Prosím o kontrolu logu:Qvo6,delta-search
Napsal: 06 črc 2013 08:25
LOG JE DLOUHÝ TAK HO DÁVÁM NA DVĚ ČÁSTI
Logfile of random's system information tool 1.09 (written by random/random)
Run by Monty at 2013-07-06 09:19:03
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 352 GB (77%) free of 455 GB
Total RAM: 4044 MB (40% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:19:11, on 6.7.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16483)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\Seznam.cz\bin\postak.exe
C:\Program Files (x86)\Codyssey(FREERASER)\Freeraser\Freeraser.exe
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe
C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Monty.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_m ... 1372929995
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_m ... 1372929995
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.qvo6.com/?utm_source=b&utm_m ... 1372929995
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: TSBHO Class - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA7076] command.com /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\Desk 365.lnk"
O4 - HKLM\..\RunOnce: [SpybotDeletingC9541] cmd.exe /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\Desk 365.lnk"
O4 - HKLM\..\RunOnce: [SpybotDeletingA1014] command.com /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\eUninstall.lnk"
O4 - HKLM\..\RunOnce: [SpybotDeletingC2103] cmd.exe /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\eUninstall.lnk"
O4 - HKLM\..\RunOnce: [SpybotDeletingA4036] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\accelerate"
O4 - HKLM\..\RunOnce: [SpybotDeletingC139] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\accelerate"
O4 - HKLM\..\RunOnce: [SpybotDeletingA5578] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_bkg_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC825] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_bkg_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA3207] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC6306] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA8264] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_settings.ini"
O4 - HKLM\..\RunOnce: [SpybotDeletingC8404] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_settings.ini"
O4 - HKLM\..\RunOnce: [SpybotDeletingA7513] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\process_mgr.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC7712] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\process_mgr.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA5531] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\promote.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC9526] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\promote.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA5779] command.com /c del "C:\Program Files (x86)\Desk 365\desk_bkg_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC7208] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk_bkg_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA2012] command.com /c del "C:\Program Files (x86)\Desk 365\desk_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC8326] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA6865] command.com /c del "C:\Program Files (x86)\Desk 365\desk_settings.ini"
O4 - HKLM\..\RunOnce: [SpybotDeletingC9831] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk_settings.ini"
O4 - HKLM\..\RunOnce: [SpybotDeletingA7395] command.com /c del "C:\Program Files (x86)\Desk 365\desk365.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingC9261] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk365.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA5219] command.com /c del "C:\Program Files (x86)\Desk 365\deskSvc.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingC8056] cmd.exe /c del "C:\Program Files (x86)\Desk 365\deskSvc.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA9342] command.com /c del "C:\Program Files (x86)\Desk 365\ebase.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC5756] cmd.exe /c del "C:\Program Files (x86)\Desk 365\ebase.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA3927] command.com /c del "C:\Program Files (x86)\Desk 365\edeskcmn.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC6475] cmd.exe /c del "C:\Program Files (x86)\Desk 365\edeskcmn.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA71] command.com /c del "C:\Program Files (x86)\Desk 365\eDhelper.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingC5677] cmd.exe /c del "C:\Program Files (x86)\Desk 365\eDhelper.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA7070] command.com /c del "C:\Program Files (x86)\Desk 365\eDhelper64.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingC2000] cmd.exe /c del "C:\Program Files (x86)\Desk 365\eDhelper64.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA559] command.com /c del "C:\Program Files (x86)\Desk 365\edis.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC5100] cmd.exe /c del "C:\Program Files (x86)\Desk 365\edis.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA6093] command.com /c del "C:\Program Files (x86)\Desk 365\edis64.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC4130] cmd.exe /c del "C:\Program Files (x86)\Desk 365\edis64.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA2963] command.com /c del "C:\Program Files (x86)\Desk 365\ElexDbg.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC8641] cmd.exe /c del "C:\Program Files (x86)\Desk 365\ElexDbg.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA7986] command.com /c del "C:\Program Files (x86)\Desk 365\eUninstall.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingC2864] cmd.exe /c del "C:\Program Files (x86)\Desk 365\eUninstall.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA8085] command.com /c del "C:\Program Files (x86)\Desk 365\libpng.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC3741] cmd.exe /c del "C:\Program Files (x86)\Desk 365\libpng.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA8682] command.com /c del "C:\Program Files (x86)\Desk 365\main"
O4 - HKLM\..\RunOnce: [SpybotDeletingC4490] cmd.exe /c del "C:\Program Files (x86)\Desk 365\main"
O4 - HKLM\..\RunOnce: [SpybotDeletingA1511] command.com /c del "C:\Program Files (x86)\Desk 365\ouilibnl.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC1565] cmd.exe /c del "C:\Program Files (x86)\Desk 365\ouilibnl.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA9767] command.com /c del "C:\Program Files (x86)\Desk 365\process_mgr.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC1845] cmd.exe /c del "C:\Program Files (x86)\Desk 365\process_mgr.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA9474] command.com /c del "C:\Program Files (x86)\Desk 365\promote.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC232] cmd.exe /c del "C:\Program Files (x86)\Desk 365\promote.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA4348] command.com /c del "C:\Program Files (x86)\Desk 365\recent.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC7487] cmd.exe /c del "C:\Program Files (x86)\Desk 365\recent.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA3019] command.com /c del "C:\Program Files (x86)\Desk 365\sqlite3.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC5942] cmd.exe /c del "C:\Program Files (x86)\Desk 365\sqlite3.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA8532] command.com /c del "C:\Program Files (x86)\Desk 365\svc.conf"
