Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Při spuštění PC a modemu nejde automaticky internet

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Při spuštění PC a modemu nejde automaticky internet

#1 Příspěvek od Antusek »

Dobré odpoledne,
mám takový problém. V poslední době se stalo to, že když pustím PC a naběhne modem (internet mám přes UPC - kabelovka) nespustí se automaticky připojení k internetu. Musím vždy dát odstranit potížě a opravit jako správce. Pak to funguje.(viz. tabulka). Nezpůsobila to nějaká potvora v PC. Posílám také log z RSIT. Vypnul jsem ZoneAlarm, aby log mohl být proveden a pak jej zase zapnul.

Diagnostika sítě Podrobnosti o vydavateli

Nalezené problémy
Pravděpodobně došlo k potížím s ovladačem adaptéru Připojení k místní síti 2.

Zjištěno

Nastavte adaptér drátová síť. Nespuštěno
Došlo k potížím s adaptérem drátová síť. Nespuštěno

Nalezené problémy Podrobnosti o zjištění

 Pravděpodobně došlo k potížím s ovladačem adaptéru Připojení k místní síti 2. Zjištěno


Systému Windows se nepodařilo automaticky vytvořit vazbu zásobníku protokolu IP se síťovým adaptérem.
Nastavte adaptér drátová síť. Nespuštěno

Nastavte síťový adaptér tak, aby komunikoval s touto sítí. Tím zajistíte, že bude možné v adaptéru použít jak protokol IPv4 (Internet Protocol Version 4), tak protokol IPv6 (Internet Protocol Version 6).
Došlo k potížím s adaptérem drátová síť. Nespuštěno

Další informace o řešení problémů s hardwarem a ovladači můžete nalézt v Nápovědě a podpoře systému Windows.

Podrobnosti o zjištění


Diagnostické informace (Síťový Adaptér)
Podrobnosti diagnostiky síťový adaptér:

Informace o ovladači síťového adaptéru Připojení k místní síti 2:

Popis . . . . . . . . . . : Realtek PCIe GBE Family Controller
Výrobce . . . . . . . . . : Realtek
Poskytovatel . . . . . . . . . . . : Microsoft
Verze . . . . . . . . . . . : 7.2.1127.2008
Název souboru INF . . . . . . . . . : C:\Windows\INF\netrtx32.inf
Datum souboru INF . . . . . . . . . : 13. července 2009 20:46:34
Název oddílu . . . . . . . . . : RTL8168.ndi
ID hardwaru . . . . . . . . . . : pci\ven_10ec&dev_8168&rev_01
Příznaky stavu instance . . . . . : 0x180200a
Stavový kód správce zařízení . . : 0
IfType . . . . . . . . . . . . : 6
Typ fyzického média . . . . . . : 14


Protokol diagnostiky sítě
Název souboru: 43B7A72B-FD09-4A9D-B26E-705238D84C3F.Diagnose.0.etl



Další konfigurace sítě a protokoly
Název souboru: NetworkConfiguration.cab


Informace o kolekci
Název počítače: KUKU-PC
Verze Windows: 6.1
Architektura: x86
Čas: 17. listopadu 2016 12:39:08
-----------------------------------------------------

LOG z RSIT:
Logfile of random's system information tool 1.14 (written by random/random)
Run by kuku at 2016-11-17 12:46:42
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 304 GB (64%) free of 477 GB
Total RAM: 2558 MB (61% free)
X86

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:48:00, on 17.11.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18523)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\UVC Video Camera\UVCSti.exe
C:\Program Files\UVC Video Camera\EffectDir\UVCTray.exe
C:\Program Files\EMET\EMET_notifier.exe
C:\Aviry\Avast\avastui.exe
C:\Program Files\Real\RealPlayer\Update\realsched.exe
C:\Program Files\RealNetworks\RealDownloader\downloader2.exe
C:\Windows\system32\taskhost.exe
C:\Prográmky\PDF24\pdf24.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Programy\Adobe\Adobe Acrobat Distiller 5.0\Distillr\AcroTray.exe
C:\Program Files\WinZip\FAHWindow32.exe
C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
C:\Program Files\Secunia\PSI\psi_tray.exe
C:\Program Files\WinZip\WZUpdateNotifier.exe
C:\Program Files\WinZip\WzPreloader.exe
C:\Windows\system32\taskeng.exe
C:\Aviry\CCleaner\CCleaner.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Programy\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Programy\HP\Digital Imaging\bin\hpqbam08.exe
C:\Programy\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Windows\system32\taskeng.exe
C:\Programy\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Aviry\RSIT\RSIT.exe
C:\Aviry\RSIT\RSIT.exe
C:\Program Files\trend micro\kuku_RSIT.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Aviry\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [UVCSti] "C:\Program Files\UVC Video Camera\UVCSti.exe"
O4 - HKLM\..\Run: [RunUVC] "C:\Program Files\UVC Video Camera\EffectDir\UVCtray.exe"
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [EMET Notifier] C:\Program Files\EMET\EMET_notifier.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [Logitech Download Assistant] C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Aviry\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [TkBellExe] "c:\program files\real\realplayer\Update\realsched.exe" -osboot
O4 - HKLM\..\Run: [RealDownloader] C:\Program Files\RealNetworks\RealDownloader\downloader2.exe
O4 - HKLM\..\Run: [PDFPrint] "C:\Prográmky\PDF24\pdf24.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Aviry\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'Default user')
O4 - Global Startup: Acrobat Assistant.lnk = C:\Programy\Adobe\Adobe Acrobat Distiller 5.0\Distillr\AcroTray.exe
O4 - Global Startup: FAH.lnk = C:\Program Files\WinZip\FAHConsole.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: RealPlayer Cloud Service UI.lnk = C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
O4 - Global Startup: RealTimes.lnk = C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
O4 - Global Startup: Secunia PSI Tray.lnk = C:\Program Files\Secunia\PSI\psi_tray.exe
O4 - Global Startup: Update Notifier.lnk = C:\Program Files\WinZip\WZUpdateNotifier.exe
O4 - Global Startup: WinZip Preloader.lnk = C:\Program Files\WinZip\WzPreloader.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\Programy\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\kuku\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programy\MICROS~1\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Active File Monitor V10 (AdobeActiveFileMonitor10.0) - Adobe Systems Incorporated - C:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Aviry\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: RealPlayer Cloud Service - RealNetworks, Inc. - c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) - Unknown owner - C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe
O23 - Service: RealTimes Desktop Service - RealNetworks, Inc. - c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files\Secunia\PSI\PSIA.exe
O23 - Service: Secunia Update Agent - Secunia - C:\Program Files\Secunia\PSI\sua.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies Ltd. - C:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - C:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe

--
End of file - 8208 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\Adobe Acrobat Update Task - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\system32\tasks\Adobe Flash Player Updater - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\AdobeAAMUpdater-1.0-kuku-PC-kuku - C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe -mode=scheduled
C:\Windows\system32\tasks\avast! Emergency Update - C:\Aviry\Avast\AvastEmUpdate.exe
C:\Windows\system32\tasks\CCleanerSkipUAC - "C:\Aviry\CCleaner\CCleaner.exe" $(Arg0)
C:\Windows\system32\tasks\CreateChoiceProcessTask - C:\Windows\System32\browserchoice.exe /launch
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\Opera scheduled Autoupdate 1455997972 - C:\Program Files\Opera\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\RealDownloader Update Check - C:\Program Files\RealNetworks\RealDownloader\downloader2.exe /scheduler
C:\Windows\system32\tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\RealNetworks\RealDownloader\recordingmanager.exe /bgrecordaliveevent
C:\Windows\system32\tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\RealNetworks\RealDownloader\RealUpgrade.exe /logoncheck
C:\Windows\system32\tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\RealNetworks\RealDownloader\RealUpgrade.exe /scheduledcheck
C:\Windows\system32\tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\Real\RealUpgrade\realupgrade.exe /logoncheck
C:\Windows\system32\tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\Real\RealUpgrade\realupgrade.exe /scheduledcheck
C:\Windows\system32\tasks\RealUpgradeLogonTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\Real\RealUpgrade\realupgrade.exe /logoncheck
C:\Windows\system32\tasks\RealUpgradeScheduledTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\Real\RealUpgrade\realupgrade.exe /scheduledcheck
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1458681035 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\{0F61A33A-AEED-4430-8215-74E001C4F893} - C:\Windows\system32\pcalua.exe -a D:\setup.exe -d D:\
C:\Windows\system32\tasks\{1C44E33F-ACCD-4C42-8A3E-099077D0FA71} - C:\Windows\system32\pcalua.exe -a E:\Seagate\Setup.exe -d E:\Seagate
C:\Windows\system32\tasks\{2452B3DF-C652-4751-A6ED-A0D15FE9EFCB} - "c:\program files\opera\launcher.exe" http://www.skype.com/go/downloading?sou ... tError=404
C:\Windows\system32\tasks\{25C0AF3A-1FF3-4936-95A4-A0AF8C71AECE} - C:\Windows\system32\pcalua.exe -a C:\Users\kuku\Downloads\ad401.exe -d C:\Users\kuku\Downloads
C:\Windows\system32\tasks\{341B4EE2-736F-45B0-A747-DF67A4487140} - C:\Windows\system32\pcalua.exe -a C:\Windows\system32\pcwrun.exe -c C:\Prográmky\IsoBuster\IsoBuster.exe
C:\Windows\system32\tasks\{3AD2CBE1-3E15-48C1-A416-296A4EC1985A} - C:\Program Files\Opera\launcher.exe
C:\Windows\system32\tasks\{51FC8D6F-D84D-4783-A1F0-F7F11F9D8E87} - D:\setup.exe
C:\Windows\system32\tasks\{57C3095E-EAA6-4EE7-BAE5-60EF442BB70C} - C:\Windows\system32\pcalua.exe -a C:\Users\kuku\Downloads\ytd-1.49.exe -d C:\Users\kuku\Downloads
C:\Windows\system32\tasks\{66585E38-6DA0-423E-B315-C288E2767964} - C:\Windows\system32\pcalua.exe -a "C:\Programy - instalace\Winzip - instalace\winzip70.exe" -d "C:\Programy - instalace\Winzip - instalace"
C:\Windows\system32\tasks\{665F5562-27A0-41C2-908D-473526D63BA9} - C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe
C:\Windows\system32\tasks\{6E254C5E-7E75-4D5E-936E-6CDC9ED34EA8} - C:\Program Files\Opera\launcher.exe
C:\Windows\system32\tasks\{8ED44FAA-F7CC-4690-824F-78352FE5AEA1} - C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe
C:\Windows\system32\tasks\{A028F8B3-DD34-4EB8-BF9B-40ECC26C7EA5} - C:\Windows\system32\pcalua.exe -a "C:\Programy - instalace\Real Player 10.5 Gold - instalace\RealPlayer10-5GOLD.exe" -d "C:\Programy - instalace\Real Player 10.5 Gold - instalace"
C:\Windows\system32\tasks\{AA5E6737-F985-4005-B6EB-C6EBDB83FAB8} - C:\Program Files\Opera\launcher.exe
C:\Windows\system32\tasks\{B9797AC9-6428-4937-B1AE-217F2F2684C6} - C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe
C:\Windows\system32\tasks\{CCCF75FA-386A-4B06-813D-6347D147FB93} - C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe
C:\Windows\system32\tasks\{ED343DD8-E1C1-46B1-B01C-5FBE96C92AFD} - D:\setup.exe
C:\Windows\system32\tasks\WPD\SqmUpload_S-1-5-21-2566555506-497672473-4049909881-1001 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\Windows\system32\tasks\Microsoft\Windows Defender\MP Scheduled Scan - c:\program files\windows defender\MpCmdRun.exe Scan -ScheduleJob -WinTask -RestrictPrivilegesScan
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask - %SystemRoot%\system32\Wat\WatAdminSvc.exe /run
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - %SystemRoot%\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask"
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask - sc.exe start sppsvc
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem - %SystemRoot%\System32\powercfg.exe -energy -auto
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate_scheduled - %SystemRoot%\ehome\mcupdate -crl -hms -pscn 15
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\StartRecording - %SystemRoot%\ehome\ehrec /StartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs

=========Mozilla firefox=========

ProfilePath - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "keyword.URL" - "https://www.google.com/search"

"wrc@avast.com"=C:\Aviry\Avast\WebRep\FF
"smartwebprinting@hp.com"=C:\Programy\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
"sp@avast.com"=C:\Aviry\Avast\SafePrice\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.207 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_23_0_0_207.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=18.1.4.135]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpplugin;version=18.1.4.135]
"Description"=RealTimes Download Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprpplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\
donottrack@checkpoint.com
{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\searchplugins\
Google.xml

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\addons.json
Firefox Hello Beta (discontinued) - extension - loop@mozilla.org
Video DownloadHelper - extension - {b9db16a4-6edc-47ec-a1f4-b86292ed211d}

