Media Server Monitor Service;CyberLink PowerDVD 13 Media Server Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe [2013-07-05 77576]
R2 CyberLink PowerDVD 13 Media Server Service;CyberLink PowerDVD 13 Media Server Service; C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe [2013-07-05 327432]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 DpHost;@C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2014-07-28 500048]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2014-02-24 1343408]
R2 HP Hotkey Service;HP Hotkey Service; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HotkeyService.exe [2015-08-03 850144]
R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [2010-10-25 145920]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2015-05-19 99128]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe []
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-06-25 16232]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\windows\system32\igfxCUIService.exe []
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-08-27 747520]
R2 ISCTAgent;Intel(R) Smart Connect Technology Agent; c:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [2013-09-07 198120]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-10-10 158496]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-10-10 409376]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2015-10-05 1135416]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-10-05 1513784]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 20992]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2015-06-14 292568]
R2 RtkBleServ;RtkBleServ; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\RtkBleServ.exe [2014-07-03 50392]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2015-08-22 237736]
R2 valWBFPolicyService;Synaptics FP WBF Policy Service; C:\windows\system32\valWBFPolicyService.exe []
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2013-09-12 2741648]
R3 hpCMSrv;HP Connection Manager 4 Service; C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe [2015-10-08 1527520]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2015-07-01 1102376]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 Garmin Device Interaction Service;Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [2015-10-29 777744]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-10 269000]
S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 20992]
S3 cphs;Intel(R) Content Protection HECI Service; C:\windows\SysWow64\IntelCpHeciSvc.exe [2015-06-14 279952]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe /V []
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-08-27 828376]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-11-06 147624]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 20992]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 20992]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Re: Pomalejší počítač, odinstalace
Zdravím. AIMP3 se podařilo aplikací odinstalovat - moc díky. Co ta pravděpodobně systémová chyba, dokážeme ji odstranit spolu? Pro jistotu jsem ještě vypíchl výše RSIT log. M.
- Rudy
- Site Admin
- Příspěvky: 119316
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Pomalejší počítač, odinstalace
Zkuste použít FixIt: http://www.stahuj.centrum.cz/utility_a_ ... it-center/ .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Pomalejší počítač, odinstalace
This MSI can only be installed on the X86 platform - co s tím? Díky!
- Rudy
- Site Admin
- Příspěvky: 119316
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Pomalejší počítač, odinstalace
Nefunguje na 64b systému. Pak budete muset použít Win7manager: http://www.yamicsoft.com/windows7manager/ .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Pomalejší počítač, odinstalace
Zdravím. Ani to se nepodařilo - viz obr. v příloze. 

- Přílohy
-
- Instalacewindows7manager.jpg (56.58 KiB) Zobrazeno 2118 x