Zde je nový log.
ComboFix 14-04-30.01 - BetaVerze 01.05.2014 10:57:59.3.4 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.8191.6133 [GMT 2:00]
Spuštěný z: c:\users\BetaVerze\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\BetaVerze\Desktop\CFScript.txt
AV: Microsoft Security Essentials *Disabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Microsoft Security Essentials *Disabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\program files (x86)\Iobit......HANZY.exe"
"c:\program files (x86)\Universal-KeyGen-Generator.exe"
"c:\program files\RogueKillerX64.exe"
"c:\windows\system32\IObitSmartDefragExtension.dll"
"c:\windows\system32\SmartDefragBootTime.exe"
"c:\windows\Tasks\Adobe Flash Player Updater.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
"c:\windows\Tasks\Wise Care 365.job"
"c:\windows\Tasks\Wise Turbo Checker.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Hosts_Anti_Adwares_PUPs
c:\program files (x86)\Hosts_Anti_Adwares_PUPs\HOSTS_Anti-Adware.exe
c:\program files (x86)\Hosts_Anti_Adwares_PUPs\HOSTS_Anti-Adware_main.exe
c:\program files (x86)\Iobit......HANZY.exe
c:\program files\RogueKillerX64.exe
c:\users\BetaVerze\AppData\Local\Plus500
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\BigLoading.gif
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_AutoYScaleDown.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_AutoYScaleUp.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_Cancel.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_cashier.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_CrosshairDown.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_CrosshairUp.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_DemoMode.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_downarrow_red.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_Help.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_ChartSettings.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_MoveDown.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_MoveUp.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_OK.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_RateAlerts.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_RealMode.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_Search.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_SetupIndicators.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_SwitchToCandleStick.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_SwitchToFun.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_SwitchToLine.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_SwitchToReal.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_ZoomIn.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_ZoomOut.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\but_ZoomReset.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\challenge_loading.gif
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_ABNAMRO.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_AboutWallpaper.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_ArrowDown.bmp
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_ArrowUp.bmp
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_Barclays.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_BigBell.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_BigBellSelected.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_BigFavorite.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_BigFavoriteSelected.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_BuySellWallpaper.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper1.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper1s.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper2.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper2s.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper3.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_CashierMainWallpaper3s.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_CommonwealthBank.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_Error.PNG
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_ChallengeStandings_Wallpaper.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_ChartToolbar.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_IBB.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_InstrumentScreenLeftWallpaper.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_InstrumentScreenRightWallpaper.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_LoginWallpaper.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList0.bmp
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList1.bmp
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList2.bmp
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList3.bmp
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList4.bmp
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList5.bmp
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList6.bmp
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList7.bmp
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyIconsImageList8.bmp
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyLeftWallpaper.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_MainLobbyRightWallpaper.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\img_RateUs.png