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions.json
ZoneAlarm Do Not Track - extension - donottrack@checkpoint.com - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\donottrack@checkpoint.com
HP Smart Web Printing - extension - smartwebprinting@hp.com - C:\Programy\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
HP Smart Web Printing - extension - smartwebprinting@hp.com - C:\Programy\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
WOT - extension - {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
Avast Online Security - extension - wrc@avast.com - C:\Aviry\Avast\WebRep\FF
Avast SafePrice - extension - sp@avast.com - C:\Aviry\Avast\SafePrice\FF
Firefox Hello - extension - loop@mozilla.org - C:\Program Files\Mozilla Firefox\browser\features\loop@mozilla.org.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Video DownloadHelper - extension - {b9db16a4-6edc-47ec-a1f4-b86292ed211d} - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi
Firefox Hotfix - extension - firefox-hotfix@mozilla.org - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\firefox-hotfix@mozilla.org.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\features\{476315b8-c30e-40aa-8cf8-dc3f9303357e}\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\features\{476315b8-c30e-40aa-8cf8-dc3f9303357e}\firefox@getpocket.com.xpi
Firefox Hello - extension - loop@mozilla.org - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\features\{476315b8-c30e-40aa-8cf8-dc3f9303357e}\loop@mozilla.org.xpi
Youtube Unblocker Remediation - extension - malware-remediation@mozilla.org - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\features\{476315b8-c30e-40aa-8cf8-dc3f9303357e}\malware-remediation@mozilla.org.xpi

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\pluginreg.dat
Plugin - Adobe Acrobat - 15.20.20039.7108 - C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
Plugin - Google Update - 1.3.31.5 - C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll
Plugin - RealTimes Download Plugin - 18.1.4.135 - c:\program files\real\realplayer\Netscape6\nprpplugin.dll
Plugin - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) - 18.1.4.135 - c:\program files\real\realplayer\Netscape6\nppl3260.dll
Plugin - Photo Gallery - 16.4.3528.331 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
Plugin - Silverlight Plug-In - 5.1.50901.0 - c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll
Plugin - Shockwave Flash - 23.0.0.207 - C:\Windows\system32\Macromed\Flash\NPSWF32_23_0_0_207.dll

=========Google Chrome=========

C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Store 0.2
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.60
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension ennkphjdgehloodpbhlhldgbnhmacadg Settings 0.2
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension gomekmidlodglbbmalcneegieacbdmki 2 avast! Online Security 9.0.2011.70
Extension idhngdhcfkoamngbedgpaokgjbnpdiji 2 RealDownloader 1.3.2
Extension ilckobikkmajlmhhdenkhonjkoaneclk 2 WinZip Courier 3.5.0
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.38
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nfengeggddojhakldhlpjdlddgkkjkddabc 2 Advanced SystemCare Surfing Protection 1.0.0
Extension nfengeggddojhakldhlpjdlddgkkjkddabcabc 2 Advanced SystemCare Surfing Protection 1.0.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.0
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.0
Extension pafkbggdmjlpgkdkcbjmhmfcdpncadgh Google Now 1.2.0.1
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5416.905.0.6
Homepage: http://search.zonealarm.com/?Source=Hom ... 24810bb64e
default_search_provider.search_url:
C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Preferences
Plugin 11.8.800.97 Shockwave Flash C:\Program Files\Google\Chrome\Application\54.0.2840.99\PepperFlash\pepflashplayer.dll
Plugin Chrome Remote Desktop Viewer internal-remoting-viewer
Plugin Native Client C:\Program Files\Google\Chrome\Application\54.0.2840.99\ppGoogleNaClPluginChrome.dll
Plugin Chrome PDF Viewer C:\Program Files\Google\Chrome\Application\54.0.2840.99\pdf.dll
Plugin 10.1.7.27 Adobe Acrobat C:\Programy\Adobe\Adobe Reader 10.0\Reader\Browser\nppdf32.dll
Plugin 1, 0, 0, 1 Advanced SystemCare 6 Opera Plugin C:\Aviry\Advanced SystemCare 5\BrowerProtect\np_Asc_plugin.dll
Plugin 1, 0, 0, 1 npFFApi C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll
Plugin 1.3.21.153 Google Update C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll
Plugin 16.4.3505.0912_ship.client.main.w5m4 (ship) Photo Gallery C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
Plugin 1.3.2.28 RealNetworks(tm) RealDownloader Chrome Background Extension Plug-In (32-bit) C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll
Plugin 1.3.2.28 RealNetworks(tm) RealDownloader HTML5VideoShim Plug-In (32-bit) C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll
Plugin 1.3.2.28 RealNetworks(tm) RealDownloader PepperFlashVideoShim Plug-In (32-bit) C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll
Plugin 1.3.2.28 RealDownloader Plugin C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll
Plugin 11,8,800,94 Shockwave Flash C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll
Plugin 5.1.20513.0 Silverlight Plug-In c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll
Plugin 16.0.2.32 RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) c:\program files\real\realplayer\Netscape6\nppl3260.dll
Plugin 16.0.2.32 RealPlayer Download Plugin c:\program files\real\realplayer\Netscape6\nprpplugin.dll
Homepage:
default_search_provider.search_url:

[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki]
"Path"=C:\Aviry\Avast\WebRep\Chrome\aswWebRepChrome.crx

[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\ilckobikkmajlmhhdenkhonjkoaneclk]
"Path"=C:\Program Files\WinZip Courier\wzwmcgc.crx


======Registry dump======


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}]
"URL"=http://www.bing.com/search?q={searchTer ... DF&PC=AV01

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealNetworks Download and Record Plugin for Internet Explorer - C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2016-05-13 521608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Aviry\Avast\aswWebRepIE.dll [2016-05-06 679680]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"UVCSti"=C:\Program Files\UVC Video Camera\UVCSti.exe [2010-08-23 245760]
"RunUVC"=C:\Program Files\UVC Video Camera\EffectDir\UVCtray.exe [2010-08-23 7548928]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-07-20 505720]
"EMET Notifier"=C:\Program Files\EMET\EMET_notifier.exe [2012-05-09 152152]
"hpqSRMon"=C:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
"LifeCam"=C:\Program Files\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1425208]
"AvastUI.exe"=C:\Aviry\Avast\AvastUI.exe [2016-06-27 7408312]
"ZoneAlarm"=C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe [2016-03-24 134480]
"TkBellExe"=c:\program files\real\realplayer\Update\realsched.exe [2016-06-26 293768]
"RealDownloader"=C:\Program Files\RealNetworks\RealDownloader\downloader2.exe [2016-07-05 714992]
"PDFPrint"=C:\Prográmky\PDF24\pdf24.exe [2016-07-05 210432]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Aviry\CCleaner\CCleaner.exe [2016-09-28 6904024]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acrobat Assistant.lnk - C:\Programy\Adobe\Adobe Acrobat Distiller 5.0\Distillr\AcroTray.exe
FAH.lnk - C:\Program Files\WinZip\FAHConsole.exe
HP Digital Imaging Monitor.lnk - C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
RealPlayer Cloud Service UI.lnk - C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
RealTimes.lnk - C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
Secunia PSI Tray.lnk - C:\Program Files\Secunia\PSI\psi_tray.exe
Update Notifier.lnk - C:\Program Files\WinZip\WZUpdateNotifier.exe
WinZip Preloader.lnk - C:\Program Files\WinZip\WzPreloader.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{73FA19D0-2D75-11D2-995D-00C04F98BBC9}]
"StubPath"=
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath"="C:\Program Files\Google\Chrome\Application\54.0.2840.99\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{A6EADE66-0000-0000-484E-7E8A45000000}]
"StubPath"="C:\Windows\system32\Rundll32.exe" "C:\Program Files\Adobe\Acrobat Reader DC\Esl\AiodLite.dll",CreateReaderUserSettings

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codecp.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"wave3"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=wdmaud.drv
"wave5"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux3"=wdmaud.drv
"wave6"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux4"=wdmaud.drv
"wave7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave4"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-11-17 12:46:11 ----D---- C:\rsit
2016-11-14 08:20:16 ----A---- C:\Windows\system32\mshtml.dll
2016-11-14 08:20:15 ----A---- C:\Windows\system32\ieframe.dll
2016-11-14 08:20:14 ----A---- C:\Windows\system32\wininet.dll
2016-11-14 08:20:14 ----A---- C:\Windows\system32\win32k.sys
2016-11-14 08:20:14 ----A---- C:\Windows\system32\urlmon.dll
2016-11-14 08:20:14 ----A---- C:\Windows\system32\jscript9.dll
2016-11-14 08:20:14 ----A---- C:\Windows\system32\iertutil.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\UIAnimation.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-11-14 08:20:13 ----A---- C:\Windows\system32\ntdll.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\MSVidCtl.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\msv1_0.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\lsasrv.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\input.dll
2016-11-14 08:20:12 ----A---- C:\Windows\system32\win32spl.dll
2016-11-14 08:20:12 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-11-14 08:20:11 ----A---- C:\Windows\system32\atmfd.dll
2016-11-14 08:20:10 ----A---- C:\Windows\system32\ie4uinit.exe
2016-11-14 08:20:10 ----A---- C:\Windows\system32\clfs.sys
2016-11-14 08:20:09 ----A---- C:\Windows\system32\UtcResources.dll
2016-11-14 08:20:09 ----A---- C:\Windows\system32\olepro32.dll
2016-11-14 08:20:09 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-11-14 08:20:09 ----A---- C:\Windows\system32\inetcomm.dll
2016-11-14 08:20:09 ----A---- C:\Windows\system32\IMJP10K.DLL
2016-11-14 08:20:09 ----A---- C:\Windows\system32\iedkcs32.dll
2016-11-14 08:20:09 ----A---- C:\Windows\system32\drivers\bowser.sys
2016-11-14 08:20:08 ----A---- C:\Windows\system32\webcheck.dll
2016-11-14 08:20:08 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-11-14 08:20:08 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-11-14 08:20:08 ----A---- C:\Windows\system32\asycfilt.dll
2016-11-14 08:20:07 ----A---- C:\Windows\system32\oleaut32.dll
2016-11-14 08:20:07 ----A---- C:\Windows\system32\msfeeds.dll
2016-11-14 08:20:07 ----A---- C:\Windows\system32\msctf.dll
2016-11-14 08:20:07 ----A---- C:\Windows\system32\dxtrans.dll
2016-11-14 08:20:06 ----A---- C:\Windows\system32\msrating.dll
2016-11-14 08:20:06 ----A---- C:\Windows\system32\mshtmled.dll
2016-11-14 08:20:06 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-11-14 08:20:06 ----A---- C:\Windows\system32\dxtmsft.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\vbscript.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\occache.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\jsproxy.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\jscript9diag.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\jscript.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\inseng.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\INETRES.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieUnatt.exe
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieui.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\iesetup.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\iernonce.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieapfltr.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-11-14 08:20:04 ----A---- C:\Windows\system32\smss.exe
2016-11-14 08:20:04 ----A---- C:\Windows\system32\rpcrt4.dll
2016-11-14 08:20:04 ----A---- C:\Windows\system32\kerberos.dll
2016-11-14 08:20:04 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-11-14 08:20:04 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-11-14 08:20:03 ----A---- C:\Windows\system32\wdigest.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\TSpkg.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\sspisrv.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\sspicli.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\srcore.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\srclient.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\schannel.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\secur32.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\rstrui.exe
2016-11-14 08:20:03 ----A---- C:\Windows\system32\rpchttp.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\ncrypt.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\lsass.exe
2016-11-14 08:20:03 ----A---- C:\Windows\system32\lpk.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\fontsub.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-11-14 08:20:03 ----A---- C:\Windows\system32\drivers\appid.sys
2016-11-14 08:20:03 ----A---- C:\Windows\system32\dciman32.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\csrsrv.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\cryptbase.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\credssp.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\atmlib.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\appidapi.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\apisetschema.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\advapi32.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\tzres.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\msobjs.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\msaudite.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\auditpol.exe
2016-11-14 08:20:02 ----A---- C:\Windows\system32\appidsvc.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-11-14 08:20:02 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-11-14 08:20:02 ----A---- C:\Windows\system32\adtschema.dll
2016-11-14 08:20:01 ----A---- C:\Windows\system32\diagtrack.dll