O4 - HKLM\..\RunOnce: [SpybotDeletingC5985] cmd.exe /c del "C:\Program Files (x86)\Desk 365\svc.conf"
O4 - HKLM\..\RunOnce: [SpybotDeletingA9443] command.com /c del "C:\Program Files (x86)\Desk 365\TrayDownloader.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingC7514] cmd.exe /c del "C:\Program Files (x86)\Desk 365\TrayDownloader.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA9528] command.com /c del "C:\Program Files (x86)\Desk 365\zlib1.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC105] cmd.exe /c del "C:\Program Files (x86)\Desk 365\zlib1.dll"
O4 - HKLM\..\RunOnce: [SpybotSnD] "C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Seznam Postak] "C:\Program Files (x86)\Seznam.cz\bin\postak.exe" -s
O4 - HKCU\..\Run: [Freeraser] C:\Program Files (x86)\Codyssey(FREERASER)\Freeraser\Freeraser.exe
O4 - HKCU\..\Run: [DS Clock] "C:\Program Files\DS Clock\DSClock.exe"
O4 - HKCU\..\Run: [] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKCU\..\RunOnce: [SpybotDeletingB8545] command.com /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\Desk 365.lnk"
O4 - HKCU\..\RunOnce: [SpybotDeletingD5583] cmd.exe /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\Desk 365.lnk"
O4 - HKCU\..\RunOnce: [SpybotDeletingB9736] command.com /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\eUninstall.lnk"
O4 - HKCU\..\RunOnce: [SpybotDeletingD7101] cmd.exe /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\eUninstall.lnk"
O4 - HKCU\..\RunOnce: [SpybotDeletingB4803] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\accelerate"
O4 - HKCU\..\RunOnce: [SpybotDeletingD294] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\accelerate"
O4 - HKCU\..\RunOnce: [SpybotDeletingB3548] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_bkg_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD2391] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_bkg_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB7055] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD318] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB1970] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_settings.ini"
O4 - HKCU\..\RunOnce: [SpybotDeletingD2744] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_settings.ini"
O4 - HKCU\..\RunOnce: [SpybotDeletingB3829] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\process_mgr.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD4081] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\process_mgr.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB5029] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\promote.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD8464] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\promote.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB4922] command.com /c del "C:\Program Files (x86)\Desk 365\desk_bkg_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD7805] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk_bkg_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB1487] command.com /c del "C:\Program Files (x86)\Desk 365\desk_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD1300] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB7840] command.com /c del "C:\Program Files (x86)\Desk 365\desk_settings.ini"
O4 - HKCU\..\RunOnce: [SpybotDeletingD4048] cmd.exe /c del "C:\Program Files (x86)\Desk 365\deskSvc.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB1108] command.com /c del "C:\Program Files (x86)\Desk 365\desk365.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingD6615] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk365.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB6308] command.com /c del "C:\Program Files (x86)\Desk 365\deskSvc.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB4594] command.com /c del "C:\Program Files (x86)\Desk 365\ebase.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD5971] cmd.exe /c del "C:\Program Files (x86)\Desk 365\ebase.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB5560] command.com /c del "C:\Program Files (x86)\Desk 365\edeskcmn.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD7424] cmd.exe /c del "C:\Program Files (x86)\Desk 365\edeskcmn.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB5884] command.com /c del "C:\Program Files (x86)\Desk 365\eDhelper.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingD4132] cmd.exe /c del "C:\Program Files (x86)\Desk 365\eDhelper.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB6460] command.com /c del "C:\Program Files (x86)\Desk 365\eDhelper64.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingD3157] cmd.exe /c del "C:\Program Files (x86)\Desk 365\eDhelper64.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB8273] command.com /c del "C:\Program Files (x86)\Desk 365\edis.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD7343] cmd.exe /c del "C:\Program Files (x86)\Desk 365\edis.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB9703] command.com /c del "C:\Program Files (x86)\Desk 365\edis64.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD9793] cmd.exe /c del "C:\Program Files (x86)\Desk 365\edis64.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB4345] command.com /c del "C:\Program Files (x86)\Desk 365\ElexDbg.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD8018] cmd.exe /c del "C:\Program Files (x86)\Desk 365\ElexDbg.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB7402] command.com /c del "C:\Program Files (x86)\Desk 365\eUninstall.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingD4982] cmd.exe /c del "C:\Program Files (x86)\Desk 365\eUninstall.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB6948] command.com /c del "C:\Program Files (x86)\Desk 365\libpng.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD9585] cmd.exe /c del "C:\Program Files (x86)\Desk 365\libpng.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB9307] command.com /c del "C:\Program Files (x86)\Desk 365\main"
O4 - HKCU\..\RunOnce: [SpybotDeletingD8518] cmd.exe /c del "C:\Program Files (x86)\Desk 365\main"
O4 - HKCU\..\RunOnce: [SpybotDeletingB5249] command.com /c del "C:\Program Files (x86)\Desk 365\ouilibnl.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD2613] cmd.exe /c del "C:\Program Files (x86)\Desk 365\ouilibnl.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB4706] command.com /c del "C:\Program Files (x86)\Desk 365\process_mgr.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD7008] cmd.exe /c del "C:\Program Files (x86)\Desk 365\process_mgr.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB9794] command.com /c del "C:\Program Files (x86)\Desk 365\promote.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD4602] cmd.exe /c del "C:\Program Files (x86)\Desk 365\promote.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB3308] command.com /c del "C:\Program Files (x86)\Desk 365\recent.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD9180] cmd.exe /c del "C:\Program Files (x86)\Desk 365\recent.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB7386] command.com /c del "C:\Program Files (x86)\Desk 365\sqlite3.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD1547] cmd.exe /c del "C:\Program Files (x86)\Desk 365\sqlite3.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB4778] command.com /c del "C:\Program Files (x86)\Desk 365\svc.conf"
O4 - HKCU\..\RunOnce: [SpybotDeletingD9353] cmd.exe /c del "C:\Program Files (x86)\Desk 365\svc.conf"
O4 - HKCU\..\RunOnce: [SpybotDeletingB593] command.com /c del "C:\Program Files (x86)\Desk 365\TrayDownloader.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingD2548] cmd.exe /c del "C:\Program Files (x86)\Desk 365\TrayDownloader.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB6516] command.com /c del "C:\Program Files (x86)\Desk 365\zlib1.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD7835] cmd.exe /c del "C:\Program Files (x86)\Desk 365\zlib1.dll"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Atheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: DS Clock Synchronization Service www.dualitysoft.com (DSClockSyncTime) - Duality Software - C:\Program Files\DS Clock\dsetime.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Easybits Services for Windows (ezSharedSvc) - EasyBits Software AS - C:\Windows\System32\ezSharedSvcHost.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: TrueSuiteService (FPLService) - HP - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Client Services (HPClientSvc) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: Intel(R) Identity Protection Technology Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Norton Identity Safe (NCO) - Symantec Corporation - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\SysWOW64\IoctlSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Samsung AllShare PC Service (SamsungAllShare) - Unknown owner - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\WiselinkPro.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: SimpleSlideShowServer - Samsung Electronics - C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: TomTomHOMEService - TomTom - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wsys Service (WsysSvc) - Wsys Co., Ltd. - C:\ProgramData\eSafe\eGdpSvc.exe
--
End of file - 29836 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\Windows\system32\AUDIODG.EXE 0x328
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files\DS Clock\dsetime.exe"
C:\Windows\SysWOW64\ezSharedSvcHost.exe
"C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe"
"C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe" /s "NCO" /m "C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\diMaster.dll" /prefetch:1
C:\Windows\SysWOW64\IoctlSvc.exe
"C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\WiselinkPro.exe"
"taskhost.exe"
"C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\http_ss_win_pro.exe"
\??\C:\Windows\system32\conhost.exe "-777284502422592462-8974451883969022401533281735192444471492993708395472631
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe" /c /a /s UserSession
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe" /c /a /s UserSession2
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 3504
C:\Windows\System32\alg.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
taskeng.exe {C1F03041-C321-4F50-A357-5DEF127EE327}
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Seznam.cz\bin\postak.exe" -s
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Codyssey(FREERASER)\Freeraser\Freeraser.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\DS Clock\dsclock.exe"
"C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\ProgramData\eSafe\eGdpSvc.exe
taskeng.exe {EEE4F6F5-FDAD-48F1-9EF6-7DC10408A33B}
"C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe"
"C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe" -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.google.cz
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2600.0.1212525722\1365100454" --supports-dual-gpus=false --reduce-gpu-sandbox --disable-image-transport-surface --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.830.6.3000 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/1/OneClickSignIn/Standard/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_45/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --instant-process --enable-threaded-compositing --channel="2600.2.586601609\826672196" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/1/OneClickSignIn/Standard/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_45/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/default/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="2600.3.1924136161\791710019" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/1/OneClickSignIn/Standard/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_45/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/default/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="2600.4.1483320234\1949748772" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\Monty\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2013.4.0.10_0\npcoplgn.dll" --lang=cs --channel="2600.5.2074200027\1709068162" /prefetch:-390060480
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/1/OneClickSignIn/Standard/Prerender/PrerenderEnabled/SpdyCwnd/cwndMin16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_45/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --channel="2600.6.839990896\1150848296" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2600.7.1687581482\2081448666" --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/1/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SpdyCwnd/cwndMin16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_45/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --channel="2600.22.502122821\1647762344" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/1/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SpdyCwnd/cwndMin16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_45/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --channel="2600.25.1155151916\1381937731" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe56_ Global\UsGthrCtrlFltPipeMssGthrPipe56 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\Monty\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\HPCeeScheduleForMonty.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B}]
TrueSuite Website Log On - C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll [2011-05-06 1746760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll [2013-05-30 509776]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL [2013-04-08 387040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-04-04 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B}]
TrueSuite Website Log On - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll [2011-05-06 1598280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-06-14 51872]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-04-04 171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll [2013-05-30 509776]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-06-10 2799912]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2011-06-08 1128448]
"AtherosBtStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2011-06-14 932000]
"AthBtTray"=C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [2011-06-14 795808]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-04-15 168216]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-04-15 392472]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-04-15 416024]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 112512]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"Seznam Postak"=C:\Program Files (x86)\Seznam.cz\bin\postak.exe [2012-01-10 491040]
"Freeraser"=C:\Program Files (x86)\Codyssey(FREERASER)\Freeraser\Freeraser.exe [2009-04-15 1903104]
"DS Clock"=C:\Program Files\DS Clock\DSClock.exe [2012-12-17 1350608]
""=C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2013-05-23 1106288]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SpybotDeletingB8545"=command.com /c del C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\Desk 365.lnk []
"SpybotDeletingD5583"=cmd.exe /c del C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\Desk 365.lnk []
"SpybotDeletingB9736"=command.com /c del C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\eUninstall.lnk []
"SpybotDeletingD7101"=cmd.exe /c del C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\eUninstall.lnk []
"SpybotDeletingB4803"=command.com /c del C:\Users\Monty\AppData\Roaming\Desk 365\accelerate []
"SpybotDeletingD294"=cmd.exe /c del C:\Users\Monty\AppData\Roaming\Desk 365\accelerate []
"SpybotDeletingB3548"=command.com /c del C:\Users\Monty\AppData\Roaming\Desk 365\desk_bkg_list.xml []
"SpybotDeletingD2391"=cmd.exe /c del C:\Users\Monty\AppData\Roaming\Desk 365\desk_bkg_list.xml []
"SpybotDeletingB7055"=command.com /c del C:\Users\Monty\AppData\Roaming\Desk 365\desk_list.xml []
"SpybotDeletingD318"=cmd.exe /c del C:\Users\Monty\AppData\Roaming\Desk 365\desk_list.xml []
"SpybotDeletingB1970"=command.com /c del C:\Users\Monty\AppData\Roaming\Desk 365\desk_settings.ini []
"SpybotDeletingD2744"=cmd.exe /c del C:\Users\Monty\AppData\Roaming\Desk 365\desk_settings.ini []
"SpybotDeletingB3829"=command.com /c del C:\Users\Monty\AppData\Roaming\Desk 365\process_mgr.xml []
"SpybotDeletingD4081"=cmd.exe /c del C:\Users\Monty\AppData\Roaming\Desk 365\process_mgr.xml []
"SpybotDeletingB5029"=command.com /c del C:\Users\Monty\AppData\Roaming\Desk 365\promote.xml []
"SpybotDeletingD8464"=cmd.exe /c del C:\Users\Monty\AppData\Roaming\Desk 365\promote.xml []
"SpybotDeletingB4922"=command.com /c del C:\Program Files (x86)\Desk 365\desk_bkg_list.xml []
"SpybotDeletingD7805"=cmd.exe /c del C:\Program Files (x86)\Desk 365\desk_bkg_list.xml []
"SpybotDeletingB1487"=command.com /c del C:\Program Files (x86)\Desk 365\desk_list.xml []
"SpybotDeletingD1300"=cmd.exe /c del C:\Program Files (x86)\Desk 365\desk_list.xml []
"SpybotDeletingB7840"=command.com /c del C:\Program Files (x86)\Desk 365\desk_settings.ini []
"SpybotDeletingD4048"=cmd.exe /c del C:\Program Files (x86)\Desk 365\deskSvc.exe []
"SpybotDeletingB1108"=command.com /c del C:\Program Files (x86)\Desk 365\desk365.exe []
"SpybotDeletingD6615"=cmd.exe /c del C:\Program Files (x86)\Desk 365\desk365.exe []
"SpybotDeletingB6308"=command.com /c del C:\Program Files (x86)\Desk 365\deskSvc.exe []
"SpybotDeletingB4594"=command.com /c del C:\Program Files (x86)\Desk 365\ebase.dll []
"SpybotDeletingD5971"=cmd.exe /c del C:\Program Files (x86)\Desk 365\ebase.dll []
"SpybotDeletingB5560"=command.com /c del C:\Program Files (x86)\Desk 365\edeskcmn.dll []
"SpybotDeletingD7424"=cmd.exe /c del C:\Program Files (x86)\Desk 365\edeskcmn.dll []
"SpybotDeletingB5884"=command.com /c del C:\Program Files (x86)\Desk 365\eDhelper.exe []
"SpybotDeletingD4132"=cmd.exe /c del C:\Program Files (x86)\Desk 365\eDhelper.exe []
"SpybotDeletingB6460"=command.com /c del C:\Program Files (x86)\Desk 365\eDhelper64.exe []
"SpybotDeletingD3157"=cmd.exe /c del C:\Program Files (x86)\Desk 365\eDhelper64.exe []
"SpybotDeletingB8273"=command.com /c del C:\Program Files (x86)\Desk 365\edis.dll []
"SpybotDeletingD7343"=cmd.exe /c del C:\Program Files (x86)\Desk 365\edis.dll []
"SpybotDeletingB9703"=command.com /c del C:\Program Files (x86)\Desk 365\edis64.dll []
"SpybotDeletingD9793"=cmd.exe /c del C:\Program Files (x86)\Desk 365\edis64.dll []
"SpybotDeletingB4345"=command.com /c del C:\Program Files (x86)\Desk 365\ElexDbg.dll []
"SpybotDeletingD8018"=cmd.exe /c del C:\Program Files (x86)\Desk 365\ElexDbg.dll []
"SpybotDeletingB7402"=command.com /c del C:\Program Files (x86)\Desk 365\eUninstall.exe []
"SpybotDeletingD4982"=cmd.exe /c del C:\Program Files (x86)\Desk 365\eUninstall.exe []
"SpybotDeletingB6948"=command.com /c del C:\Program Files (x86)\Desk 365\libpng.dll []
"SpybotDeletingD9585"=cmd.exe /c del C:\Program Files (x86)\Desk 365\libpng.dll []
"SpybotDeletingB9307"=command.com /c del C:\Program Files (x86)\Desk 365\main []
"SpybotDeletingD8518"=cmd.exe /c del C:\Program Files (x86)\Desk 365\main []
"SpybotDeletingB5249"=command.com /c del C:\Program Files (x86)\Desk 365\ouilibnl.dll []
"SpybotDeletingD2613"=cmd.exe /c del C:\Program Files (x86)\Desk 365\ouilibnl.dll []
"SpybotDeletingB4706"=command.com /c del C:\Program Files (x86)\Desk 365\process_mgr.xml []
"SpybotDeletingD7008"=cmd.exe /c del C:\Program Files (x86)\Desk 365\process_mgr.xml []
"SpybotDeletingB9794"=command.com /c del C:\Program Files (x86)\Desk 365\promote.xml []
"SpybotDeletingD4602"=cmd.exe /c del C:\Program Files (x86)\Desk 365\promote.xml []
"SpybotDeletingB3308"=command.com /c del C:\Program Files (x86)\Desk 365\recent.xml []
"SpybotDeletingD9180"=cmd.exe /c del C:\Program Files (x86)\Desk 365\recent.xml []
"SpybotDeletingB7386"=command.com /c del C:\Program Files (x86)\Desk 365\sqlite3.dll []
"SpybotDeletingD1547"=cmd.exe /c del C:\Program Files (x86)\Desk 365\sqlite3.dll []
"SpybotDeletingB4778"=command.com /c del C:\Program Files (x86)\Desk 365\svc.conf []
"SpybotDeletingD9353"=cmd.exe /c del C:\Program Files (x86)\Desk 365\svc.conf []
"SpybotDeletingB593"=command.com /c del C:\Program Files (x86)\Desk 365\TrayDownloader.exe []
"SpybotDeletingD2548"=cmd.exe /c del C:\Program Files (x86)\Desk 365\TrayDownloader.exe []
"SpybotDeletingB6516"=command.com /c del C:\Program Files (x86)\Desk 365\zlib1.dll []
"SpybotDeletingD7835"=cmd.exe /c del C:\Program Files (x86)\Desk 365\zlib1.dll []
Logfile of random's system information tool 1.09 (written by random/random)
Run by Monty at 2013-07-06 09:19:03
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 352 GB (77%) free of 455 GB
Total RAM: 4044 MB (40% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:19:11, on 6.7.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16483)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\Seznam.cz\bin\postak.exe
C:\Program Files (x86)\Codyssey(FREERASER)\Freeraser\Freeraser.exe
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe
C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Monty.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_m ... 1372929995
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_m ... 1372929995
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.qvo6.com/?utm_source=b&utm_m ... 1372929995
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: TSBHO Class - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA7076] command.com /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\Desk 365.lnk"
O4 - HKLM\..\RunOnce: [SpybotDeletingC9541] cmd.exe /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\Desk 365.lnk"
O4 - HKLM\..\RunOnce: [SpybotDeletingA1014] command.com /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\eUninstall.lnk"
O4 - HKLM\..\RunOnce: [SpybotDeletingC2103] cmd.exe /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\eUninstall.lnk"
O4 - HKLM\..\RunOnce: [SpybotDeletingA4036] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\accelerate"
O4 - HKLM\..\RunOnce: [SpybotDeletingC139] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\accelerate"
O4 - HKLM\..\RunOnce: [SpybotDeletingA5578] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_bkg_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC825] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_bkg_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA3207] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC6306] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA8264] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_settings.ini"
O4 - HKLM\..\RunOnce: [SpybotDeletingC8404] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_settings.ini"
O4 - HKLM\..\RunOnce: [SpybotDeletingA7513] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\process_mgr.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC7712] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\process_mgr.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA5531] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\promote.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC9526] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\promote.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA5779] command.com /c del "C:\Program Files (x86)\Desk 365\desk_bkg_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC7208] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk_bkg_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA2012] command.com /c del "C:\Program Files (x86)\Desk 365\desk_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC8326] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk_list.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA6865] command.com /c del "C:\Program Files (x86)\Desk 365\desk_settings.ini"
O4 - HKLM\..\RunOnce: [SpybotDeletingC9831] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk_settings.ini"
O4 - HKLM\..\RunOnce: [SpybotDeletingA7395] command.com /c del "C:\Program Files (x86)\Desk 365\desk365.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingC9261] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk365.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA5219] command.com /c del "C:\Program Files (x86)\Desk 365\deskSvc.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingC8056] cmd.exe /c del "C:\Program Files (x86)\Desk 365\deskSvc.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA9342] command.com /c del "C:\Program Files (x86)\Desk 365\ebase.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC5756] cmd.exe /c del "C:\Program Files (x86)\Desk 365\ebase.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA3927] command.com /c del "C:\Program Files (x86)\Desk 365\edeskcmn.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC6475] cmd.exe /c del "C:\Program Files (x86)\Desk 365\edeskcmn.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA71] command.com /c del "C:\Program Files (x86)\Desk 365\eDhelper.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingC5677] cmd.exe /c del "C:\Program Files (x86)\Desk 365\eDhelper.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA7070] command.com /c del "C:\Program Files (x86)\Desk 365\eDhelper64.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingC2000] cmd.exe /c del "C:\Program Files (x86)\Desk 365\eDhelper64.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA559] command.com /c del "C:\Program Files (x86)\Desk 365\edis.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC5100] cmd.exe /c del "C:\Program Files (x86)\Desk 365\edis.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA6093] command.com /c del "C:\Program Files (x86)\Desk 365\edis64.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC4130] cmd.exe /c del "C:\Program Files (x86)\Desk 365\edis64.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA2963] command.com /c del "C:\Program Files (x86)\Desk 365\ElexDbg.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC8641] cmd.exe /c del "C:\Program Files (x86)\Desk 365\ElexDbg.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA7986] command.com /c del "C:\Program Files (x86)\Desk 365\eUninstall.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingC2864] cmd.exe /c del "C:\Program Files (x86)\Desk 365\eUninstall.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA8085] command.com /c del "C:\Program Files (x86)\Desk 365\libpng.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC3741] cmd.exe /c del "C:\Program Files (x86)\Desk 365\libpng.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA8682] command.com /c del "C:\Program Files (x86)\Desk 365\main"
O4 - HKLM\..\RunOnce: [SpybotDeletingC4490] cmd.exe /c del "C:\Program Files (x86)\Desk 365\main"
O4 - HKLM\..\RunOnce: [SpybotDeletingA1511] command.com /c del "C:\Program Files (x86)\Desk 365\ouilibnl.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC1565] cmd.exe /c del "C:\Program Files (x86)\Desk 365\ouilibnl.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA9767] command.com /c del "C:\Program Files (x86)\Desk 365\process_mgr.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC1845] cmd.exe /c del "C:\Program Files (x86)\Desk 365\process_mgr.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA9474] command.com /c del "C:\Program Files (x86)\Desk 365\promote.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC232] cmd.exe /c del "C:\Program Files (x86)\Desk 365\promote.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA4348] command.com /c del "C:\Program Files (x86)\Desk 365\recent.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingC7487] cmd.exe /c del "C:\Program Files (x86)\Desk 365\recent.xml"
O4 - HKLM\..\RunOnce: [SpybotDeletingA3019] command.com /c del "C:\Program Files (x86)\Desk 365\sqlite3.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC5942] cmd.exe /c del "C:\Program Files (x86)\Desk 365\sqlite3.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingA8532] command.com /c del "C:\Program Files (x86)\Desk 365\svc.conf"
O4 - HKLM\..\RunOnce: [SpybotDeletingC5985] cmd.exe /c del "C:\Program Files (x86)\Desk 365\svc.conf"
O4 - HKLM\..\RunOnce: [SpybotDeletingA9443] command.com /c del "C:\Program Files (x86)\Desk 365\TrayDownloader.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingC7514] cmd.exe /c del "C:\Program Files (x86)\Desk 365\TrayDownloader.exe"
O4 - HKLM\..\RunOnce: [SpybotDeletingA9528] command.com /c del "C:\Program Files (x86)\Desk 365\zlib1.dll"
O4 - HKLM\..\RunOnce: [SpybotDeletingC105] cmd.exe /c del "C:\Program Files (x86)\Desk 365\zlib1.dll"
O4 - HKLM\..\RunOnce: [SpybotSnD] "C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Seznam Postak] "C:\Program Files (x86)\Seznam.cz\bin\postak.exe" -s
O4 - HKCU\..\Run: [Freeraser] C:\Program Files (x86)\Codyssey(FREERASER)\Freeraser\Freeraser.exe
O4 - HKCU\..\Run: [DS Clock] "C:\Program Files\DS Clock\DSClock.exe"
O4 - HKCU\..\Run: [] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKCU\..\RunOnce: [SpybotDeletingB8545] command.com /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\Desk 365.lnk"
O4 - HKCU\..\RunOnce: [SpybotDeletingD5583] cmd.exe /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\Desk 365.lnk"
O4 - HKCU\..\RunOnce: [SpybotDeletingB9736] command.com /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\eUninstall.lnk"
O4 - HKCU\..\RunOnce: [SpybotDeletingD7101] cmd.exe /c del "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\eUninstall.lnk"
O4 - HKCU\..\RunOnce: [SpybotDeletingB4803] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\accelerate"
O4 - HKCU\..\RunOnce: [SpybotDeletingD294] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\accelerate"
O4 - HKCU\..\RunOnce: [SpybotDeletingB3548] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_bkg_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD2391] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_bkg_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB7055] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD318] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB1970] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_settings.ini"
O4 - HKCU\..\RunOnce: [SpybotDeletingD2744] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\desk_settings.ini"
O4 - HKCU\..\RunOnce: [SpybotDeletingB3829] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\process_mgr.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD4081] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\process_mgr.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB5029] command.com /c del "C:\Users\Monty\AppData\Roaming\Desk 365\promote.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD8464] cmd.exe /c del "C:\Users\Monty\AppData\Roaming\Desk 365\promote.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB4922] command.com /c del "C:\Program Files (x86)\Desk 365\desk_bkg_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD7805] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk_bkg_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB1487] command.com /c del "C:\Program Files (x86)\Desk 365\desk_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD1300] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk_list.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB7840] command.com /c del "C:\Program Files (x86)\Desk 365\desk_settings.ini"
O4 - HKCU\..\RunOnce: [SpybotDeletingD4048] cmd.exe /c del "C:\Program Files (x86)\Desk 365\deskSvc.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB1108] command.com /c del "C:\Program Files (x86)\Desk 365\desk365.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingD6615] cmd.exe /c del "C:\Program Files (x86)\Desk 365\desk365.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB6308] command.com /c del "C:\Program Files (x86)\Desk 365\deskSvc.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB4594] command.com /c del "C:\Program Files (x86)\Desk 365\ebase.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD5971] cmd.exe /c del "C:\Program Files (x86)\Desk 365\ebase.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB5560] command.com /c del "C:\Program Files (x86)\Desk 365\edeskcmn.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD7424] cmd.exe /c del "C:\Program Files (x86)\Desk 365\edeskcmn.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB5884] command.com /c del "C:\Program Files (x86)\Desk 365\eDhelper.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingD4132] cmd.exe /c del "C:\Program Files (x86)\Desk 365\eDhelper.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB6460] command.com /c del "C:\Program Files (x86)\Desk 365\eDhelper64.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingD3157] cmd.exe /c del "C:\Program Files (x86)\Desk 365\eDhelper64.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB8273] command.com /c del "C:\Program Files (x86)\Desk 365\edis.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD7343] cmd.exe /c del "C:\Program Files (x86)\Desk 365\edis.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB9703] command.com /c del "C:\Program Files (x86)\Desk 365\edis64.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD9793] cmd.exe /c del "C:\Program Files (x86)\Desk 365\edis64.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB4345] command.com /c del "C:\Program Files (x86)\Desk 365\ElexDbg.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD8018] cmd.exe /c del "C:\Program Files (x86)\Desk 365\ElexDbg.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB7402] command.com /c del "C:\Program Files (x86)\Desk 365\eUninstall.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingD4982] cmd.exe /c del "C:\Program Files (x86)\Desk 365\eUninstall.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB6948] command.com /c del "C:\Program Files (x86)\Desk 365\libpng.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD9585] cmd.exe /c del "C:\Program Files (x86)\Desk 365\libpng.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB9307] command.com /c del "C:\Program Files (x86)\Desk 365\main"
O4 - HKCU\..\RunOnce: [SpybotDeletingD8518] cmd.exe /c del "C:\Program Files (x86)\Desk 365\main"
O4 - HKCU\..\RunOnce: [SpybotDeletingB5249] command.com /c del "C:\Program Files (x86)\Desk 365\ouilibnl.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD2613] cmd.exe /c del "C:\Program Files (x86)\Desk 365\ouilibnl.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB4706] command.com /c del "C:\Program Files (x86)\Desk 365\process_mgr.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD7008] cmd.exe /c del "C:\Program Files (x86)\Desk 365\process_mgr.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB9794] command.com /c del "C:\Program Files (x86)\Desk 365\promote.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD4602] cmd.exe /c del "C:\Program Files (x86)\Desk 365\promote.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB3308] command.com /c del "C:\Program Files (x86)\Desk 365\recent.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingD9180] cmd.exe /c del "C:\Program Files (x86)\Desk 365\recent.xml"
O4 - HKCU\..\RunOnce: [SpybotDeletingB7386] command.com /c del "C:\Program Files (x86)\Desk 365\sqlite3.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD1547] cmd.exe /c del "C:\Program Files (x86)\Desk 365\sqlite3.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingB4778] command.com /c del "C:\Program Files (x86)\Desk 365\svc.conf"
O4 - HKCU\..\RunOnce: [SpybotDeletingD9353] cmd.exe /c del "C:\Program Files (x86)\Desk 365\svc.conf"
O4 - HKCU\..\RunOnce: [SpybotDeletingB593] command.com /c del "C:\Program Files (x86)\Desk 365\TrayDownloader.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingD2548] cmd.exe /c del "C:\Program Files (x86)\Desk 365\TrayDownloader.exe"
O4 - HKCU\..\RunOnce: [SpybotDeletingB6516] command.com /c del "C:\Program Files (x86)\Desk 365\zlib1.dll"
O4 - HKCU\..\RunOnce: [SpybotDeletingD7835] cmd.exe /c del "C:\Program Files (x86)\Desk 365\zlib1.dll"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.7 - {77F665FD-3F60-4B0A-AE14-EC124B7A7FCE} - C:\Program Files (x86)\ICQ7.7\ICQ.exe
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Atheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: DS Clock Synchronization Service www.dualitysoft.com (DSClockSyncTime) - Duality Software - C:\Program Files\DS Clock\dsetime.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Easybits Services for Windows (ezSharedSvc) - EasyBits Software AS - C:\Windows\System32\ezSharedSvcHost.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: TrueSuiteService (FPLService) - HP - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Client Services (HPClientSvc) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: Intel(R) Identity Protection Technology Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Norton Identity Safe (NCO) - Symantec Corporation - C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\SysWOW64\IoctlSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Samsung AllShare PC Service (SamsungAllShare) - Unknown owner - C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\WiselinkPro.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: SimpleSlideShowServer - Samsung Electronics - C:\Program Files (x86)\Samsung\AllShare\AllShareSlideShowService.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: TomTomHOMEService - TomTom - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wsys Service (WsysSvc) - Wsys Co., Ltd. - C:\ProgramData\eSafe\eGdpSvc.exe
--
End of file - 29836 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\Windows\system32\AUDIODG.EXE 0x328
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files\DS Clock\dsetime.exe"
C:\Windows\SysWOW64\ezSharedSvcHost.exe
"C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe"
"C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe"
"C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe"
"C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe" /s "NCO" /m "C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\diMaster.dll" /prefetch:1
C:\Windows\SysWOW64\IoctlSvc.exe
"C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\WiselinkPro.exe"
"taskhost.exe"
"C:\Program Files (x86)\Samsung\AllShare\AllShareDMS\http_ss_win_pro.exe"
\??\C:\Windows\system32\conhost.exe "-777284502422592462-8974451883969022401533281735192444471492993708395472631
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\Norton Identity Safe\Engine\2013.4.0.10\ccSvcHst.exe" /c /a /s UserSession
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\ccSvcHst.exe" /c /a /s UserSession2
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 3504
C:\Windows\System32\alg.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
taskeng.exe {C1F03041-C321-4F50-A357-5DEF127EE327}
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\Seznam.cz\bin\postak.exe" -s
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Codyssey(FREERASER)\Freeraser\Freeraser.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files\DS Clock\dsclock.exe"
"C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\ProgramData\eSafe\eGdpSvc.exe
taskeng.exe {EEE4F6F5-FDAD-48F1-9EF6-7DC10408A33B}
"C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe"
"C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe" -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" http://www.google.cz
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2600.0.1212525722\1365100454" --supports-dual-gpus=false --reduce-gpu-sandbox --disable-image-transport-surface --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.830.6.3000 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/1/OneClickSignIn/Standard/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_45/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --instant-process --enable-threaded-compositing --channel="2600.2.586601609\826672196" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/1/OneClickSignIn/Standard/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_45/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/default/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="2600.3.1924136161\791710019" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/1/OneClickSignIn/Standard/Prerender/PrerenderEnabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_45/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/default/" --extension-process --renderer-print-preview --enable-threaded-compositing --channel="2600.4.1483320234\1949748772" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=plugin --plugin-path="C:\Users\Monty\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2013.4.0.10_0\npcoplgn.dll" --lang=cs --channel="2600.5.2074200027\1709068162" /prefetch:-390060480
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/1/OneClickSignIn/Standard/Prerender/PrerenderEnabled/SpdyCwnd/cwndMin16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_45/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --channel="2600.6.839990896\1150848296" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2600.7.1687581482\2081448666" --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/1/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SpdyCwnd/cwndMin16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_45/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --channel="2600.22.502122821\1647762344" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_1/DefaultControl/ForceCompositingMode/thread/InfiniteCache/No/InstantDummy/DummyPadding channel:stable/InstantExtended/Padding2 channel:stable/OmniboxHQPReplaceHUPProhibitTrumpingInlineableResult/Standard/OmniboxSearchSuggestTrialStarted2013Q1/1/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/SpdyCwnd/cwndMin16/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Control/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_13/UMA-Uniformity-Trial-1-Percent/group_45/UMA-Uniformity-Trial-10-Percent/group_09/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_05/UMA-Uniformity-Trial-50-Percent/default/" --renderer-print-preview --enable-threaded-compositing --channel="2600.25.1155151916\1381937731" /prefetch:673131151
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe56_ Global\UsGthrCtrlFltPipeMssGthrPipe56 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\Monty\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\HPCeeScheduleForMonty.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B}]
TrueSuite Website Log On - C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll [2011-05-06 1746760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll [2013-05-30 509776]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\IPS\IPSBHO.DLL [2013-04-08 387040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-04-04 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8590886E-EC8C-43C1-A32C-E4C2B0B6395B}]
TrueSuite Website Log On - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll [2011-05-06 1598280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-06-14 51872]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-04-04 171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2012-07-09 351136]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\20.4.0.40\coIEPlg.dll [2013-05-30 509776]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-06-10 2799912]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2011-06-08 1128448]
"AtherosBtStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2011-06-14 932000]
"AthBtTray"=C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [2011-06-14 795808]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2011-04-15 168216]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2011-04-15 392472]
"Persistence"=C:\Windows\system32\igfxpers.exe [2011-04-15 416024]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 112512]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-21 1475584]
"Seznam Postak"=C:\Program Files (x86)\Seznam.cz\bin\postak.exe [2012-01-10 491040]
"Freeraser"=C:\Program Files (x86)\Codyssey(FREERASER)\Freeraser\Freeraser.exe [2009-04-15 1903104]
"DS Clock"=C:\Program Files\DS Clock\DSClock.exe [2012-12-17 1350608]
""=C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2013-05-23 1106288]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SpybotDeletingB8545"=command.com /c del C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\Desk 365.lnk []
"SpybotDeletingD5583"=cmd.exe /c del C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\Desk 365.lnk []
"SpybotDeletingB9736"=command.com /c del C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\eUninstall.lnk []
"SpybotDeletingD7101"=cmd.exe /c del C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desk 365\eUninstall.lnk []
"SpybotDeletingB4803"=command.com /c del C:\Users\Monty\AppData\Roaming\Desk 365\accelerate []
"SpybotDeletingD294"=cmd.exe /c del C:\Users\Monty\AppData\Roaming\Desk 365\accelerate []
"SpybotDeletingB3548"=command.com /c del C:\Users\Monty\AppData\Roaming\Desk 365\desk_bkg_list.xml []
"SpybotDeletingD2391"=cmd.exe /c del C:\Users\Monty\AppData\Roaming\Desk 365\desk_bkg_list.xml []
"SpybotDeletingB7055"=command.com /c del C:\Users\Monty\AppData\Roaming\Desk 365\desk_list.xml []
"SpybotDeletingD318"=cmd.exe /c del C:\Users\Monty\AppData\Roaming\Desk 365\desk_list.xml []
"SpybotDeletingB1970"=command.com /c del C:\Users\Monty\AppData\Roaming\Desk 365\desk_settings.ini []
"SpybotDeletingD2744"=cmd.exe /c del C:\Users\Monty\AppData\Roaming\Desk 365\desk_settings.ini []
"SpybotDeletingB3829"=command.com /c del C:\Users\Monty\AppData\Roaming\Desk 365\process_mgr.xml []
"SpybotDeletingD4081"=cmd.exe /c del C:\Users\Monty\AppData\Roaming\Desk 365\process_mgr.xml []
"SpybotDeletingB5029"=command.com /c del C:\Users\Monty\AppData\Roaming\Desk 365\promote.xml []
"SpybotDeletingD8464"=cmd.exe /c del C:\Users\Monty\AppData\Roaming\Desk 365\promote.xml []
"SpybotDeletingB4922"=command.com /c del C:\Program Files (x86)\Desk 365\desk_bkg_list.xml []
"SpybotDeletingD7805"=cmd.exe /c del C:\Program Files (x86)\Desk 365\desk_bkg_list.xml []
"SpybotDeletingB1487"=command.com /c del C:\Program Files (x86)\Desk 365\desk_list.xml []
"SpybotDeletingD1300"=cmd.exe /c del C:\Program Files (x86)\Desk 365\desk_list.xml []
"SpybotDeletingB7840"=command.com /c del C:\Program Files (x86)\Desk 365\desk_settings.ini []
"SpybotDeletingD4048"=cmd.exe /c del C:\Program Files (x86)\Desk 365\deskSvc.exe []
"SpybotDeletingB1108"=command.com /c del C:\Program Files (x86)\Desk 365\desk365.exe []
"SpybotDeletingD6615"=cmd.exe /c del C:\Program Files (x86)\Desk 365\desk365.exe []
"SpybotDeletingB6308"=command.com /c del C:\Program Files (x86)\Desk 365\deskSvc.exe []
"SpybotDeletingB4594"=command.com /c del C:\Program Files (x86)\Desk 365\ebase.dll []
"SpybotDeletingD5971"=cmd.exe /c del C:\Program Files (x86)\Desk 365\ebase.dll []
"SpybotDeletingB5560"=command.com /c del C:\Program Files (x86)\Desk 365\edeskcmn.dll []
"SpybotDeletingD7424"=cmd.exe /c del C:\Program Files (x86)\Desk 365\edeskcmn.dll []
"SpybotDeletingB5884"=command.com /c del C:\Program Files (x86)\Desk 365\eDhelper.exe []
"SpybotDeletingD4132"=cmd.exe /c del C:\Program Files (x86)\Desk 365\eDhelper.exe []
"SpybotDeletingB6460"=command.com /c del C:\Program Files (x86)\Desk 365\eDhelper64.exe []
"SpybotDeletingD3157"=cmd.exe /c del C:\Program Files (x86)\Desk 365\eDhelper64.exe []
"SpybotDeletingB8273"=command.com /c del C:\Program Files (x86)\Desk 365\edis.dll []
"SpybotDeletingD7343"=cmd.exe /c del C:\Program Files (x86)\Desk 365\edis.dll []
"SpybotDeletingB9703"=command.com /c del C:\Program Files (x86)\Desk 365\edis64.dll []
"SpybotDeletingD9793"=cmd.exe /c del C:\Program Files (x86)\Desk 365\edis64.dll []
"SpybotDeletingB4345"=command.com /c del C:\Program Files (x86)\Desk 365\ElexDbg.dll []
"SpybotDeletingD8018"=cmd.exe /c del C:\Program Files (x86)\Desk 365\ElexDbg.dll []
"SpybotDeletingB7402"=command.com /c del C:\Program Files (x86)\Desk 365\eUninstall.exe []
"SpybotDeletingD4982"=cmd.exe /c del C:\Program Files (x86)\Desk 365\eUninstall.exe []
"SpybotDeletingB6948"=command.com /c del C:\Program Files (x86)\Desk 365\libpng.dll []
"SpybotDeletingD9585"=cmd.exe /c del C:\Program Files (x86)\Desk 365\libpng.dll []
"SpybotDeletingB9307"=command.com /c del C:\Program Files (x86)\Desk 365\main []
"SpybotDeletingD8518"=cmd.exe /c del C:\Program Files (x86)\Desk 365\main []
"SpybotDeletingB5249"=command.com /c del C:\Program Files (x86)\Desk 365\ouilibnl.dll []
"SpybotDeletingD2613"=cmd.exe /c del C:\Program Files (x86)\Desk 365\ouilibnl.dll []
"SpybotDeletingB4706"=command.com /c del C:\Program Files (x86)\Desk 365\process_mgr.xml []
"SpybotDeletingD7008"=cmd.exe /c del C:\Program Files (x86)\Desk 365\process_mgr.xml []
"SpybotDeletingB9794"=command.com /c del C:\Program Files (x86)\Desk 365\promote.xml []
"SpybotDeletingD4602"=cmd.exe /c del C:\Program Files (x86)\Desk 365\promote.xml []
"SpybotDeletingB3308"=command.com /c del C:\Program Files (x86)\Desk 365\recent.xml []
"SpybotDeletingD9180"=cmd.exe /c del C:\Program Files (x86)\Desk 365\recent.xml []
"SpybotDeletingB7386"=command.com /c del C:\Program Files (x86)\Desk 365\sqlite3.dll []
"SpybotDeletingD1547"=cmd.exe /c del C:\Program Files (x86)\Desk 365\sqlite3.dll []
"SpybotDeletingB4778"=command.com /c del C:\Program Files (x86)\Desk 365\svc.conf []
"SpybotDeletingD9353"=cmd.exe /c del C:\Program Files (x86)\Desk 365\svc.conf []
"SpybotDeletingB593"=command.com /c del C:\Program Files (x86)\Desk 365\TrayDownloader.exe []
"SpybotDeletingD2548"=cmd.exe /c del C:\Program Files (x86)\Desk 365\TrayDownloader.exe []
"SpybotDeletingB6516"=command.com /c del C:\Program Files (x86)\Desk 365\zlib1.dll []
"SpybotDeletingD7835"=cmd.exe /c del C:\Program Files (x86)\Desk 365\zlib1.dll []