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\InvestSmallBtns.ssk
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\InvestSoft.ssk
c:\users\BetaVerze\AppData\Local\Plus500\Languages\cs\Images\Loading.gif
c:\users\BetaVerze\AppData\Local\Plus500\Main\configuration.xml
c:\users\BetaVerze\AppData\Local\Plus500\Main\InstrumentsInfo.xml
c:\users\BetaVerze\AppData\Local\Plus500\Main\InvestSoft.log.1
c:\users\BetaVerze\AppData\Local\Plus500\Main\InvestSoft.log.2
c:\users\BetaVerze\AppData\Local\Plus500\Main\InvestSoft.log.3
c:\users\BetaVerze\AppData\Local\Plus500\Main\InvestSoft.log.4
c:\users\BetaVerze\AppData\Local\Plus500\Main\InvestSoftProject.exe
c:\users\BetaVerze\AppData\Local\Plus500\Main\InvestSoftProject.jdbg
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\AboutGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\AboutGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\AlertsGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\AlertsGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\BuySellGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\BuySellGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierAddressVerificationGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierAddressVerificationGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierBonusAccountGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierBonusAccountGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierDepositGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierDepositGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierEmailVerificationGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierEmailVerificationGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierFullRegistration_ASIC_GUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierFullRegistration_ASIC_GUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierFullRegistration_FSA_GUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierFullRegistration_FSA_GUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierFullRegistrationGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierFullRegistrationGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierGUIbrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierHistoryGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierHistoryGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierChangePasswordGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierChangePasswordGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierMainGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierMainGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierPhoneVerificationGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierPhoneVerificationGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierQuestionnaireGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierQuestionnaireGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierReportsGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierReportsGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierUploadDocsGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierUploadDocsGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierWithdrawGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CashierWithdrawGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ClosePositionGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ClosePositionGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\Countries.xml
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CreateUserGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\CreateUserGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\DontShowAgainGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\DontShowAgainGUIbrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\FavoritesSetupGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\FavoritesSetupGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ForgotPasswordGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ForgotPasswordGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ChallengeCreateGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ChallengeCreateGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ChallengeHelpGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ChallengeHelpGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ChallengeInviteGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ChallengeInviteGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ChallengeStandingsGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ChallengeStandingsGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ChartGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ChartGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsADXGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsADXGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsAligatorGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsAligatorGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsBollingerGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsBollingerGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsEnvelopesGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsEnvelopesGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsMACDOsMAGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsMACDOsMAGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsMovingAverageGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsMovingAverageGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsParabolicSARGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsParabolicSARGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsPeriodGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsPeriodGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsStochasticGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IndicatorsStochasticGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\InstrumentScreenGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\InstrumentScreenGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\InvestSoft.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\InvestSoftBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IsRealGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\IsRealGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\LinkMessageDlgGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\LinkMessageDlgGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\LoginGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\LoginGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\MainLobbyGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\MainLobbyGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ProcessingGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ProcessingGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ProcessingSmallGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\ProcessingSmallGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\RateAlertGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\RateAlertGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\RateAlertSetupGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\RateAlertSetupGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\RateUsGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\RateUsGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\SettingsGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\SettingsGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\UploadFileGUI.sil
c:\users\BetaVerze\AppData\Local\Plus500\Main\SIL\UploadFileGUIBrand.sil
c:\users\BetaVerze\AppData\Local\Plus500\Update\500w.exe
c:\users\BetaVerze\AppData\Local\Plus500\Update\500z.exe
c:\users\BetaVerze\AppData\Local\Plus500\Update\product.ico
c:\users\BetaVerze\AppData\Local\Plus500\Update\ResourceChange.exe
c:\users\BetaVerze\AppData\Local\Plus500\Update\uninstall.ico
c:\users\BetaVerze\AppData\Roaming\Baidu
c:\users\BetaVerze\AppData\Roaming\Baidu\Baidu Antivirus\InstallUtility2014-5-1-10-38-24.1524472.uninst.log
c:\windows\system32\IObitSmartDefragExtension.dll
c:\windows\system32\SmartDefragBootTime.exe
c:\windows\Tasks\Adobe Flash Player Updater.job
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
c:\windows\Tasks\Wise Care 365.job
c:\windows\Tasks\Wise Turbo Checker.job
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-04-01 do 2014-05-01 )))))))))))))))))))))))))))))))
.
.
2014-05-01 09:04 . 2014-05-01 09:04 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-05-01 08:38 . 2014-05-01 08:38 -------- d-----w- c:\programdata\Baidu Security
2014-05-01 08:29 . 2014-05-01 08:29 -------- d-----w- c:\users\BetaVerze\AppData\Roaming\eCyber
2014-05-01 08:29 . 2014-04-23 10:19 43520 ----a-w- c:\windows\system32\drivers\iSafeKrnlBoot.sys
2014-05-01 08:29 . 2014-05-01 08:29 -------- d-----w- c:\windows\system32\log
2014-05-01 08:29 . 2014-05-01 08:45 -------- d-----w- c:\users\BetaVerze\AppData\Roaming\iSafe
2014-05-01 08:24 . 2014-04-16 10:22 10651704 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{1E0770C8-28A0-4F0C-8A96-46CEE03243C4}\mpengine.dll
2014-04-30 09:03 . 2014-04-30 08:55 70944 ----a-w- c:\windows\system32\drivers\Bndef.sys
2014-04-30 09:03 . 2014-04-30 08:55 91648 ----a-w- c:\windows\system32\drivers\Bnbasex.sys
2014-04-30 04:23 . 2014-04-16 10:22 10651704 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2014-04-26 08:45 . 2014-04-26 08:45 1684928 ----a-w- c:\windows\system32\drivers\ntfs.sys
2014-04-26 08:45 . 2014-04-26 08:45 27584 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2014-04-26 08:45 . 2014-04-26 08:45 274880 ----a-w- c:\windows\system32\drivers\msiscsi.sys
2014-04-26 08:45 . 2014-04-26 08:45 2048 ----a-w- c:\windows\SysWow64\iologmsg.dll
2014-04-26 08:45 . 2014-04-26 08:45 2048 ----a-w- c:\windows\system32\iologmsg.dll
2014-04-26 08:45 . 2014-04-26 08:45 190912 ----a-w- c:\windows\system32\drivers\storport.sys
2014-04-26 08:44 . 2014-04-26 08:44 7680 ----a-w- c:\windows\SysWow64\instnm.exe
2014-04-26 08:44 . 2014-04-26 08:44 5120 ----a-w- c:\windows\SysWow64\wow32.dll
2014-04-26 08:44 . 2014-04-26 08:44 362496 ----a-w- c:\windows\system32\wow64win.dll
2014-04-26 08:44 . 2014-04-26 08:44 25600 ----a-w- c:\windows\SysWow64\setup16.exe
2014-04-26 08:44 . 2014-04-26 08:44 243712 ----a-w- c:\windows\system32\wow64.dll
2014-04-26 08:44 . 2014-04-26 08:44 2048 ----a-w- c:\windows\SysWow64\user.exe
2014-04-26 08:44 . 2014-04-26 08:44 16384 ----a-w- c:\windows\system32\ntvdm64.dll