======List of files/folders modified in the last 1 month======

2016-11-17 12:46:53 ----D---- C:\Windows\Prefetch
2016-11-17 12:46:43 ----D---- C:\Windows\Temp
2016-11-17 12:46:43 ----D---- C:\Program Files\trend micro
2016-11-17 12:45:22 ----D---- C:\Aviry
2016-11-17 12:44:40 ----HD---- C:\ProgramData
2016-11-17 12:41:27 ----D---- C:\Windows\system32\NDF
2016-11-17 12:25:32 ----D---- C:\Windows\system32\config
2016-11-17 12:25:23 ----D---- C:\Windows\inf
2016-11-17 11:53:37 ----D---- C:\Windows\system32\drivers
2016-11-17 11:53:06 ----D---- C:\Program Files\Opera
2016-11-17 07:48:37 ----D---- C:\Windows
2016-11-16 16:11:30 ----D---- C:\Windows\rescache
2016-11-16 08:21:11 ----D---- C:\Windows\System32
2016-11-16 08:21:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-11-16 08:14:59 ----D---- C:\Windows\winsxs
2016-11-16 08:11:16 ----D---- C:\Program Files\Internet Explorer
2016-11-16 08:11:15 ----D---- C:\Windows\system32\migration
2016-11-16 08:11:15 ----D---- C:\Windows\system32\cs-CZ
2016-11-16 08:11:14 ----D---- C:\Windows\system32\en-US
2016-11-15 22:52:06 ----SHD---- C:\System Volume Information
2016-11-14 20:42:02 ----D---- C:\Články 2016
2016-11-13 16:23:29 ----D---- C:\Windows\system32\DriverStore
2016-11-12 09:23:59 ----D---- C:\Windows\system32\catroot2
2016-11-11 21:56:09 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-11-11 21:56:05 ----D---- C:\Windows\system32\Macromed
2016-11-11 14:17:03 ----D---- C:\Došlé dopisy
2016-11-10 22:25:57 ----D---- C:\Windows\debug
2016-11-09 22:56:57 ----SHD---- C:\Windows\Installer
2016-11-09 22:56:57 ----SHD---- C:\Config.Msi
2016-11-09 22:51:57 ----D---- C:\Windows\system32\MRT
2016-11-09 22:51:47 ----AC---- C:\Windows\system32\MRT.exe
2016-11-09 17:40:42 ----D---- C:\Windows\system32\Tasks
2016-11-07 22:09:33 ----D---- C:\Stati 2016
2016-11-05 11:51:51 ----D---- C:\Users\kuku\AppData\Roaming\Skype
2016-11-04 21:22:01 ----D---- C:\Album fotografií
2016-11-02 11:18:07 ----D---- C:\články
2016-10-28 18:59:27 ----D---- C:\WWW moje
2016-10-26 16:29:08 ----N---- C:\Windows\system32\MpSigStub.exe
2016-10-21 17:05:33 ----D---- C:\ProgramData\Skype
2016-10-20 16:37:08 ----D---- C:\Windows\system32\FxsTmp

File C:\Windows\system32\winlogon.exe is digitally signed
File C:\Windows\system32\wininit.exe is digitally signed
File C:\Windows\explorer.exe is digitally signed
File C:\Windows\system32\svchost.exe is digitally signed
File C:\Windows\system32\services.exe is digitally signed
File C:\Windows\system32\User32.dll is digitally signed
File C:\Windows\system32\userinit.exe is digitally signed
File C:\Windows\system32\rpcss.dll is digitally signed
File C:\Windows\system32\Drivers\volsnap.sys is digitally signed

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-05-06 58776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-08-04 224616]
R0 KL1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2014-03-19 135776]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-03-19 45648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-05-06 35096]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-05-06 91232]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-05-06 815792]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-05-06 449640]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2014-03-19 488032]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2016-10-11 367072]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-05-06 32792]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-05-06 91168]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-05-06 124808]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-06-19 3240400]
R3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2010-12-13 30576]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2010-03-22 18944]
R3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2011-12-16 15544]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-05-25 305488]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 Cam3820;Cam3820 PC Camera Driver; C:\Windows\System32\Drivers\cam3820a.sys [2010-08-25 369024]
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-07-28 49088]
S3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-13 347264]
S3 NVNET;NVIDIA nForce Ethernet Driver; C:\Windows\system32\DRIVERS\nvmf6232.sys [2010-08-12 298216]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-12-09 14848]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 35968]
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Aviry\Avast\ng\vbox\VBoxAswDrv.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10; C:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-09-14 169624]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-10-21 82128]
R2 avast! Antivirus;Avast Antivirus; C:\Aviry\Avast\AvastSvc.exe [2016-05-06 243296]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; %SystemRoot%\System32\svchost.exe -k utcsvc;"ServiceDll"=%SystemRoot%\system32\diagtrack.dll
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; %SystemRoot%\system32\svchost.exe -k hpdevmgmt;"ServiceDll"=C:\Programy\HP\Digital Imaging\bin\hpqddsvc.dll
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-12-13 135536]
R2 Net Driver HPZ12;Net Driver HPZ12; %SystemRoot%\System32\svchost.exe -k HPZ12;"ServiceDll"=C:\Windows\system32\HPZinw12.dll
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-02-10 634144]
R2 Pml Driver HPZ12;Pml Driver HPZ12; %SystemRoot%\System32\svchost.exe -k HPZ12;"ServiceDll"=C:\Windows\system32\HPZipm12.dll
R2 RealPlayerUpdateSvc;RealPlayer Update Service; C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe [2016-05-13 32544]
R2 Secunia PSI Agent;Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [2012-09-24 1328736]
R2 Secunia Update Agent;Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [2012-09-24 656480]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
R2 ZAPrivacyService;ZoneAlarm Privacy Service; C:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [2015-10-19 96272]
R3 hpqcxs08;hpqcxs08; %SystemRoot%\system32\svchost.exe -k hpdevmgmt;"ServiceDll"=C:\Programy\HP\Digital Imaging\bin\hpqcxs08.dll
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-10 1266464]
S2 RealPlayer Cloud Service;RealPlayer Cloud Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [2016-06-26 1095440]
S2 RealTimes Desktop Service;RealTimes Desktop Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [2016-06-26 1095440]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2016-09-20 324224]
S2 vsmon;TrueVector Internet Monitor; C:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe [2016-03-24 3746584]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-11 270528]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2014-03-31 1512640]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-10-22 102912]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2016-05-31 146888]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-05-04 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-11-05 45744]
S4 ATMsrvc;ATM Service; C:\Windows\System32\ATMsrvc.exe [2000-05-24 15360]
S4 AvastVBoxSvc;AvastVBox COM Service; C:\Aviry\Avast\ng\vbox\AvastVBoxSVC.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]

-----------------EOF-----------------

Moc děkuji za radu jak to napravit a za přípdné pročištění PC.
:)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119672
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Při spuštění PC a modemu nejde automaticky internet

#2 Příspěvek od Rudy »

Zdravím!
Zkusíme PC vyčistit. Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: Při spuštění PC a modemu nejde automaticky internet

#3 Příspěvek od Antusek »

Vkládám Log. Automatické připojení k netu stále nejde. Stále musím opravit problém jako správce a pak to jde. Díky za další postup. :)

# AdwCleaner v6.030 - Logfile created 17/11/2016 at 17:15:47
# Updated on 19/10/2016 by Malwarebytes
# Database : 2016-11-16.1 [Server]
# Operating System : Windows 7 Home Premium Service Pack 1 (X86)
# Username : kuku - KUKU-PC
# Running from : C:\Aviry\ADWCleaner\adwcleaner_6.030.exe
# Mode: Clean
# Support : hxxps://www.malwarebytes.com/support



***** [ Services ] *****



***** [ Folders ] *****

[-] Folder deleted: C:\Windows\system32\config\systemprofile\AppData\LocalLow\Application Updater


***** [ Files ] *****

[-] File deleted: C:\user.js


***** [ DLL ] *****



***** [ WMI ] *****



***** [ Shortcuts ] *****



***** [ Scheduled Tasks ] *****



***** [ Registry ] *****

[-] Key deleted: HKU\S-1-5-21-2566555506-497672473-4049909881-1001\Software\APN PIP
[#] Key deleted on reboot: HKCU\Software\APN PIP


***** [ Web browsers ] *****

[-] Chrome preferences cleaned: "extensions.wrc.SearchRules.rambler.ru.url" - "^hxxp\\:\\/\\/nova\\.rambler\\.ru\\/.+"
[-] [C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: check point software technologies ltd
[-] [C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Deleted: yahoo.com
[-] [C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default] [homepage] Deleted: hxxp://search.zonealarm.com/?Source=Homepage&oemCode=ZLN26968324241468-1600&toolbarId=base&affiliateId=1025&Lan=en&utid=802db8600000000000000024810bb64e


*************************

:: "Tracing" keys deleted
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [1641 Bytes] - [26/04/2016 18:41:00]
C:\AdwCleaner\AdwCleaner[C2].txt - [1718 Bytes] - [17/11/2016 17:15:47]
C:\AdwCleaner\AdwCleaner[S1].txt - [1517 Bytes] - [26/04/2016 18:38:20]
C:\AdwCleaner\AdwCleaner[S2].txt - [1999 Bytes] - [17/11/2016 17:15:24]

########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [1937 Bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119672
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Při spuštění PC a modemu nejde automaticky internet

#4 Příspěvek od Rudy »

Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: Při spuštění PC a modemu nejde automaticky internet

#5 Příspěvek od Antusek »

Posílám log. a díky za další rady.
:)

Logfile of random's system information tool 1.14 (written by random/random)
Run by kuku at 2016-11-17 19:03:42
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 303 GB (64%) free of 477 GB
Total RAM: 2558 MB (72% free)
X86

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:05:00, on 17.11.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18523)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\UVC Video Camera\UVCSti.exe
C:\Program Files\UVC Video Camera\EffectDir\UVCTray.exe
C:\Program Files\EMET\EMET_notifier.exe
C:\Aviry\Avast\avastui.exe
C:\Program Files\Real\RealPlayer\Update\realsched.exe
C:\Prográmky\PDF24\pdf24.exe
C:\Programy\Adobe\Adobe Acrobat Distiller 5.0\Distillr\AcroTray.exe
C:\Windows\system32\taskeng.exe
C:\Aviry\CCleaner\CCleaner.exe
C:\Program Files\WinZip\FAHWindow32.exe
C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
C:\Program Files\Secunia\PSI\psi_tray.exe
C:\Program Files\WinZip\WZUpdateNotifier.exe
C:\Program Files\WinZip\WzPreloader.exe
C:\Programy\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Programy\HP\Digital Imaging\bin\hpqbam08.exe
C:\Programy\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\RealNetworks\RealDownloader\downloader2.exe
C:\Aviry\RSIT\RSIT.exe
C:\Program Files\trend micro\kuku_RSIT.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Aviry\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [UVCSti] "C:\Program Files\UVC Video Camera\UVCSti.exe"
O4 - HKLM\..\Run: [RunUVC] "C:\Program Files\UVC Video Camera\EffectDir\UVCtray.exe"
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [EMET Notifier] C:\Program Files\EMET\EMET_notifier.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [Logitech Download Assistant] C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Aviry\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [TkBellExe] "c:\program files\real\realplayer\Update\realsched.exe" -osboot
O4 - HKLM\..\Run: [RealDownloader] C:\Program Files\RealNetworks\RealDownloader\downloader2.exe
O4 - HKLM\..\Run: [PDFPrint] "C:\Prográmky\PDF24\pdf24.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Aviry\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'Default user')
O4 - Global Startup: Acrobat Assistant.lnk = C:\Programy\Adobe\Adobe Acrobat Distiller 5.0\Distillr\AcroTray.exe
O4 - Global Startup: FAH.lnk = C:\Program Files\WinZip\FAHConsole.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: RealPlayer Cloud Service UI.lnk = C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
O4 - Global Startup: RealTimes.lnk = C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
O4 - Global Startup: Secunia PSI Tray.lnk = C:\Program Files\Secunia\PSI\psi_tray.exe
O4 - Global Startup: Update Notifier.lnk = C:\Program Files\WinZip\WZUpdateNotifier.exe
O4 - Global Startup: WinZip Preloader.lnk = C:\Program Files\WinZip\WzPreloader.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\Programy\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\kuku\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programy\MICROS~1\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Active File Monitor V10 (AdobeActiveFileMonitor10.0) - Adobe Systems Incorporated - C:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Aviry\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: RealPlayer Cloud Service - RealNetworks, Inc. - c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) - Unknown owner - C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe
O23 - Service: RealTimes Desktop Service - RealNetworks, Inc. - c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files\Secunia\PSI\PSIA.exe
O23 - Service: Secunia Update Agent - Secunia - C:\Program Files\Secunia\PSI\sua.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies Ltd. - C:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - C:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe

--
End of file - 8100 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\Adobe Acrobat Update Task - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\system32\tasks\Adobe Flash Player Updater - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\AdobeAAMUpdater-1.0-kuku-PC-kuku - C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe -mode=scheduled
C:\Windows\system32\tasks\avast! Emergency Update - C:\Aviry\Avast\AvastEmUpdate.exe
C:\Windows\system32\tasks\CCleanerSkipUAC - "C:\Aviry\CCleaner\CCleaner.exe" $(Arg0)
C:\Windows\system32\tasks\CreateChoiceProcessTask - C:\Windows\System32\browserchoice.exe /launch
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\Opera scheduled Autoupdate 1455997972 - C:\Program Files\Opera\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\RealDownloader Update Check - C:\Program Files\RealNetworks\RealDownloader\downloader2.exe /scheduler
C:\Windows\system32\tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\RealNetworks\RealDownloader\recordingmanager.exe /bgrecordaliveevent
C:\Windows\system32\tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\RealNetworks\RealDownloader\RealUpgrade.exe /logoncheck
C:\Windows\system32\tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\RealNetworks\RealDownloader\RealUpgrade.exe /scheduledcheck
C:\Windows\system32\tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\Real\RealUpgrade\realupgrade.exe /logoncheck
C:\Windows\system32\tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\Real\RealUpgrade\realupgrade.exe /scheduledcheck
C:\Windows\system32\tasks\RealUpgradeLogonTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\Real\RealUpgrade\realupgrade.exe /logoncheck
C:\Windows\system32\tasks\RealUpgradeScheduledTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\Real\RealUpgrade\realupgrade.exe /scheduledcheck
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1458681035 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\{0F61A33A-AEED-4430-8215-74E001C4F893} - C:\Windows\system32\pcalua.exe -a D:\setup.exe -d D:\
C:\Windows\system32\tasks\{1C44E33F-ACCD-4C42-8A3E-099077D0FA71} - C:\Windows\system32\pcalua.exe -a E:\Seagate\Setup.exe -d E:\Seagate
C:\Windows\system32\tasks\{2452B3DF-C652-4751-A6ED-A0D15FE9EFCB} - "c:\program files\opera\launcher.exe" http://www.skype.com/go/downloading?sou ... tError=404
C:\Windows\system32\tasks\{25C0AF3A-1FF3-4936-95A4-A0AF8C71AECE} - C:\Windows\system32\pcalua.exe -a C:\Users\kuku\Downloads\ad401.exe -d C:\Users\kuku\Downloads
C:\Windows\system32\tasks\{341B4EE2-736F-45B0-A747-DF67A4487140} - C:\Windows\system32\pcalua.exe -a C:\Windows\system32\pcwrun.exe -c C:\Prográmky\IsoBuster\IsoBuster.exe
C:\Windows\system32\tasks\{3AD2CBE1-3E15-48C1-A416-296A4EC1985A} - C:\Program Files\Opera\launcher.exe
C:\Windows\system32\tasks\{51FC8D6F-D84D-4783-A1F0-F7F11F9D8E87} - D:\setup.exe
C:\Windows\system32\tasks\{57C3095E-EAA6-4EE7-BAE5-60EF442BB70C} - C:\Windows\system32\pcalua.exe -a C:\Users\kuku\Downloads\ytd-1.49.exe -d C:\Users\kuku\Downloads
C:\Windows\system32\tasks\{66585E38-6DA0-423E-B315-C288E2767964} - C:\Windows\system32\pcalua.exe -a "C:\Programy - instalace\Winzip - instalace\winzip70.exe" -d "C:\Programy - instalace\Winzip - instalace"
C:\Windows\system32\tasks\{665F5562-27A0-41C2-908D-473526D63BA9} - C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe
C:\Windows\system32\tasks\{6E254C5E-7E75-4D5E-936E-6CDC9ED34EA8} - C:\Program Files\Opera\launcher.exe
C:\Windows\system32\tasks\{8ED44FAA-F7CC-4690-824F-78352FE5AEA1} - C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe
C:\Windows\system32\tasks\{A028F8B3-DD34-4EB8-BF9B-40ECC26C7EA5} - C:\Windows\system32\pcalua.exe -a "C:\Programy - instalace\Real Player 10.5 Gold - instalace\RealPlayer10-5GOLD.exe" -d "C:\Programy - instalace\Real Player 10.5 Gold - instalace"
C:\Windows\system32\tasks\{AA5E6737-F985-4005-B6EB-C6EBDB83FAB8} - C:\Program Files\Opera\launcher.exe
C:\Windows\system32\tasks\{B9797AC9-6428-4937-B1AE-217F2F2684C6} - C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe
C:\Windows\system32\tasks\{CCCF75FA-386A-4B06-813D-6347D147FB93} - C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe
C:\Windows\system32\tasks\{ED343DD8-E1C1-46B1-B01C-5FBE96C92AFD} - D:\setup.exe
C:\Windows\system32\tasks\WPD\SqmUpload_S-1-5-21-2566555506-497672473-4049909881-1001 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\Windows\system32\tasks\Microsoft\Windows Defender\MP Scheduled Scan - c:\program files\windows defender\MpCmdRun.exe Scan -ScheduleJob -WinTask -RestrictPrivilegesScan
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask - %SystemRoot%\system32\Wat\WatAdminSvc.exe /run
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - %SystemRoot%\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask"
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask - sc.exe start sppsvc
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem - %SystemRoot%\System32\powercfg.exe -energy -auto
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate_scheduled - %SystemRoot%\ehome\mcupdate -crl -hms -pscn 15
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\StartRecording - %SystemRoot%\ehome\ehrec /StartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs

=========Mozilla firefox=========

ProfilePath - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "keyword.URL" - "https://www.google.com/search"

"wrc@avast.com"=C:\Aviry\Avast\WebRep\FF
"smartwebprinting@hp.com"=C:\Programy\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
"sp@avast.com"=C:\Aviry\Avast\SafePrice\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.207 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_23_0_0_207.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=18.1.4.135]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpplugin;version=18.1.4.135]
"Description"=RealTimes Download Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprpplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\
donottrack@checkpoint.com
{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\searchplugins\
Google.xml

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\addons.json
Firefox Hello Beta (discontinued) - extension - loop@mozilla.org
Video DownloadHelper - extension - {b9db16a4-6edc-47ec-a1f4-b86292ed211d}

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions.json
ZoneAlarm Do Not Track - extension - donottrack@checkpoint.com - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\donottrack@checkpoint.com
HP Smart Web Printing - extension - smartwebprinting@hp.com - C:\Programy\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
HP Smart Web Printing - extension - smartwebprinting@hp.com - C:\Programy\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
WOT - extension - {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
Avast Online Security - extension - wrc@avast.com - C:\Aviry\Avast\WebRep\FF
Avast SafePrice - extension - sp@avast.com - C:\Aviry\Avast\SafePrice\FF
Firefox Hello - extension - loop@mozilla.org - C:\Program Files\Mozilla Firefox\browser\features\loop@mozilla.org.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Video DownloadHelper - extension - {b9db16a4-6edc-47ec-a1f4-b86292ed211d} - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi
Firefox Hotfix - extension - firefox-hotfix@mozilla.org - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\firefox-hotfix@mozilla.org.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\features\{476315b8-c30e-40aa-8cf8-dc3f9303357e}\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\features\{476315b8-c30e-40aa-8cf8-dc3f9303357e}\firefox@getpocket.com.xpi
Firefox Hello - extension - loop@mozilla.org - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\features\{476315b8-c30e-40aa-8cf8-dc3f9303357e}\loop@mozilla.org.xpi
Youtube Unblocker Remediation - extension - malware-remediation@mozilla.org - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\features\{476315b8-c30e-40aa-8cf8-dc3f9303357e}\malware-remediation@mozilla.org.xpi

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\pluginreg.dat
Plugin - Adobe Acrobat - 15.20.20039.7108 - C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
Plugin - Google Update - 1.3.31.5 - C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll
Plugin - RealTimes Download Plugin - 18.1.4.135 - c:\program files\real\realplayer\Netscape6\nprpplugin.dll
Plugin - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) - 18.1.4.135 - c:\program files\real\realplayer\Netscape6\nppl3260.dll
Plugin - Photo Gallery - 16.4.3528.331 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
Plugin - Silverlight Plug-In - 5.1.50901.0 - c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll
Plugin - Shockwave Flash - 23.0.0.207 - C:\Windows\system32\Macromed\Flash\NPSWF32_23_0_0_207.dll

=========Google Chrome=========

C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Store 0.2
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.60
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension ennkphjdgehloodpbhlhldgbnhmacadg Settings 0.2
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension gomekmidlodglbbmalcneegieacbdmki 2 avast! Online Security 9.0.2011.70
Extension idhngdhcfkoamngbedgpaokgjbnpdiji 2 RealDownloader 1.3.2
Extension ilckobikkmajlmhhdenkhonjkoaneclk 2 WinZip Courier 3.5.0
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.38
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nfengeggddojhakldhlpjdlddgkkjkddabc 2 Advanced SystemCare Surfing Protection 1.0.0
Extension nfengeggddojhakldhlpjdlddgkkjkddabcabc 2 Advanced SystemCare Surfing Protection 1.0.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.0
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.0
Extension pafkbggdmjlpgkdkcbjmhmfcdpncadgh Google Now 1.2.0.1
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5416.905.0.6
Homepage: http://search.zonealarm.com/?Source=Hom ... 24810bb64e
default_search_provider.search_url:
C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Preferences
Plugin 11.8.800.97 Shockwave Flash C:\Program Files\Google\Chrome\Application\54.0.2840.99\PepperFlash\pepflashplayer.dll
Plugin Chrome Remote Desktop Viewer internal-remoting-viewer
Plugin Native Client C:\Program Files\Google\Chrome\Application\54.0.2840.99\ppGoogleNaClPluginChrome.dll
Plugin Chrome PDF Viewer C:\Program Files\Google\Chrome\Application\54.0.2840.99\pdf.dll
Plugin 10.1.7.27 Adobe Acrobat C:\Programy\Adobe\Adobe Reader 10.0\Reader\Browser\nppdf32.dll
Plugin 1, 0, 0, 1 Advanced SystemCare 6 Opera Plugin C:\Aviry\Advanced SystemCare 5\BrowerProtect\np_Asc_plugin.dll
Plugin 1, 0, 0, 1 npFFApi C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll
Plugin 1.3.21.153 Google Update C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll
Plugin 16.4.3505.0912_ship.client.main.w5m4 (ship) Photo Gallery C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
Plugin 1.3.2.28 RealNetworks(tm) RealDownloader Chrome Background Extension Plug-In (32-bit) C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll
Plugin 1.3.2.28 RealNetworks(tm) RealDownloader HTML5VideoShim Plug-In (32-bit) C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll
Plugin 1.3.2.28 RealNetworks(tm) RealDownloader PepperFlashVideoShim Plug-In (32-bit) C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll
Plugin 1.3.2.28 RealDownloader Plugin C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll
Plugin 11,8,800,94 Shockwave Flash C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll
Plugin 5.1.20513.0 Silverlight Plug-In c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll
Plugin 16.0.2.32 RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) c:\program files\real\realplayer\Netscape6\nppl3260.dll
Plugin 16.0.2.32 RealPlayer Download Plugin c:\program files\real\realplayer\Netscape6\nprpplugin.dll
Homepage:
default_search_provider.search_url:

[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki]
"Path"=C:\Aviry\Avast\WebRep\Chrome\aswWebRepChrome.crx

[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\ilckobikkmajlmhhdenkhonjkoaneclk]
"Path"=C:\Program Files\WinZip Courier\wzwmcgc.crx


======Registry dump======


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}]
"URL"=http://www.bing.com/search?q={searchTer ... DF&PC=AV01

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealNetworks Download and Record Plugin for Internet Explorer - C:\Program Files\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2016-05-13 521608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Aviry\Avast\aswWebRepIE.dll [2016-05-06 679680]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"UVCSti"=C:\Program Files\UVC Video Camera\UVCSti.exe [2010-08-23 245760]
"RunUVC"=C:\Program Files\UVC Video Camera\EffectDir\UVCtray.exe [2010-08-23 7548928]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-07-20 505720]
"EMET Notifier"=C:\Program Files\EMET\EMET_notifier.exe [2012-05-09 152152]
"hpqSRMon"=C:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
"LifeCam"=C:\Program Files\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1425208]
"AvastUI.exe"=C:\Aviry\Avast\AvastUI.exe [2016-06-27 7408312]
"ZoneAlarm"=C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe [2016-03-24 134480]
"TkBellExe"=c:\program files\real\realplayer\Update\realsched.exe [2016-06-26 293768]
"RealDownloader"=C:\Program Files\RealNetworks\RealDownloader\downloader2.exe [2016-07-05 714992]
"PDFPrint"=C:\Prográmky\PDF24\pdf24.exe [2016-07-05 210432]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Aviry\CCleaner\CCleaner.exe [2016-11-15 7045848]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acrobat Assistant.lnk - C:\Programy\Adobe\Adobe Acrobat Distiller 5.0\Distillr\AcroTray.exe
FAH.lnk - C:\Program Files\WinZip\FAHConsole.exe
HP Digital Imaging Monitor.lnk - C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
RealPlayer Cloud Service UI.lnk - C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
RealTimes.lnk - C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
Secunia PSI Tray.lnk - C:\Program Files\Secunia\PSI\psi_tray.exe
Update Notifier.lnk - C:\Program Files\WinZip\WZUpdateNotifier.exe
WinZip Preloader.lnk - C:\Program Files\WinZip\WzPreloader.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{73FA19D0-2D75-11D2-995D-00C04F98BBC9}]
"StubPath"=
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath"="C:\Program Files\Google\Chrome\Application\54.0.2840.99\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{A6EADE66-0000-0000-484E-7E8A45000000}]
"StubPath"="C:\Windows\system32\Rundll32.exe" "C:\Program Files\Adobe\Acrobat Reader DC\Esl\AiodLite.dll",CreateReaderUserSettings

