Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Problém s odebráním USB flasch,zpomalený PC

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Sagitt62
Návštěvník
Návštěvník
Příspěvky: 131
Registrován: 25 kvě 2008 13:40

Re: Problém s odebráním USB flasch,zpomalený PC

#46 Příspěvek od Sagitt62 »

Ještě asi log z RSIT:

Logfile of random's system information tool 1.08 (written by random/random)
Run by Barry at 2013-03-01 21:00:21
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 51 GB (29%) free of 180 GB
Total RAM: 4087 MB (69% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:00:27, on 1.3.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16464)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files (x86)\HiSuite\HiSuite.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\ASUS\AI Suite\QFan3\QFanHelp.exe
C:\Program Files (x86)\IM Magician\vicamon.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Users\Barry\AppData\Local\HiSuite\userdata\hwtools\hwtransport.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files (x86)\HiSuite\LiveUpdateTip.exe
C:\Program Files\trend micro\Barry.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {95289393-33EA-4F8D-B952-483415B9C955} - (no file)
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - (no file)
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [QFan Help] "C:\Program Files (x86)\ASUS\AI Suite\QFan3\QFanHelp.exe"
O4 - HKLM\..\Run: [Cpu Level Up help] "C:\Program Files (x86)\ASUS\AI Suite\CpuLevelUpHelp.exe"
O4 - HKLM\..\Run: [IMMON] "C:\Program Files (x86)\IM Magician\Vicamon.exe"
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [Mobile Partner] C:\Program Files (x86)\HiSuite\HiSuite.exe -s
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://asia.msi.com.tw
O15 - Trusted Zone: http://global.msi.com.tw
O15 - Trusted Zone: http://www.rothwell.cz
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlcdnet.asus.com/pub/ASUS/misc/d ... .2.5.0.cab
O16 - DPF: {8167C273-DF59-4416-B647-C8BB2C7EE83E} (WebSDev Control) - http://liveupdate.msi.com.tw/autobios/L ... nstall.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM, Inc. - C:\ASUS.SYS\config\DVMExportService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HiSuiteOuc64.exe - Unknown owner - C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
O23 - Service: HuaweiHiSuiteService64.exe - Unknown owner - C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10136 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe"
"C:\ASUS.SYS\config\DVMExportService.exe"
"C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe" -/service
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe" -/service
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000658
"C:\Windows\system32\Dwm.exe"
"taskhost.exe"
C:\Windows\Explorer.EXE
taskeng.exe {20214C35-856C-4D91-AE53-6001E1DF52EB}
"C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe" -b
WLIDSvcM.exe 1204
"C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
C:\Windows\system32\svchost.exe -k bthsvcs
"C:\Program Files (x86)\HiSuite\HiSuite.exe" -s
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
"C:\Program Files (x86)\ASUS\AI Suite\QFan3\QFanHelp.exe"
"C:\Program Files (x86)\IM Magician\vicamon.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe" -CtxID "#Hewlett-Packard#HP Deskjet F4200 series#1305985133" -Startup
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
adb fork-server server
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe" -Embedding
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe" -Embedding
{1AA1089A-B31A-4325-BDC5-208F28597183}
{0D9BE624-6216-4E70-A5CE-10DBAB9CEDE9}
{1E211B3E-4320-4E83-9032-F0C2EC21BCBE}
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\HiSuite\LiveUpdateTip.exe"
"C:\Users\Barry\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20 509496]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2010-12-21 1483264]
"Mobile Partner"=C:\Program Files (x86)\HiSuite\HiSuite.exe [2012-12-24 557232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\PROGRA~2\HP\DIGITA~1\bin\hpqtra08.exe [2009-09-20 270336]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2010-05-24 2439072]
"QFan Help"=C:\Program Files (x86)\ASUS\AI Suite\QFan3\QFanHelp.exe [2010-04-19 611968]
"Cpu Level Up help"=C:\Program Files (x86)\ASUS\AI Suite\CpuLevelUpHelp.exe [2009-12-28 887936]
"IMMON"=C:\Program Files (x86)\IM Magician\Vicamon.exe [2009-05-07 143360]
"hpqSRMon"=C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2013-02-06 385248]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 months======

2013-03-01 19:57:16 ----D---- C:\Windows\temp
2013-03-01 19:57:15 ----A---- C:\ComboFix.txt
2013-03-01 19:53:47 ----D---- C:\$RECYCLE.BIN
2013-03-01 19:45:00 ----A---- C:\Windows\zip.exe
2013-03-01 19:45:00 ----A---- C:\Windows\SWSC.exe
2013-03-01 19:45:00 ----A---- C:\Windows\SWREG.exe
2013-03-01 19:45:00 ----A---- C:\Windows\sed.exe
2013-03-01 19:45:00 ----A---- C:\Windows\PEV.exe
2013-03-01 19:45:00 ----A---- C:\Windows\NIRCMD.exe
2013-03-01 19:45:00 ----A---- C:\Windows\MBR.exe
2013-03-01 19:45:00 ----A---- C:\Windows\grep.exe
2013-03-01 19:44:58 ----D---- C:\ComboFix
2013-03-01 19:44:56 ----D---- C:\Qoobox
2013-03-01 19:44:46 ----D---- C:\Windows\erdnt
2013-03-01 17:46:38 ----A---- C:\Windows\SYSWOW64\drivers\diixcn.sys
2013-03-01 17:46:38 ----A---- C:\ixuekhst.txt
2013-03-01 05:26:32 ----A---- C:\Windows\SYSWOW64\drivers\nvzsbaba.sys
2013-03-01 05:26:32 ----A---- C:\vpgfit.txt
2013-02-28 16:50:36 ----D---- C:\ProgramData\Kaspersky Lab
2013-02-27 09:28:35 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-02-27 09:28:34 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-02-27 09:28:34 ----A---- C:\Windows\system32\UIAnimation.dll
2013-02-27 09:28:34 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-02-27 09:28:32 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-02-27 09:28:32 ----A---- C:\Windows\system32\WMPhoto.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-02-27 09:28:31 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-02-27 09:28:31 ----A---- C:\Windows\system32\d3d10_1.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-02-27 09:28:30 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-02-27 09:28:30 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-02-27 09:28:30 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-02-27 09:28:30 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-02-27 09:28:30 ----A---- C:\Windows\system32\d3d10warp.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\XpsPrint.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\FntCache.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\dxgi.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\DWrite.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d11.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d10level9.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d10core.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d10.dll
2013-02-27 09:28:28 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-02-27 09:28:28 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-02-27 09:28:28 ----A---- C:\Windows\system32\d2d1.dll
2013-02-26 18:37:33 ----A---- C:\TDSSKiller.2.8.16.0_26.02.2013_18.37.33_log.txt
2013-02-25 19:25:15 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-02-25 19:25:05 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-02-25 17:19:30 ----A---- C:\Program Files (x86)\mcadmaq.txt
2013-02-25 17:10:19 ----A---- C:\Program Files (x86)\eqgns.txt
2013-02-24 18:20:56 ----A---- C:\Program Files (x86)\uaux.txt
2013-02-24 13:44:08 ----D---- C:\rsit
2013-02-24 13:44:08 ----D---- C:\Program Files\trend micro
2013-02-24 11:43:51 ----A---- C:\AdwCleaner[S2].txt
2013-02-24 11:43:18 ----A---- C:\AdwCleaner[S1].txt
2013-02-24 08:10:28 ----A---- C:\AdwCleaner[R2].txt
2013-02-24 06:43:01 ----A---- C:\AdwCleaner[R1].txt
2013-02-20 05:24:00 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\url.dll
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-02-13 05:41:13 ----A---- C:\Windows\system32\url.dll
2013-02-13 05:41:13 ----A---- C:\Windows\system32\mshtmled.dll
2013-02-13 05:41:13 ----A---- C:\Windows\system32\ieUnatt.exe
2013-02-13 05:41:13 ----A---- C:\Windows\system32\ieui.dll
2013-02-13 05:41:12 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-02-13 05:41:12 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-02-13 05:41:12 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-02-13 05:41:12 ----A---- C:\Windows\system32\urlmon.dll
2013-02-13 05:41:12 ----A---- C:\Windows\system32\msfeeds.dll
2013-02-13 05:41:12 ----A---- C:\Windows\system32\jscript9.dll
2013-02-13 05:41:11 ----A---- C:\Windows\system32\wininet.dll
2013-02-13 05:41:10 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-02-13 05:41:10 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-02-13 05:41:10 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-02-13 05:41:10 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-02-13 05:41:10 ----A---- C:\Windows\system32\vbscript.dll
2013-02-13 05:41:10 ----A---- C:\Windows\system32\jsproxy.dll
2013-02-13 05:41:10 ----A---- C:\Windows\system32\jscript.dll
2013-02-13 05:41:10 ----A---- C:\Windows\system32\iertutil.dll
2013-02-13 05:41:09 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-02-13 05:41:08 ----A---- C:\Windows\system32\mshtml.dll
2013-02-13 05:41:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-02-13 05:41:07 ----A---- C:\Windows\system32\ieframe.dll
2013-02-13 05:02:07 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-02-13 05:02:06 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-02-13 05:02:06 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-02-13 05:02:02 ----A---- C:\Windows\system32\win32k.sys
2013-02-13 05:01:59 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-02-13 05:01:59 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-02-13 05:01:59 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-02-13 05:01:59 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-02-13 05:01:59 ----A---- C:\Windows\system32\winsrv.dll
2013-02-13 05:01:58 ----A---- C:\Windows\SYSWOW64\user.exe
2013-02-13 05:01:57 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-02-13 05:01:57 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS

======List of files/folders modified in the last 1 months======

2013-03-01 20:45:52 ----D---- C:\Windows\System32
2013-03-01 20:45:52 ----D---- C:\Windows\inf
2013-03-01 20:45:52 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-03-01 19:59:57 ----D---- C:\ProgramData\NVIDIA
2013-03-01 19:59:02 ----D---- C:\Windows\system32\config
2013-03-01 19:57:17 ----D---- C:\Windows\system32\drivers
2013-03-01 19:57:16 ----D---- C:\Windows
2013-03-01 19:53:48 ----A---- C:\Windows\system.ini
2013-03-01 19:51:51 ----D---- C:\Windows\system32\drivers\etc
2013-03-01 19:51:18 ----D---- C:\Windows\SysWOW64
2013-03-01 19:49:41 ----D---- C:\Windows\SYSWOW64\drivers
2013-03-01 19:49:41 ----D---- C:\Windows\AppPatch
2013-03-01 19:49:41 ----D---- C:\Program Files (x86)\Common Files
2013-03-01 19:33:55 ----SHD---- C:\System Volume Information
2013-03-01 19:32:50 ----RD---- C:\Program Files (x86)
2013-03-01 19:27:30 ----SD---- C:\ProgramData\Microsoft
2013-03-01 17:35:35 ----D---- C:\Windows\Prefetch
2013-03-01 17:34:52 ----D---- C:\Windows\SoftwareDistribution
2013-02-28 22:00:31 ----D---- C:\Windows\rescache
2013-02-28 17:01:35 ----RAD---- C:\hwevid
2013-02-28 16:50:36 ----D---- C:\ProgramData
2013-02-28 16:21:54 ----D---- C:\Windows\debug
2013-02-28 08:08:40 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-02-28 04:22:21 ----D---- C:\Windows\winsxs
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\it-IT
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\es-ES
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\en-US
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\el-GR
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\de-DE
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\da-DK
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-02-28 04:21:41 ----D---- C:\Windows\system32\zh-TW
2013-02-28 04:21:41 ----D---- C:\Windows\system32\zh-HK
2013-02-28 04:21:41 ----D---- C:\Windows\system32\zh-CN
2013-02-28 04:21:41 ----D---- C:\Windows\system32\tr-TR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\sv-SE
2013-02-28 04:21:41 ----D---- C:\Windows\system32\ru-RU
2013-02-28 04:21:41 ----D---- C:\Windows\system32\pt-PT
2013-02-28 04:21:41 ----D---- C:\Windows\system32\pt-BR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\pl-PL
2013-02-28 04:21:41 ----D---- C:\Windows\system32\nl-NL
2013-02-28 04:21:41 ----D---- C:\Windows\system32\nb-NO
2013-02-28 04:21:41 ----D---- C:\Windows\system32\ko-KR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\ja-JP
2013-02-28 04:21:41 ----D---- C:\Windows\system32\it-IT
2013-02-28 04:21:41 ----D---- C:\Windows\system32\hu-HU
2013-02-28 04:21:41 ----D---- C:\Windows\system32\fr-FR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\fi-FI
2013-02-28 04:21:41 ----D---- C:\Windows\system32\es-ES
2013-02-28 04:21:41 ----D---- C:\Windows\system32\en-US
2013-02-28 04:21:41 ----D---- C:\Windows\system32\el-GR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\de-DE
2013-02-28 04:21:41 ----D---- C:\Windows\system32\da-DK
2013-02-28 04:21:41 ----D---- C:\Windows\system32\cs-CZ
2013-02-27 09:29:53 ----D---- C:\Windows\system32\catroot
2013-02-27 09:29:52 ----D---- C:\Windows\system32\catroot2
2013-02-25 19:25:18 ----D---- C:\Windows\system32\Tasks
2013-02-24 13:44:08 ----RD---- C:\Program Files
2013-02-24 06:15:41 ----SHD---- C:\Windows\Installer
2013-02-24 06:15:41 ----D---- C:\Config.Msi
2013-02-21 20:17:49 ----D---- C:\Windows\system32\DriverStore
2013-02-21 08:56:02 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-02-15 18:59:54 ----D---- C:\ProgramData\Adobe
2013-02-13 09:33:09 ----RSD---- C:\Windows\assembly
2013-02-13 09:33:09 ----D---- C:\Windows\Microsoft.NET
2013-02-13 09:23:11 ----D---- C:\Windows\SYSWOW64\migration
2013-02-13 09:23:11 ----D---- C:\Windows\system32\migration
2013-02-13 09:23:11 ----D---- C:\Program Files\Internet Explorer
2013-02-13 09:23:11 ----D---- C:\Program Files (x86)\Internet Explorer
2013-02-13 05:46:13 ----D---- C:\ProgramData\Microsoft Help
2013-02-13 05:44:30 ----A---- C:\Windows\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2009-08-04 13440]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2009-07-06 13368]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2012-12-03 129216]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2012-11-16 27800]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2012-12-03 99912]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2010-11-12 155752]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2010-05-15 1327520]
S0 dmlpku;dmlpku; C:\Windows\system32\drivers\diixcn.sys []
S0 odam;odam; C:\Windows\system32\drivers\nvzsbaba.sys []
S0 svzqkznn;svzqkznn; C:\Windows\system32\drivers\mhyasnz.sys []
S0 xgmuwv;xgmuwv; C:\Windows\system32\drivers\fjkvvm.sys []
S0 ydad;ydad; C:\Windows\system32\drivers\ovsy.sys []
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\drivers\Dot4Prt.sys [2010-11-20 19968]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
S3 MSICDSetup;MSICDSetup; \??\E:\CDriver64.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 Ser2pl;Prolific Serial port WDF driver; C:\Windows\system32\DRIVERS\ser2pl64.sys [2012-07-30 158720]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2013-02-06 110816]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2013-02-06 86752]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [2009-12-28 96896]
R2 DvmMDES;DeviceVM Meta Data Export Service; C:\ASUS.SYS\config\DVMExportService.exe [2009-10-16 319488]
R2 HiSuiteOuc64.exe;HiSuiteOuc64.exe; C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe [2012-12-24 138416]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 HuaweiHiSuiteService64.exe;HuaweiHiSuiteService64.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [2012-11-21 201608]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 NVSvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-10-02 891240]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 2292096]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2010-12-08 628736]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-03-31 136176]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-10 1258856]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-28 251248]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-03-31 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-02-20 115608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-03-14 1255736]