2014-04-26 08:44 . 2014-04-26 08:44 14336 ----a-w- c:\windows\SysWow64\ntvdm64.dll
2014-04-26 08:44 . 2014-04-26 08:44 13312 ----a-w- c:\windows\system32\wow64cpu.dll
2014-04-26 08:44 . 2014-04-26 08:44 1163264 ----a-w- c:\windows\system32\kernel32.dll
2014-04-25 07:51 . 2014-04-25 14:18 -------- d-----w- c:\program files\Yamicsoft
2014-04-24 08:34 . 2014-04-24 08:38 -------- d-----w- c:\program files (x86)\RAR Password Unlocker
2014-04-23 19:30 . 2014-04-26 18:22 -------- d-----w- C:\AdwCleaner
2014-04-20 22:29 . 2014-02-20 17:03 1031560 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{9087BAE8-E6B8-4B8F-B4E9-E52B34D31EB4}\gapaengine.dll
2014-04-18 12:46 . 2014-04-18 12:46 -------- d-----w- c:\users\BetaVerze\AppData\Roaming\DropboxMaster
2014-04-15 18:44 . 2014-04-15 18:43 237736 ----a-w- C:\bs_Advanced_Process_Termination.exe
2014-04-12 21:24 . 2014-04-12 21:24 901848 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2014-04-12 21:24 . 2014-04-12 21:24 73800 ----a-w- c:\windows\system32\RtNicProp64.dll
2014-04-12 21:23 . 2014-04-12 21:23 2157704 ----a-w- c:\windows\system32\YamahaAE.dll
2014-04-12 21:23 . 2014-04-12 21:23 2101848 ----a-w- c:\windows\system32\WavesGUILib64.dll
2014-04-10 19:17 . 2013-08-22 18:50 357337 ----a-w- c:\program files (x86)\EAM-TR.exe
2014-04-10 06:35 . 2014-04-10 19:48 -------- d-----w- c:\windows\SysWow64\bitstreams
2014-04-10 06:35 . 2013-10-26 18:30 538126 --s-a-w- c:\windows\SysWow64\libcurl-4.dll
2014-04-10 06:35 . 2013-10-26 18:30 364544 --s-a-w- c:\windows\SysWow64\ssleay32.dll
2014-04-10 06:35 . 2013-10-26 18:30 192512 --s-a-w- c:\windows\SysWow64\libidn-11.dll
2014-04-10 06:35 . 2013-10-26 18:30 171008 --s-a-w- c:\windows\SysWow64\libssh2.dll
2014-04-10 06:35 . 2013-10-26 18:30 1704448 --s-a-w- c:\windows\SysWow64\libeay32.dll
2014-04-10 06:35 . 2013-10-26 18:30 133632 --s-a-w- c:\windows\SysWow64\librtmp.dll
2014-04-10 06:35 . 2013-06-12 13:15 119888 --s-a-w- c:\windows\SysWow64\pthreadGC2.dll
2014-04-10 06:35 . 2013-06-12 13:15 100864 --s-a-w- c:\windows\SysWow64\zlib1.dll
2014-04-10 06:35 . 2012-09-25 21:46 472424 --s-a-w- c:\windows\SysWow64\cudart32_50_35.dll
2014-04-10 06:35 . 2012-05-26 23:36 55808 --s-a-w- c:\windows\SysWow64\pthreadVC2.dll
2014-04-08 17:09 . 2014-04-08 17:09 -------- d---a-w- c:\windows\rundll16.exe
2014-04-08 17:09 . 2014-04-08 17:09 -------- d---a-w- c:\windows\logo1_.exe
2014-04-08 16:58 . 2014-04-08 16:58 -------- d-----w- c:\program files (x86)\Common Files\MicroWorld
2014-04-08 16:23 . 2014-04-08 16:23 -------- d-----w- c:\program files (x86)\VLCPortable
2014-04-05 16:55 . 2013-12-17 13:06 29704 ----a-w- c:\windows\system32\nitrolocalmon9.dll
2014-04-05 16:55 . 2013-12-17 13:06 17928 ----a-w- c:\windows\system32\nitrolocalui9.dll
2014-04-05 16:25 . 2014-04-05 16:25 -------- d-----w- c:\program files (x86)\Common Files\PDF Architect
2014-04-05 10:08 . 2014-01-08 13:54 121856 ----a-w- c:\windows\system32\IObitSmartDefragExtension.dll20140405121532.dll
2014-04-05 10:08 . 2014-01-08 13:54 121856 ----a-w- c:\windows\system32\IObitSmartDefragExtension.dll20140405120915.dll
2014-04-03 21:24 . 2014-04-03 21:24 -------- d-----w- c:\users\BetaVerze\AppData\Roaming\ProductData
2014-04-02 09:17 . 2014-04-02 09:17 -------- d-----w- c:\program files (x86)\Ashampoo
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-04-26 08:44 . 2014-04-26 08:44 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2014-04-22 18:10 . 2012-04-02 05:11 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-04-22 18:10 . 2011-10-07 21:00 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-04-12 21:24 . 2011-10-07 20:24 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
2014-03-16 10:37 . 2014-03-16 10:37 624128 ----a-w- c:\windows\system32\qedit.dll
2014-03-16 10:37 . 2014-03-16 10:37 509440 ----a-w- c:\windows\SysWow64\qedit.dll
2014-03-16 10:37 . 2014-03-16 10:37 3156480 ----a-w- c:\windows\system32\win32k.sys
2014-03-16 10:37 . 2014-03-16 10:37 484864 ----a-w- c:\windows\system32\wer.dll
2014-03-16 10:37 . 2014-03-16 10:37 381440 ----a-w- c:\windows\SysWow64\wer.dll
2014-03-16 10:36 . 2014-03-16 10:36 228864 ----a-w- c:\windows\system32\wwansvc.dll
2014-02-28 09:35 . 2014-02-28 09:36 581632 ----a-w- c:\program files (x86)\convert.exe
2014-02-28 07:14 . 2014-02-28 07:14 724728 ----a-w- c:\windows\system32\sltech64.dll
2014-02-28 07:14 . 2014-02-28 07:14 245496 ----a-w- c:\windows\system32\slprp64.dll
2014-02-28 07:14 . 2014-02-28 07:14 899320 ----a-w- c:\windows\system32\sl3apo64.dll
2014-02-28 07:14 . 2014-02-28 07:14 1045752 ----a-w- c:\windows\system32\slcnt64.dll
2014-02-28 07:14 . 2014-02-28 07:14 2825432 ----a-w- c:\windows\system32\RtPgEx64.dll
2014-02-28 07:14 . 2014-02-28 07:14 942384 ----a-w- c:\windows\system32\NAHIMICAPOSettingsIPC.dll
2014-02-28 07:14 . 2014-02-28 07:14 5752072 ----a-w- c:\windows\system32\NAHIMICAPOlfx.dll
2014-02-20 17:03 . 2013-04-24 05:16 1031560 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll
2014-02-17 12:41 . 2012-02-12 14:56 27456 ----a-w- c:\windows\system32\RegistryDefragBootTime.exe
2014-02-17 09:26 . 2014-02-17 09:26 2048 ----a-w- c:\windows\SysWow64\msxml3r.dll
2014-02-17 09:26 . 2014-02-17 09:26 2048 ----a-w- c:\windows\system32\msxml3r.dll