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codecp.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"wave3"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=wdmaud.drv
"wave5"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux3"=wdmaud.drv
"wave6"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux4"=wdmaud.drv
"wave7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave4"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-11-17 12:46:11 ----D---- C:\rsit
2016-11-14 08:20:16 ----A---- C:\Windows\system32\mshtml.dll
2016-11-14 08:20:15 ----A---- C:\Windows\system32\ieframe.dll
2016-11-14 08:20:14 ----A---- C:\Windows\system32\wininet.dll
2016-11-14 08:20:14 ----A---- C:\Windows\system32\win32k.sys
2016-11-14 08:20:14 ----A---- C:\Windows\system32\urlmon.dll
2016-11-14 08:20:14 ----A---- C:\Windows\system32\jscript9.dll
2016-11-14 08:20:14 ----A---- C:\Windows\system32\iertutil.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\UIAnimation.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-11-14 08:20:13 ----A---- C:\Windows\system32\ntdll.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\MSVidCtl.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\msv1_0.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\lsasrv.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\input.dll
2016-11-14 08:20:12 ----A---- C:\Windows\system32\win32spl.dll
2016-11-14 08:20:12 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-11-14 08:20:11 ----A---- C:\Windows\system32\atmfd.dll
2016-11-14 08:20:10 ----A---- C:\Windows\system32\ie4uinit.exe
2016-11-14 08:20:10 ----A---- C:\Windows\system32\clfs.sys
2016-11-14 08:20:09 ----A---- C:\Windows\system32\UtcResources.dll
2016-11-14 08:20:09 ----A---- C:\Windows\system32\olepro32.dll
2016-11-14 08:20:09 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-11-14 08:20:09 ----A---- C:\Windows\system32\inetcomm.dll
2016-11-14 08:20:09 ----A---- C:\Windows\system32\IMJP10K.DLL
2016-11-14 08:20:09 ----A---- C:\Windows\system32\iedkcs32.dll
2016-11-14 08:20:09 ----A---- C:\Windows\system32\drivers\bowser.sys
2016-11-14 08:20:08 ----A---- C:\Windows\system32\webcheck.dll
2016-11-14 08:20:08 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-11-14 08:20:08 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-11-14 08:20:08 ----A---- C:\Windows\system32\asycfilt.dll
2016-11-14 08:20:07 ----A---- C:\Windows\system32\oleaut32.dll
2016-11-14 08:20:07 ----A---- C:\Windows\system32\msfeeds.dll
2016-11-14 08:20:07 ----A---- C:\Windows\system32\msctf.dll
2016-11-14 08:20:07 ----A---- C:\Windows\system32\dxtrans.dll
2016-11-14 08:20:06 ----A---- C:\Windows\system32\msrating.dll
2016-11-14 08:20:06 ----A---- C:\Windows\system32\mshtmled.dll
2016-11-14 08:20:06 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-11-14 08:20:06 ----A---- C:\Windows\system32\dxtmsft.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\vbscript.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\occache.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\jsproxy.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\jscript9diag.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\jscript.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\inseng.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\INETRES.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieUnatt.exe
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieui.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\iesetup.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\iernonce.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieapfltr.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-11-14 08:20:04 ----A---- C:\Windows\system32\smss.exe
2016-11-14 08:20:04 ----A---- C:\Windows\system32\rpcrt4.dll
2016-11-14 08:20:04 ----A---- C:\Windows\system32\kerberos.dll
2016-11-14 08:20:04 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-11-14 08:20:04 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-11-14 08:20:03 ----A---- C:\Windows\system32\wdigest.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\TSpkg.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\sspisrv.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\sspicli.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\srcore.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\srclient.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\schannel.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\secur32.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\rstrui.exe
2016-11-14 08:20:03 ----A---- C:\Windows\system32\rpchttp.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\ncrypt.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\lsass.exe
2016-11-14 08:20:03 ----A---- C:\Windows\system32\lpk.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\fontsub.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-11-14 08:20:03 ----A---- C:\Windows\system32\drivers\appid.sys
2016-11-14 08:20:03 ----A---- C:\Windows\system32\dciman32.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\csrsrv.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\cryptbase.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\credssp.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\atmlib.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\appidapi.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\apisetschema.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\advapi32.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\tzres.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\msobjs.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\msaudite.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\auditpol.exe
2016-11-14 08:20:02 ----A---- C:\Windows\system32\appidsvc.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-11-14 08:20:02 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-11-14 08:20:02 ----A---- C:\Windows\system32\adtschema.dll
2016-11-14 08:20:01 ----A---- C:\Windows\system32\diagtrack.dll

======List of files/folders modified in the last 1 month======

2016-11-17 19:04:54 ----D---- C:\Program Files\trend micro
2016-11-17 19:03:52 ----D---- C:\Windows\Temp
2016-11-17 17:22:24 ----D---- C:\Program Files\Opera
2016-11-17 17:19:51 ----D---- C:\Windows\system32\NDF
2016-11-17 17:15:47 ----D---- C:\AdwCleaner
2016-11-17 17:14:01 ----D---- C:\Windows\system32\config
2016-11-17 13:07:42 ----D---- C:\Windows\Prefetch
2016-11-17 12:45:22 ----D---- C:\Aviry
2016-11-17 12:44:40 ----HD---- C:\ProgramData
2016-11-17 12:25:23 ----D---- C:\Windows\inf
2016-11-17 11:53:37 ----D---- C:\Windows\system32\drivers
2016-11-17 07:48:37 ----D---- C:\Windows
2016-11-16 16:11:30 ----D---- C:\Windows\rescache
2016-11-16 08:21:11 ----D---- C:\Windows\System32
2016-11-16 08:21:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-11-16 08:14:59 ----D---- C:\Windows\winsxs
2016-11-16 08:11:16 ----D---- C:\Program Files\Internet Explorer
2016-11-16 08:11:15 ----D---- C:\Windows\system32\migration
2016-11-16 08:11:15 ----D---- C:\Windows\system32\cs-CZ
2016-11-16 08:11:14 ----D---- C:\Windows\system32\en-US
2016-11-15 22:52:06 ----SHD---- C:\System Volume Information
2016-11-14 20:42:02 ----D---- C:\Články 2016
2016-11-13 16:23:29 ----D---- C:\Windows\system32\DriverStore
2016-11-12 09:23:59 ----D---- C:\Windows\system32\catroot2
2016-11-11 21:56:09 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-11-11 21:56:05 ----D---- C:\Windows\system32\Macromed
2016-11-11 14:17:03 ----D---- C:\Došlé dopisy
2016-11-10 22:25:57 ----D---- C:\Windows\debug
2016-11-09 22:56:57 ----SHD---- C:\Windows\Installer
2016-11-09 22:56:57 ----SHD---- C:\Config.Msi
2016-11-09 22:51:57 ----D---- C:\Windows\system32\MRT
2016-11-09 22:51:47 ----AC---- C:\Windows\system32\MRT.exe
2016-11-09 17:40:42 ----D---- C:\Windows\system32\Tasks
2016-11-07 22:09:33 ----D---- C:\Stati 2016
2016-11-05 11:51:51 ----D---- C:\Users\kuku\AppData\Roaming\Skype
2016-11-04 21:22:01 ----D---- C:\Album fotografií
2016-11-02 11:18:07 ----D---- C:\články
2016-10-28 18:59:27 ----D---- C:\WWW moje
2016-10-26 16:29:08 ----N---- C:\Windows\system32\MpSigStub.exe
2016-10-21 17:05:33 ----D---- C:\ProgramData\Skype
2016-10-20 16:37:08 ----D---- C:\Windows\system32\FxsTmp

File C:\Windows\system32\winlogon.exe is digitally signed
File C:\Windows\system32\wininit.exe is digitally signed
File C:\Windows\explorer.exe is digitally signed
File C:\Windows\system32\svchost.exe is digitally signed
File C:\Windows\system32\services.exe is digitally signed
File C:\Windows\system32\User32.dll is digitally signed
File C:\Windows\system32\userinit.exe is digitally signed
File C:\Windows\system32\rpcss.dll is digitally signed
File C:\Windows\system32\Drivers\volsnap.sys is digitally signed

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-05-06 58776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-08-04 224616]
R0 KL1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2014-03-19 135776]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-03-19 45648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-05-06 35096]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-05-06 91232]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-05-06 815792]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-05-06 449640]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2014-03-19 488032]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2016-10-11 367072]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-05-06 32792]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-05-06 91168]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-05-06 124808]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-06-19 3240400]
R3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2010-12-13 30576]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2010-03-22 18944]
R3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2011-12-16 15544]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-05-25 305488]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 Cam3820;Cam3820 PC Camera Driver; C:\Windows\System32\Drivers\cam3820a.sys [2010-08-25 369024]
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-07-28 49088]
S3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-13 347264]
S3 NVNET;NVIDIA nForce Ethernet Driver; C:\Windows\system32\DRIVERS\nvmf6232.sys [2010-08-12 298216]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-12-09 14848]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 35968]
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Aviry\Avast\ng\vbox\VBoxAswDrv.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10; C:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-09-14 169624]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-10-21 82128]
R2 avast! Antivirus;Avast Antivirus; C:\Aviry\Avast\AvastSvc.exe [2016-05-06 243296]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; %SystemRoot%\System32\svchost.exe -k utcsvc;"ServiceDll"=%SystemRoot%\system32\diagtrack.dll
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; %SystemRoot%\system32\svchost.exe -k hpdevmgmt;"ServiceDll"=C:\Programy\HP\Digital Imaging\bin\hpqddsvc.dll
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-12-13 135536]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-02-10 634144]
R2 RealPlayerUpdateSvc;RealPlayer Update Service; C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe [2016-05-13 32544]
R2 Secunia PSI Agent;Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [2012-09-24 1328736]
R2 Secunia Update Agent;Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [2012-09-24 656480]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
R2 ZAPrivacyService;ZoneAlarm Privacy Service; C:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [2015-10-19 96272]
R3 hpqcxs08;hpqcxs08; %SystemRoot%\system32\svchost.exe -k hpdevmgmt;"ServiceDll"=C:\Programy\HP\Digital Imaging\bin\hpqcxs08.dll
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 Net Driver HPZ12;Net Driver HPZ12; %SystemRoot%\System32\svchost.exe -k HPZ12;"ServiceDll"=C:\Windows\system32\HPZinw12.dll
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-10 1266464]
S2 Pml Driver HPZ12;Pml Driver HPZ12; %SystemRoot%\System32\svchost.exe -k HPZ12;"ServiceDll"=C:\Windows\system32\HPZipm12.dll
S2 RealPlayer Cloud Service;RealPlayer Cloud Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [2016-06-26 1095440]
S2 RealTimes Desktop Service;RealTimes Desktop Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [2016-06-26 1095440]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2016-09-20 324224]
S2 vsmon;TrueVector Internet Monitor; C:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe [2016-03-24 3746584]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-11 270528]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2014-03-31 1512640]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-10-22 102912]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2016-05-31 146888]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-05-04 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-11-05 45744]
S4 ATMsrvc;ATM Service; C:\Windows\System32\ATMsrvc.exe [2000-05-24 15360]
S4 AvastVBoxSvc;AvastVBox COM Service; C:\Aviry\Avast\ng\vbox\AvastVBoxSVC.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119672
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Při spuštění PC a modemu nejde automaticky internet

#6 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

:reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}]
"URL"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}]
"URL"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: Při spuštění PC a modemu nejde automaticky internet

#7 Příspěvek od Antusek »

Stále není funkční automatické připojení k netu, protože pravděpodobně došlo k potížím s ovladačem adaptéru Připojení k místní síti 2. Systému Windows se nepodařilo automaticky vytvořit vazbu zásobníku protokolu IP se síťovým adaptérem. Jak tuto vazbu vytvořím?
Díky za další rady a postup.
:)

Vkládám log z RSIT:

Logfile of random's system information tool 1.14 (written by random/random)
Run by kuku at 2016-11-17 22:52:13
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 303 GB (64%) free of 477 GB
Total RAM: 2558 MB (54% free)
X86