-----------------EOF-----------------

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: Problém s odebráním USB flasch,zpomalený PC

#47 Příspěvek od cernohous13 »

:D Neboj, i já jsem z toho vedle.
:arrow: Otevři Poznámkový blok (Notepad) a zkopíruj celý zelený text z "CFScriptu".
Soubor ulož na plochu jako CFscript.txt a jeho ikonu přetáhni myší nad ikonu ComboFixu - tam pusť.
Obrázek
ComboFix se spustí - počkej na log a vlož ho sem.
CFScript

Kód: Vybrat vše

KillAll::

File::
c:\windows\SysWow64\drivers\diixcn.sys
c:\windows\SysWow64\drivers\nvzsbaba.sys
c:\windows\system32\drivers\mhyasnz.sys
c:\windows\system32\drivers\fjkvvm.sys
c:\windows\system32\drivers\ovsy.sys
C:\ixuekhst.txt
C:\vpgfit.txt
C:\Program Files (x86)\mcadmaq.txt
C:\Program Files (x86)\eqgns.txt
C:\Program Files (x86)\uaux.txt
C:\AdwCleaner[S2].txt
C:\AdwCleaner[S1].txt
C:\AdwCleaner[R2].txt
C:\AdwCleaner[R1].txt

Driver::
dmlpku
odam
svzqkznn
xgmuwv
ydad

RegNull::
[HKEY_USERS\S-1-5-21-3486151923-3970165833-874160790-1000\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{99786A83-23EB-96FD-D529-71EDCD385B96}*]
[HKEY_USERS\S-1-5-21-3486151923-3970165833-874160790-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]

RegLock::
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]

Folder::
C:\hwevid
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

Sagitt62
Návštěvník
Návštěvník
Příspěvky: 131
Registrován: 25 kvě 2008 13:40

Re: Problém s odebráním USB flasch,zpomalený PC

#48 Příspěvek od Sagitt62 »

Opět nadpočet znaků,log nejde odeslat. Nějak jsem zapoměl,jak to komprimovat či co. :( Postup?

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: Problém s odebráním USB flasch,zpomalený PC

#49 Příspěvek od cernohous13 »

Rozdělit do více příspěvků nebo vynechat sekci "Snapshot"
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

Sagitt62
Návštěvník
Návštěvník
Příspěvky: 131
Registrován: 25 kvě 2008 13:40

Re: Problém s odebráním USB flasch,zpomalený PC

#50 Příspěvek od Sagitt62 »