2014-02-17 09:26 . 2014-02-17 09:26 1882112 ----a-w- c:\windows\system32\msxml3.dll
2014-02-17 09:26 . 2014-02-17 09:26 1237504 ----a-w- c:\windows\SysWow64\msxml3.dll
2014-02-17 09:15 . 2014-02-17 09:15 87040 ----a-w- c:\windows\SysWow64\secproc_ssp.dll
2014-02-17 09:15 . 2014-02-17 09:15 572416 ----a-w- c:\windows\SysWow64\RMActivate.exe
2014-02-17 09:15 . 2014-02-17 09:15 528384 ----a-w- c:\windows\system32\msdrm.dll
2014-02-17 09:15 . 2014-02-17 09:15 510976 ----a-w- c:\windows\SysWow64\RMActivate_ssp.exe
2014-02-17 09:15 . 2014-02-17 09:15 428032 ----a-w- c:\windows\SysWow64\secproc.dll
2014-02-17 09:15 . 2014-02-17 09:15 390144 ----a-w- c:\windows\SysWow64\msdrm.dll
2014-02-17 09:15 . 2014-02-17 09:15 553984 ----a-w- c:\windows\system32\RMActivate_ssp.exe
2014-02-17 09:15 . 2014-02-17 09:15 87040 ----a-w- c:\windows\SysWow64\secproc_ssp_isv.dll
2014-02-17 09:15 . 2014-02-17 09:15 658432 ----a-w- c:\windows\system32\RMActivate_isv.exe
2014-02-17 09:15 . 2014-02-17 09:15 626176 ----a-w- c:\windows\system32\RMActivate.exe
2014-02-17 09:15 . 2014-02-17 09:15 594944 ----a-w- c:\windows\SysWow64\RMActivate_isv.exe
2014-02-17 09:15 . 2014-02-17 09:15 552960 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe
2014-02-17 09:15 . 2014-02-17 09:15 508928 ----a-w- c:\windows\SysWow64\RMActivate_ssp_isv.exe
2014-02-17 09:15 . 2014-02-17 09:15 488448 ----a-w- c:\windows\system32\secproc.dll
2014-02-17 09:15 . 2014-02-17 09:15 485888 ----a-w- c:\windows\system32\secproc_isv.dll
2014-02-17 09:15 . 2014-02-17 09:15 423936 ----a-w- c:\windows\SysWow64\secproc_isv.dll
2014-02-17 09:15 . 2014-02-17 09:15 123392 ----a-w- c:\windows\system32\secproc_ssp_isv.dll
2014-02-17 09:15 . 2014-02-17 09:15 123392 ----a-w- c:\windows\system32\secproc_ssp.dll
2014-02-11 11:17 . 2014-02-11 11:17 376768 ----a-w- c:\windows\system32\drivers\netio.sys
2014-02-11 11:15 . 2014-02-11 11:15 335360 ----a-w- c:\windows\system32\msieftp.dll
2014-02-11 11:15 . 2014-02-11 11:15 301568 ----a-w- c:\windows\SysWow64\msieftp.dll
2014-02-11 11:14 . 2014-02-11 11:14 14631424 ----a-w- c:\windows\system32\wmp.dll
2014-02-11 11:14 . 2014-02-11 11:14 12625920 ----a-w- c:\windows\system32\wmploc.DLL
2014-02-11 11:14 . 2014-02-11 11:14 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL
2014-02-11 11:14 . 2014-02-11 11:14 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2014-02-11 11:14 . 2014-02-11 11:14 2048 ----a-w- c:\windows\system32\tzres.dll
2014-02-11 11:14 . 2014-02-11 11:14 202752 ----a-w- c:\windows\system32\scrrun.dll
2014-02-11 11:14 . 2014-02-11 11:14 168960 ----a-w- c:\windows\system32\wscript.exe
2014-02-11 11:14 . 2014-02-11 11:14 163840 ----a-w- c:\windows\SysWow64\scrrun.dll
2014-02-11 11:14 . 2014-02-11 11:14 156160 ----a-w- c:\windows\system32\cscript.exe
2014-02-11 11:14 . 2014-02-11 11:14 150016 ----a-w- c:\windows\system32\wshom.ocx
2014-02-11 11:14 . 2014-02-11 11:14 126976 ----a-w- c:\windows\SysWow64\cscript.exe
2014-02-11 11:14 . 2014-02-11 11:14 121856 ----a-w- c:\windows\SysWow64\wshom.ocx
2014-02-11 11:13 . 2014-02-11 11:13 230400 ----a-w- c:\windows\system32\drivers\portcls.sys
2014-02-11 11:13 . 2014-02-11 11:13 116736 ----a-w- c:\windows\system32\drivers\drmk.sys
2014-02-11 11:13 . 2014-02-11 11:13 81408 ----a-w- c:\windows\system32\imagehlp.dll
2014-02-11 11:13 . 2014-02-11 11:13 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll
2014-02-11 11:13 . 2014-02-11 11:13 197120 ----a-w- c:\windows\system32\credui.dll
2014-02-11 11:13 . 2014-02-11 11:13 1930752 ----a-w- c:\windows\system32\authui.dll
2014-02-11 11:13 . 2014-02-11 11:13 190464 ----a-w- c:\windows\system32\SmartcardCredentialProvider.dll
2014-02-11 11:13 . 2014-02-11 11:13 1796096 ----a-w- c:\windows\SysWow64\authui.dll
2014-02-11 11:13 . 2014-02-11 11:13 168960 ----a-w- c:\windows\SysWow64\credui.dll
2014-02-11 11:13 . 2014-02-11 11:13 152576 ----a-w- c:\windows\SysWow64\SmartcardCredentialProvider.dll
2014-02-11 11:12 . 2014-02-11 11:12 404480 ----a-w- c:\windows\system32\gdi32.dll
2014-02-11 11:12 . 2014-02-11 11:12 311808 ----a-w- c:\windows\SysWow64\gdi32.dll
2014-02-11 11:12 . 2014-02-11 11:12 1474048 ----a-w- c:\windows\system32\crypt32.dll
2014-02-11 11:12 . 2014-02-11 11:12 1168384 ----a-w- c:\windows\SysWow64\crypt32.dll
2014-02-11 11:11 . 2014-02-11 11:11 497152 ----a-w- c:\windows\system32\drivers\afd.sys
2014-02-11 11:11 . 2014-02-11 11:11 96768 ----a-w- c:\windows\SysWow64\sspicli.dll
2014-02-11 11:11 . 2014-02-11 11:11 95680 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2014-02-11 11:11 . 2014-02-11 11:11 458712 ----a-w- c:\windows\system32\drivers\cng.sys
2014-02-11 11:11 . 2014-02-11 11:11 340992 ----a-w- c:\windows\system32\schannel.dll
2014-02-11 11:11 . 2014-02-11 11:11 307200 ----a-w- c:\windows\system32\ncrypt.dll
2014-02-11 11:11 . 2014-02-11 11:11 30720 ----a-w- c:\windows\system32\lsass.exe
2014-02-11 11:11 . 2014-02-11 11:11 28672 ----a-w- c:\windows\system32\sspisrv.dll
2014-02-11 11:11 . 2014-02-11 11:11 28160 ----a-w- c:\windows\system32\secur32.dll
2014-02-11 11:11 . 2014-02-11 11:11 247808 ----a-w- c:\windows\SysWow64\schannel.dll
2014-02-11 11:11 . 2014-02-11 11:11 220160 ----a-w- c:\windows\SysWow64\ncrypt.dll
2014-02-11 11:11 . 2014-02-11 11:11 22016 ----a-w- c:\windows\SysWow64\secur32.dll