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:53:10, on 17.11.2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18523)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\notepad.exe
C:\Program Files\UVC Video Camera\UVCSti.exe
C:\Program Files\UVC Video Camera\EffectDir\UVCTray.exe
C:\Program Files\EMET\EMET_notifier.exe
C:\Aviry\Avast\avastui.exe
C:\Program Files\Real\RealPlayer\Update\realsched.exe
C:\Program Files\RealNetworks\RealDownloader\downloader2.exe
C:\Prográmky\PDF24\pdf24.exe
C:\Programy\Adobe\Adobe Acrobat Distiller 5.0\Distillr\AcroTray.exe
C:\Windows\system32\taskeng.exe
C:\Aviry\CCleaner\CCleaner.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\WinZip\FAHWindow32.exe
C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
C:\Program Files\Secunia\PSI\psi_tray.exe
C:\Program Files\WinZip\WZUpdateNotifier.exe
C:\Program Files\WinZip\WzPreloader.exe
C:\Programy\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Programy\HP\Digital Imaging\bin\hpqbam08.exe
C:\Programy\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Programy\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Aviry\RSIT\RSIT.exe
C:\Program Files\trend micro\kuku_RSIT.exe

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Aviry\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [UVCSti] "C:\Program Files\UVC Video Camera\UVCSti.exe"
O4 - HKLM\..\Run: [RunUVC] "C:\Program Files\UVC Video Camera\EffectDir\UVCtray.exe"
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [EMET Notifier] C:\Program Files\EMET\EMET_notifier.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [Logitech Download Assistant] C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Aviry\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [ZoneAlarm] "C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [TkBellExe] "c:\program files\real\realplayer\Update\realsched.exe" -osboot
O4 - HKLM\..\Run: [RealDownloader] C:\Program Files\RealNetworks\RealDownloader\downloader2.exe
O4 - HKLM\..\Run: [PDFPrint] "C:\Prográmky\PDF24\pdf24.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Aviry\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [ZoneAlarm Windows 10 Upgrader] "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay (User 'Default user')
O4 - Global Startup: Acrobat Assistant.lnk = C:\Programy\Adobe\Adobe Acrobat Distiller 5.0\Distillr\AcroTray.exe
O4 - Global Startup: FAH.lnk = C:\Program Files\WinZip\FAHConsole.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: RealPlayer Cloud Service UI.lnk = C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
O4 - Global Startup: RealTimes.lnk = C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
O4 - Global Startup: Secunia PSI Tray.lnk = C:\Program Files\Secunia\PSI\psi_tray.exe
O4 - Global Startup: Update Notifier.lnk = C:\Program Files\WinZip\WZUpdateNotifier.exe
O4 - Global Startup: WinZip Preloader.lnk = C:\Program Files\WinZip\WzPreloader.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\Programy\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\kuku\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programy\MICROS~1\OFFICE11\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Active File Monitor V10 (AdobeActiveFileMonitor10.0) - Adobe Systems Incorporated - C:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Aviry\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: RealPlayer Cloud Service - RealNetworks, Inc. - c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) - Unknown owner - C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe
O23 - Service: RealTimes Desktop Service - RealNetworks, Inc. - c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe
O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files\Secunia\PSI\PSIA.exe
O23 - Service: Secunia Update Agent - Secunia - C:\Program Files\Secunia\PSI\sua.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies Ltd. - C:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: ZoneAlarm Privacy Service (ZAPrivacyService) - Check Point Software Technologies, Ltd. - C:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe

--
End of file - 8221 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\Adobe Acrobat Update Task - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\system32\tasks\Adobe Flash Player Updater - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\system32\tasks\AdobeAAMUpdater-1.0-kuku-PC-kuku - C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe -mode=scheduled
C:\Windows\system32\tasks\avast! Emergency Update - C:\Aviry\Avast\AvastEmUpdate.exe
C:\Windows\system32\tasks\CCleanerSkipUAC - "C:\Aviry\CCleaner\CCleaner.exe" $(Arg0)
C:\Windows\system32\tasks\CreateChoiceProcessTask - C:\Windows\System32\browserchoice.exe /launch
C:\Windows\system32\tasks\GoogleUpdateTaskMachineCore - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\system32\tasks\GoogleUpdateTaskMachineUA - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\system32\tasks\Opera scheduled Autoupdate 1455997972 - C:\Program Files\Opera\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\RealDownloader Update Check - C:\Program Files\RealNetworks\RealDownloader\downloader2.exe /scheduler
C:\Windows\system32\tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\RealNetworks\RealDownloader\recordingmanager.exe /bgrecordaliveevent
C:\Windows\system32\tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\RealNetworks\RealDownloader\RealUpgrade.exe /logoncheck
C:\Windows\system32\tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\RealNetworks\RealDownloader\RealUpgrade.exe /scheduledcheck
C:\Windows\system32\tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\Real\RealUpgrade\realupgrade.exe /logoncheck
C:\Windows\system32\tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\Real\RealUpgrade\realupgrade.exe /scheduledcheck
C:\Windows\system32\tasks\RealUpgradeLogonTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\Real\RealUpgrade\realupgrade.exe /logoncheck
C:\Windows\system32\tasks\RealUpgradeScheduledTaskS-1-5-21-2566555506-497672473-4049909881-1001 - C:\Program Files\Real\RealUpgrade\realupgrade.exe /scheduledcheck
C:\Windows\system32\tasks\SafeZone scheduled Autoupdate 1458681035 - C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
C:\Windows\system32\tasks\{0F61A33A-AEED-4430-8215-74E001C4F893} - C:\Windows\system32\pcalua.exe -a D:\setup.exe -d D:\
C:\Windows\system32\tasks\{1C44E33F-ACCD-4C42-8A3E-099077D0FA71} - C:\Windows\system32\pcalua.exe -a E:\Seagate\Setup.exe -d E:\Seagate
C:\Windows\system32\tasks\{2452B3DF-C652-4751-A6ED-A0D15FE9EFCB} - "c:\program files\opera\launcher.exe" http://www.skype.com/go/downloading?sou ... tError=404
C:\Windows\system32\tasks\{25C0AF3A-1FF3-4936-95A4-A0AF8C71AECE} - C:\Windows\system32\pcalua.exe -a C:\Users\kuku\Downloads\ad401.exe -d C:\Users\kuku\Downloads
C:\Windows\system32\tasks\{341B4EE2-736F-45B0-A747-DF67A4487140} - C:\Windows\system32\pcalua.exe -a C:\Windows\system32\pcwrun.exe -c C:\Prográmky\IsoBuster\IsoBuster.exe
C:\Windows\system32\tasks\{3AD2CBE1-3E15-48C1-A416-296A4EC1985A} - C:\Program Files\Opera\launcher.exe
C:\Windows\system32\tasks\{51FC8D6F-D84D-4783-A1F0-F7F11F9D8E87} - D:\setup.exe
C:\Windows\system32\tasks\{57C3095E-EAA6-4EE7-BAE5-60EF442BB70C} - C:\Windows\system32\pcalua.exe -a C:\Users\kuku\Downloads\ytd-1.49.exe -d C:\Users\kuku\Downloads
C:\Windows\system32\tasks\{66585E38-6DA0-423E-B315-C288E2767964} - C:\Windows\system32\pcalua.exe -a "C:\Programy - instalace\Winzip - instalace\winzip70.exe" -d "C:\Programy - instalace\Winzip - instalace"
C:\Windows\system32\tasks\{665F5562-27A0-41C2-908D-473526D63BA9} - C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe
C:\Windows\system32\tasks\{6E254C5E-7E75-4D5E-936E-6CDC9ED34EA8} - C:\Program Files\Opera\launcher.exe
C:\Windows\system32\tasks\{8ED44FAA-F7CC-4690-824F-78352FE5AEA1} - C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe
C:\Windows\system32\tasks\{A028F8B3-DD34-4EB8-BF9B-40ECC26C7EA5} - C:\Windows\system32\pcalua.exe -a "C:\Programy - instalace\Real Player 10.5 Gold - instalace\RealPlayer10-5GOLD.exe" -d "C:\Programy - instalace\Real Player 10.5 Gold - instalace"
C:\Windows\system32\tasks\{AA5E6737-F985-4005-B6EB-C6EBDB83FAB8} - C:\Program Files\Opera\launcher.exe
C:\Windows\system32\tasks\{B9797AC9-6428-4937-B1AE-217F2F2684C6} - C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe
C:\Windows\system32\tasks\{CCCF75FA-386A-4B06-813D-6347D147FB93} - C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe
C:\Windows\system32\tasks\{ED343DD8-E1C1-46B1-B01C-5FBE96C92AFD} - D:\setup.exe
C:\Windows\system32\tasks\WPD\SqmUpload_S-1-5-21-2566555506-497672473-4049909881-1001 - %windir%\system32\rundll32.exe portabledeviceapi.dll,#1
C:\Windows\system32\tasks\Microsoft\Windows Defender\MP Scheduled Scan - c:\program files\windows defender\MpCmdRun.exe Scan -ScheduleJob -WinTask -RestrictPrivilegesScan
C:\Windows\system32\tasks\Microsoft\Windows\WindowsBackup\ConfigNotification - %systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
C:\Windows\system32\tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary - "%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
C:\Windows\system32\tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange - %windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange
C:\Windows\system32\tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting - %windir%\system32\wermgr.exe -queuereporting
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask - %SystemRoot%\system32\Wat\WatAdminSvc.exe /run
C:\Windows\system32\tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline - %SystemRoot%\system32\schtasks.exe /run /I /TN "\Microsoft\Windows\Windows Activation Technologies\ValidationTask"
C:\Windows\system32\tasks\Microsoft\Windows\UPnP\UPnPHostConfig - sc.exe config upnphost start= auto
C:\Windows\system32\tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime - %windir%\system32\sc.exe start w32time task_started
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 - %windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
C:\Windows\system32\tasks\Microsoft\Windows\SystemRestore\SR - %windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
C:\Windows\system32\tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask - sc.exe start sppsvc
C:\Windows\system32\tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask - %windir%\system32\RAServer.exe /offerraupdate
C:\Windows\system32\tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem - %SystemRoot%\System32\powercfg.exe -energy -auto
C:\Windows\system32\tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo - %windir%\system32\gatherNetworkInfo.vbs
C:\Windows\system32\tasks\Microsoft\Windows\MUI\LPRemove - %windir%\system32\lpremove.exe
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService - %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks - %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ehDRMInit - %SystemRoot%\ehome\ehPrivJob.exe /DRMInit
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\InstallPlayReady - %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate - %SystemRoot%\ehome\mcupdate $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\mcupdate_scheduled - %SystemRoot%\ehome\mcupdate -crl -hms -pscn 15
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURActivate - %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\OCURDiscovery - %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscovery - %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 - %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 - %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PeriodicScanRetry - %windir%\ehome\MCUpdate.exe -pscn 0
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\PvrScheduleTask - %SystemRoot%\ehome\mcupdate.exe -PvrSchedule
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RecordingRestart - %SystemRoot%\ehome\ehrec /RestartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\RegisterSearch - %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\ReindexSearchRoot - %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask - %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\StartRecording - %SystemRoot%\ehome\ehrec /StartRecording
C:\Windows\system32\tasks\Microsoft\Windows\Media Center\UpdateRecordPath - %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Location\Notifications - %windir%\System32\LocationNotifications.exe
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector - %windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART
C:\Windows\system32\tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver - %windir%\system32\DFDWiz.exe
C:\Windows\system32\tasks\Microsoft\Windows\Defrag\ScheduledDefrag - %windir%\system32\defrag.exe -c
C:\Windows\system32\tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator - %SystemRoot%\System32\wsqmcons.exe
C:\Windows\system32\tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask - BthUdTask.exe $(Arg0)
C:\Windows\system32\tasks\Microsoft\Windows\Autochk\Proxy - %windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\AitAgent - aitagent
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser - %windir%\system32\compattel\DiagTrackRunner.exe /UploadEtlFilesOnly
C:\Windows\system32\tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater - %windir%\system32\compattelrunner.exe -maintenance
C:\Windows\system32\tasks\Microsoft\Windows\AppID\PolicyConverter - %windir%\system32\appidpolicyconverter.exe
C:\Windows\system32\tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck - %windir%\system32\appidcertstorecheck.exe
C:\Windows\system32\tasks\AVAST Software\Avast settings backup - C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs

=========Mozilla firefox=========

ProfilePath - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "keyword.URL" - "https://www.google.com/search"

"wrc@avast.com"=C:\Aviry\Avast\WebRep\FF
"smartwebprinting@hp.com"=C:\Programy\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"=C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
"sp@avast.com"=C:\Aviry\Avast\SafePrice\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 23.0.0.207 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_23_0_0_207.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=18.1.4.135]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=c:\program files\real\realplayer\Netscape6\nppl3260.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpplugin;version=18.1.4.135]
"Description"=RealTimes Download Plugin
"Path"=c:\program files\real\realplayer\Netscape6\nprpplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\
donottrack@checkpoint.com
{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\searchplugins\
Google.xml