Tak pokus první.
log část 1: ComboFix 13-03-01.01 - Barry 02.03.2013 8:33.2.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.4087.2548 [GMT 1:00]
Spuštěný z: c:\users\Barry\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Barry\Desktop\CFScript.txt
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"C:\AdwCleaner[R1].txt"
"C:\AdwCleaner[R2].txt"
"C:\AdwCleaner[S1].txt"
"C:\AdwCleaner[S2].txt"
"C:\ixuekhst.txt"
"c:\program files (x86)\eqgns.txt"
"c:\program files (x86)\mcadmaq.txt"
"c:\program files (x86)\uaux.txt"
"C:\vpgfit.txt"
"c:\windows\system32\drivers\fjkvvm.sys"
"c:\windows\system32\drivers\mhyasnz.sys"
"c:\windows\system32\drivers\ovsy.sys"
"c:\windows\SysWow64\drivers\diixcn.sys"
"c:\windows\SysWow64\drivers\nvzsbaba.sys"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\AdwCleaner[R1].txt
C:\AdwCleaner[R2].txt
C:\AdwCleaner[S1].txt
C:\AdwCleaner[S2].txt
C:\hwevid
c:\hwevid\DelZip190.dll
c:\hwevid\files\hwevid.ini
c:\hwevid\hwevid.dll
c:\hwevid\hwevid.eula
c:\hwevid\hwevid.exe
c:\hwevid\hwevid.info
c:\hwevid\hwevid.lcn
c:\hwevid\hwevid.map
c:\hwevid\hwevid.one
c:\hwevid\logy\121006_BARRY-PC_Barry.log
c:\hwevid\logy\121006_BARRY-PC_Janyška.log
c:\hwevid\logy\121008_BARRY-PC_Barry.log
c:\hwevid\logy\121008_BARRY-PC_Janyška.log
c:\hwevid\logy\121009_BARRY-PC_Barry.log
c:\hwevid\logy\121009_BARRY-PC_Janyška.log
c:\hwevid\logy\121010_BARRY-PC_Barry.log
c:\hwevid\logy\121010_BARRY-PC_Janyška.log
c:\hwevid\logy\121011_BARRY-PC_Barry.log
c:\hwevid\logy\121011_BARRY-PC_Janyška.log
c:\hwevid\logy\121012_BARRY-PC_Barry.log
c:\hwevid\logy\121013_BARRY-PC_Barry.log
c:\hwevid\logy\121014_BARRY-PC_Barry.log
c:\hwevid\logy\121014_BARRY-PC_Janyška.log
c:\hwevid\logy\121015_BARRY-PC_Barry.log
c:\hwevid\logy\121015_BARRY-PC_Janyška.log
c:\hwevid\logy\121016_BARRY-PC_Barry.log
c:\hwevid\logy\121016_BARRY-PC_Janyška.log
c:\hwevid\logy\121017_BARRY-PC_Barry.log
c:\hwevid\logy\121017_BARRY-PC_Janyška.log
c:\hwevid\logy\121018_BARRY-PC_Barry.log
c:\hwevid\logy\121019_BARRY-PC_Barry.log
c:\hwevid\logy\121019_BARRY-PC_Janyška.log
c:\hwevid\logy\121020_BARRY-PC_Barry.log
c:\hwevid\logy\121021_BARRY-PC_Barry.log
c:\hwevid\logy\121022_BARRY-PC_Barry.log
c:\hwevid\logy\121023_BARRY-PC_Barry.log
c:\hwevid\logy\121023_BARRY-PC_Janyška.log
c:\hwevid\logy\121024_BARRY-PC_Barry.log
c:\hwevid\logy\121025_BARRY-PC_Barry.log
c:\hwevid\logy\121025_BARRY-PC_Janyška.log
c:\hwevid\logy\121026_BARRY-PC_Barry.log
c:\hwevid\logy\121027_BARRY-PC_Barry.log
c:\hwevid\logy\121028_BARRY-PC_Barry.log
c:\hwevid\logy\121028_BARRY-PC_Janyška.log
c:\hwevid\logy\121029_BARRY-PC_Barry.log
c:\hwevid\logy\121029_BARRY-PC_Janyška.log
c:\hwevid\logy\121030_BARRY-PC_Barry.log
c:\hwevid\logy\121030_BARRY-PC_Janyška.log
c:\hwevid\logy\121031_BARRY-PC_Barry.log
c:\hwevid\logy\121031_BARRY-PC_Janyška.log
c:\hwevid\logy\121101_BARRY-PC_Barry.log
c:\hwevid\logy\121101_BARRY-PC_Janyška.log
c:\hwevid\logy\121102_BARRY-PC_Barry.log
c:\hwevid\logy\121102_BARRY-PC_Janyška.log
c:\hwevid\logy\121103_BARRY-PC_Barry.log
c:\hwevid\logy\121104_BARRY-PC_Barry.log
c:\hwevid\logy\121105_BARRY-PC_Barry.log
c:\hwevid\logy\121105_BARRY-PC_Janyška.log
c:\hwevid\logy\121106_BARRY-PC_Barry.log
c:\hwevid\logy\121106_BARRY-PC_Janyška.log
c:\hwevid\logy\121107_BARRY-PC_Barry.log
c:\hwevid\logy\121107_BARRY-PC_Janyška.log
c:\hwevid\logy\121108_BARRY-PC_Barry.log
c:\hwevid\logy\121109_BARRY-PC_Barry.log
c:\hwevid\logy\121110_BARRY-PC_Barry.log
c:\hwevid\logy\121110_BARRY-PC_Janyška.log
c:\hwevid\logy\121111_BARRY-PC_Barry.log
c:\hwevid\logy\121111_BARRY-PC_Janyška.log
c:\hwevid\logy\121112_BARRY-PC_Barry.log
c:\hwevid\logy\121112_BARRY-PC_Janyška.log
c:\hwevid\logy\121113_BARRY-PC_Barry.log
c:\hwevid\logy\121113_BARRY-PC_Janyška.log
c:\hwevid\logy\121114_BARRY-PC_Barry.log
c:\hwevid\logy\121114_BARRY-PC_Janyška.log
c:\hwevid\logy\121115_BARRY-PC_Barry.log
c:\hwevid\logy\121115_BARRY-PC_Janyška.log
c:\hwevid\logy\121116_BARRY-PC_Barry.log
c:\hwevid\logy\121116_BARRY-PC_Janyška.log
c:\hwevid\logy\121117_BARRY-PC_Barry.log
c:\hwevid\logy\121119_BARRY-PC_Barry.log
c:\hwevid\logy\121119_BARRY-PC_Janyška.log
c:\hwevid\logy\121120_BARRY-PC_Barry.log
c:\hwevid\logy\121120_BARRY-PC_Janyška.log
c:\hwevid\logy\121121_BARRY-PC_Barry.log
c:\hwevid\logy\121121_BARRY-PC_Janyška.log
c:\hwevid\logy\121122_BARRY-PC_Barry.log
c:\hwevid\logy\121122_BARRY-PC_Janyška.log
c:\hwevid\logy\121123_BARRY-PC_Barry.log
c:\hwevid\logy\121124_BARRY-PC_Barry.log
c:\hwevid\logy\121125_BARRY-PC_Barry.log
c:\hwevid\logy\121126_BARRY-PC_Barry.log
c:\hwevid\logy\121126_BARRY-PC_Janyška.log
c:\hwevid\logy\121127_BARRY-PC_Barry.log
c:\hwevid\logy\121128_BARRY-PC_Barry.log
c:\hwevid\logy\121128_BARRY-PC_Janyška.log
c:\hwevid\logy\121129_BARRY-PC_Barry.log
c:\hwevid\logy\121129_BARRY-PC_Janyška.log
c:\hwevid\logy\121130_BARRY-PC_Barry.log
c:\hwevid\logy\121201_BARRY-PC_Barry.log
c:\hwevid\logy\121203_BARRY-PC_Barry.log
c:\hwevid\logy\121204_BARRY-PC_Barry.log
c:\hwevid\logy\121205_BARRY-PC_Barry.log
c:\hwevid\logy\121205_BARRY-PC_Janyška.log
c:\hwevid\logy\121206_BARRY-PC_Barry.log
c:\hwevid\logy\121207_BARRY-PC_Barry.log
c:\hwevid\logy\121208_BARRY-PC_Barry.log
c:\hwevid\logy\121209_BARRY-PC_Barry.log
c:\hwevid\logy\121210_BARRY-PC_Barry.log
c:\hwevid\logy\121210_BARRY-PC_Janyška.log
c:\hwevid\logy\121211_BARRY-PC_Barry.log
c:\hwevid\logy\121211_BARRY-PC_Janyška.log
c:\hwevid\logy\121212_BARRY-PC_Barry.log
c:\hwevid\logy\121213_BARRY-PC_Barry.log
c:\hwevid\logy\121213_BARRY-PC_Janyška.log
c:\hwevid\logy\121214_BARRY-PC_Barry.log
c:\hwevid\logy\121214_BARRY-PC_Janyška.log
c:\hwevid\logy\121215_BARRY-PC_Barry.log
c:\hwevid\logy\121215_BARRY-PC_Janyška.log
c:\hwevid\logy\121216_BARRY-PC_Barry.log
c:\hwevid\logy\121216_BARRY-PC_Janyška.log
c:\hwevid\logy\121217_BARRY-PC_Barry.log
c:\hwevid\logy\121218_BARRY-PC_Barry.log
c:\hwevid\logy\121218_BARRY-PC_Janyška.log
c:\hwevid\logy\121219_BARRY-PC_Barry.log
c:\hwevid\logy\121220_BARRY-PC_Barry.log
c:\hwevid\logy\121221_BARRY-PC_Barry.log
c:\hwevid\logy\121222_BARRY-PC_Barry.log
c:\hwevid\logy\121223_BARRY-PC_Barry.log
c:\hwevid\logy\121224_BARRY-PC_Barry.log
c:\hwevid\logy\121225_BARRY-PC_Barry.log
c:\hwevid\logy\121225_BARRY-PC_Janyška.log
c:\hwevid\logy\121226_BARRY-PC_Barry.log
c:\hwevid\logy\121227_BARRY-PC_Barry.log
c:\hwevid\logy\121228_BARRY-PC_Barry.log
c:\hwevid\logy\121228_BARRY-PC_Janyška.log
c:\hwevid\logy\121229_BARRY-PC_Barry.log
c:\hwevid\logy\121230_BARRY-PC_Barry.log
c:\hwevid\logy\121231_BARRY-PC_Barry.log
c:\hwevid\logy\121231_BARRY-PC_Janyška.log
c:\hwevid\logy\130101_BARRY-PC_Barry.log
c:\hwevid\logy\130102_BARRY-PC_Barry.log
c:\hwevid\logy\130102_BARRY-PC_Janyška.log
c:\hwevid\logy\130103_BARRY-PC_Barry.log
c:\hwevid\logy\130103_BARRY-PC_Janyška.log
c:\hwevid\logy\130104_BARRY-PC_Barry.log
c:\hwevid\logy\130104_BARRY-PC_Janyška.log
c:\hwevid\logy\130105_BARRY-PC_Barry.log
c:\hwevid\logy\130105_BARRY-PC_Janyška.log
c:\hwevid\logy\130106_BARRY-PC_Barry.log
c:\hwevid\logy\130106_BARRY-PC_Janyška.log
c:\hwevid\logy\130107_BARRY-PC_Barry.log
c:\hwevid\logy\130107_BARRY-PC_Janyška.log
c:\hwevid\logy\130108_BARRY-PC_Barry.log
c:\hwevid\logy\130108_BARRY-PC_Janyška.log
c:\hwevid\logy\130109_BARRY-PC_Barry.log
c:\hwevid\logy\130109_BARRY-PC_Janyška.log
c:\hwevid\logy\130110_BARRY-PC_Barry.log
c:\hwevid\logy\130110_BARRY-PC_Janyška.log
c:\hwevid\logy\130113_BARRY-PC_Barry.log
c:\hwevid\logy\130114_BARRY-PC_Janyška.log
c:\hwevid\logy\130115_BARRY-PC_Barry.log
c:\hwevid\logy\130115_BARRY-PC_Janyška.log
c:\hwevid\logy\130116_BARRY-PC_Barry.log
c:\hwevid\logy\130116_BARRY-PC_Janyška.log
c:\hwevid\logy\130118_BARRY-PC_Barry.log
c:\hwevid\logy\130118_BARRY-PC_Janyška.log
c:\hwevid\logy\130119_BARRY-PC_Barry.log
c:\hwevid\logy\130120_BARRY-PC_Barry.log
c:\hwevid\logy\130120_BARRY-PC_Janyška.log
c:\hwevid\logy\130121_BARRY-PC_Janyška.log
c:\hwevid\logy\130122_BARRY-PC_Barry.log
c:\hwevid\logy\130122_BARRY-PC_Janyška.log
c:\hwevid\logy\130123_BARRY-PC_Barry.log
c:\hwevid\logy\130123_BARRY-PC_Janyška.log
c:\hwevid\logy\130124_BARRY-PC_Barry.log
c:\hwevid\logy\130124_BARRY-PC_Janyška.log
c:\hwevid\logy\130125_BARRY-PC_Barry.log
c:\hwevid\logy\130126_BARRY-PC_Barry.log
c:\hwevid\logy\130126_BARRY-PC_Janyška.log
c:\hwevid\logy\130127_BARRY-PC_Barry.log
c:\hwevid\logy\130128_BARRY-PC_Barry.log
c:\hwevid\logy\130129_BARRY-PC_Barry.log
c:\hwevid\logy\130129_BARRY-PC_Janyška.log
c:\hwevid\logy\130130_BARRY-PC_Barry.log
c:\hwevid\logy\130130_BARRY-PC_Janyška.log
c:\hwevid\logy\130131_BARRY-PC_Barry.log
c:\hwevid\logy\130131_BARRY-PC_Janyška.log
c:\hwevid\logy\130201_BARRY-PC_Barry.log
c:\hwevid\logy\130201_BARRY-PC_Janyška.log
c:\hwevid\logy\130202_BARRY-PC_Barry.log
c:\hwevid\logy\130203_BARRY-PC_Barry.log
c:\hwevid\logy\130204_BARRY-PC_Barry.log
c:\hwevid\logy\130204_BARRY-PC_Janyška.log
c:\hwevid\logy\130205_BARRY-PC_Barry.log
c:\hwevid\logy\130205_BARRY-PC_Janyška.log
c:\hwevid\logy\130206_BARRY-PC_Barry.log
c:\hwevid\logy\130206_BARRY-PC_Janyška.log
c:\hwevid\logy\130207_BARRY-PC_Barry.log
c:\hwevid\logy\130207_BARRY-PC_Janyška.log
c:\hwevid\logy\130208_BARRY-PC_Barry.log
c:\hwevid\logy\130208_BARRY-PC_Janyška.log
c:\hwevid\logy\130209_BARRY-PC_Barry.log
c:\hwevid\logy\130210_BARRY-PC_Barry.log
c:\hwevid\logy\130211_BARRY-PC_Barry.log
c:\hwevid\logy\130211_BARRY-PC_Janyška.log
c:\hwevid\logy\130212_BARRY-PC_Barry.log
c:\hwevid\logy\130212_BARRY-PC_Janyška.log
c:\hwevid\logy\130213_BARRY-PC_Barry.log
c:\hwevid\logy\130213_BARRY-PC_Janyška.log
c:\hwevid\logy\130214_BARRY-PC_Barry.log
c:\hwevid\logy\130214_BARRY-PC_Janyška.log
c:\hwevid\logy\130215_BARRY-PC_Barry.log
c:\hwevid\logy\130215_BARRY-PC_Janyška.log
c:\hwevid\logy\130216_BARRY-PC_Barry.log
c:\hwevid\logy\130216_BARRY-PC_Janyška.log
c:\hwevid\logy\130218_BARRY-PC_Janyška.log
c:\hwevid\logy\130219_BARRY-PC_Janyška.log
c:\hwevid\logy\130220_BARRY-PC_Barry.log
c:\hwevid\logy\130220_BARRY-PC_Janyška.log
c:\hwevid\logy\130221_BARRY-PC_Barry.log
c:\hwevid\logy\130221_BARRY-PC_Janyška.log
c:\hwevid\logy\130222_BARRY-PC_Barry.log
c:\hwevid\logy\130222_BARRY-PC_Janyška.log
c:\hwevid\logy\130223_BARRY-PC_Barry.log
c:\hwevid\logy\130223_BARRY-PC_Janyška.log
c:\hwevid\logy\130224_BARRY-PC_Barry.log
c:\hwevid\logy\130224_BARRY-PC_Janyška.log
c:\hwevid\logy\130225_BARRY-PC_Barry.log
c:\hwevid\logy\130225_BARRY-PC_Janyška.log
c:\hwevid\logy\130226_BARRY-PC_Barry.log
c:\hwevid\logy\130226_BARRY-PC_Janyška.log
c:\hwevid\logy\130227_BARRY-PC_Janyška.log
c:\hwevid\logy\130228_BARRY-PC_Barry.log
c:\hwevid\logy\130228_BARRY-PC_Janyška.log
c:\hwevid\logy\Cbd_121006_090530527_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121008_052437218_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121008_053435773_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121008_182521426_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121011_223729085_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121011_223729085_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121011_223729553_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121011_223729553_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121011_223729725_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121011_223729725_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121011_224011811_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121012_000043989_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121013_090444997_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121013_092605709_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121014_120014092_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121014_120014108_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121014_120142600_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121014_120142616_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121014_120142631_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121015_051606600_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121015_054209778_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121018_184633106_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121018_191545773_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121019_214743474_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121019_222442803_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121019_222442819_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121019_224313924_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121019_235957593_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121021_070024613_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121021_070849764_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121021_070849779_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121021_164501072_BARRY-PC_Barry_Drop.txt
c:\hwevid\logy\Cbd_121021_164620851_BARRY-PC_Barry_Drop.txt
c:\hwevid\logy\Cbd_121021_164620882_BARRY-PC_Barry_Drop.txt
c:\hwevid\logy\Cbd_121021_180406506_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121021_180651097_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121022_051201942_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121022_051346143_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121022_052842865_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121022_053406084_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121022_184149253_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121022_184149253_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121022_184149819_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121022_184149819_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121022_184149852_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121022_184149852_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121022_184149885_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121022_184149885_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121022_184149918_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121022_184149918_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121022_184149968_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121022_184149968_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121022_184150001_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121022_184150001_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121023_224619616_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121023_224619616_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121023_224620505_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121023_224620505_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121023_224620770_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121023_224620770_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121026_044824124_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121026_045114622_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121026_052746719_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121027_055338424_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121027_064909510_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121027_070213092_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213092_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213582_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213582_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213592_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213592_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213622_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213622_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213632_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213632_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213662_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213662_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213672_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213672_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213702_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213702_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213732_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213732_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213742_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213742_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213772_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213772_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213782_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213782_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213812_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213812_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213822_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213822_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213852_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213852_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213882_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213882_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070213892_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121027_070213892_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121027_070349921_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121027_082152496_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121027_085137306_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121027_194352038_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121027_194437465_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121027_194523220_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121027_194604061_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121027_194705275_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121027_194751014_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121027_200339176_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_000326872_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_002253692_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_004235110_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_010551058_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_011818916_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_012510595_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_012638285_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_013129524_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_014434932_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_015109923_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_015316530_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_015334090_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_020322463_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_022713456_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121028_164527344_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_174845324_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_174952950_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_175037581_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_175121340_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_175158546_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_175219918_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_175253177_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_180000598_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_180519501_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_180604165_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_180647268_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_180711713_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_180750869_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_180813864_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_180841289_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_181220048_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_181249626_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_181312948_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121029_181414287_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121030_000235928_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121030_000235928_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121101_051738475_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121101_053828756_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121102_212858356_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121102_213054373_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121102_213100634_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121102_213100665_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121102_213102350_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121103_000100158_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121103_062954319_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121103_070129703_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121103_071019933_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121103_072610674_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121104_160650299_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121104_161711215_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121106_052121327_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121106_052138585_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121106_054554419_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121106_061644828_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121106_061913821_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121106_063025634_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121106_063645204_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121106_172157847_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121106_173313220_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121107_053041089_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121107_053401464_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121108_053030291_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121108_053951667_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121109_185119035_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121109_191115415_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121110_000120273_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121110_121551832_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121110_132044875_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121110_181223883_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121111_114053294_BARRY-PC_Janyška_Bitmap.bmp
c:\hwevid\logy\Cbd_121111_114053294_BARRY-PC_Janyška_Bitmap.jpg
c:\hwevid\logy\Cbd_121111_140234243_BARRY-PC_Janyška_Txt.txt
c:\hwevid\logy\Cbd_121111_140641051_BARRY-PC_Janyška_Txt.txt
c:\hwevid\logy\Cbd_121111_210456629_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121111_210758674_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121111_210849438_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121111_211002800_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121111_211047442_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121111_211141792_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121111_211209506_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121111_211457239_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121114_050717514_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121114_053322211_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121114_053828227_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121117_142550216_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121122_052215443_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121122_052336510_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121122_053232034_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121124_075645496_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121124_075850982_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121124_081014250_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121124_081014250_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121124_081015311_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121124_081015311_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121124_081015857_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121124_081015857_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121124_081216975_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121124_081226491_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121125_065118937_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121125_071313644_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121125_071313660_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121125_175520059_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121125_181250137_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121126_041209714_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121126_045939038_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121126_051125659_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121126_051404220_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121126_053127856_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121129_051619709_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121129_051639396_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121129_051655854_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121129_051754932_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121129_051758505_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121130_211130021_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121130_211130021_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121130_211130942_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121130_211130942_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121130_211430946_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121130_211535829_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121130_212246251_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121130_212521850_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121130_212558321_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121130_213221143_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121201_000241984_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121201_004659895_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121201_082440187_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121201_082440187_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121201_082441232_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121201_082441232_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121201_082441248_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121201_082441248_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121201_082441263_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121201_082441263_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121201_082441279_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121201_082441279_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121201_082441294_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121201_082441294_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121201_082441310_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121201_082441310_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121201_094444491_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121201_094444491_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121201_094445583_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121201_094445583_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121201_094445598_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121201_094445598_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121205_184806683_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121205_185129562_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121205_193511507_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121205_193900016_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121205_194358649_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121205_194659593_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121205_203356702_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121206_203612197_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121207_164117287_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121207_171532951_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_171731598_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_175416272_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_175818302_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_181318889_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_183004015_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_185148350_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_185236585_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_185728045_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_185922378_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_190410564_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_190759543_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_191032666_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_191217013_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_192256288_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_192615251_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_193034586_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_194424042_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_200538773_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121209_210108165_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121211_044737773_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121211_044738896_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121211_044944773_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121211_044946536_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121211_052132580_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121211_053426588_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121211_190021437_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121211_195806398_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121211_210101339_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121212_174831995_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121212_174843960_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121212_175326355_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121212_175326370_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121212_195750916_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121212_210031062_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121212_210040983_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_044449420_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_044453476_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_044453554_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_044654334_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_044658546_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_051145630_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_051924101_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_053012231_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_193223484_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_193223500_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_193544147_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_193623863_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_234246187_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121214_234408079_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121215_000030040_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121215_004931252_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121215_095046816_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121215_095255352_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121215_102041029_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121216_061617295_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121216_064221757_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121216_141152667_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121216_141913900_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121216_150929769_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121216_171416312_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121216_175132017_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121216_175457883_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121217_060009449_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121217_061207693_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121217_131715660_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121217_131755225_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121217_170738621_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_170738621_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_170739169_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_170739169_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_170739201_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_170739201_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_170739233_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_170739233_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_170739282_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_170739282_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_170739315_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_170739315_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_170739349_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_170739349_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_170739399_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_170739399_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_170739433_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_170739433_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_170739465_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_170739465_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_170739499_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_170739499_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_170739549_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_170739549_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_170739582_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_170739582_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_173614789_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121217_204148111_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_204148111_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_204148657_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_204148657_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_204148688_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_204148688_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_204148738_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_204148738_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_204148771_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_204148771_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_204148805_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_204148805_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_204148854_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_204148854_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_204148887_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_204148887_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_204148921_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_204148921_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_204148954_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_204148954_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_204149004_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121217_204149004_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121217_204838269_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121218_000445141_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121218_004126876_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121218_004126876_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121218_004127999_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121218_004127999_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121218_050424840_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121218_053548855_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121219_045945565_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121219_051542041_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121219_053532279_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121219_184639290_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121219_190504208_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121219_190927334_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121219_193635784_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121219_194108156_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121219_200336562_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121219_224153340_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121219_234840287_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121219_235859742_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121219_235903408_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121220_000231778_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121220_010557213_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121220_010558570_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121220_014110328_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121220_014113495_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121220_014159717_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121220_014159951_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121220_021841797_BARRY-PC_Barry_Drop.txt
c:\hwevid\logy\Cbd_121220_024335967_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121220_050820358_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121221_045849247_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045849247_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045849790_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045849790_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045849850_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045849850_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045849900_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045849900_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045849934_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045849934_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045849966_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045849966_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850016_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850016_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850083_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850083_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850116_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850116_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850166_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850166_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850200_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850200_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850233_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850233_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850283_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850283_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850316_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850316_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850350_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850350_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850383_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850383_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850433_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850433_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850466_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850466_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850499_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850499_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850549_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850549_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850583_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850583_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_045850616_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_045850616_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_052447288_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121221_053057575_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_053057575_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_053058243_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_053058243_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_053058383_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_053058383_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_053536963_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_053536963_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_053537727_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_121221_053537727_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_121221_053720479_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121221_053846686_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121221_053900648_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121221_062742500_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121221_072325787_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121221_075221368_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121221_075230697_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121221_085204224_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121221_085205706_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121222_001329233_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121222_005150286_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121222_014617462_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121222_014619272_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121222_021510548_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121222_030346773_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121222_033303981_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121226_144638985_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121226_144720227_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121227_000011940_BARRY-PC_Barry_Drop.txt
c:\hwevid\logy\Cbd_121228_153521753_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121228_182649376_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121228_183352775_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121228_204206670_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121229_103931161_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121229_132016719_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_110510829_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_110533416_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_112453947_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_112514254_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_113247011_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_114427375_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_115427847_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_121326361_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_121434630_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_122100236_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_123013008_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_151652148_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_152017725_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_121230_170240451_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130101_092154837_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130101_094917717_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130101_125759203_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130101_125823574_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130101_131316999_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130101_141644554_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_062544480_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_063001277_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_063439840_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_063459403_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_063600992_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_063957738_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_064232849_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_064344001_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_081243358_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_081328662_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_152416051_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_152503319_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_153114084_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_161821082_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_163546828_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_163806466_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_164822979_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_182710247_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_185310297_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_193459109_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_193652109_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_193745549_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_194202560_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_194459811_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_195255501_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130102_200036012_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130102_200036012_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130102_200036602_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130102_200036602_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130102_200036662_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130102_200036662_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130102_200036702_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130102_200036702_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130102_200036832_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130102_200036832_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130102_200036902_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130102_200036902_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130102_200036932_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130102_200036932_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130102_200037102_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130102_200037102_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130102_200119992_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130102_200119992_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130102_200120732_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130102_200120732_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130104_173708908_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130104_173708908_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130104_173709454_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130104_173709454_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130104_173709469_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130104_173709469_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130104_173709485_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130104_173709485_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130104_173709500_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130104_173709500_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130104_173709516_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130104_173709516_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130104_173709547_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130104_173709547_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130104_173709563_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130104_173709563_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130104_173709578_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130104_173709578_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130104_173709594_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130104_173709594_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130104_204410847_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130104_204414950_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130104_205110895_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130104_213519578_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130105_081947666_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130105_082141453_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130105_082353335_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130105_083122719_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_084617111_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_085117051_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_153700982_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_161359832_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_161445790_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_162635699_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_162706774_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_163405412_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_172305411_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_172307002_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_173819521_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_173831860_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_174101267_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130106_174305068_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130108_184032822_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130110_050042189_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130110_164931957_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130110_165946816_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130110_170003613_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130113_060952218_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130113_070743554_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130113_071552184_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130113_081740850_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130113_082251855_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130113_084404991_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130113_105459280_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130113_171254628_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130113_174459389_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130115_053755331_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130115_054244721_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130119_081938537_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130119_083036654_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130119_083359278_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130119_085349553_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130119_182102536_BARRY-PC_Barry_Drop.txt
c:\hwevid\logy\Cbd_130119_213447504_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130119_214949125_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130119_215147916_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130119_221013144_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130119_222054118_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130119_233722461_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130120_000116737_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130120_013729265_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130120_014057406_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130120_015005731_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130120_015622421_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130120_021640751_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130120_022114017_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130120_022500218_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130120_025812662_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130120_025823691_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130123_035806239_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130123_053015080_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130125_202752390_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130125_203140774_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130125_203938976_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130125_213546336_BARRY-PC_Barry_Drop.txt
c:\hwevid\logy\Cbd_130125_213621704_BARRY-PC_Barry_Drop.txt
c:\hwevid\logy\Cbd_130125_213645657_BARRY-PC_Barry_Drop.txt
c:\hwevid\logy\Cbd_130125_213857847_BARRY-PC_Barry_Drop.txt
c:\hwevid\logy\Cbd_130125_224943640_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130125_225458647_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_054832856_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_054913653_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_055117694_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_055257699_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_122328039_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_122409258_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_132329621_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_132637192_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_133248326_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130126_133248326_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130126_133249021_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130126_133249021_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130126_133249136_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130126_133249136_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130126_133249252_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130126_133249252_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130126_135119283_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_135408046_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_135933459_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_160759901_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_161012130_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130126_161303821_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130129_050606236_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130129_053438002_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130130_052937013_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130130_053604880_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130131_192148524_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130201_200516467_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200516467_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517013_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517013_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517047_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517047_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517078_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517078_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517127_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517127_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517160_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517160_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517193_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517193_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517243_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517243_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517277_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517277_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517311_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517311_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517343_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517343_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517393_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517393_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517427_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517427_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517460_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517460_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517510_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517510_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517543_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517543_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517578_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517578_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517610_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517610_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517660_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517660_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517694_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517694_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517733_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517733_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_200517810_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_200517810_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_201448415_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130201_201618465_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130201_201635875_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130201_202655289_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_202655289_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_202655966_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130201_202655966_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130201_205559102_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130201_205643580_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130201_211848904_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130201_212740140_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130201_213010443_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130203_153730776_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130203_154405702_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130204_052032292_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130204_052726585_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130204_053825856_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130209_161611662_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130209_163555625_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130209_165715763_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130209_165715763_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130209_165717027_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130209_165717027_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130209_170017486_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130209_170236785_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130209_170416579_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130209_170513977_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130210_105739049_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130210_110543642_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130211_050003932_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130213_051337874_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130213_054038314_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130215_193010834_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130215_202825821_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130215_203345079_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130215_204404051_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130215_210324929_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130215_211156930_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130215_212400776_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130215_213650817_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130216_132640837_BARRY-PC_Janyška_Drop.txt
c:\hwevid\logy\Cbd_130216_132704612_BARRY-PC_Janyška_Drop.txt
c:\hwevid\logy\Cbd_130216_132704628_BARRY-PC_Janyška_Drop.txt
c:\hwevid\logy\Cbd_130216_134527352_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130216_134527352_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130216_134528125_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130216_134528125_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130216_144148118_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130216_144150595_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130216_144150656_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130216_144151361_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130216_145035641_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130216_171032445_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130216_171510242_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130216_172223761_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130216_172520120_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130220_054200935_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130220_054259252_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130220_055728301_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130222_200955062_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130222_201633791_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130222_202626323_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130222_203001284_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130222_214505158_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130222_214505158_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130222_220136677_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130222_220136677_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130222_220137271_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130222_220137271_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130222_222038774_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130222_222748927_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130222_223548531_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130222_224011581_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130222_224038172_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130222_224054117_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130222_224742155_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130222_234610797_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_000429837_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_000714848_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_001348330_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_002337481_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_011523289_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_012047583_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_012150014_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_012220855_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_012255877_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_012344518_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_012713044_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_013818963_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_014054183_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_014230280_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_014526856_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_015035503_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_015653866_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130223_044428167_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130223_044428167_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130223_044429041_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130223_044429041_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130224_062837637_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_062934599_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_063846306_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_064246346_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_064657772_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_065353658_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_080115818_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_080136993_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_080158508_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_081012454_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_084624139_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_084657611_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_114809627_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_123324157_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_135506728_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_150629492_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_150648393_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_150729281_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_154009412_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_154044450_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_154220857_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_160458509_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_173103405_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_173536864_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_173701317_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_173741041_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_174454238_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_174915467_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_175849108_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_181909325_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_182015788_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_182804874_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_183508549_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_185258156_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_185501486_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_190506000_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_190533991_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_190621368_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130224_191950303_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_170925714_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_170937404_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_171305077_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130225_171305077_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130225_171305625_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130225_171305625_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130225_171305693_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130225_171305693_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130225_171305776_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130225_171305776_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130225_171305926_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130225_171305926_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130225_171306010_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130225_171306010_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130225_171453377_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130225_171453377_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130225_171454159_BARRY-PC_Barry_Bitmap.bmp
c:\hwevid\logy\Cbd_130225_171454159_BARRY-PC_Barry_Bitmap.jpg
c:\hwevid\logy\Cbd_130225_171753572_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_171811097_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_173330053_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_174015942_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_174200194_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_174206747_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_174207375_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_174208038_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_183432774_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_183805668_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_185129986_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_191513185_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_192314527_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_202351505_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130225_203038666_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130226_182927618_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130226_183200323_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130226_184039416_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130226_221740173_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130226_222955235_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130228_043547767_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130228_051932553_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130228_053103534_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130228_161854818_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130228_231822819_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130228_233215048_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130228_233359317_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130228_233533567_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130228_233644841_BARRY-PC_Barry_Txt.txt
c:\hwevid\logy\Cbd_130228_233718494_BARRY-PC_Barry_Txt.txt
c:\hwevid\uninstall.exe
C:\ixuekhst.txt
c:\program files (x86)\eqgns.txt
c:\program files (x86)\mcadmaq.txt
c:\program files (x86)\uaux.txt
C:\vpgfit.txt
c:\windows\SysWow64\drivers\diixcn.sys
c:\windows\SysWow64\drivers\nvzsbaba.sys