2014-02-11 11:11 . 2014-02-11 11:11 154560 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2014-02-11 11:11 . 2014-02-11 11:11 1447936 ----a-w- c:\windows\system32\lsasrv.dll
2014-02-11 11:11 . 2014-02-11 11:11 135680 ----a-w- c:\windows\system32\sspicli.dll
2014-02-11 11:10 . 2014-02-11 11:10 859648 ----a-w- c:\windows\system32\IKEEXT.DLL
2014-02-11 11:10 . 2014-02-11 11:10 830464 ----a-w- c:\windows\system32\nshwfp.dll
2014-02-11 11:10 . 2014-02-11 11:10 656896 ----a-w- c:\windows\SysWow64\nshwfp.dll
2014-02-11 11:10 . 2014-02-11 11:10 324096 ----a-w- c:\windows\system32\FWPUCLNT.DLL
2014-02-11 11:10 . 2014-02-11 11:10 216576 ----a-w- c:\windows\SysWow64\FWPUCLNT.DLL
2005-03-12 13:39 . 2005-03-05 16:21 1347584 ----a-w- c:\program files (x86)\Common Files\EXIF Viewer.exe
1997-12-01 00:00 . 2011-10-26 21:37 317440 ----a-r- c:\program files (x86)\Mtran.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2013-06-24 04:57 220632 ----a-w- c:\users\BetaVerze\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2013-06-24 04:57 220632 ----a-w- c:\users\BetaVerze\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2013-06-24 04:57 220632 ----a-w- c:\users\BetaVerze\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\BetaVerze\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\BetaVerze\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\BetaVerze\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\BetaVerze\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"SynchronousMachineGroupPolicy"= 1 (0x1)
"SynchronousUserGroupPolicy"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoStrCmpLogical"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R1 Bnbase;Bnbase;c:\windows\system32\drivers\bnbasex64.sys;c:\windows\SYSNATIVE\drivers\bnbasex64.sys [x]
R1 EIO64;EIO Driver;c:\windows\system32\DRIVERS\EIO64.sys;c:\windows\SYSNATIVE\DRIVERS\EIO64.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 P1C1394;Phase One 1394 Camera Driver;c:\windows\System32\Drivers\p1c1394.sys;c:\windows\SYSNATIVE\Drivers\p1c1394.sys [x]
R2 thdudf;TOSHIBA UDF2.5 Reader File System Driver;c:\windows\system32\DRIVERS\thdudf.sys;c:\windows\SYSNATIVE\DRIVERS\thdudf.sys [x]
R2 WiseBootAssistant;Wise Boot Assistant;c:\program files (x86)\Wise\Wise Care 365\BootTime.exe;c:\program files (x86)\Wise\Wise Care 365\BootTime.exe [x]
R3 ampa;ampa;c:\windows\system32\ampa.sys;c:\windows\SYSNATIVE\ampa.sys [x]
R3 BTCFilterService;USB Networking Driver Filter Service;c:\windows\system32\DRIVERS\motfilt.sys;c:\windows\SYSNATIVE\DRIVERS\motfilt.sys [x]
R3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\DRIVERS\CtClsFlt.sys;c:\windows\SYSNATIVE\DRIVERS\CtClsFlt.sys [x]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
R3 motandroidusb;Mot ADB Interface Driver;c:\windows\system32\Drivers\motoandroid.sys;c:\windows\SYSNATIVE\Drivers\motoandroid.sys [x]
R3 motccgp;Motorola USB Composite Device Driver;c:\windows\system32\DRIVERS\motccgp.sys;c:\windows\SYSNATIVE\DRIVERS\motccgp.sys [x]
R3 motccgpfl;MotCcgpFlService;c:\windows\system32\DRIVERS\motccgpfl.sys;c:\windows\SYSNATIVE\DRIVERS\motccgpfl.sys [x]
R3 Motousbnet;Motorola USB Networking Driver Service;c:\windows\system32\DRIVERS\Motousbnet.sys;c:\windows\SYSNATIVE\DRIVERS\Motousbnet.sys [x]
R3 motusbdevice;Motorola USB Dev Driver;c:\windows\system32\DRIVERS\motusbdevice.sys;c:\windows\SYSNATIVE\DRIVERS\motusbdevice.sys [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys;c:\windows\SYSNATIVE\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe;c:\program files\Microsoft Security Client\NisSrv.exe [x]
R3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf_amd64.sys;c:\windows\SYSNATIVE\DRIVERS\psi_mf_amd64.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtVlan60.sys;c:\windows\SYSNATIVE\DRIVERS\RtVlan60.sys [x]
R3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 V0770Vid;Live! Cam Sync HD VF0770 Driver;c:\windows\system32\DRIVERS\V0770Vid.sys;c:\windows\SYSNATIVE\DRIVERS\V0770Vid.sys [x]
R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetAdp.sys [x]
R3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetFlt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R4 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE64.EXE;c:\program files\SUPERAntiSpyware\SASCORE64.EXE [x]
R4 ABBYY.Licensing.FineReader.Professional.11.0;ABBYY FineReader 11 PE Licensing Service;c:\program files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe;c:\program files (x86)\ABBYY FineReader 11\NetworkLicenseServer.exe [x]
R4 ADExchange;ArcSoft Exchange Service;c:\program files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe;c:\program files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe [x]
R4 AODService;AODService;c:\program files (x86)\AMD\OverDrive\AODAssist.exe;c:\program files (x86)\AMD\OverDrive\AODAssist.exe [x]
R4 AsSysCtrlService;ASUS System Control Service;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [x]
R4 Backupper Service;AOMEI Backupper Scheduler Service;c:\program files (x86)\AOMEI Backupper\ABService.exe;c:\program files (x86)\AOMEI Backupper\ABService.exe [x]
R4 BstHdAndroidSvc;BlueStacks Android Service;c:\program files (x86)\BlueStacks\HD-Service.exe BstHdAndroidSvc Android;c:\program files (x86)\BlueStacks\HD-Service.exe BstHdAndroidSvc Android [x]