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\addons.json
Firefox Hello Beta (discontinued) - extension - loop@mozilla.org
Video DownloadHelper - extension - {b9db16a4-6edc-47ec-a1f4-b86292ed211d}

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions.json
ZoneAlarm Do Not Track - extension - donottrack@checkpoint.com - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\donottrack@checkpoint.com
HP Smart Web Printing - extension - smartwebprinting@hp.com - C:\Programy\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
HP Smart Web Printing - extension - smartwebprinting@hp.com - C:\Programy\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
WOT - extension - {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
Avast Online Security - extension - wrc@avast.com - C:\Aviry\Avast\WebRep\FF
Avast SafePrice - extension - sp@avast.com - C:\Aviry\Avast\SafePrice\FF
Firefox Hello - extension - loop@mozilla.org - C:\Program Files\Mozilla Firefox\browser\features\loop@mozilla.org.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Program Files\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Program Files\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
Default - theme - {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
Video DownloadHelper - extension - {b9db16a4-6edc-47ec-a1f4-b86292ed211d} - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi
Firefox Hotfix - extension - firefox-hotfix@mozilla.org - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\extensions\firefox-hotfix@mozilla.org.xpi
Multi-process staged rollout - extension - e10srollout@mozilla.org - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\features\{476315b8-c30e-40aa-8cf8-dc3f9303357e}\e10srollout@mozilla.org.xpi
Pocket - extension - firefox@getpocket.com - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\features\{476315b8-c30e-40aa-8cf8-dc3f9303357e}\firefox@getpocket.com.xpi
Firefox Hello - extension - loop@mozilla.org - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\features\{476315b8-c30e-40aa-8cf8-dc3f9303357e}\loop@mozilla.org.xpi
Youtube Unblocker Remediation - extension - malware-remediation@mozilla.org - C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\features\{476315b8-c30e-40aa-8cf8-dc3f9303357e}\malware-remediation@mozilla.org.xpi

C:\Users\kuku\AppData\Roaming\Mozilla\Firefox\Profiles\9x5re7vu.default\pluginreg.dat
Plugin - Adobe Acrobat - 15.20.20039.7108 - C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
Plugin - Google Update - 1.3.31.5 - C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll
Plugin - RealTimes Download Plugin - 18.1.4.135 - c:\program files\real\realplayer\Netscape6\nprpplugin.dll
Plugin - RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) - 18.1.4.135 - c:\program files\real\realplayer\Netscape6\nppl3260.dll
Plugin - Photo Gallery - 16.4.3528.331 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
Plugin - Silverlight Plug-In - 5.1.50901.0 - c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll
Plugin - Shockwave Flash - 23.0.0.207 - C:\Windows\system32\Macromed\Flash\NPSWF32_23_0_0_207.dll

=========Google Chrome=========

C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences
Extension ahfgeienlihckogmohjhadlkjgocpleb 1 Store 0.2
Extension bepbmhgboaologfdajaanbcjmnhjmhfn 0
Extension blpcfgokakmgnkcojhhkbfbldkacnbeo 1 YouTube 4.2.8
Extension coobgpohoikkiipiblmjeljniedjpjpf 1 Vyhledávání Google 0.0.0.60
Extension eemcgdkfndhakfknompkggombfjjjeno 1 Bookmark Manager 0.1
Extension ennkphjdgehloodpbhlhldgbnhmacadg Settings 0.2
Extension gfdkimpbcpahaombhbimeihdjnejgicl 1 Feedback 1.0
Extension gomekmidlodglbbmalcneegieacbdmki 2 avast! Online Security 9.0.2011.70
Extension idhngdhcfkoamngbedgpaokgjbnpdiji 2 RealDownloader 1.3.2
Extension ilckobikkmajlmhhdenkhonjkoaneclk 2 WinZip Courier 3.5.0
Extension kmendfapggjehodndflmmgagdbamhnfd 1 CryptoTokenExtension 0.9.38
Extension mfehgcgbbipciphmccgaenjidiccnmng 1 Cloud Print 0.1
Extension mgndgikekgjfcpckkfioiadnlibdjbkf Chrome 0.1
Extension mhjfbmdgcfjbbpaeojofohoefgiehjai 1 Chrome PDF Viewer 1
Extension neajdppkdcdipfabeoofebfddakdcjhd 1 Google Network Speech 1.0
Extension nfengeggddojhakldhlpjdlddgkkjkddabc 2 Advanced SystemCare Surfing Protection 1.0.0
Extension nfengeggddojhakldhlpjdlddgkkjkddabcabc 2 Advanced SystemCare Surfing Protection 1.0.0
Extension nkeimhogjdpnpccoofpliimaahmaaome 1 Google Hangouts 1.3.0
Extension nmmhkkegccagdldgiimedpiccmgmieda 1 Platby Internetového obchodu Chrome 1.0.0.0
Extension pafkbggdmjlpgkdkcbjmhmfcdpncadgh Google Now 1.2.0.1
Extension pjkljhegncpnkpknbcohdijeoejaedia 1 Gmail 8.1
Extension pkedcjkdefgpdelpbcmbmeomcjbeemfm 1 Chrome Media Router 5416.905.0.6
Homepage: http://search.zonealarm.com/?Source=Hom ... 24810bb64e
default_search_provider.search_url:
C:\Users\kuku\AppData\Local\Google\Chrome\User Data\Default\Preferences
Plugin 11.8.800.97 Shockwave Flash C:\Program Files\Google\Chrome\Application\54.0.2840.99\PepperFlash\pepflashplayer.dll
Plugin Chrome Remote Desktop Viewer internal-remoting-viewer
Plugin Native Client C:\Program Files\Google\Chrome\Application\54.0.2840.99\ppGoogleNaClPluginChrome.dll
Plugin Chrome PDF Viewer C:\Program Files\Google\Chrome\Application\54.0.2840.99\pdf.dll
Plugin 10.1.7.27 Adobe Acrobat C:\Programy\Adobe\Adobe Reader 10.0\Reader\Browser\nppdf32.dll
Plugin 1, 0, 0, 1 Advanced SystemCare 6 Opera Plugin C:\Aviry\Advanced SystemCare 5\BrowerProtect\np_Asc_plugin.dll
Plugin 1, 0, 0, 1 npFFApi C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll
Plugin 1.3.21.153 Google Update C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll
Plugin 16.4.3505.0912_ship.client.main.w5m4 (ship) Photo Gallery C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
Plugin 1.3.2.28 RealNetworks(tm) RealDownloader Chrome Background Extension Plug-In (32-bit) C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll
Plugin 1.3.2.28 RealNetworks(tm) RealDownloader HTML5VideoShim Plug-In (32-bit) C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll
Plugin 1.3.2.28 RealNetworks(tm) RealDownloader PepperFlashVideoShim Plug-In (32-bit) C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll
Plugin 1.3.2.28 RealDownloader Plugin C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll
Plugin 11,8,800,94 Shockwave Flash C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll
Plugin 5.1.20513.0 Silverlight Plug-In c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll
Plugin 16.0.2.32 RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) c:\program files\real\realplayer\Netscape6\nppl3260.dll
Plugin 16.0.2.32 RealPlayer Download Plugin c:\program files\real\realplayer\Netscape6\nprpplugin.dll
Homepage:
default_search_provider.search_url:

[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki]
"Path"=C:\Aviry\Avast\WebRep\Chrome\aswWebRepChrome.crx

[HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\ilckobikkmajlmhhdenkhonjkoaneclk]
"Path"=C:\Program Files\WinZip Courier\wzwmcgc.crx


======Registry dump======


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Aviry\Avast\aswWebRepIE.dll [2016-05-06 679680]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"UVCSti"=C:\Program Files\UVC Video Camera\UVCSti.exe [2010-08-23 245760]
"RunUVC"=C:\Program Files\UVC Video Camera\EffectDir\UVCtray.exe [2010-08-23 7548928]
"Apoint"=C:\Program Files\DellTPad\Apoint.exe [2011-07-20 505720]
"EMET Notifier"=C:\Program Files\EMET\EMET_notifier.exe [2012-05-09 152152]
"hpqSRMon"=C:\Programy\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
"LifeCam"=C:\Program Files\Microsoft LifeCam\LifeExp.exe [2010-12-13 135536]
"Logitech Download Assistant"=C:\Windows\System32\LogiLDA.dll [2012-09-20 1425208]
"AvastUI.exe"=C:\Aviry\Avast\AvastUI.exe [2016-06-27 7408312]
"ZoneAlarm"=C:\Aviry\CheckPoint\ZoneAlarm\zatray.exe [2016-03-24 134480]
"TkBellExe"=c:\program files\real\realplayer\Update\realsched.exe [2016-06-26 293768]
"RealDownloader"=C:\Program Files\RealNetworks\RealDownloader\downloader2.exe [2016-07-05 714992]
"PDFPrint"=C:\Prográmky\PDF24\pdf24.exe [2016-07-05 210432]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Aviry\CCleaner\CCleaner.exe [2016-11-15 7045848]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Acrobat Assistant.lnk - C:\Programy\Adobe\Adobe Acrobat Distiller 5.0\Distillr\AcroTray.exe
FAH.lnk - C:\Program Files\WinZip\FAHConsole.exe
HP Digital Imaging Monitor.lnk - C:\Programy\HP\Digital Imaging\bin\hpqtra08.exe
RealPlayer Cloud Service UI.lnk - C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
RealTimes.lnk - C:\Program Files\Real\RealPlayer\RPDS\Bin\rpsystray.exe
Secunia PSI Tray.lnk - C:\Program Files\Secunia\PSI\psi_tray.exe
Update Notifier.lnk - C:\Program Files\WinZip\WZUpdateNotifier.exe
WinZip Preloader.lnk - C:\Program Files\WinZip\WzPreloader.exe

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]


[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{73FA19D0-2D75-11D2-995D-00C04F98BBC9}]
"StubPath"=
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
"StubPath"="C:\Program Files\Google\Chrome\Application\54.0.2840.99\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
[HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{A6EADE66-0000-0000-484E-7E8A45000000}]
"StubPath"="C:\Windows\system32\Rundll32.exe" "C:\Program Files\Adobe\Acrobat Reader DC\Esl\AiodLite.dll",CreateReaderUserSettings