Sagitt62
Návštěvník
Návštěvník
Příspěvky: 131
Registrován: 25 kvě 2008 13:40

Re: Problém s odebráním USB flasch,zpomalený PC

#51 Příspěvek od Sagitt62 »

log část 2:
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_dmlpku
-------\Service_odam
-------\Service_svzqkznn
-------\Service_xgmuwv
-------\Service_ydad
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-02-02 do 2013-03-02 )))))))))))))))))))))))))))))))
.
.
2013-03-02 07:39 . 2013-03-02 07:39 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-03-02 07:39 . 2013-03-02 07:39 -------- d-----w- c:\users\Janyška\AppData\Local\temp
2013-03-02 07:39 . 2013-03-02 07:39 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-03-02 00:00 . 2013-02-08 00:28 9162192 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{9223D231-8408-461D-9894-0B319512DE75}\mpengine.dll
2013-03-01 04:26 . 2013-03-01 16:46 179136 ----a-w- C:\backup.reg
2013-02-28 15:50 . 2013-02-28 15:50 -------- d-----w- c:\programdata\Kaspersky Lab
2013-02-25 18:25 . 2013-02-25 19:12 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2013-02-25 18:25 . 2013-03-01 18:28 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2
2013-02-24 12:44 . 2013-03-01 20:00 -------- d-----w- c:\program files\trend micro
2013-02-24 12:44 . 2013-02-24 12:44 -------- d-----w- C:\rsit
2013-02-22 19:31 . 2013-02-22 19:31 -------- d-----w- c:\users\Barry\AppData\Local\Programs
2013-02-13 04:42 . 2013-01-09 01:10 996352 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll
2013-02-13 04:42 . 2013-01-08 22:01 768000 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll
2013-02-13 04:02 . 2013-01-05 05:53 5553512 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-02-13 04:02 . 2013-01-05 05:00 3967848 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2013-02-13 04:02 . 2013-01-05 05:00 3913064 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
2013-02-13 04:02 . 2013-01-04 03:26 3153408 ----a-w- c:\windows\system32\win32k.sys
2013-02-13 04:01 . 2013-01-04 05:46 215040 ----a-w- c:\windows\system32\winsrv.dll
2013-02-13 04:01 . 2013-01-04 04:51 5120 ----a-w- c:\windows\SysWow64\wow32.dll
2013-02-13 04:01 . 2013-01-04 02:47 25600 ----a-w- c:\windows\SysWow64\setup16.exe
2013-02-13 04:01 . 2013-01-04 02:47 7680 ----a-w- c:\windows\SysWow64\instnm.exe
2013-02-13 04:01 . 2013-01-04 02:47 14336 ----a-w- c:\windows\SysWow64\ntvdm64.dll
2013-02-13 04:01 . 2013-01-04 02:47 2048 ----a-w- c:\windows\SysWow64\user.exe
2013-02-13 04:01 . 2013-01-03 06:00 1913192 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-02-13 04:01 . 2013-01-03 06:00 288088 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-02-28 07:08 . 2012-04-03 14:20 691568 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-02-28 07:08 . 2011-05-25 02:39 71024 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-02-13 04:44 . 2011-03-17 20:26 70004024 ----a-w- c:\windows\system32\MRT.exe
2013-01-17 00:28 . 2011-03-30 20:16 273840 ------w- c:\windows\system32\MpSigStub.exe
2013-01-04 04:43 . 2013-02-13 04:01 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2012-12-16 17:11 . 2012-12-21 07:51 46080 ----a-w- c:\windows\system32\atmlib.dll
2012-12-16 14:45 . 2012-12-21 07:51 367616 ----a-w- c:\windows\system32\atmfd.dll
2012-12-16 14:13 . 2012-12-21 07:51 295424 ----a-w- c:\windows\SysWow64\atmfd.dll
2012-12-16 14:13 . 2012-12-21 07:51 34304 ----a-w- c:\windows\SysWow64\atmlib.dll
2012-12-07 13:20 . 2013-01-09 16:34 441856 ----a-w- c:\windows\system32\Wpc.dll
2012-12-07 13:15 . 2013-01-09 16:34 2746368 ----a-w- c:\windows\system32\gameux.dll
2012-12-07 12:26 . 2013-01-09 16:34 308736 ----a-w- c:\windows\SysWow64\Wpc.dll
2012-12-07 12:20 . 2013-01-09 16:34 2576384 ----a-w- c:\windows\SysWow64\gameux.dll
2012-12-07 11:20 . 2013-01-09 16:34 30720 ----a-w- c:\windows\system32\usk.rs
2012-12-07 11:20 . 2013-01-09 16:34 43520 ----a-w- c:\windows\system32\csrr.rs
2012-12-07 11:20 . 2013-01-09 16:34 23552 ----a-w- c:\windows\system32\oflc.rs
2012-12-07 11:20 . 2013-01-09 16:34 45568 ----a-w- c:\windows\system32\oflc-nz.rs
2012-12-07 11:20 . 2013-01-09 16:34 44544 ----a-w- c:\windows\system32\pegibbfc.rs
2012-12-07 11:20 . 2013-01-09 16:34 20480 ----a-w- c:\windows\system32\pegi-fi.rs
2012-12-07 11:20 . 2013-01-09 16:34 20480 ----a-w- c:\windows\system32\pegi-pt.rs
2012-12-07 11:19 . 2013-01-09 16:34 20480 ----a-w- c:\windows\system32\pegi.rs
2012-12-07 11:19 . 2013-01-09 16:34 46592 ----a-w- c:\windows\system32\fpb.rs
2012-12-07 11:19 . 2013-01-09 16:34 40960 ----a-w- c:\windows\system32\cob-au.rs
2012-12-07 11:19 . 2013-01-09 16:34 21504 ----a-w- c:\windows\system32\grb.rs
2012-12-07 11:19 . 2013-01-09 16:34 15360 ----a-w- c:\windows\system32\djctq.rs
2012-12-07 11:19 . 2013-01-09 16:34 55296 ----a-w- c:\windows\system32\cero.rs
2012-12-07 11:19 . 2013-01-09 16:34 51712 ----a-w- c:\windows\system32\esrb.rs
2012-12-07 10:46 . 2013-01-09 16:34 43520 ----a-w- c:\windows\SysWow64\csrr.rs
2012-12-07 10:46 . 2013-01-09 16:34 30720 ----a-w- c:\windows\SysWow64\usk.rs
2012-12-07 10:46 . 2013-01-09 16:34 45568 ----a-w- c:\windows\SysWow64\oflc-nz.rs
2012-12-07 10:46 . 2013-01-09 16:34 44544 ----a-w- c:\windows\SysWow64\pegibbfc.rs
2012-12-07 10:46 . 2013-01-09 16:34 23552 ----a-w- c:\windows\SysWow64\oflc.rs
2012-12-07 10:46 . 2013-01-09 16:34 20480 ----a-w- c:\windows\SysWow64\pegi-pt.rs
2012-12-07 10:46 . 2013-01-09 16:34 20480 ----a-w- c:\windows\SysWow64\pegi-fi.rs
2012-12-07 10:46 . 2013-01-09 16:34 46592 ----a-w- c:\windows\SysWow64\fpb.rs
2012-12-07 10:46 . 2013-01-09 16:34 20480 ----a-w- c:\windows\SysWow64\pegi.rs
2012-12-07 10:46 . 2013-01-09 16:34 21504 ----a-w- c:\windows\SysWow64\grb.rs
2012-12-07 10:46 . 2013-01-09 16:34 40960 ----a-w- c:\windows\SysWow64\cob-au.rs
2012-12-07 10:46 . 2013-01-09 16:34 15360 ----a-w- c:\windows\SysWow64\djctq.rs
2012-12-07 10:46 . 2013-01-09 16:34 55296 ----a-w- c:\windows\SysWow64\cero.rs
2012-12-07 10:46 . 2013-01-09 16:34 51712 ----a-w- c:\windows\SysWow64\esrb.rs
2012-12-03 14:36 . 2012-12-17 04:56 129216 ----a-w- c:\windows\system32\drivers\avipbb.sys
2012-12-03 14:36 . 2012-12-17 04:56 99912 ----a-w- c:\windows\system32\drivers\avgntflt.sys
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"="c:\program files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" [2010-12-21 1483264]
"Mobile Partner"="c:\program files (x86)\HiSuite\HiSuite.exe" [2012-12-24 557232]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"="c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" [2010-05-24 2439072]
"QFan Help"="c:\program files (x86)\ASUS\AI Suite\QFan3\QFanHelp.exe" [2010-04-19 611968]
"Cpu Level Up help"="c:\program files (x86)\ASUS\AI Suite\CpuLevelUpHelp.exe" [2009-12-28 887936]
"IMMON"="c:\program files (x86)\IM Magician\Vicamon.exe" [2009-05-07 143360]
"hpqSRMon"="c:\program files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe" [2008-07-22 150528]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2013-02-06 385248]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-12-03 946352]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - c:\program files (x86)\HP\Digital Imaging\bin\hpqtra08.exe [2009-9-20 270336]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer4"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
R3 MSICDSetup;MSICDSetup;E:\CDriver64.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 19456]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2011-03-14 1255736]
S1 AsUpIO;AsUpIO;SysWow64\drivers\AsUpIO.sys [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [2012-11-16 27800]
S2 AntiVirSchedulerService;Avira Scheduler;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2013-02-06 86752]
S2 AsSysCtrlService;ASUS System Control Service;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [2009-12-28 96896]
S2 DvmMDES;DeviceVM Meta Data Export Service;c:\asus.sys\config\DVMExportService.exe [2009-10-16 319488]
S2 HiSuiteOuc64.exe;HiSuiteOuc64.exe;c:\programdata\HiSuiteOuc\HiSuiteOuc64.exe [2012-12-24 138416]
S2 HuaweiHiSuiteService64.exe;HuaweiHiSuiteService64.exe;c:\programdata\HandSetService\HuaweiHiSuiteService64.exe [2012-11-21 201608]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [2010-05-15 1327520]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
Obsah adresáře 'Naplánované úlohy'
.
2013-03-02 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-03 07:08]
.
2013-03-02 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-03-31 18:59]
.
2013-03-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-03-31 18:59]
.
.
--------- X64 Entries -----------
.
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - LocalService
FontCache
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.seznam.cz/
uDefault_Search_URL = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
uSearchAssistant = hxxp://www.google.com
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
Trusted Zone: com\www.msi
Trusted Zone: com.tw\asia.msi
Trusted Zone: com.tw\global.msi
Trusted Zone: rothwell.cz\www
Trusted Zone: ubi.com\shop
TCP: DhcpNameServer = 178.17.80.66 178.17.80.67
FF - ProfilePath - c:\users\Barry\AppData\Roaming\Mozilla\Firefox\Profiles\hlds80t6.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/ig
FF - ExtSQL: !HIDDEN! 2011-05-21 15:35; smartwebprinting@hp.com; c:\program files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-Mozilla Firefox (3.6.15) - f:\portable\FirefoxPortable\App\firefox\uninstall\helper.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_6_602_171_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_6_602_171_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_6_602_171_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_6_602_171_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_171.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_171.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_171.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_171.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe
c:\program files (x86)\ASUS\EPU-4 Engine\FourEngine.exe
.
**************************************************************************
.
Celkový čas: 2013-03-02 08:44:32 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-03-02 07:44
ComboFix2.txt 2013-03-01 18:57
.
Před spuštěním: Volných bajtů: 53 289 857 024
Po spuštění: Volných bajtů: 53 205 733 376
.
- - End Of File - - 0794333FF97AC83C950D7437E9993906

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: Problém s odebráním USB flasch,zpomalený PC

#52 Příspěvek od cernohous13 »

:arrow: Restartuj a pošli mi nový RSIT
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

Sagitt62
Návštěvník
Návštěvník
Příspěvky: 131
Registrován: 25 kvě 2008 13:40

Re: Problém s odebráním USB flasch,zpomalený PC

#53 Příspěvek od Sagitt62 »

Tady je:
Logfile of random's system information tool 1.08 (written by random/random)
Run by Barry at 2013-03-02 09:21:11
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 51 GB (28%) free of 180 GB
Total RAM: 4087 MB (65% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:21:17, on 2.3.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16464)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\ASUSUpdate\UpdateChecker\UpdateChecker.exe
C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe
C:\Program Files (x86)\HiSuite\LiveUpdateTip.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files (x86)\HiSuite\HiSuite.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\ASUS\AI Suite\QFan3\QFanHelp.exe
C:\Program Files (x86)\IM Magician\vicamon.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Users\Barry\AppData\Local\HiSuite\userdata\hwtools\hwtransport.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files\trend micro\Barry.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {95289393-33EA-4F8D-B952-483415B9C955} - (no file)
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - (no file)
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [QFan Help] "C:\Program Files (x86)\ASUS\AI Suite\QFan3\QFanHelp.exe"
O4 - HKLM\..\Run: [Cpu Level Up help] "C:\Program Files (x86)\ASUS\AI Suite\CpuLevelUpHelp.exe"
O4 - HKLM\..\Run: [IMMON] "C:\Program Files (x86)\IM Magician\Vicamon.exe"
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [Mobile Partner] C:\Program Files (x86)\HiSuite\HiSuite.exe -s
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://asia.msi.com.tw
O15 - Trusted Zone: http://global.msi.com.tw
O15 - Trusted Zone: http://www.rothwell.cz
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlcdnet.asus.com/pub/ASUS/misc/d ... .2.5.0.cab
O16 - DPF: {8167C273-DF59-4416-B647-C8BB2C7EE83E} (WebSDev Control) - http://liveupdate.msi.com.tw/autobios/L ... nstall.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM, Inc. - C:\ASUS.SYS\config\DVMExportService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HiSuiteOuc64.exe - Unknown owner - C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
O23 - Service: HuaweiHiSuiteService64.exe - Unknown owner - C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10207 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe"
"C:\ASUS.SYS\config\DVMExportService.exe"
"C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe" -/service
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe" -/service
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 1556
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000664
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\sppsvc.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\wmiprvse.exe
"taskhost.exe"
taskeng.exe {192C92C9-DC81-48CC-81EB-9747D4FAEECD}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
taskeng.exe {81FFB31B-2AC7-4D4D-A34C-5177B13EFBEB}
"C:\Program Files (x86)\ASUS\ASUSUpdate\UpdateChecker\UpdateChecker.exe"
"C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe" -b
"C:\Program Files (x86)\HiSuite\LiveUpdateTip.exe"
"C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
"C:\Program Files (x86)\HiSuite\HiSuite.exe" -s
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
"C:\Program Files (x86)\ASUS\AI Suite\QFan3\QFanHelp.exe"
"C:\Program Files (x86)\IM Magician\vicamon.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
C:\Windows\system32\svchost.exe -k imgsvc
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
adb fork-server server
{D366C4AB-53CE-4235-90EA-8E752F8BC820}
{54AD8541-2E3B-4743-BFCE-4D53A1A43492}
{41F49010-9D3C-4B8B-B728-832584B506D2}
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe" -CtxID "#Hewlett-Packard#HP Deskjet F4200 series#1305985133" -Startup
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe" -Embedding
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe" -Embedding
C:\Windows\sysWOW64\wbem\wmiprvse.exe -Embedding
C:\Windows\system32\wbem\WmiApSrv.exe
"C:\Users\Barry\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20 509496]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2010-12-21 1483264]
"Mobile Partner"=C:\Program Files (x86)\HiSuite\HiSuite.exe [2012-12-24 557232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\PROGRA~2\HP\DIGITA~1\bin\hpqtra08.exe [2009-09-20 270336]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2010-05-24 2439072]
"QFan Help"=C:\Program Files (x86)\ASUS\AI Suite\QFan3\QFanHelp.exe [2010-04-19 611968]
"Cpu Level Up help"=C:\Program Files (x86)\ASUS\AI Suite\CpuLevelUpHelp.exe [2009-12-28 887936]
"IMMON"=C:\Program Files (x86)\IM Magician\Vicamon.exe [2009-05-07 143360]
"hpqSRMon"=C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2013-02-06 385248]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 months======

2013-03-02 08:44:32 ----A---- C:\ComboFix.txt
2013-03-02 08:41:21 ----SHD---- C:\$RECYCLE.BIN
2013-03-02 08:39:32 ----D---- C:\Windows\temp
2013-03-01 19:45:00 ----A---- C:\Windows\zip.exe
2013-03-01 19:45:00 ----A---- C:\Windows\SWSC.exe
2013-03-01 19:45:00 ----A---- C:\Windows\SWREG.exe
2013-03-01 19:45:00 ----A---- C:\Windows\sed.exe
2013-03-01 19:45:00 ----A---- C:\Windows\PEV.exe
2013-03-01 19:45:00 ----A---- C:\Windows\NIRCMD.exe
2013-03-01 19:45:00 ----A---- C:\Windows\MBR.exe
2013-03-01 19:45:00 ----A---- C:\Windows\grep.exe
2013-03-01 19:44:56 ----D---- C:\Qoobox
2013-03-01 19:44:46 ----D---- C:\Windows\erdnt
2013-02-28 16:50:36 ----D---- C:\ProgramData\Kaspersky Lab
2013-02-27 09:28:35 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-02-27 09:28:34 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-02-27 09:28:34 ----A---- C:\Windows\system32\UIAnimation.dll
2013-02-27 09:28:34 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-02-27 09:28:32 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-02-27 09:28:32 ----A---- C:\Windows\system32\WMPhoto.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-02-27 09:28:31 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-02-27 09:28:31 ----A---- C:\Windows\system32\d3d10_1.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-02-27 09:28:30 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-02-27 09:28:30 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-02-27 09:28:30 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-02-27 09:28:30 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-02-27 09:28:30 ----A---- C:\Windows\system32\d3d10warp.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\XpsPrint.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\FntCache.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\dxgi.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\DWrite.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d11.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d10level9.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d10core.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d10.dll
2013-02-27 09:28:28 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-02-27 09:28:28 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-02-27 09:28:28 ----A---- C:\Windows\system32\d2d1.dll
2013-02-26 18:37:33 ----A---- C:\TDSSKiller.2.8.16.0_26.02.2013_18.37.33_log.txt
2013-02-25 19:25:15 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-02-25 19:25:05 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-02-24 13:44:08 ----D---- C:\rsit
2013-02-24 13:44:08 ----D---- C:\Program Files\trend micro
2013-02-20 05:24:00 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\url.dll
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-02-13 05:41:13 ----A---- C:\Windows\system32\url.dll
2013-02-13 05:41:13 ----A---- C:\Windows\system32\mshtmled.dll
2013-02-13 05:41:13 ----A---- C:\Windows\system32\ieUnatt.exe
2013-02-13 05:41:13 ----A---- C:\Windows\system32\ieui.dll
2013-02-13 05:41:12 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-02-13 05:41:12 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-02-13 05:41:12 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-02-13 05:41:12 ----A---- C:\Windows\system32\urlmon.dll
2013-02-13 05:41:12 ----A---- C:\Windows\system32\msfeeds.dll
2013-02-13 05:41:12 ----A---- C:\Windows\system32\jscript9.dll
2013-02-13 05:41:11 ----A---- C:\Windows\system32\wininet.dll
2013-02-13 05:41:10 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-02-13 05:41:10 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-02-13 05:41:10 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-02-13 05:41:10 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-02-13 05:41:10 ----A---- C:\Windows\system32\vbscript.dll
2013-02-13 05:41:10 ----A---- C:\Windows\system32\jsproxy.dll
2013-02-13 05:41:10 ----A---- C:\Windows\system32\jscript.dll
2013-02-13 05:41:10 ----A---- C:\Windows\system32\iertutil.dll
2013-02-13 05:41:09 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-02-13 05:41:08 ----A---- C:\Windows\system32\mshtml.dll
2013-02-13 05:41:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-02-13 05:41:07 ----A---- C:\Windows\system32\ieframe.dll
2013-02-13 05:02:07 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-02-13 05:02:06 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-02-13 05:02:06 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-02-13 05:02:02 ----A---- C:\Windows\system32\win32k.sys
2013-02-13 05:01:59 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-02-13 05:01:59 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-02-13 05:01:59 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-02-13 05:01:59 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-02-13 05:01:59 ----A---- C:\Windows\system32\winsrv.dll
2013-02-13 05:01:58 ----A---- C:\Windows\SYSWOW64\user.exe
2013-02-13 05:01:57 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-02-13 05:01:57 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS

======List of files/folders modified in the last 1 months======

2013-03-02 09:17:22 ----D---- C:\ProgramData\NVIDIA
2013-03-02 09:16:22 ----D---- C:\Windows\system32\config
2013-03-02 08:57:25 ----D---- C:\Windows\System32
2013-03-02 08:57:25 ----D---- C:\Windows\inf
2013-03-02 08:57:25 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-03-02 08:44:34 ----D---- C:\Windows\system32\drivers
2013-03-02 08:41:23 ----D---- C:\Windows
2013-03-02 08:41:23 ----A---- C:\Windows\system.ini
2013-03-02 08:39:33 ----D---- C:\Windows\system32\drivers\etc
2013-03-02 08:39:13 ----RD---- C:\Program Files (x86)
2013-03-02 08:39:13 ----D---- C:\Windows\SYSWOW64\drivers
2013-03-02 08:36:50 ----D---- C:\Windows\SysWOW64
2013-03-02 08:36:49 ----D---- C:\Windows\AppPatch
2013-03-02 08:36:49 ----D---- C:\Program Files (x86)\Common Files
2013-03-02 08:33:26 ----D---- C:\Windows\Prefetch
2013-03-01 19:33:55 ----SHD---- C:\System Volume Information
2013-03-01 19:27:30 ----SD---- C:\ProgramData\Microsoft
2013-03-01 17:34:52 ----D---- C:\Windows\SoftwareDistribution
2013-02-28 22:00:31 ----D---- C:\Windows\rescache
2013-02-28 16:50:36 ----D---- C:\ProgramData
2013-02-28 16:21:54 ----D---- C:\Windows\debug
2013-02-28 08:08:40 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-02-28 04:22:21 ----D---- C:\Windows\winsxs
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\it-IT
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\es-ES
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\en-US
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\el-GR
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\de-DE
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\da-DK
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-02-28 04:21:41 ----D---- C:\Windows\system32\zh-TW
2013-02-28 04:21:41 ----D---- C:\Windows\system32\zh-HK
2013-02-28 04:21:41 ----D---- C:\Windows\system32\zh-CN
2013-02-28 04:21:41 ----D---- C:\Windows\system32\tr-TR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\sv-SE
2013-02-28 04:21:41 ----D---- C:\Windows\system32\ru-RU
2013-02-28 04:21:41 ----D---- C:\Windows\system32\pt-PT
2013-02-28 04:21:41 ----D---- C:\Windows\system32\pt-BR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\pl-PL
2013-02-28 04:21:41 ----D---- C:\Windows\system32\nl-NL
2013-02-28 04:21:41 ----D---- C:\Windows\system32\nb-NO
2013-02-28 04:21:41 ----D---- C:\Windows\system32\ko-KR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\ja-JP
2013-02-28 04:21:41 ----D---- C:\Windows\system32\it-IT
2013-02-28 04:21:41 ----D---- C:\Windows\system32\hu-HU
2013-02-28 04:21:41 ----D---- C:\Windows\system32\fr-FR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\fi-FI
2013-02-28 04:21:41 ----D---- C:\Windows\system32\es-ES
2013-02-28 04:21:41 ----D---- C:\Windows\system32\en-US
2013-02-28 04:21:41 ----D---- C:\Windows\system32\el-GR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\de-DE
2013-02-28 04:21:41 ----D---- C:\Windows\system32\da-DK
2013-02-28 04:21:41 ----D---- C:\Windows\system32\cs-CZ
2013-02-27 09:29:53 ----D---- C:\Windows\system32\catroot
2013-02-27 09:29:52 ----D---- C:\Windows\system32\catroot2
2013-02-25 19:25:18 ----D---- C:\Windows\system32\Tasks
2013-02-24 13:44:08 ----RD---- C:\Program Files
2013-02-24 06:15:41 ----SHD---- C:\Windows\Installer
2013-02-24 06:15:41 ----D---- C:\Config.Msi
2013-02-21 20:17:49 ----D---- C:\Windows\system32\DriverStore
2013-02-21 08:56:02 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-02-15 18:59:54 ----D---- C:\ProgramData\Adobe
2013-02-13 09:33:09 ----RSD---- C:\Windows\assembly
2013-02-13 09:33:09 ----D---- C:\Windows\Microsoft.NET
2013-02-13 09:23:11 ----D---- C:\Windows\SYSWOW64\migration
2013-02-13 09:23:11 ----D---- C:\Windows\system32\migration
2013-02-13 09:23:11 ----D---- C:\Program Files\Internet Explorer
2013-02-13 09:23:11 ----D---- C:\Program Files (x86)\Internet Explorer
2013-02-13 05:46:13 ----D---- C:\ProgramData\Microsoft Help
2013-02-13 05:44:30 ----A---- C:\Windows\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2009-08-04 13440]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2009-07-06 13368]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2012-12-03 129216]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2012-11-16 27800]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2012-12-03 99912]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2010-11-12 155752]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2010-05-15 1327520]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\drivers\Dot4Prt.sys [2010-11-20 19968]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
S3 MSICDSetup;MSICDSetup; \??\E:\CDriver64.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 Ser2pl;Prolific Serial port WDF driver; C:\Windows\system32\DRIVERS\ser2pl64.sys [2012-07-30 158720]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2013-02-06 110816]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2013-02-06 86752]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [2009-12-28 96896]
R2 DvmMDES;DeviceVM Meta Data Export Service; C:\ASUS.SYS\config\DVMExportService.exe [2009-10-16 319488]
R2 HiSuiteOuc64.exe;HiSuiteOuc64.exe; C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe [2012-12-24 138416]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 HuaweiHiSuiteService64.exe;HuaweiHiSuiteService64.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [2012-11-21 201608]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 NVSvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-10-02 891240]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 2292096]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2010-12-08 628736]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-03-31 136176]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-10 1258856]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-28 251248]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-03-31 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-02-20 115608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-03-14 1255736]

-----------------EOF-----------------

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: Problém s odebráním USB flasch,zpomalený PC

#54 Příspěvek od cernohous13 »

:?: Vypadá to na keylogger (zaznamenával všechny aktivity klávesnice na obou účtech v rozmezí 6.1.2012-28.2.2013 - kam údaje posílal nevím) -> změnit hesla

:arrow: Spusť program C:\Program Files\trend micro\Barry.exe
klik "Do a system scan only"
dej fajfku do čtverečků před řádky:
R3 - URLSearchHook: (no name) - {95289393-33EA-4F8D-B952-483415B9C955} - (no file)
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - (no file)
O15 - Trusted Zone: http://asia.msi.com.tw
O15 - Trusted Zone: http://global.msi.com.tw
O15 - Trusted Zone: http://www.rothwell.cz
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlcdnet.asus.com/pub/ASUS/misc/d ... .2.5.0.cab
O16 - DPF: {8167C273-DF59-4416-B647-C8BB2C7EE83E} (WebSDev Control) - http://liveupdate.msi.com.tw/autobios/L ... nstall.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
"Fix checked" -> OK

:arrow: vymaž zbytečnosti
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

:arrow: ComboFix odinstalujeme
jdi Start -> Spustit... a zkopíruj ComboFix /Uninstall (pozor, za x je mezera) -> OK

:arrow: Stáhni a spusť T-cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe - uklidí po použitých čističích.
Po spuštění ignoruj případné varování antiviru - je to v pořádku
Po provedení akce T-cleaner smažeš

:arrow: Stáhni TempFolderCleaner http://oldtimer.geekstogo.com/TFC.exe
Zavři všechny programy a spusť. Po ukončení akce bude PC restartován.
Pokud ne, restartuj sám.
(čistí Temp složky , nečistí URL, historii, prefetch ani cookies)

:arrow: stáhni program OTC tady: http://oldtimer.geekstogo.com/OTC.exe - spusť ho -> "CleanUp" (smaže dříve použité čističe)

:arrow: Vypni Obnovení systému -> restartuj -> zapni Obnovení systému http://www.viry.cz/forum/viewtopic.php?t=47040

:arrow: Mohu doporučit kontrolu a vyčištění Ccleanerem
Stáhni Ccleaner - http://www.slunecnice.cz/sw/ccleaner/
Při instalaci vyhodit fajfku u "Instalovat Yahoo! Toolbar"

zavřít Internetový prohlížeč a
spustit "Čistič" > "Spustit Ccleaner" - odstraní nepotřebné
spustit "Registry" > "Hledej problémy" > "Opravit vybrané problémy"
souhlas se zálohou registrů - opakovat dokud nebudou registry čisté.

Návod:http://jnp.zive.cz/Clanky/Prirucka-do-k ... fault.aspx
Ten si můžeš nechat i na budoucí občasné čištění.

:arrow: Nakonec mi napiš jak se tváří náš pacient :D

:arrow: Po vyčištění by se hodila defragmentace
doporučuji http://www.slunecnice.cz/sw/defraggler/ + čeština

Kdyby něco z návodu nefungovalo, pokračuj dalším krokem.
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

Sagitt62
Návštěvník
Návštěvník
Příspěvky: 131
Registrován: 25 kvě 2008 13:40

Re: Problém s odebráním USB flasch,zpomalený PC

#55 Příspěvek od Sagitt62 »

Odjíždím,ó Velký Guru, na chajdu. Tam mám zákeřné toliko plchy a kamna,žádný PCšmejd ! :D :D Doma budu zítra večer,tak se zviditelním :) Zatím moc díky-zkusil jsem odebrání flešky-a chová se naprosto standartně. :happy: Doporučené provedu zejtra a dám echo. :wink:
Hele,nemůže to bejt pozůstatek po progr. "Bonzák/Špeh"?

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: Problém s odebráním USB flasch,zpomalený PC

#56 Příspěvek od cernohous13 »

cernohous13 píše:...pokud o něm zobrazuje Google minimum informací, z nichž jedna spojuje soubor s výrazem "Špion", tak při vykradení hesel nebo vyluxování bankovního účtu znáš pachatele :roll:
Tak si užij víkend - až budeš s čištěním hotov tak se ozvi :wink:
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

Sagitt62
Návštěvník
Návštěvník
Příspěvky: 131
Registrován: 25 kvě 2008 13:40

Re: Problém s odebráním USB flasch,zpomalený PC

#57 Příspěvek od Sagitt62 »

Zdarky!
Zde jest report o konečné(snad –sic!!) defenestraci havěti z bedny počítací:
krok 1: C:\Program Files\trend micro\Barry.exe jsem musel spouštět cca5x –vždy zmizla jen část „odfajfknutých“ položek.
krok2: „vymaž zbytečnosti“ proběhlo rel. bez problému metodou „označit-delete-enter“.
Zůstal jen nějaký textový soubor,k jeho vraždě jsem neměl tvůj příkaz. :)
krok3: S odinstalací ComboFix je problém. Asi jsem dobře nepochopil metodu. Po 3 neúspěšných pokusech jsem ikonu programu myší šoupnul do koše. Myslel jsem,že tam zůstane pro případné obnovení a odinstalování. Není tam. Asi ji vyhnal CCleaner... A zřejmě dobře, protože ani RevoUninstaller “ComboFix“ nevidí.
krok 4: T-cleaner stažen a aplikován bez problému
krok 5: TFC stažen,aplikován,PC restart-vše bez problému
krok 6: OTC-stažen,aplikován. Vše bez problému.
krok 7: vyp. „obnovení“,restart,zap. „obnovení“. Provedeno bez problému.
krok 8: CCleanerem vyčištěno. Při čištění registrů zůstává: Nepoužívaná koncovka souborů {80b8c23c-16e0-4cd8-bbc3-cecec9a78b79} HKCR\{80b8c23c-16e0-4cd8-bbc3-cecec9a78b79}
Závěr:
Pacient operaci nejen přežil,ale dokonce se tváří lépe,než před zákrokem. A to navzdory tomu,že výkonný operatér je lama lamovitá.
Hodnocení:
Nechám na tobě,já se přimlouvám za 9/10 :D
Log z RSIT přikládám a čekám na konečné resume... :oops:

Sagitt62
Návštěvník
Návštěvník
Příspěvky: 131
Registrován: 25 kvě 2008 13:40

Re: Problém s odebráním USB flasch,zpomalený PC

#58 Příspěvek od Sagitt62 »

RSIT log:
info.txt logfile of random's system information tool 1.08 2013-03-03 22:20:47

======Uninstall list======

Update for Microsoft Office 2007 (KB2508958)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}
-->MsiExec /X{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}
64 Bit HP CIO Components Installer-->MsiExec.exe /I{55D55008-E5F6-47D6-B16F-B2A40D4D145F}
7-Zip 9.20-->"C:\Program Files (x86)\7-Zip\Uninstall.exe"
Adobe Flash Player 11 ActiveX-->C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_6_602_171_ActiveX.exe -maintain activex
Adobe Flash Player 11 Plugin-->C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_6_602_171_Plugin.exe -maintain plugin
Adobe Reader XI (11.0.02) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AB0000000001}
AI Suite-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{310BC5E2-31AF-49BB-904D-E71EB93645DC}\setup.exe" -l0x9
Aktualizace NVIDIA 1.10.8-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.5\NVI2.DLL",UninstallPackage Display.Update
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0405-0000-0000000FF1CE} /uninstall {0A1FAC46-B899-421D-B1A2-470896DC45DB}
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0405-0000-0000000FF1CE} /uninstall {5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0405-0000-0000000FF1CE} /uninstall {E68DD413-B834-4923-8181-0A03B7555187}
Any Video Converter 3.2.3-->"C:\Program Files (x86)\AnvSoft\Any Video Converter\unins000.exe"
ASUSUpdate-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{587178E7-B1DF-494E-9838-FA4DD36E873C}\setup.exe" -l0x9
Audacity 1.3.14 (Unicode)-->"C:\Program Files (x86)\Audacity 1.3 Beta (Unicode)\unins000.exe"
Avira Free Antivirus-->C:\Program Files (x86)\Avira\AntiVir Desktop\setup.exe /REMOVE
Balíček ovladače systému Windows - Nokia Modem (06/09/2010 7.01.0.8)-->C:\PROGRA~1\DIFX\0169CE3A95F06636\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokbtmdm.inf_amd64_neutral_68b2fb14204f3667\nokbtmdm.inf
Balíček ovladače systému Windows - Nokia Modem (10/07/2010 4.6)-->C:\PROGRA~1\DIFX\0169CE3A95F06636\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokia_bluetooth.inf_amd64_neutral_875547a32190c11c\nokia_bluetooth.inf
Balíček ovladače systému Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)-->C:\PROGRA~1\DIFX\F4092DA208C2C970\dpinst.exe /u C:\Windows\system32\DRVSTORE\pccsmcfdx6_8A3BAB842294F8D9255C3CF2A3B1CECAEEB8EA7E\pccsmcfdx64.inf
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
Components Setup-->C:\Program Files (x86)\InstallShield Installation Information\{31187E06-E131-4709-9285-7D105D77AA89}\setup.exe -runfromtemp -l0x0009
D3DX10-->MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF}
EPU-4 Engine-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{8F66047B-1AF3-40D9-80D7-106E2EDC2C2A}\setup.exe" -l0x9
Express Gate-->MsiExec.exe /X{99AD9D6D-A456-49EE-8360-F22EE7AA1272}
FormatFactory 2.70-->C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
Fraps-->"C:\Fraps\uninstall.exe"
Free OCR to Word 5.0.1-->"C:\Program Files (x86)\Free OCR to Word\unins000.exe"
Google Earth-->MsiExec.exe /X{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
HiSuite-->C:\Program Files (x86)\HiSuite\uninst.exe
HP Customer Participation Program 13.0-->C:\Program Files (x86)\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat -forcereboot
HP Deskjet F4200 All-In-One Driver Software 13.0 Rel. 3-->C:\Program Files (x86)\HP\Digital Imaging\{A00C9114-40E6-4C70-A619-7DF264B23485}\setup\hpzscr40.exe -datfile hposcr28.dat -onestop -forcereboot
HP Imaging Device Functions 13.0-->C:\Program Files (x86)\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP Photosmart Essential 3.5-->C:\Program Files (x86)\HP\Digital Imaging\PhotosmartEssential\hpzscr01.exe -datfile hpqbud13.dat -forcereboot
HP Smart Web Printing 4.51-->C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpzscr01.exe -datfile hpqbud15.dat
HP Solution Center 13.0-->C:\Program Files (x86)\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat -forcereboot
HP Update-->MsiExec.exe /X{7059BDA7-E1DB-442C-B7A1-6144596720A4}
HyperLobby client-->MsiExec.exe /I{A869FEA9-B223-4324-B130-008AC50B054B}
IL-2 Sturmovik 1946-->C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{758AF648-0B6C-4593-BDF1-9BF4CB50A359} /l1029
IM Magician-->C:\Program Files (x86)\InstallShield Installation Information\{2969CB97-DF91-4752-BE47-8A73AE810E6C}\setup.exe -runfromtemp -l0x0009 -removeonly
IrfanView (remove only)-->C:\Program Files (x86)\IrfanView\iv_uninstall.exe
Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /x64 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0015-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0016-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0018-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0019-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001A-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001B-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {664655D8-B9BB-455D-8A58-7EAF7B0B2862}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0405-1000-0000000FF1CE} /uninstall {A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {6E107EB7-8B55-48BF-ACCB-199F86A2CD93}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0044-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-006E-0405-0000-0000000FF1CE} /uninstall {A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-00A1-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-00BA-0405-0000-0000000FF1CE} /uninstall {3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}
Microsoft Office Access MUI (Czech) 2007-->MsiExec.exe /X{90120000-0015-0405-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (Czech) 2007-->MsiExec.exe /X{90120000-0016-0405-0000-0000000FF1CE}
Microsoft Office File Validation Add-In-->MsiExec.exe /I{90140000-2005-0000-0000-0000000FF1CE}
Microsoft Office Groove MUI (Czech) 2007-->MsiExec.exe /X{90120000-00BA-0405-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (Czech) 2007-->MsiExec.exe /X{90120000-0044-0405-0000-0000000FF1CE}
Microsoft Office Office 64-bit Components 2007-->MsiExec.exe /X{90120000-002A-0000-1000-0000000FF1CE}
Microsoft Office OneNote MUI (Czech) 2007-->MsiExec.exe /X{90120000-00A1-0405-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Czech) 2007-->MsiExec.exe /X{90120000-001A-0405-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Czech) 2007-->MsiExec.exe /X{90120000-0018-0405-0000-0000000FF1CE}
Microsoft Office Proof (Czech) 2007-->MsiExec.exe /X{90120000-001F-0405-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Slovak) 2007-->MsiExec.exe /X{90120000-001F-041B-0000-0000000FF1CE}
Microsoft Office Proofing (Czech) 2007-->MsiExec.exe /X{90120000-002C-0405-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0405-0000-0000000FF1CE} /uninstall {0B7A4B67-2A38-42B1-9857-662FAB361E08}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {928D7B99-2BEA-49F9-83B8-20FA57860643}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {1FF96026-A04A-4C3E-B50A-BB7022654D0F}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-041B-0000-0000000FF1CE} /uninstall {FDF9A959-241A-4662-A8DE-7DED9C22D160}
Microsoft Office Publisher MUI (Czech) 2007-->MsiExec.exe /X{90120000-0019-0405-0000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Czech) 2007-->MsiExec.exe /X{90120000-002A-0405-1000-0000000FF1CE}
Microsoft Office Shared MUI (Czech) 2007-->MsiExec.exe /X{90120000-006E-0405-0000-0000000FF1CE}
Microsoft Office Word MUI (Czech) 2007-->MsiExec.exe /X{90120000-001B-0405-0000-0000000FF1CE}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148-->MsiExec.exe /X{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Mozilla Firefox (3.6.15)-->F:\Portable\FirefoxPortable\App\firefox\uninstall\helper.exe
Mozilla Firefox 19.0 (x86 cs)-->C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
Mozilla Maintenance Service-->"C:\Program Files (x86)\Mozilla Maintenance Service\uninstall.exe"
MSVC80_x64_v2-->MsiExec.exe /I{4D668D4F-FAA2-4726-834C-31F4614F312E}
MSVC80_x86_v2-->MsiExec.exe /I{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}
MSVCRT-->MsiExec.exe /I{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MSXML 4.0 SP2 Parser and SDK-->MsiExec.exe /I{716E0306-8318-4364-8B8F-0CC4E9376BAC}
neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
Nokia Connectivity Cable Driver-->MsiExec.exe /I{4216D328-0FE8-48B8-85B8-BD300E6F080F}
Nokia PC Suite-->C:\ProgramData\Installations\{F38FD0E4-B991-462B-873D-F2115EADD093}\Nokia_PC_Suite_cze_web.exe
Nokia PC Suite-->MsiExec.exe /I{F38FD0E4-B991-462B-873D-F2115EADD093}
NVIDIA Ovladač 3D Vision 306.97-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.5\NVI2.DLL",UninstallPackage Display.3DVision
NVIDIA Ovladač HD audia 1.1.13.1-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.1\NVI2.DLL",UninstallPackage HDAudio.Driver
NVIDIA Ovladače grafiky 306.97-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.5\NVI2.DLL",UninstallPackage Display.Driver
NVIDIA PhysX-->MsiExec.exe /X{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}
NVIDIA Stereoscopic 3D Driver-->"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask
NVIDIA Systémový software PhysX 9.10.0514-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.1\NVI2.DLL",UninstallPackage Display.PhysX
PC Connectivity Solution-->MsiExec.exe /I{D4AEC53C-1720-41D9-B6D7-6A60DE62D444}
PDFCreator-->C:\Program Files (x86)\PDFCreator\unins000.exe
Realtek Ethernet Controller Driver For Windows Vista and Later-->C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\Setup.exe -runfromtemp -removeonly
Revo Uninstaller 1.94-->C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {FD8D7C9A-E56A-3E7B-BA6D-FE68F13296E3} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {F66C3466-1FDB-347C-B3AE-FB6C50627B10} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {B5BD3CA1-11AB-35A6-B22A-6A219DC0668E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {E720AD01-93D5-3E8E-BB8D-E4EF5AF4E5DD} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {BCD37DCB-F479-3D4D-A90E-A0F7575549C4} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {FF811680-AECE-3F35-A98C-1B84B6E09168} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {6AF6C62E-4E3D-33BF-A591-9E4D53BDF22F} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {5D45782A-1099-317E-ABCC-FF63D5B21386} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {E59B2174-E924-311F-8549-AD714C14664D} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {FDD13F1E-9C6B-311E-A0D9-D6E172FC28FF} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {DA36C2E5-6B34-3A6A-9C0A-7D1CC1C5A768} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {7B82A51A-768B-3A7B-ADFA-F777097A8079} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {E40184A4-4A61-3D2E-9035-CB6E1E610E07} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4736E989-32D9-3B91-90D7-C68848E118CA} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {F1696E2F-4803-362F-A756-65B363483FE6} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {C8B8456C-6A12-3725-95A8-1C9FBE1E3141} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {8E6848A1-B790-34FE-921A-A5319258E254} /parameterfolder Client
Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C6997D22-CC93-4ED9-AD8A-02C3F3D2F1F9}
Security Update for Microsoft Office 2007 suites (KB2596672) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5DD3FF90-B302-45B2-A188-C5EA7ACD5D46}
Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {D33B9EF5-3801-496A-A2D6-B7F4BE972D75}
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B145DBBB-7778-4A5D-9D2B-DA6569F02391}
Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A0D5F849-D9D5-48ED-99D0-C74D7BFA6A09}
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {E34960DB-2A93-45DB-A208-02650F7AB09C}
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {293FB6BE-D3EB-4162-B522-F9108040B9FE}
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {2B3C041A-A7F2-4A24-968D-4BEB6A123D15}
Security Update for Microsoft Office 2007 suites (KB2687311) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {43171CAD-DC60-4E7B-9703-B2EC18001B9F}
Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {3579CE34-B225-4B19-A3AF-DE5F562A212F}
Security Update for Microsoft Office 2007 suites (KB2687441) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {EF5B5C7F-20CB-4A3A-AC3D-F5DE2C2BFDC7}
Security Update for Microsoft Office 2007 suites (KB2687499) 32-Bit Edition -->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {020B65AD-B2ED-4B35-92CA-DB56EFB864A5}
Security Update for Microsoft Office 2007 suites (KB2687499) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {020B65AD-B2ED-4B35-92CA-DB56EFB864A5}
Security Update for Microsoft Office 2007 suites (KB2760416) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {CAB47CC0-A98C-47DD-9FA1-C0416EC96ED5}
Security Update for Microsoft Office Excel 2007 (KB2687307) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {488F0918-97F9-4CD0-8AD5-8986A46AC962}
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8F311D6C-D8DD-4C32-9457-1A129CABD1A5}
Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {AEA16A27-0B97-4670-818F-A98D06EC0A6F}
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0EF0D4FB-BB23-4515-AAEA-1240AC2DA525}
Security Update for Microsoft Office Publisher 2007 (KB2596705) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5A8732F0-C20F-4A9B-A2A9-66FE7A586C35}
Security Update for Microsoft Office Word 2007 (KB2760421) 32-Bit Edition -->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {718E87EC-6590-485A-B12D-C01D290EDB12}
Shop for HP Supplies-->C:\Program Files (x86)\HP\Digital Imaging\HPSSupply\hpzscr01.exe -datfile hpqbud16.dat
Skype™ 5.10-->MsiExec.exe /X{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}
TeamSpeak 2 RC2-->"C:\Program Files (x86)\Teamspeak2_RC2\unins000.exe"
Total Commander (Remove or Repair)-->c:\totalcmd\tcuninst.exe
Ubisoft Game Launcher-->"C:\Program Files (x86)\InstallShield Installation Information\{888F1505-C2B3-4FDE-835D-36353EBD4754}\setup.exe" -runfromtemp -l0x0409 -removeonly
UBitMenu CZ-->"C:\Users\Barry\AppData\Roaming\UBitMenu\unins001.exe"
UBitMenuDE-->"C:\Users\Barry\AppData\Roaming\UBitMenu\unins000.exe"
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {29C7BE97-DE59-37A2-A687-2ADD5321948A} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2473228)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {A45DD0BE-3CD9-3F1E-B233-B90C6983AE77} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {7D799A81-5661-3159-BF92-754161CED6E6} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4DFA8287-EA36-3469-99FE-F568FEC81653} /parameterfolder Client
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A024FC7B-77DE-45DE-A058-1C049A17BFB3}
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {620E77C0-CDFE-4C14-AAEB-830ABB65864C}
Update for Microsoft Office 2007 suites (KB2596802) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {525A4A44-8940-40AD-ABA0-14501199D2F0}
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8153EC80-C988-4336-8DAF-6D99C0D26E0C}
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition-->msiexec /package {90120000-001A-0405-0000-0000000FF1CE} /uninstall {A030537D-0034-46AD-A730-B1119786F607}
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2767848) 32-Bit Edition-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {4FB6D8D7-0FD3-4D3F-BBFC-8CB62226BA4E}
VIA Platforma Ovladače zařízení-->C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
Windows Live Communications Platform-->MsiExec.exe /I{D45240D3-B6B3-4FF9-B243-54ECE3E10066}
Windows Live Essentials-->C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{FE62C88B-425B-4BDE-8B70-CD5AE3B83176}
Windows Live Fotogalerie-->MsiExec.exe /X{FB79FDB7-4DE1-453D-99FE-9A880F57380E}
Windows Live ID Sign-in Assistant-->MsiExec.exe /I{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}
Windows Live Installer-->MsiExec.exe /I{0B0F231F-CE6A-483D-AA23-77B364F75917}
Windows Live Language Selector-->MsiExec.exe /I{180C8888-50F1-426B-A9DC-AB83A1989C65}
Windows Live Movie Maker-->MsiExec.exe /X{64B2D6B3-71AC-45A7-A6A1-2E07ABF58341}
Windows Live Movie Maker-->MsiExec.exe /X{92EA4134-10D1-418A-91E1-5A0453131A38}
Windows Live Photo Common-->MsiExec.exe /X{78906B56-0E81-42A7-AC25-F54C946E1538}
Windows Live Photo Common-->MsiExec.exe /X{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}
Windows Live Photo Gallery-->MsiExec.exe /X{3336F667-9049-4D46-98B6-4C743EEBC5B1}
Windows Live PIMT Platform-->MsiExec.exe /I{83C292B7-38A5-440B-A731-07070E81A64F}
Windows Live SOXE Definitions-->MsiExec.exe /I{200FEC62-3C34-4D60-9CE8-EC372E01C08F}
Windows Live SOXE-->MsiExec.exe /I{682B3E4F-696A-42DE-A41C-4C07EA1678B4}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{1DA6D447-C54D-4833-84D4-3EA31CAECE9B}
Windows Live UX Platform-->MsiExec.exe /I{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}
WinPcap 4.1.1-->"C:\Program Files\WinPcap\uninstall.exe"
WinRAR 4.11 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe

======System event log======

Computer Name: Barry-PC
Event Code: 7002
Message: Oznámení o odhlášení uživatele pro program Zlepšování softwaru a služeb na základě zkušeností uživatelů
Record Number: 266483
Source Name: Microsoft-Windows-Winlogon
Time Written: 20121028163232.443142-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Barry-PC
Event Code: 7036
Message: Stav služby Funkčnost aplikací byl změněn na: Spuštěno
Record Number: 266482
Source Name: Service Control Manager
Time Written: 20121028163231.928341-000
Event Type: Informace
User:

Computer Name: Barry-PC
Event Code: 1074
Message: Proces C:\Windows\system32\winlogon.exe (BARRY-PC) inicioval Napájení vypnuto počítače BARRY-PC jménem uživatele Barry-PC\Barry z následujícího důvodu: Pro tento důvod nebyl nalezen titulek
Kód důvodu: 0x500ff
Typ vypnutí: Napájení vypnuto
Komentář:
Record Number: 266481
Source Name: USER32
Time Written: 20121028163232.000000-000
Event Type: Informace
User: Barry-PC\Barry

Computer Name: Barry-PC
Event Code: 1074
Message: Proces Explorer.EXE inicioval Napájení vypnuto počítače BARRY-PC jménem uživatele Barry-PC\Barry z následujícího důvodu: Jiný (neplánovaný)
Kód důvodu: 0x0
Typ vypnutí: Napájení vypnuto
Komentář:
Record Number: 266480
Source Name: USER32
Time Written: 20121028163226.000000-000
Event Type: Informace
User: Barry-PC\Barry

Computer Name: Barry-PC
Event Code: 7036
Message: Stav služby Služba Výčet přenosných zařízení byl změněn na: Spuštěno
Record Number: 266479
Source Name: Service Control Manager
Time Written: 20121028163055.923395-000
Event Type: Informace
User:

=====Application event log=====

Computer Name: Barry-PC
Event Code: 903
Message: Služba Ochrana softwaru byla ukončena.

Record Number: 38238
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20120319040625.000000-000
Event Type: Informace
User:

Computer Name: Barry-PC
Event Code: 1000
Message: Čítače výkonu pro službu WmiApRpl (WmiApRpl) byly úspěšně načteny. Data záznamu v datové části obsahují nové indexové hodnoty přiřazené této službě.
Record Number: 38237
Source Name: Microsoft-Windows-LoadPerf
Time Written: 20120319040409.638541-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Barry-PC
Event Code: 1001
Message: Čítače výkonu pro službu WmiApRpl (WmiApRpl) byly úspěšně odstraněny. Data záznamu obsahují nové hodnoty položek Last Counter a Last Help systémového registru.
Record Number: 38236
Source Name: Microsoft-Windows-LoadPerf
Time Written: 20120319040409.518541-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Barry-PC
Event Code: 902
Message: Služba Ochrana softwaru byla spuštěna.
6.1.7601.17514
Record Number: 38235
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20120319040031.000000-000
Event Type: Informace
User:

Computer Name: Barry-PC
Event Code: 1003
Message: Služba Ochrana softwaru dokončila kontrolu stavu licencování.
ID aplikace=55c92734-d682-4d71-983e-d6ec3f16059f
Stav licencování=
1: 01f5fc37-a99e-45c5-b65e-d762f3518ead, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
2: 2e7d060d-4714-40f2-9896-1e4f15b612ad, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
3: 3b965dfc-31d9-4903-886f-873a0382776c, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
4: 586bc076-c93d-429a-afe5-a69fbc644e88, 1, 1 [(0 [0x00000000, 1, 0], [(?)(?)( 1 0x00000000 3 0 msft:rm/algorithm/hwid/4.0 0x00000000 0)(?)(?)(?)])(1 )(2 )]
5: 5e017a8a-f3f9-4167-b1bd-ba3e236a4d8f, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
6: 5e35dc43-389b-47c5-b889-2088b06738cb, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
7: 6a7d5d8a-92af-4e6a-af4b-8fddaec800e5, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
8: 9ab82e0c-ffc9-4107-baa1-c65a8bd3ccc3, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
9: 9f83d90f-a151-4665-ae69-30b3f63ec659, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
10: a63275f4-530c-48a7-b0d3-4f00d688d151, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
11: b8a4bb91-69b1-460d-93f8-40e0670af04a, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
12: d2c04e90-c3dd-4260-b0f3-f845f5d27d64, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
13: e68b141f-4dfa-4387-b3b7-e65c4889216e, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
14: ee4e1629-bcdc-4b42-a68f-b92e135f78d7, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
15: 4a8149bb-7d61-49f4-8822-82c7bf88d64b, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]
16: afd5f68f-b70f-4000-a21d-28dbc8be8b07, 1, 0 [(0 [0xC004F014, 0, 0], [(?)(?)(?)(?)(?)(?)])(1 )(2 )]


Record Number: 38234
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20120319040030.000000-000
Event Type: Informace
User:

=====Security event log=====

Computer Name: Barry-PC
Event Code: 5024
Message: Služba brány Windows Firewall byla úspěšně spuštěna.
Record Number: 59143
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20120928152656.094826-000
Event Type: Úspěšný audit
User:

Computer Name: Barry-PC
Event Code: 5033
Message: Ovladač brány Windows Firewall byl úspěšně spuštěn.
Record Number: 59142
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20120928152655.924825-000
Event Type: Úspěšný audit
User:

Computer Name: Barry-PC
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.

Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e7

Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 59141
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20120928152655.774825-000
Event Type: Úspěšný audit
User:

Computer Name: Barry-PC
Event Code: 4624
Message: Účet byl úspěšně přihlášen.

Předmět:
ID zabezpečení: S-1-5-18
Název účtu: BARRY-PC$
Doména účtu: WORKGROUP
ID přihlášení: 0x3e7

Typ přihlášení: 5

Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}

Informace o procesu:
ID procesu: 0x200
Název procesu: C:\Windows\System32\services.exe

Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -

Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0

Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.

Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.

Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).

Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.

Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.

Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 59140
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20120928152655.774825-000
Event Type: Úspěšný audit
User:

Computer Name: Barry-PC
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.

Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e7

Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 59139
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20120928152655.181224-000
Event Type: Úspěšný audit
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\wbem;C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\PC Connectivity Solution;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files (x86)\VDownloader;C:\hwevid
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 37 Stepping 5, GenuineIntel
"PROCESSOR_REVISION"=2505

-----------------EOF-----------------

Sagitt62
Návštěvník
Návštěvník
Příspěvky: 131
Registrován: 25 kvě 2008 13:40

Re: Problém s odebráním USB flasch,zpomalený PC

#59 Příspěvek od Sagitt62 »

Logfile of random's system information tool 1.08 (written by random/random)
Run by Barry at 2013-03-03 22:20:42
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 54 GB (30%) free of 180 GB
Total RAM: 4087 MB (64% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:20:47, on 3.3.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16464)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files (x86)\HiSuite\HiSuite.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\ASUS\AI Suite\QFan3\QFanHelp.exe
C:\Program Files (x86)\IM Magician\vicamon.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Users\Barry\AppData\Local\HiSuite\userdata\hwtools\hwtransport.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_171.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_171.exe
C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE
C:\Program Files\trend micro\Barry.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [QFan Help] "C:\Program Files (x86)\ASUS\AI Suite\QFan3\QFanHelp.exe"
O4 - HKLM\..\Run: [Cpu Level Up help] "C:\Program Files (x86)\ASUS\AI Suite\CpuLevelUpHelp.exe"
O4 - HKLM\..\Run: [IMMON] "C:\Program Files (x86)\IM Magician\Vicamon.exe"
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [Mobile Partner] C:\Program Files (x86)\HiSuite\HiSuite.exe -s
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlcdnet.asus.com/pub/ASUS/misc/d ... .2.5.0.cab
O16 - DPF: {8167C273-DF59-4416-B647-C8BB2C7EE83E} (WebSDev Control) - http://liveupdate.msi.com.tw/autobios/L ... nstall.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) - ASUSTeK Computer Inc. - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM, Inc. - C:\ASUS.SYS\config\DVMExportService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HiSuiteOuc64.exe - Unknown owner - C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
O23 - Service: HuaweiHiSuiteService64.exe - Unknown owner - C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10068 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe"
"C:\ASUS.SYS\config\DVMExportService.exe"
"C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe" -/service
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe" -/service
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 1464
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_0000063c
C:\Windows\system32\svchost.exe -k bthsvcs
taskeng.exe {F2EDB0BC-F77C-4972-9AFA-B05179D04A13}
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
taskeng.exe {2812E4F2-8696-44E5-8975-639D0BC9725B}
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe" -b
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
"C:\Program Files (x86)\HiSuite\HiSuite.exe" -s
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
"C:\Program Files (x86)\ASUS\AI Suite\QFan3\QFanHelp.exe"
"C:\Program Files (x86)\IM Magician\vicamon.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
{E1ADD52E-42E6-47A3-9CF4-B2D0EF048B97}
{CD1D255D-537A-4840-A40B-C7F07C685110}
{06746D87-4AAC-4DDD-9C29-8C888DE35621}
C:\Windows\system32\SearchIndexer.exe /Embedding
adb fork-server server
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe" -CtxID "#Hewlett-Packard#HP Deskjet F4200 series#1305985133" -Startup
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe" -Embedding
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe" -Embedding
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4516.ee92b00.2078702190 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_171.dll" E7CF176E110C211B -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" 4516 "\\.\pipe\gecko-crash-server-pipe.4516" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_171.exe" --proxy-stub-channel=Flash5004.6CFB73D8.9808 --host-broker-channel=Flash5004.6CFB73D8.5988 --host-pid=5004 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_171.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_6_602_171.exe" --channel=5040.002AF7FC.2115865182 --proxy-stub-channel=Flash5004.6CFB73D8.9808 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_171.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE" /n /dde
C:\Windows\splwow64.exe 8192
"C:\Users\Barry\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20 328248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28 441216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20 509496]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2010-12-21 1483264]
"Mobile Partner"=C:\Program Files (x86)\HiSuite\HiSuite.exe [2012-12-24 557232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpqSRMon]
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\PROGRA~2\HP\DIGITA~1\bin\hpqtra08.exe [2009-09-20 270336]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2010-05-24 2439072]
"QFan Help"=C:\Program Files (x86)\ASUS\AI Suite\QFan3\QFanHelp.exe [2010-04-19 611968]
"Cpu Level Up help"=C:\Program Files (x86)\ASUS\AI Suite\CpuLevelUpHelp.exe [2009-12-28 887936]
"IMMON"=C:\Program Files (x86)\IM Magician\Vicamon.exe [2009-05-07 143360]
"hpqSRMon"=C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2013-02-06 385248]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 months======

2013-03-03 22:20:42 ----D---- C:\rsit
2013-03-03 20:17:50 ----SHD---- C:\$RECYCLE.BIN
2013-03-03 20:11:55 ----D---- C:\Windows\temp
2013-03-01 19:44:56 ----D---- C:\Qoobox
2013-03-01 19:44:46 ----D---- C:\Windows\erdnt
2013-02-28 16:50:36 ----D---- C:\ProgramData\Kaspersky Lab
2013-02-27 09:28:35 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-02-27 09:28:34 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-02-27 09:28:34 ----A---- C:\Windows\system32\UIAnimation.dll
2013-02-27 09:28:34 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-02-27 09:28:32 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-02-27 09:28:32 ----A---- C:\Windows\system32\WMPhoto.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-02-27 09:28:31 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-02-27 09:28:31 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-02-27 09:28:31 ----A---- C:\Windows\system32\d3d10_1.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-02-27 09:28:30 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-02-27 09:28:30 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-02-27 09:28:30 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-02-27 09:28:30 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-02-27 09:28:30 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-02-27 09:28:30 ----A---- C:\Windows\system32\d3d10warp.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-02-27 09:28:29 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\XpsPrint.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\FntCache.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\dxgi.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\DWrite.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d11.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d10level9.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d10core.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-02-27 09:28:29 ----A---- C:\Windows\system32\d3d10.dll
2013-02-27 09:28:28 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-02-27 09:28:28 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-02-27 09:28:28 ----A---- C:\Windows\system32\d2d1.dll
2013-02-25 19:25:15 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-02-25 19:25:05 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-02-24 13:44:08 ----D---- C:\Program Files\trend micro
2013-02-20 05:24:00 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\url.dll
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-02-13 05:41:13 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-02-13 05:41:13 ----A---- C:\Windows\system32\url.dll
2013-02-13 05:41:13 ----A---- C:\Windows\system32\mshtmled.dll
2013-02-13 05:41:13 ----A---- C:\Windows\system32\ieUnatt.exe
2013-02-13 05:41:13 ----A---- C:\Windows\system32\ieui.dll
2013-02-13 05:41:12 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-02-13 05:41:12 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-02-13 05:41:12 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-02-13 05:41:12 ----A---- C:\Windows\system32\urlmon.dll
2013-02-13 05:41:12 ----A---- C:\Windows\system32\msfeeds.dll
2013-02-13 05:41:12 ----A---- C:\Windows\system32\jscript9.dll
2013-02-13 05:41:11 ----A---- C:\Windows\system32\wininet.dll
2013-02-13 05:41:10 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-02-13 05:41:10 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-02-13 05:41:10 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-02-13 05:41:10 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-02-13 05:41:10 ----A---- C:\Windows\system32\vbscript.dll
2013-02-13 05:41:10 ----A---- C:\Windows\system32\jsproxy.dll
2013-02-13 05:41:10 ----A---- C:\Windows\system32\jscript.dll
2013-02-13 05:41:10 ----A---- C:\Windows\system32\iertutil.dll
2013-02-13 05:41:09 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-02-13 05:41:08 ----A---- C:\Windows\system32\mshtml.dll
2013-02-13 05:41:07 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-02-13 05:41:07 ----A---- C:\Windows\system32\ieframe.dll
2013-02-13 05:02:07 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-02-13 05:02:06 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-02-13 05:02:06 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-02-13 05:02:02 ----A---- C:\Windows\system32\win32k.sys
2013-02-13 05:01:59 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-02-13 05:01:59 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-02-13 05:01:59 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-02-13 05:01:59 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-02-13 05:01:59 ----A---- C:\Windows\system32\winsrv.dll
2013-02-13 05:01:58 ----A---- C:\Windows\SYSWOW64\user.exe
2013-02-13 05:01:57 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-02-13 05:01:57 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS

======List of files/folders modified in the last 1 months======

2013-03-03 22:07:50 ----D---- C:\Windows\system32\config
2013-03-03 22:03:02 ----D---- C:\Windows\System32
2013-03-03 22:03:02 ----D---- C:\Windows\inf
2013-03-03 22:03:02 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-03-03 21:54:31 ----D---- C:\Windows
2013-03-03 21:54:31 ----D---- C:\ProgramData\NVIDIA
2013-03-03 21:19:21 ----D---- C:\Windows\SoftwareDistribution
2013-03-03 20:24:42 ----D---- C:\Windows\Prefetch
2013-03-03 20:10:32 ----A---- C:\Windows\system.ini
2013-03-03 20:08:55 ----D---- C:\Windows\SYSWOW64\drivers
2013-03-03 20:08:55 ----D---- C:\Windows\SysWOW64
2013-03-03 20:08:55 ----D---- C:\Windows\AppPatch
2013-03-03 20:08:54 ----D---- C:\Program Files (x86)\Common Files
2013-03-03 20:04:23 ----SHD---- C:\System Volume Information
2013-03-03 20:02:34 ----D---- C:\Windows\system32\drivers
2013-03-03 19:57:01 ----D---- C:\Windows\Tasks
2013-03-03 19:05:56 ----D---- C:\Windows\system32\catroot2
2013-03-02 08:39:33 ----D---- C:\Windows\system32\drivers\etc
2013-03-02 08:39:13 ----RD---- C:\Program Files (x86)
2013-03-01 19:27:30 ----SD---- C:\ProgramData\Microsoft
2013-02-28 22:00:31 ----D---- C:\Windows\rescache
2013-02-28 16:50:36 ----D---- C:\ProgramData
2013-02-28 16:21:54 ----D---- C:\Windows\debug
2013-02-28 08:08:40 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-02-28 04:22:21 ----D---- C:\Windows\winsxs
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-02-28 04:21:43 ----D---- C:\Windows\SYSWOW64\it-IT
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\es-ES
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\en-US
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\el-GR
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\de-DE
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\da-DK
2013-02-28 04:21:42 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-02-28 04:21:41 ----D---- C:\Windows\system32\zh-TW
2013-02-28 04:21:41 ----D---- C:\Windows\system32\zh-HK
2013-02-28 04:21:41 ----D---- C:\Windows\system32\zh-CN
2013-02-28 04:21:41 ----D---- C:\Windows\system32\tr-TR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\sv-SE
2013-02-28 04:21:41 ----D---- C:\Windows\system32\ru-RU
2013-02-28 04:21:41 ----D---- C:\Windows\system32\pt-PT
2013-02-28 04:21:41 ----D---- C:\Windows\system32\pt-BR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\pl-PL
2013-02-28 04:21:41 ----D---- C:\Windows\system32\nl-NL
2013-02-28 04:21:41 ----D---- C:\Windows\system32\nb-NO
2013-02-28 04:21:41 ----D---- C:\Windows\system32\ko-KR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\ja-JP
2013-02-28 04:21:41 ----D---- C:\Windows\system32\it-IT
2013-02-28 04:21:41 ----D---- C:\Windows\system32\hu-HU
2013-02-28 04:21:41 ----D---- C:\Windows\system32\fr-FR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\fi-FI
2013-02-28 04:21:41 ----D---- C:\Windows\system32\es-ES
2013-02-28 04:21:41 ----D---- C:\Windows\system32\en-US
2013-02-28 04:21:41 ----D---- C:\Windows\system32\el-GR
2013-02-28 04:21:41 ----D---- C:\Windows\system32\de-DE
2013-02-28 04:21:41 ----D---- C:\Windows\system32\da-DK
2013-02-28 04:21:41 ----D---- C:\Windows\system32\cs-CZ
2013-02-27 09:29:53 ----D---- C:\Windows\system32\catroot
2013-02-25 19:25:18 ----D---- C:\Windows\system32\Tasks
2013-02-24 13:44:08 ----RD---- C:\Program Files
2013-02-24 06:15:41 ----SHD---- C:\Windows\Installer
2013-02-24 06:15:41 ----D---- C:\Config.Msi
2013-02-21 20:17:49 ----D---- C:\Windows\system32\DriverStore
2013-02-21 08:56:02 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-02-15 18:59:54 ----D---- C:\ProgramData\Adobe
2013-02-13 09:33:09 ----RSD---- C:\Windows\assembly
2013-02-13 09:33:09 ----D---- C:\Windows\Microsoft.NET
2013-02-13 09:23:11 ----D---- C:\Windows\SYSWOW64\migration
2013-02-13 09:23:11 ----D---- C:\Windows\system32\migration
2013-02-13 09:23:11 ----D---- C:\Program Files\Internet Explorer
2013-02-13 09:23:11 ----D---- C:\Program Files (x86)\Internet Explorer
2013-02-13 05:46:13 ----D---- C:\ProgramData\Microsoft Help
2013-02-13 05:44:30 ----A---- C:\Windows\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2009-08-04 13440]
R1 AsUpIO;AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [2009-07-06 13368]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2012-12-03 129216]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2012-11-16 27800]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2012-12-03 99912]
R3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920]
R3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\drivers\Dot4Prt.sys [2010-11-20 19968]
R3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-07-16 15416]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2010-11-12 155752]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
R3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2010-05-15 1327520]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 MSICDSetup;MSICDSetup; \??\E:\CDriver64.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 Ser2pl;Prolific Serial port WDF driver; C:\Windows\system32\DRIVERS\ser2pl64.sys [2012-07-30 158720]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 57856]
S3 WinUsb;Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2013-02-06 110816]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2013-02-06 86752]
R2 AsSysCtrlService;ASUS System Control Service; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [2009-12-28 96896]
R2 DvmMDES;DeviceVM Meta Data Export Service; C:\ASUS.SYS\config\DVMExportService.exe [2009-10-16 319488]
R2 HiSuiteOuc64.exe;HiSuiteOuc64.exe; C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe [2012-12-24 138416]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 HuaweiHiSuiteService64.exe;HuaweiHiSuiteService64.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [2012-11-21 201608]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 NVSvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-10-02 891240]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2011-03-28 2292096]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2010-12-08 628736]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-03-31 136176]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-10-10 1258856]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-02-28 251248]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-03-31 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-02-20 115608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-03-14 1255736]

-----------------EOF-----------------

Uživatelský avatar
cernohous13
VIP in memoriam
VIP in memoriam
Příspěvky: 8721
Registrován: 09 pro 2006 06:19
Bydliště: Jablonec nad Nisou
Kontaktovat uživatele:

Re: Problém s odebráním USB flasch,zpomalený PC

#60 Příspěvek od cernohous13 »

v logu nevidím svým unaveným zrakem nic neobvyklého :173:
a jestli jsi neobjevil nějaký problém, tak už bych v tom nevrtal.

ještě můžeš odstranit složku C:\Qoobox
Doporučení:
V průběhu léčení prováděj nové instalace a odinstalace jen na můj pokyn.
Důkladně prostuduj a proveď celou operaci podle mé odpovědi.
V případě nejasností se zeptej - vysvětlím Obrázek

-------------------------------------------------------------------------------------------------
> Podpora fóra <

Zamčeno