R4 BstHdLogRotatorSvc;BlueStacks Log Rotator Service;c:\program files (x86)\BlueStacks\HD-LogRotatorService.exe;c:\program files (x86)\BlueStacks\HD-LogRotatorService.exe [x]
R4 DeviceMonitorService;DeviceMonitorService;c:\program files (x86)\Motorola Media Link\Lite\NServiceEntry.exe;c:\program files (x86)\Motorola Media Link\Lite\NServiceEntry.exe [x]
R4 DfSdkS;Defragmentation-Service;c:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 11\DfsdkS64.exe;c:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 11\DfsdkS64.exe [x]
R4 Motorola Device Manager;Motorola Device Manager Service;c:\program files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe;c:\program files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [x]
R4 NitroDriverReadSpool9;NitroPDFDriverCreatorReadSpool9;c:\program files\Common Files\Nitro\Pro\9.0\NitroPDFDriverService9x64.exe;c:\program files\Common Files\Nitro\Pro\9.0\NitroPDFDriverService9x64.exe [x]
R4 NitroReaderDriverReadSpool2;NitroPDFReaderDriverCreatorReadSpool2;c:\program files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe;c:\program files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe [x]
R4 PST Service;PST Service;c:\program files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe;c:\program files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [x]
R4 RVSMONBL;Returnil Virtual System Core Service;c:\windows\SysWOW64\Returnil\RVS3\rvsmon.exe;c:\windows\SysWOW64\Returnil\RVS3\rvsmon.exe [x]
R4 Secunia PSI Agent;Secunia PSI Agent;c:\program files (x86)\Secunia\PSI\PSIA.exe;c:\program files (x86)\Secunia\PSI\PSIA.exe [x]
R4 Secunia Update Agent;Secunia Update Agent;c:\program files (x86)\Secunia\PSI\sua.exe;c:\program files (x86)\Secunia\PSI\sua.exe [x]
R4 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [x]
R4 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R4 WO_LiveService;Ashampoo LiveTuner Service;d:\ashampoo winoptimizer 10.02.05 cz portable\App\WinOptimizer\LiveTunerService.exe;d:\ashampoo winoptimizer 10.02.05 cz portable\App\WinOptimizer\LiveTunerService.exe [x]
R4 WO_LiveService2;Ashampoo LiveTuner 2 Service;c:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 11\LiveTunerService.exe;c:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 11\LiveTunerService.exe [x]
S0 ambakdrv;ambakdrv;c:\windows\system32\ambakdrv.sys;c:\windows\SYSNATIVE\ambakdrv.sys [x]
S0 RVSystem;RVSystem;c:\windows\system32\Drivers\RVSystem.sys;c:\windows\SYSNATIVE\Drivers\RVSystem.sys [x]
S0 SmartDefragDriver;SmartDefragDriver;c:\windows\System32\Drivers\SmartDefragDriver.sys;c:\windows\SYSNATIVE\Drivers\SmartDefragDriver.sys [x]
S1 AsUpIO;AsUpIO;SysWow64\drivers\AsUpIO.sys;SysWow64\drivers\AsUpIO.sys [x]
S1 CFRMD;CFRMD;c:\windows\system32\DRIVERS\CFRMD.sys;c:\windows\SYSNATIVE\DRIVERS\CFRMD.sys [x]
S1 rvsmon;rvsmon;c:\windows\system32\DRIVERS\rvsmon.sys;c:\windows\SYSNATIVE\DRIVERS\rvsmon.sys [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS [x]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [x]
S2 ammntdrv;ammntdrv;c:\windows\system32\ammntdrv.sys;c:\windows\SYSNATIVE\ammntdrv.sys [x]
S2 amwrtdrv;amwrtdrv;c:\windows\system32\amwrtdrv.sys;c:\windows\SYSNATIVE\amwrtdrv.sys [x]
S2 ASWLCCSvc;ASUS Wireless Card Service;c:\program files (x86)\ASUS\WLAN Card Utilities\ASWLCCSVC.exe;c:\program files (x86)\ASUS\WLAN Card Utilities\ASWLCCSVC.exe [x]
S2 BstHdDrv;BlueStacks Hypervisor;c:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys;c:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [x]
S2 LiveTuner2PM;Ashampoo LiveTuner 2 Driver;c:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 11\LiveTuner64.sys;c:\program files (x86)\Ashampoo\Ashampoo WinOptimizer 11\LiveTuner64.sys [x]
S2 LiveTunerPM;Ashampoo LiveTuner ProcessMonitor Driver;d:\ashampoo winoptimizer 10.02.05 cz portable\App\WinOptimizer\LiveTunerProcessMonitor64.sys;d:\ashampoo winoptimizer 10.02.05 cz portable\App\WinOptimizer\LiveTunerProcessMonitor64.sys [x]
S2 nlsX86cc;Nalpeiron Licensing Service;c:\windows\SysWOW64\NLSSRV32.EXE;c:\windows\SysWOW64\NLSSRV32.EXE [x]
S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys;c:\windows\SYSNATIVE\DRIVERS\RtNdPt60.sys [x]
S2 rvsmonf;rvsmonf;c:\windows\system32\DRIVERS\rvsmonf.sys;c:\windows\SYSNATIVE\DRIVERS\rvsmonf.sys [x]
S2 rvsmonn;rvsmonn;c:\windows\system32\DRIVERS\rvsmonn2.sys;c:\windows\SYSNATIVE\DRIVERS\rvsmonn2.sys [x]
S2 SSPORT;SSPORT;c:\windows\system32\Drivers\SSPORT.sys;c:\windows\SYSNATIVE\Drivers\SSPORT.sys [x]
S3 amdiox64;AMD IO Driver;c:\windows\system32\DRIVERS\amdiox64.sys;c:\windows\SYSNATIVE\DRIVERS\amdiox64.sys [x]
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3xhc.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\system32\DRIVERS\seehcri.sys;c:\windows\SYSNATIVE\DRIVERS\seehcri.sys [x]
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{76GV7767-8W8W-UI8P-6EDL-8UWV033Y1445}]
c:\directory\CyberGate\WinDir\winuptade.exe [BU]
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-04-25 18:07 1078088 ----a-w- c:\program files (x86)\Google\Chrome\Application\34.0.1847.131\Installer\chrmstp.exe
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2013-06-24 04:57 244696 ----a-w- c:\users\BetaVerze\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2013-06-24 04:57 244696 ----a-w- c:\users\BetaVerze\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2013-06-24 04:57 244696 ----a-w- c:\users\BetaVerze\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\BetaVerze\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\BetaVerze\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\BetaVerze\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\BetaVerze\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2014-04-09 08:51 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2014-04-09 08:51 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2014-04-09 08:51 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2014-04-09 08:51 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2014-04-09 08:51 777032 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\SugarSyncBackedUp]
@="{0C4A258A-3F3B-4FFF-80A7-9B3BEC139472}"
[HKEY_CLASSES_ROOT\CLSID\{0C4A258A-3F3B-4FFF-80A7-9B3BEC139472}]
2013-01-24 07:48 482144 ----a-w- c:\program files (x86)\SugarSync\SugarSyncShellExt_x64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\SugarSyncPending]
@="{62CCD8E3-9C21-41E1-B55E-1E26DFC68511}"
[HKEY_CLASSES_ROOT\CLSID\{62CCD8E3-9C21-41E1-B55E-1E26DFC68511}]
2013-01-24 07:48 482144 ----a-w- c:\program files (x86)\SugarSync\SugarSyncShellExt_x64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\SugarSyncRoot]
@="{A759AFF6-5851-457D-A540-F4ECED148351}"
[HKEY_CLASSES_ROOT\CLSID\{A759AFF6-5851-457D-A540-F4ECED148351}]
2013-01-24 07:48 482144 ----a-w- c:\program files (x86)\SugarSync\SugarSyncShellExt_x64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\SugarSyncShared]
@="{1574C9EF-7D58-488F-B358-8B78C1538F51}"
[HKEY_CLASSES_ROOT\CLSID\{1574C9EF-7D58-488F-B358-8B78C1538F51}]
2013-01-24 07:48 482144 ----a-w- c:\program files (x86)\SugarSync\SugarSyncShellExt_x64.dll
.
------- Doplňkový sken -------
.
uStart Page = about:blank
mDefault_Search_URL = hxxp://
www.google.com
mStart Page = about:blank
mSearch Page = hxxp://
www.google.com
mDefault_Page_URL = about:blank
IE: Add to Google Photos Screensa&ver
IE: Clip image - c:\program files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4
IE: Clip selection - c:\program files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3
IE: Clip this page - c:\program files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1
IE: Clip URL - c:\program files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: New note - c:\program files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.html
IE: Nová poznámka - c:\program files (x86)\Evernote\Evernote\\EvernoteIERes\NewNote.html
IE: Oříznout tuto stránku - c:\program files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=1
IE: Vystřihnout obrázek - c:\program files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=4
IE: Vystřihnout URL - c:\program files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0
IE: Výběr oříznutí - c:\program files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=3
IE: {{230D1201-7607-4CF6-A11F-9E4BF0A333E0} - {0DB13731-CEFD-43CF-A8FD-B61DCBC4D5B8} - c:\program files (x86)\Verdict Free\etnxp.dll
IE: {{2C73F784-D2DE-4422-B070-2E3332FE5744} - {0320AC26-52C8-4316-B2C4-24BB6FA73C9A} - c:\program files (x86)\Verdict Free\etnxp.dll
IE: {{2F5C139F-79BD-4C84-A95A-E7140525BC55} - {5B06364D-FF00-4BD5-9D01-4379952513F2} -
IE: {{572BF76C-9EFF-4e1e-93DE-72EF1E91B3DF} - {DB7FBFE3-82CB-49E0-9C41-39C2A80B4966} - c:\progra~2\Eurotran 2003\e2003i.dll
Trusted Zone: samsungsetup.com\www
TCP: DhcpNameServer = 10.0.0.138
FF - ProfilePath - c:\users\BetaVerze\AppData\Roaming\Mozilla\Firefox\Profiles\gnleqish.default\
FF - prefs.js: browser.startup.homepage - about:blank
FF - prefs.js: browser.search.selectedEngine - Google
FF - ExtSQL: 2014-03-15 16:32;
fmconverter@gmail.com; c:\program files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox
FF - ExtSQL: 2014-03-21 10:09;
PrivDog@AdTrustMedia.com; c:\users\BetaVerze\AppData\Roaming\Mozilla\Firefox\Profiles\gnleqish.default\extensions\
PrivDog@AdTrustMedia.com.xpi
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\BlueStacks]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_12_0_0_77_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_12_0_0_77_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Nico Mak Computing\WinZip]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,6f,00,66,00,\
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Google\Update\GoogleUpdate.exe
c:\program files (x86)\Wise\Wise Care 365\WiseTray.exe
c:\program files (x86)\ASUS\PC Probe II\Probe2.exe
c:\program files\ASUS\GPU Boost Driver\GpuBoostServer.exe
c:\program files (x86)\Google\Update\1.3.23.9\GoogleCrashHandler.exe
c:\windows\SysWOW64\PnkBstrA.exe
c:\windows\SysWOW64\PnkBstrB.exe
.
**************************************************************************
.
Celkový čas: 2014-05-01 11:10:15 - počítač byl restartován
ComboFix-quarantined-files.txt 2014-05-01 09:10
ComboFix2.txt 2014-04-30 22:37
ComboFix3.txt 2014-04-15 19:11
.
Před spuštěním: Volných bajtů: 118 755 262 464
Po spuštění: Volných bajtů: 118 413 352 960
.
- - End Of File - - 9F74D5B5CBD9A26F512A090C1D79A86B
687BD79F63D87AA25AA115FF2FF4D12C