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codecp.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"wave1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"msacm.siren"=sirenacm.dll
"wave3"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=wdmaud.drv
"wave5"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux3"=wdmaud.drv
"wave6"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux4"=wdmaud.drv
"wave7"=wdmaud.drv
"mixer7"=wdmaud.drv
"wave4"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-11-17 22:45:42 ----D---- C:\_OTM
2016-11-17 12:46:11 ----D---- C:\rsit
2016-11-14 08:20:16 ----A---- C:\Windows\system32\mshtml.dll
2016-11-14 08:20:15 ----A---- C:\Windows\system32\ieframe.dll
2016-11-14 08:20:14 ----A---- C:\Windows\system32\wininet.dll
2016-11-14 08:20:14 ----A---- C:\Windows\system32\win32k.sys
2016-11-14 08:20:14 ----A---- C:\Windows\system32\urlmon.dll
2016-11-14 08:20:14 ----A---- C:\Windows\system32\jscript9.dll
2016-11-14 08:20:14 ----A---- C:\Windows\system32\iertutil.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\UIAnimation.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\ntoskrnl.exe
2016-11-14 08:20:13 ----A---- C:\Windows\system32\ntdll.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\MSVidCtl.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\msv1_0.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\mshtmlmedia.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\lsasrv.dll
2016-11-14 08:20:13 ----A---- C:\Windows\system32\input.dll
2016-11-14 08:20:12 ----A---- C:\Windows\system32\win32spl.dll
2016-11-14 08:20:12 ----A---- C:\Windows\system32\ntkrnlpa.exe
2016-11-14 08:20:11 ----A---- C:\Windows\system32\atmfd.dll
2016-11-14 08:20:10 ----A---- C:\Windows\system32\ie4uinit.exe
2016-11-14 08:20:10 ----A---- C:\Windows\system32\clfs.sys
2016-11-14 08:20:09 ----A---- C:\Windows\system32\UtcResources.dll
2016-11-14 08:20:09 ----A---- C:\Windows\system32\olepro32.dll
2016-11-14 08:20:09 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2016-11-14 08:20:09 ----A---- C:\Windows\system32\inetcomm.dll
2016-11-14 08:20:09 ----A---- C:\Windows\system32\IMJP10K.DLL
2016-11-14 08:20:09 ----A---- C:\Windows\system32\iedkcs32.dll
2016-11-14 08:20:09 ----A---- C:\Windows\system32\drivers\bowser.sys
2016-11-14 08:20:08 ----A---- C:\Windows\system32\webcheck.dll
2016-11-14 08:20:08 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2016-11-14 08:20:08 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-11-14 08:20:08 ----A---- C:\Windows\system32\asycfilt.dll
2016-11-14 08:20:07 ----A---- C:\Windows\system32\oleaut32.dll
2016-11-14 08:20:07 ----A---- C:\Windows\system32\msfeeds.dll
2016-11-14 08:20:07 ----A---- C:\Windows\system32\msctf.dll
2016-11-14 08:20:07 ----A---- C:\Windows\system32\dxtrans.dll
2016-11-14 08:20:06 ----A---- C:\Windows\system32\msrating.dll
2016-11-14 08:20:06 ----A---- C:\Windows\system32\mshtmled.dll
2016-11-14 08:20:06 ----A---- C:\Windows\system32\MshtmlDac.dll
2016-11-14 08:20:06 ----A---- C:\Windows\system32\dxtmsft.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\vbscript.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\occache.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\jsproxy.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\jscript9diag.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\jscript.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\inseng.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\INETRES.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieUnatt.exe
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieui.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\iesetup.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\iernonce.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieetwproxystub.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieetwcollector.exe
2016-11-14 08:20:05 ----A---- C:\Windows\system32\ieapfltr.dll
2016-11-14 08:20:05 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2016-11-14 08:20:04 ----A---- C:\Windows\system32\smss.exe
2016-11-14 08:20:04 ----A---- C:\Windows\system32\rpcrt4.dll
2016-11-14 08:20:04 ----A---- C:\Windows\system32\kerberos.dll
2016-11-14 08:20:04 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2016-11-14 08:20:04 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2016-11-14 08:20:03 ----A---- C:\Windows\system32\wdigest.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\TSpkg.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\sspisrv.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\sspicli.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\srcore.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\srclient.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\schannel.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\setbcdlocale.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\secur32.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\rstrui.exe
2016-11-14 08:20:03 ----A---- C:\Windows\system32\rpchttp.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\ncrypt.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\lsass.exe
2016-11-14 08:20:03 ----A---- C:\Windows\system32\lpk.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\fontsub.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2016-11-14 08:20:03 ----A---- C:\Windows\system32\drivers\appid.sys
2016-11-14 08:20:03 ----A---- C:\Windows\system32\dciman32.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\csrsrv.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\cryptbase.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\credssp.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\atmlib.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\appidapi.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\apisetschema.dll
2016-11-14 08:20:03 ----A---- C:\Windows\system32\advapi32.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\tzres.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\msobjs.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\msaudite.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\auditpol.exe
2016-11-14 08:20:02 ----A---- C:\Windows\system32\appidsvc.dll
2016-11-14 08:20:02 ----A---- C:\Windows\system32\appidpolicyconverter.exe
2016-11-14 08:20:02 ----A---- C:\Windows\system32\appidcertstorecheck.exe
2016-11-14 08:20:02 ----A---- C:\Windows\system32\adtschema.dll
2016-11-14 08:20:01 ----A---- C:\Windows\system32\diagtrack.dll

======List of files/folders modified in the last 1 month======

2016-11-17 22:53:13 ----D---- C:\Windows\Prefetch
2016-11-17 22:53:12 ----D---- C:\Windows\Temp
2016-11-17 22:53:05 ----D---- C:\Program Files\Opera
2016-11-17 22:52:14 ----D---- C:\Program Files\trend micro
2016-11-17 22:51:17 ----D---- C:\Windows\system32\NDF
2016-11-17 22:46:23 ----D---- C:\Windows\system32\config
2016-11-17 22:45:45 ----D---- C:\Windows\Tasks
2016-11-17 22:42:31 ----D---- C:\Aviry
2016-11-17 17:15:47 ----D---- C:\AdwCleaner
2016-11-17 12:44:40 ----HD---- C:\ProgramData
2016-11-17 12:25:23 ----D---- C:\Windows\inf
2016-11-17 11:53:37 ----D---- C:\Windows\system32\drivers
2016-11-17 07:48:37 ----D---- C:\Windows
2016-11-16 16:11:30 ----D---- C:\Windows\rescache
2016-11-16 08:21:11 ----D---- C:\Windows\System32
2016-11-16 08:21:11 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-11-16 08:14:59 ----D---- C:\Windows\winsxs
2016-11-16 08:11:16 ----D---- C:\Program Files\Internet Explorer
2016-11-16 08:11:15 ----D---- C:\Windows\system32\migration
2016-11-16 08:11:15 ----D---- C:\Windows\system32\cs-CZ
2016-11-16 08:11:14 ----D---- C:\Windows\system32\en-US
2016-11-15 22:52:06 ----SHD---- C:\System Volume Information
2016-11-14 20:42:02 ----D---- C:\Články 2016
2016-11-13 16:23:29 ----D---- C:\Windows\system32\DriverStore
2016-11-12 09:23:59 ----D---- C:\Windows\system32\catroot2
2016-11-11 21:56:09 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-11-11 21:56:05 ----D---- C:\Windows\system32\Macromed
2016-11-11 14:17:03 ----D---- C:\Došlé dopisy
2016-11-10 22:25:57 ----D---- C:\Windows\debug
2016-11-09 22:56:57 ----SHD---- C:\Windows\Installer
2016-11-09 22:56:57 ----SHD---- C:\Config.Msi
2016-11-09 22:51:57 ----D---- C:\Windows\system32\MRT
2016-11-09 22:51:47 ----AC---- C:\Windows\system32\MRT.exe
2016-11-09 17:40:42 ----D---- C:\Windows\system32\Tasks
2016-11-07 22:09:33 ----D---- C:\Stati 2016
2016-11-05 11:51:51 ----D---- C:\Users\kuku\AppData\Roaming\Skype
2016-11-04 21:22:01 ----D---- C:\Album fotografií
2016-11-02 11:18:07 ----D---- C:\články
2016-10-28 18:59:27 ----D---- C:\WWW moje
2016-10-26 16:29:08 ----N---- C:\Windows\system32\MpSigStub.exe
2016-10-21 17:05:33 ----D---- C:\ProgramData\Skype
2016-10-20 16:37:08 ----D---- C:\Windows\system32\FxsTmp

File C:\Windows\system32\winlogon.exe is digitally signed
File C:\Windows\system32\wininit.exe is digitally signed
File C:\Windows\explorer.exe is digitally signed
File C:\Windows\system32\svchost.exe is digitally signed
File C:\Windows\system32\services.exe is digitally signed
File C:\Windows\system32\User32.dll is digitally signed
File C:\Windows\system32\userinit.exe is digitally signed
File C:\Windows\system32\rpcss.dll is digitally signed
File C:\Windows\system32\Drivers\volsnap.sys is digitally signed

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-05-06 58776]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-08-04 224616]
R0 KL1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2014-03-19 135776]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-03-19 45648]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-05-06 35096]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [2016-05-06 91232]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-05-06 815792]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-05-06 449640]
R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2014-03-19 488032]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2016-10-11 367072]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-05-06 32792]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-05-06 91168]
R2 aswStm;aswStm; C:\Windows\system32\drivers\aswStm.sys [2016-05-06 124808]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-06-19 3240400]
R3 MSHUSBVideo;NX6000/NX3000/VX2000/VX5000/VX5500/VX7000/Cinema Filter Driver; C:\Windows\System32\Drivers\nx6000.sys [2010-12-13 30576]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2010-03-22 18944]
R3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2011-12-16 15544]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 ApfiltrService;Alps Touch Pad Filter Driver for Windows x86; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-05-25 305488]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 Cam3820;Cam3820 PC Camera Driver; C:\Windows\System32\Drivers\cam3820a.sys [2010-08-25 369024]
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-20 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2012-07-28 49088]
S3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-13 347264]
S3 NVNET;NVIDIA nForce Ethernet Driver; C:\Windows\system32\DRIVERS\nvmf6232.sys [2010-08-12 298216]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-12-09 14848]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 49152]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 36352]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUsb.sys [2010-11-20 35968]
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Aviry\Avast\ng\vbox\VBoxAswDrv.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10; C:\Fotoeditory\Adobe Photoshop Elements 10\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-09-14 169624]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2016-10-21 82128]
R2 avast! Antivirus;Avast Antivirus; C:\Aviry\Avast\AvastSvc.exe [2016-05-06 243296]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; %SystemRoot%\System32\svchost.exe -k utcsvc;"ServiceDll"=%SystemRoot%\system32\diagtrack.dll
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; %SystemRoot%\system32\svchost.exe -k hpdevmgmt;"ServiceDll"=C:\Programy\HP\Digital Imaging\bin\hpqddsvc.dll
R2 MSCamSvc;MSCamSvc; C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2010-12-13 135536]
R2 Net Driver HPZ12;Net Driver HPZ12; %SystemRoot%\System32\svchost.exe -k HPZ12;"ServiceDll"=C:\Windows\system32\HPZinw12.dll
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-02-10 634144]
R2 Pml Driver HPZ12;Pml Driver HPZ12; %SystemRoot%\System32\svchost.exe -k HPZ12;"ServiceDll"=C:\Windows\system32\HPZipm12.dll
R2 RealPlayerUpdateSvc;RealPlayer Update Service; C:\Program Files\Real\UpdateService\RealPlayerUpdateSvc.exe [2016-05-13 32544]
R2 Secunia PSI Agent;Secunia PSI Agent; C:\Program Files\Secunia\PSI\PSIA.exe [2012-09-24 1328736]
R2 Secunia Update Agent;Secunia Update Agent; C:\Program Files\Secunia\PSI\sua.exe [2012-09-24 656480]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 1713904]
R2 ZAPrivacyService;ZoneAlarm Privacy Service; C:\Aviry\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [2015-10-19 96272]
R3 hpqcxs08;hpqcxs08; %SystemRoot%\system32\svchost.exe -k hpdevmgmt;"ServiceDll"=C:\Programy\HP\Digital Imaging\bin\hpqcxs08.dll
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2015-11-05 105144]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-10 1266464]
S2 RealPlayer Cloud Service;RealPlayer Cloud Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [2016-06-26 1095440]
S2 RealTimes Desktop Service;RealTimes Desktop Service; c:\program files\real\realplayer\RPDS\Bin\rpdsvc.exe [2016-06-26 1095440]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2016-09-20 324224]
S2 vsmon;TrueVector Internet Monitor; C:\Aviry\CheckPoint\ZoneAlarm\vsmon.exe [2016-03-24 3746584]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-11 270528]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2014-03-31 1512640]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-31 144200]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2016-10-22 102912]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2016-05-31 146888]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-05-04 1343400]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-11-05 45744]
S4 ATMsrvc;ATM Service; C:\Windows\System32\ATMsrvc.exe [2000-05-24 15360]
S4 AvastVBoxSvc;AvastVBox COM Service; C:\Aviry\Avast\ng\vbox\AvastVBoxSVC.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-11-05 135848]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119672
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Při spuštění PC a modemu nejde automaticky internet

#8 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: Při spuštění PC a modemu nejde automaticky internet

#9 Příspěvek od Antusek »

Webové stránky se načítají rychleji. Počítač byl pročištěn. Ale stále nejde automatické připojení k netu. Musím vždy v obdélníčku dole kliknout na odstranit potíže jako správce protože:

"Systému Windows se nepodařilo automaticky vytvořit vazbu zásobníku protokolu IP se síťovým adaptérem."

Jak to propojím, abych nemusel ručně opravovat připojení. Nebo to mám nějak přeinstalovat?
Díky za další radu.
:)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119672
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Při spuštění PC a modemu nejde automaticky internet

#10 Příspěvek od Rudy »

Zkuste přeinstalovat ovladač síť. karty.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: Při spuštění PC a modemu nejde automaticky internet

#11 Příspěvek od Antusek »

Tak jsem to udělal, ale zprvu jsem nevěděl jak jej z CD nainstalovat. Bylo tam toho více. Takže to bylo trochu dramatické neb nebylo po odinstalování možné připojení k netu. Ještěže si windows při spuštění vyhledá ovládač s CD sám a automaticky nainstaluje.
Pokud vše bude zítra o.k., bude se moci tento problém uzavřít. Díky zatím za všechny rady a pomoc a přeji hezký zbytek večera. Ještě že Vás na netu máme a můžeme požádat o pomoc.
:thumbsup: :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119672
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Při spuštění PC a modemu nejde automaticky internet

#12 Příspěvek od Rudy »

OK. Ozvěte se. Zatím není zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Antusek
Návštěvník
Návštěvník
Příspěvky: 510
Registrován: 17 úno 2007 20:54

Re: Při spuštění PC a modemu nejde automaticky internet

#13 Příspěvek od Antusek »

Zatím vše funguje o.k. Net se automaticky načítá. Přeinstalace pomohla.
Díky za vše. Problém můžeme uzavřít.
Hezký zbytek víkendu.
:) :closed:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119672
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Při spuštění PC a modemu nejde automaticky internet

#14 Příspěvek od Rudy »

Hezký den a nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno