api.lemurleap.info

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Odpovědět
Zpráva
Autor
Avatar uživatele
misabalu
Návštěvník
Návštěvník
Příspěvky: 60
Registrován: 13 Lis 2006 21:27

api.lemurleap.info

#1 Příspěvek od misabalu »

Každý den mi ESET Smart Security nahlásí pokus o přístup k adrese api.lemusleap.info, který následně zablokuje.
Toto se stane 5-10 za sebou a následně celý den už nic. Druhý den ovšem blokování proběhne znovu.
Nezpomaluje, nekomplikuje, nic se neztrácí, ale....otravuje. IP uvedená v hlášce není mou IP adresou.
Konfigurace: i3, 16 gb DDR3, Win7pro, ESET SS.
Prosím o pomoc.

Přikládám log z RSITu:


Logfile of random's system information tool 1.09 (written by random/random)
Run by Balu at 2013-10-19 13:40:20
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 19 GB (17%) free of 114 GB
Total RAM: 8148 MB (80% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:40:24, on 19.10.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16720)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
C:\Program Files (x86)\FinWin 1.0\FINWIN.EXE
C:\Program Files (x86)\ACD Systems\ACDSee\15.0\ACDSee15InTouch2.exe
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
C:\Program Files (x86)\The Bat!\thebat.exe
C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe
C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe
C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe
C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe
C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe
C:\Program Files\trend micro\Balu.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
O2 - BHO: LemurLeap - {415419c3-dad0-4df1-ac37-22c72ad81878} - C:\Program Files (x86)\LemurLeap\LemurLeapbho.dll
O2 - BHO: KMP Media Toolbar BHO - {4B4D5056-3700-A76A-76A7-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\KMPV7\Passport.dll" (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Soda PDF 5 IE Helper - {C737F472-1193-4281-BF53-A00B67AB3E19} - C:\Program Files (x86)\Soda PDF 5\PDFIEHelper.dll
O2 - BHO: KMP Media Toolbar - {daf5b34c-1aa3-4c33-ae24-766a370635d2} - C:\Program Files (x86)\kmpmediatoolbar\searchresultsDx.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll
O3 - Toolbar: Soda PDF 5 IE Toolbar - {F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6} - C:\Program Files (x86)\Soda PDF 5\PDFIEPlugin.dll
O3 - Toolbar: KMP Media Toolbar - {4B4D5056-3700-A76A-76A7-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\KMPV7\Passport.dll" (file missing)
O3 - Toolbar: KMP Media Toolbar - {daf5b34c-1aa3-4c33-ae24-766a370635d2} - C:\Program Files (x86)\kmpmediatoolbar\searchresultsDx.dll
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [zzzHPSETUP] I:\! DRIVERY\Scannery\_HP ScanJet 5590P\Win7-64\setup_full_5590_3\Setup.exe \RESET
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [FinWin 1.0] C:\Program Files (x86)\FinWin 1.0\FINWIN.EXE
O4 - HKLM\..\Run: [ACSW15EN] "C:\Program Files (x86)\ACD Systems\ACDSee\15.0\ACDSee15InTouch2.exe" /pid ACSW15EN
O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ISUSPM Startup] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Balu\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Run WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Program Files (x86)\WinHTTrack\WinHTTrackIEBar.dll
O9 - Extra 'Tools' menuitem: Launch WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Program Files (x86)\WinHTTrack\WinHTTrackIEBar.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) - WIBU-SYSTEMS AG - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: Soda PDF 5 Helper Service - LULU Software Limited - C:\Program Files (x86)\Soda PDF 5\HelperService.exe
O23 - Service: Soda PDF 5 Service - LULU Software Limited - C:\Program Files (x86)\Soda PDF 5\ConversionService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Aktivátor Správce výběru OS Acronis (Správce výběru OS) - Unknown owner - C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: UMVPFSrv - Logitech Inc. - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Update LemurLeap - LemurLeap - C:\Program Files (x86)\LemurLeap\updateLemurLeap.exe
O23 - Service: Util LemurLeap - LemurLeap - C:\Program Files (x86)\LemurLeap\bin\utilLemurLeap.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\Windows\system32\viakaraokesrv.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13647 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe"
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"taskhost.exe"
"C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe"
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\Soda PDF 5\HelperService.exe"
"C:\Program Files (x86)\Soda PDF 5\ConversionService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\LemurLeap\updateLemurLeap.exe"
"C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" -r
"C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
"C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe"
"C:\Program Files (x86)\FinWin 1.0\FINWIN.EXE"
"C:\Program Files (x86)\ACD Systems\ACDSee\15.0\ACDSee15InTouch2.exe" /pid ACSW15EN
"C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\LemurLeap\bin\utilLemurLeap.exe"
C:\Windows\system32\viakaraokesrv.exe
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe"
"C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ee24612a-3ce0-47cb-926b-3cb3592c18eb -SystemEventPortName:HostProcess-d7dc7b91-5278-42a7-afc1-ac73a22dc608 -IoCancelEventPortName:HostProcess-d8e7d3fe-31cf-485f-8de8-189634189940 -NonStateChangingEventPortName:HostProcess-af5a9b7a-c6f3-449f-be4d-694d896580b6 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:383bd889-445a-4183-847f-31fdf160c1d0
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\The Bat!\thebat.exe"
"C:\Program Files\totalcmd\TOTALCMD64.EXE"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe"
"C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe" -PID:"6076" -RunMxAddonsMgr -UserName:"guest" -LangIni:"C:\Program Files (x86)\Maxthon3\Language\cs-cz.ini" -AppDataPath:"C:\Users\Balu\AppData\Roaming\Maxthon3\" /prefetch:3
"C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe" -RunResMgr -MainFrmIpc:"IPC_M_R_000017BC" -UsersFolder:"C:\Users\Balu\AppData\Roaming\Maxthon3\Users\" -UserName:"guest" -LangIni:"C:\Program Files (x86)\Maxthon3\Language\cs-cz.ini" -AppDataPath:"C:\Users\Balu\AppData\Roaming\Maxthon3\" -ProductType:"intl" /prefetch:3
"C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe" -RunCore -CoreType:"webkit-normal-0-000017BC" -MainFrmIpc:"IPC_M_C_000017BC" -ResMgrIpc:"IPC_R_C_000017BC" -UserName:"guest" -LangIni:"C:\Program Files (x86)\Maxthon3\Language\cs-cz.ini" -AppDataPath:"C:\Users\Balu\AppData\Roaming\Maxthon3\" -ProductType:"intl" -CustomCacheFolder:"C:\Users\Balu\AppData\Local\Temp\Maxthon3Cache\Temp\Webkit\cache" -SyEvent:"mxevent_IPC_R_C_000017BC" /prefetch:3
taskeng.exe {AF487989-1635-49AF-BAFD-957795B2E144}
"C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe" -RunMxDl -IPC_M_D_NAME:"IPC_M_D_000017BC" -IPC_C_D_NAME:"IPC_C_D_0000166C" -LANG_INI_FILE:"C:\Program Files (x86)\Maxthon3\Language\cs-cz.ini" -MxdlConfigFolder:"C:\Users\Balu\AppData\Roaming\Maxthon3\Public\Downloader\" /prefetch:3
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe20_ Global\UsGthrCtrlFltPipeMssGthrPipe20 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\Balu\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\AmiUpdXp.job
C:\Windows\tasks\C__Users_Balu_Downloads_Flippingbook-Publisher_2.2.16.exe.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1079416441-1027052400-2168246751-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1079416441-1027052400-2168246751-1000UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA1cec5d9d0bd4c77.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Balu\AppData\Roaming\Mozilla\Firefox\Profiles\nipodq2y.default

prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.117 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.17.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.117 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Users\Balu\AppData\Roaming\Mozilla\Firefox\Profiles\nipodq2y.default\extensions\
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
{daf5b34c-1aa3-4c33-ae24-766a370635d2}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4B4D5056-3700-A76A-76A7-7A786E7484D7}]
KMP Media Toolbar - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\KMPV7\Passport_x64.dll [2013-10-15 13776]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2013-02-27 520192]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{415419c3-dad0-4df1-ac37-22c72ad81878}]
LemurLeap - C:\Program Files (x86)\LemurLeap\LemurLeapbho.dll [2013-08-31 149280]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4B4D5056-3700-A76A-76A7-7A786E7484D7}]
KMP Media Toolbar - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\KMPV7\Passport.dll [2013-10-15 12240]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-03-11 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C737F472-1193-4281-BF53-A00B67AB3E19}]
Soda PDF 5 IE Helper - C:\Program Files (x86)\Soda PDF 5\PDFIEHelper.dll [2013-06-12 91464]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{daf5b34c-1aa3-4c33-ae24-766a370635d2}]
KMP Media Toolbar - C:\Program Files (x86)\kmpmediatoolbar\searchresultsDx.dll [2012-03-22 87008]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-03-11 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{4B4D5056-3700-A76A-76A7-7A786E7484D7} - KMP Media Toolbar - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\KMPV7\Passport_x64.dll [2013-10-15 13776]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2013-02-27 520192]
{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6} - Soda PDF 5 IE Toolbar - C:\Program Files (x86)\Soda PDF 5\PDFIEPlugin.dll [2013-06-12 666440]
{4B4D5056-3700-A76A-76A7-7A786E7484D7} - KMP Media Toolbar - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\KMPV7\Passport.dll [2013-10-15 12240]
{daf5b34c-1aa3-4c33-ae24-766a370635d2} - KMP Media Toolbar - C:\Program Files (x86)\kmpmediatoolbar\searchresultsDx.dll [2012-03-22 87008]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2013-09-12 5618456]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"ISUSPM Startup"=C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [2005-08-11 249856]
"Facebook Update"=C:\Users\Balu\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-18 138096]
""=C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe []
"OEXPRESS"= []
"WDICT32"= []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2012-02-09 5015040]
"USB3MON"=C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [2012-01-04 291608]
"zzzHPSETUP"=I:\! DRIVERY\Scannery\_HP ScanJet 5590P\Win7-64\setup_full_5590_3\Setup.exe [2009-08-04 653312]
"hpqSRMon"=C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [2008-08-20 150016]
"FinWin 1.0"=C:\Program Files (x86)\FinWin 1.0\FINWIN.EXE [2012-12-18 347648]
"ACSW15EN"=C:\Program Files (x86)\ACD Systems\ACDSee\15.0\ACDSee15InTouch2.exe [2012-08-31 1133176]
"LWS"=C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [2011-11-11 205336]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-09-23 926896]
"ISUSScheduler"=C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe [2005-08-11 81920]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"ApnTBMon"=C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [2013-10-15 1673680]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma Loader.lnk - C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=lvcod64.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"MSVideo"=vfwwdm32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-10-19 13:40:20 ----D---- C:\rsit
2013-10-19 13:40:20 ----D---- C:\Program Files\trend micro
2013-10-14 22:09:42 ----D---- C:\ProgramData\ESET
2013-10-14 22:09:42 ----D---- C:\Program Files\ESET
2013-10-11 09:39:00 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-10-11 09:39:00 ----A---- C:\Windows\system32\ieui.dll
2013-10-11 09:38:59 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-10-11 09:38:59 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-10-11 09:38:59 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-10-11 09:38:59 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-10-11 09:38:59 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-10-11 09:38:59 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-11 09:38:59 ----A---- C:\Windows\system32\iesysprep.dll
2013-10-11 09:38:59 ----A---- C:\Windows\system32\iesetup.dll
2013-10-11 09:38:59 ----A---- C:\Windows\system32\iertutil.dll
2013-10-11 09:38:59 ----A---- C:\Windows\system32\iernonce.dll
2013-10-11 09:38:59 ----A---- C:\Windows\system32\ie4uinit.exe
2013-10-11 09:38:58 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-10-11 09:38:58 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-10-11 09:38:58 ----A---- C:\Windows\system32\msfeeds.dll
2013-10-11 09:38:58 ----A---- C:\Windows\system32\jscript9.dll
2013-10-11 09:38:58 ----A---- C:\Windows\system32\jscript.dll
2013-10-11 09:38:57 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-10-11 09:38:57 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-10-11 09:38:57 ----A---- C:\Windows\system32\urlmon.dll
2013-10-11 09:38:56 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-10-11 09:38:56 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-10-11 09:38:56 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-10-11 09:38:56 ----A---- C:\Windows\system32\wininet.dll
2013-10-11 09:38:56 ----A---- C:\Windows\system32\jsproxy.dll
2013-10-11 09:38:55 ----A---- C:\Windows\system32\ieframe.dll
2013-10-11 09:38:54 ----A---- C:\Windows\system32\mshtml.dll
2013-10-11 09:38:52 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-10-10 08:49:06 ----A---- C:\Windows\SYSWOW64\lpk.dll
2013-10-10 08:49:06 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-10-10 08:49:06 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2013-10-10 08:49:06 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-10-10 08:49:06 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-10-10 08:49:06 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-10-10 08:49:06 ----A---- C:\Windows\system32\Wdfres.dll
2013-10-10 08:49:06 ----A---- C:\Windows\system32\lpk.dll
2013-10-10 08:49:06 ----A---- C:\Windows\system32\fontsub.dll
2013-10-10 08:49:06 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-10-10 08:49:06 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-10-10 08:49:06 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2013-10-10 08:49:06 ----A---- C:\Windows\system32\drivers\usbser.sys
2013-10-10 08:49:06 ----A---- C:\Windows\system32\drivers\usbcir.sys
2013-10-10 08:49:06 ----A---- C:\Windows\system32\drivers\USBAUDIO.sys
2013-10-10 08:49:06 ----A---- C:\Windows\system32\dciman32.dll
2013-10-10 08:49:06 ----A---- C:\Windows\system32\comctl32.dll
2013-10-10 08:49:06 ----A---- C:\Windows\system32\atmlib.dll
2013-10-10 08:49:06 ----A---- C:\Windows\system32\atmfd.dll
2013-10-10 08:49:05 ----A---- C:\Windows\system32\win32k.sys
2013-10-10 08:49:05 ----A---- C:\Windows\system32\drivers\usbscan.sys
2013-10-10 08:49:05 ----A---- C:\Windows\system32\drivers\hidparse.sys
2013-10-10 08:49:05 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-10-10 08:49:04 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 08:49:04 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 08:49:04 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-09-24 21:37:14 ----D---- C:\Program Files (x86)\LemurLeap

======List of files/folders modified in the last 1 month======

2013-10-19 13:40:23 ----D---- C:\Windows\Temp
2013-10-19 13:40:20 ----RD---- C:\Program Files
2013-10-19 10:04:35 ----D---- C:\Windows\System32
2013-10-19 10:04:35 ----D---- C:\Windows\inf
2013-10-19 10:04:35 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-10-19 09:38:20 ----D---- C:\Windows\system32\config
2013-10-19 09:31:04 ----D---- C:\Users\Balu\AppData\Roaming\The Bat!
2013-10-19 09:28:07 ----SHD---- C:\System Volume Information
2013-10-19 09:26:09 ----A---- C:\Windows\SYSWOW64\log.txt
2013-10-19 09:24:07 ----HD---- C:\ProgramData
2013-10-19 09:24:03 ----D---- C:\ProgramData\NVIDIA
2013-10-19 09:23:59 ----HD---- C:\Config.Msi
2013-10-18 00:08:02 ----SHD---- C:\Windows\Installer
2013-10-15 09:18:06 ----D---- C:\Windows\system32\catroot2
2013-10-14 22:09:50 ----D---- C:\Windows\system32\DriverStore
2013-10-14 22:09:50 ----D---- C:\Windows\system32\drivers
2013-10-14 22:09:50 ----D---- C:\Windows\system32\catroot
2013-10-11 12:47:48 ----D---- C:\Windows\Microsoft.NET
2013-10-11 12:47:40 ----RSD---- C:\Windows\assembly
2013-10-11 12:40:18 ----D---- C:\Windows\winsxs
2013-10-11 10:57:55 ----D---- C:\Windows\SysWOW64
2013-10-11 10:57:55 ----D---- C:\Windows\system32\wbem
2013-10-11 10:57:55 ----D---- C:\Program Files\Internet Explorer
2013-10-11 10:57:55 ----D---- C:\Program Files (x86)\Internet Explorer
2013-10-11 09:36:23 ----D---- C:\Windows\system32\MRT
2013-10-11 09:36:21 ----A---- C:\Windows\system32\MRT.exe
2013-10-10 18:57:34 ----RD---- C:\Program Files (x86)
2013-10-10 18:57:34 ----D---- C:\Windows\Tasks
2013-10-10 18:57:34 ----D---- C:\Windows\system32\Tasks
2013-10-10 10:18:13 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-09-28 01:15:35 ----D---- C:\Users\Balu\AppData\Roaming\Vso
2013-09-25 17:00:11 ----D---- C:\Seznam DVD 2011

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2013-09-16 62136]
R0 iusb3hcs;Ovladač přepínání hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hcs.sys [2012-01-04 16152]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2013-03-04 272480]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 CbFs;CbFs; \??\C:\Windows\system32\drivers\cbfs_x64.sys [2009-08-19 191960]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2013-09-16 239320]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2013-09-16 168256]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2013-09-16 44120]
R1 Eve;EVE Protocol Driver; C:\Windows\system32\DRIVERS\eve.sys [2013-03-28 41304]
R1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [2010-01-29 115600]
R1 MIPDISKv564;MIPDISKv564; \??\C:\Windows\system32\drivers\MIPDISKv564.sys [2012-04-27 65144]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2013-09-16 220232]
R2 npf;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2010-07-16 35344]
R3 iusb3hub;Ovladač rozbočovače Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3hub.sys [2012-01-04 355096]
R3 iusb3xhc;Ovladač rozšiřitelného hostitelského řadiče Intel(R) USB 3.0; C:\Windows\system32\DRIVERS\iusb3xhc.sys [2012-01-04 786200]
R3 L1C;NDIS Miniport Driver for Atheros AR81xx PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x64.sys [2011-12-23 104048]
R3 LVRS64;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs64.sys [2012-01-18 351136]
R3 LVUVC64;Logitech HD Webcam C310(UVC); C:\Windows\system32\DRIVERS\lvuvc64.sys [2012-01-18 4865568]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2011-11-10 60184]
R3 MIPDISKPNPv5;GetData CallbackDisk driver v5; C:\Windows\system32\DRIVERS\MIPDISKPNPv5.sys [2012-03-20 197752]
R3 MIPFSv5;GetData CallbackFS driver v5; C:\Windows\system32\DRIVERS\MIPFSv5.sys [2012-05-02 345720]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2012-12-18 82816]
R3 usbscan;Ovladač skeneru USB; C:\Windows\system32\drivers\usbscan.sys [2013-07-03 42496]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2011-11-11 2182768]
S3 ACSSCR;ACR38 Smart Card Reader; C:\Windows\system32\DRIVERS\a38usbx64.sys [2007-01-17 42752]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2011-05-13 36328]
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2009-08-13 29184]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\Windows\system32\DRIVERS\ssudbus.sys [2013-06-04 103448]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2012-01-09 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2012-01-09 27136]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2012-01-09 171008]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-06-11 26112]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-05-13 157672]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 16872]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 177640]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2012-01-09 9216]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-07-09 52736]
S3 usbrndis6;Adaptér USB RNDIS6; C:\Windows\system32\DRIVERS\usb80236.sys [2013-02-12 19968]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2012-01-09 9216]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WDC_SAM;WD SCSI Pass Thru driver; C:\Windows\system32\DRIVERS\wdcsam64.sys [2009-02-13 14464]
S3 WinUsb;SAMSUNG Android USB Driver; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-09-23 65192]
R2 APNMCP;Ask Update Service; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [2013-10-15 166352]
R2 CodeMeter.exe;CodeMeter Runtime Server; C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe [2012-07-19 2568120]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2013-09-12 1337752]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-02 628448]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-07 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-07 277784]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-18 884512]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Soda PDF 5 Helper Service;Soda PDF 5 Helper Service; C:\Program Files (x86)\Soda PDF 5\HelperService.exe [2013-06-12 1097544]
R2 Soda PDF 5 Service;Soda PDF 5 Service; C:\Program Files (x86)\Soda PDF 5\ConversionService.exe [2013-06-12 794440]
R2 Správce výběru OS;Aktivátor Správce výběru OS Acronis; C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe [2010-10-28 2156952]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-01-18 383264]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-08-07 4308320]
R2 UMVPFSrv;UMVPFSrv; C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [2012-01-18 450848]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-07 363800]
R2 Update LemurLeap;Update LemurLeap; C:\Program Files (x86)\LemurLeap\updateLemurLeap.exe [2013-10-03 65312]
R2 Util LemurLeap;Util LemurLeap; C:\Program Files (x86)\LemurLeap\bin\utilLemurLeap.exe [2013-10-03 65312]
R2 VIAKaraokeService;VIA Karaoke digital mixer Service; C:\Windows\system32\viakaraokesrv.exe [2011-11-11 27760]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-19 116648]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-02-26 1260320]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-10 257416]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-19 116648]
S3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-08-26 117144]
S3 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-10-09 724992]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-12-18 1255736]
S4 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-11-09 160944]

-----------------EOF-----------------
Přílohy
vir api.lemurleap.info.jpg
vir api.lemurleap.info.jpg (25.27 KiB) Zobrazeno 3106 x

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: api.lemurleap.info

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Poprosim i o druhy log z RSIT s nazvem info.txt, je ulozen v c:\rsit

:arrow: Predpokladam, ze ten ESET jak ma byt = zakoupena licence :???:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Avatar uživatele
misabalu
Návštěvník
Návštěvník
Příspěvky: 60
Registrován: 13 Lis 2006 21:27

Re: api.lemurleap.info

#3 Příspěvek od misabalu »

Ano, licence je zakoupena, jsem jejich partner, Win7pro rovněž legálně.
info.txt logfile of random's system information tool 1.09 2013-10-19 14:55:29

======Uninstall list======

#1 DVD Audio Ripper 1.2.18-->"C:\Program Files (x86)\NO1 DVD Audio Ripper\unins000.exe"
--> -c"C:\Windows\PIXTRAN\sdkunin.dll"
-->C:\Program Files (x86)\Nero\Nero 7\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\Windows\UNNeroBackItUp.exe /UNINSTALL
-->C:\Windows\UNNeroMediaHome.exe /UNINSTALL
-->C:\Windows\UNNeroShowTime.exe /UNINSTALL
-->C:\Windows\UNNeroVision.exe /UNINSTALL
-->C:\Windows\UNRecode.exe /UNINSTALL
-->MsiExec /X{DA909E62-3B45-4BA1-8B58-FCAEBA4BCEC9}
64 Bit HP CIO Components Installer-->MsiExec.exe /I{C788B026-20BD-4E96-B698-533F1D6C5013}
ABBYY FineReader 8.0 Professional Edition-->MsiExec.exe /I{AAF80000-22B9-4CE9-98D6-2CCF359BAC07}
ACDSee 15-->MsiExec.exe /I{B580C89C-F7F8-4A78-BAF0-5560C6E9E76D}
Acronis Disk Director-->MsiExec.exe /X{06E34C00-0446-4176-81C8-A5DAFE53CA36}
Active@ Password Changer Demo 5.0-->"C:\Program Files (x86)\LSoft Technologies\Active@ Password Changer\unins000.exe"
Active@ Password Changer Professional-->"C:\Program Files (x86)\Active Data Recovery Software\Active Password Changer\UNWISE.EXE" "C:\Program Files (x86)\Active Data Recovery Software\Active Password Changer\INSTALL.LOG"
Adobe Flash Player 11 ActiveX-->C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_9_900_117_ActiveX.exe -maintain activex
Adobe Flash Player 11 Plugin-->C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_9_900_117_Plugin.exe -maintain plugin
Adobe Photoshop 7.0 CE-->C:\WINDOWS\ISUN0405.EXE -f"C:\Program Files (x86)\Adobe\Photoshop 7.0 CE\Uninst.isu" -c"C:\Program Files (x86)\Adobe\Photoshop 7.0 CE\Uninst.dll"
Adobe Reader XI - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AB0000000001}
Advanced Office Password Recovery-->MsiExec.exe /X{ECD07791-9A98-4E16-B350-0D31809E5EBF}
Aktualizace NVIDIA 1.11.3-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{6D4E8BA0-19D5-4A4D-B009-9211A8D37471}\NVI2.DLL",UninstallPackage Display.Update
Any Video Converter 2.6.7-->"C:\Program Files (x86)\Any Video Converter\unins000.exe"
Any Video Converter 5 5.0.2-->"C:\Program Files (x86)\AnvSoft\Any Video Converter 5\unins000.exe"
Aspi Installer-->C:\Temp\UNWISE.EXE C:\Temp\INSTALL.LOG
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver-->"C:\Program Files (x86)\InstallShield Installation Information\{3108C217-BE83-42E4-AE9E-A56A2A92E549}\Setup.exe" -runfromtemp -removeonly
Audacity 2.0.2-->"C:\Program Files (x86)\Audacity\unins000.exe"
Avanquest update-->"C:\Program Files (x86)\InstallShield Installation Information\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}\Setup.exe" -runfromtemp -l0x0009 -removeonly
Balíček ovladače systému Windows - Nokia Modem (02/25/2011 4.7)-->C:\PROGRA~1\DIFX\0169CE3A95F06636\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokia_bluetooth.inf_amd64_neutral_73c28da64803cefc\nokia_bluetooth.inf
Balíček ovladače systému Windows - Nokia Modem (02/25/2011 7.01.0.9)-->C:\PROGRA~1\DIFX\0169CE3A95F06636\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokbtmdm.inf_amd64_neutral_13826104cd8e800f\nokbtmdm.inf
Balíček ovladače systému Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0)-->C:\PROGRA~1\DIFX\F4092DA208C2C970\dpinst.exe /u C:\Windows\system32\DRVSTORE\pccsmcfdx6_95B9C4C4739674B910F22E6D0FB93B9D8DD7E72A\pccsmcfdx64.inf
calibre-->MsiExec.exe /I{0830C2E8-01B9-4CD1-B218-12B0107D5BED}
CDex extraction audio-->"C:\Program Files (x86)\CDex_150\uninstall.exe"
Compiled Driver Disc (Full) 1.0-->"C:\Program Files\Compiled Driver Disc (Full)\Setup\unins000.exe"
Compiled Driver Disk (Samsung) 1.0-->"C:\Program Files\Compiled Driver Disk (Samsung)\Setup\unins000.exe"
ConvertXtoDVD 4.0.12.327-->"C:\Program Files (x86)\VSO\ConvertX\4\unins000.exe"
CorelDRAW Graphics Suite X3-->MsiExec.exe /I{7C5123A9-30A8-4C44-89CA-A8C87A1FCC91}
CrystalDiskInfo 5.0.4-->"C:\Program Files (x86)\CrystalDiskInfo\unins000.exe"
CZ-->MsiExec.exe /I{CCF7074B-BE72-44E1-9CAC-3FFAC582C692}
Doplněk Microsoft Save as PDF or XPS pro aplikace sady Microsoft Office 2007-->MsiExec.exe /X{90120000-00B2-0405-0000-0000000FF1CE}
DVD Shrink 3.2-->"C:\Program Files (x86)\DVD Shrink\unins000.exe"
Facebook Video Calling 1.2.0.287-->MsiExec.exe /X{B92C5909-1D37-4C51-8397-A28BB28E5DC3}
FinWin 1.0-->"C:\Program Files (x86)\FinWin 1.0\RemoveIt.exe" "C:\Program Files (x86)\FinWin 1.0\SETUP.LOG"
FontNav-->MsiExec.exe /I{4E98F23B-1328-4322-A6EC-2EDC8FC3A4FE}
Google Earth Plug-in-->MsiExec.exe /X{79361740-EAE3-11E2-9911-B8AC6F98CCE3}
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
HP Commercial Scanjet 5590 TWAIN Driver-->C:\Windows\IsUninst.exe -fC:\Windows\PIXTRAN\HP559TW.isu
HP Imaging Device Functions 13.0-->C:\Program Files (x86)\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP LaserJet Professional CP1520 Series-->C:\Program Files (x86)\HP\csiInstaller\5C069542-CA13-4f1b-B90C-28C6430F4992\Setup.exe /Uninstall
HP Photosmart Essential 3.5-->C:\Program Files (x86)\HP\Digital Imaging\PhotosmartEssential\hpzscr01.exe -datfile hpqbud13.dat -forcereboot
HP Solution Center 13.0-->C:\Program Files (x86)\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat -forcereboot
HPScanjet5590Corporate11-->MsiExec.exe /I{4E985169-A6AF-4FAE-83F4-ACC9C21A3BFC}
Intel(R) Management Engine Components-->C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\Uninstall\setup.exe -uninstall
Intel(R) USB 3.0 eXtensible Host Controller Driver-->C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Uninstall\setup.exe -uninstall
Intel® Trusted Connect Service Client-->MsiExec.exe /X{09536BA1-E498-4CC3-B834-D884A67D7E34}
IrfanView (remove only)-->C:\Program Files (x86)\IrfanView\iv_uninstall.exe
Java 7 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83217017FF}
Java(TM) 6 Update 31-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216031FF}
LAME v3.99.3 (for Windows)-->"C:\Program Files (x86)\Lame For Audacity\unins000.exe"
LemurLeap 3.0.0-->C:\Program Files (x86)\LemurLeap\LemurLeapuninstall.exe
Logitech Webcam Software-->"C:\Program Files (x86)\Common Files\LogiShrd\Installer\{D40EB009-0499-459c-A8AF-C9C110766215}\setup.exe" /lang=ENU /guid="{D40EB009-0499-459c-A8AF-C9C110766215}"
LookDisk version 5.4-->"C:\Program Files (x86)\LookDisk\unins000.exe"
LWS Webcam Software-->MsiExec.exe /I{8937D274-C281-42E4-8CDB-A0B2DF979189}
Maxthon 3-->C:\Program Files (x86)\Maxthon3\Bin\Mx3Uninstall.exe
MediaCoder 0.8.18.5360-->C:\Program Files (x86)\MediaCoder\uninst.exe
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\ClientLP\Setup.exe /repair /x86 /x64 /lcid 1029 /parameterfolder ClientLP
Microsoft .NET Framework 4 Client Profile CSY Language Pack-->MsiExec.exe /X{790E02A1-145A-3843-8C13-A4F41C9B48B7}
Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /x64 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
Microsoft Office Access MUI (Czech) 2007-->MsiExec.exe /X{90120000-0015-0405-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (Czech) 2007-->MsiExec.exe /X{90120000-0016-0405-0000-0000000FF1CE}
Microsoft Office FrontPage 2003-->MsiExec.exe /I{90170405-6000-11D3-8CFE-0150048383C9}
Microsoft Office Groove MUI (Czech) 2007-->MsiExec.exe /X{90120000-00BA-0405-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (Czech) 2007-->MsiExec.exe /X{90120000-0044-0405-0000-0000000FF1CE}
Microsoft Office Office 64-bit Components 2007-->MsiExec.exe /X{90120000-002A-0000-1000-0000000FF1CE}
Microsoft Office OneNote MUI (Czech) 2007-->MsiExec.exe /X{90120000-00A1-0405-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Czech) 2007-->MsiExec.exe /X{90120000-001A-0405-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Czech) 2007-->MsiExec.exe /X{90120000-0018-0405-0000-0000000FF1CE}
Microsoft Office Proof (Czech) 2007-->MsiExec.exe /X{90120000-001F-0405-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Slovak) 2007-->MsiExec.exe /X{90120000-001F-041B-0000-0000000FF1CE}
Microsoft Office Proofing (Czech) 2007-->MsiExec.exe /X{90120000-002C-0405-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Czech) 2007-->MsiExec.exe /X{90120000-0019-0405-0000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Czech) 2007-->MsiExec.exe /X{90120000-002A-0405-1000-0000000FF1CE}
Microsoft Office Shared MUI (Czech) 2007-->MsiExec.exe /X{90120000-006E-0405-0000-0000000FF1CE}
Microsoft Office Word MUI (Czech) 2007-->MsiExec.exe /X{90120000-001B-0405-0000-0000000FF1CE}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319-->MsiExec.exe /X{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319-->MsiExec.exe /X{196BB40D-1578-3D01-B289-BEFC77A11A1E}
MOBILedit! Forensic Support Libraries-->MsiExec.exe /I{B4C1D069-6001-4233-B247-00E5906B2CEC}
MOBILedit! Forensic ver. 6.9.0.2876-->"C:\Program Files (x86)\MOBILedit! Forensic\Setup\unins000.exe"
Modiac MP3 to MP4 Audio Converter-->"C:\Program Files (x86)\Modiac\MP3 to MP4 Audio Converter\uninst.exe"
Mount Image Pro-->"C:\Program Files (x86)\GetData\Mount Image Pro v5\unins000.exe"
Mozilla Firefox 21.0 (x86 cs)-->C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
Mozilla Maintenance Service-->"C:\Program Files (x86)\Mozilla Maintenance Service\uninstall.exe"
MSVC90_x64-->MsiExec.exe /I{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}
MSVC90_x86-->MsiExec.exe /I{AF111648-99A1-453E-81DD-80DBBF6DAD0D}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Nero 7 Ultra Edition-->MsiExec.exe /I{F14B8ECC-BDA0-4987-9201-D7B7DBE11029}
Nokia Connectivity Cable Driver-->MsiExec.exe /I{A57025CC-5F2E-4D01-B387-06DB10500D43}
Nokia PC Suite-->C:\ProgramData\Installations\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}\Nokia_PC_Suite_ALL_7.1.180.94.exe
Nokia PC Suite-->MsiExec.exe /I{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}
NVIDIA Ovladač 3D Vision 311.06-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{6D4E8BA0-19D5-4A4D-B009-9211A8D37471}\NVI2.DLL",UninstallPackage Display.3DVision
NVIDIA Ovladač řídící jednotky 3D Vision 301.42-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.2\NVI2.DLL",UninstallPackage Display.NVIRUSB
NVIDIA Ovladače grafiky 311.06-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{6D4E8BA0-19D5-4A4D-B009-9211A8D37471}\NVI2.DLL",UninstallPackage Display.Driver
NVIDIA PhysX-->MsiExec.exe /X{DA909E62-3B45-4BA1-8B58-FCAEBA4BCEC9}
NVIDIA Stereoscopic 3D Driver-->"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask
NVIDIA Systémový software PhysX 9.12.0213-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.2\NVI2.DLL",UninstallPackage Display.PhysX
Parrot Software Update Tool-->C:\Program Files (x86)\Parrot Software Update Tool\Uninstall.exe
PC Connectivity Solution-->MsiExec.exe /I{644F4910-E812-49AD-93EC-86828CB81A0D}
PDFCreator-->C:\Program Files (x86)\PDFCreator\unins000.exe
pdfFactory Pro-->C:\Windows\system32\spool\DRIVERS\x64\3\fppinst4.exe /uninstall
Phone Drivers Downloader 1.1-->"C:\Program Files\Phone Drivers Downloader\Setup\unins000.exe"
Photo DVD Maker Professional 7.91-->C:\Program Files (x86)\Photo DVD Maker Professional\uninst.exe
PS3 Media Server-->"C:\Program Files (x86)\PS3 Media Server\uninst.exe"
Scanjet 5590-->C:\Program Files (x86)\HP\Digital Imaging\{AE4A7139-279C-4399-A142-32906B44D5F0}\setup\hpzscr40.exe -datfile hpgscr38.dat
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {6AF6C62E-4E3D-33BF-A591-9E4D53BDF22F} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {E59B2174-E924-311F-8549-AD714C14664D} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4736E989-32D9-3B91-90D7-C68848E118CA} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {F1696E2F-4803-362F-A756-65B363483FE6} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {C8B8456C-6A12-3725-95A8-1C9FBE1E3141} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {8E6848A1-B790-34FE-921A-A5319258E254} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {E7F6B64E-E11F-3D1C-868D-3F1443DA5A15} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {08BB8EA1-3BA7-3AD5-8A07-22A5EC1F704E} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {880A0A36-244B-3C7A-8D6B-56E694CE7883} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {9D8496AE-4030-3E92-B44E-4F81051E6C85} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2858302v2)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {43B6E5D3-56A9-36C1-BD8B-9E1D6920FF11} /parameterfolder Client
Seznam DVD 2008-->"C:\Program Files (x86)\Seznam DVD 2008\unins000.exe"
Seznam DVD 2011-->"c:\Seznam DVD 2011\unins000.exe"
Skype™ 6.0-->MsiExec.exe /X{EA17F4FC-FDBF-4CF8-A529-2D983132D053}
Soda PDF 5-->MsiExec.exe /I{DC25D68D-38AF-4768-83F2-680FD72285DF}
Software Version Updater-->C:\Users\Balu\AppData\Local\SwvUpdater\Updater.exe /uninstall
Tag&Rename 3.6.1-->"C:\Program Files (x86)\TagRename\unins000.exe"
TeamViewer 8-->C:\Program Files (x86)\TeamViewer\Version8\uninstall.exe
The Bat! Professional v5.0.34-->MsiExec.exe /I{85BEAA74-C506-4CA0-9332-283234F852D9}
The KMPlayer (remove only)-->"C:\Program Files (x86)\The KMPlayer\uninstall.exe"
Total Commander 64-bit (Remove or Repair)-->C:\Program Files\totalcmd\tcunin64.exe
Turistické trasy 2.30 bez map-->C:\Program Files (x86)\TT\Uninstal.exe
UltraISO Premium V9.53-->"C:\Program Files (x86)\UltraISO\unins000.exe"
Update Manager-->MsiExec.exe /I{F428D0FB-765D-40EB-BDD8-A1E7F5C597FA}
vanBasco's Karaoke Player-->C:\Program Files (x86)\vanBasco's Karaoke Player\uninst.exe
VBA-->MsiExec.exe /I{C94E45B0-6AA6-4FB9-9AAE-22085F631880}
VIA Platforma Ovladače zařízení-->C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
VSO Downloader 3.1.0.43-->"C:\Program Files (x86)\VSO\VSO Downloader\3\unins000.exe"
VSO EVE Network Driver version 0.4-->"C:\Program Files (x86)\VSO\VSO Downloader\3\eve\unins000.exe"
Windows 7 USB/DVD Download Tool-->MsiExec.exe /X{CCF298AF-9CE1-4B26-B251-486E98A34789}
WinHTTrack Website Copier 3.44-4-->"C:\Program Files (x86)\WinHTTrack\unins000.exe"
WinPcap 4.1.2-->"C:\Program Files\WinPcap\uninstall.exe"
WinRAR 4.01 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe
Youtube Downloader 4.55-->"C:\Program Files (x86)\Youtube Downloader\unins000.exe"

======Hosts File======

127.0.0.1 acdid.acdsystems.com

======System event log======

Computer Name: PC-Balu
Event Code: 7036
Message: Stav služby Mezipaměť písem Windows byl změněn na: Zastaveno
Record Number: 75483
Source Name: Service Control Manager
Time Written: 20130613210940.058697-000
Event Type: Informace
User:

Computer Name: PC-Balu
Event Code: 7036
Message: Stav služby CodeMeter Runtime Server byl změněn na: Zastaveno
Record Number: 75482
Source Name: Service Control Manager
Time Written: 20130613210940.058697-000
Event Type: Informace
User:

Computer Name: PC-Balu
Event Code: 7036
Message: Stav služby Klient zásad skupiny byl změněn na: Zastaveno
Record Number: 75481
Source Name: Service Control Manager
Time Written: 20130613210938.467495-000
Event Type: Informace
User:

Computer Name: PC-Balu
Event Code: 7036
Message: Stav služby Windows Update byl změněn na: Zastaveno
Record Number: 75480
Source Name: Service Control Manager
Time Written: 20130613210938.358294-000
Event Type: Informace
User:

Computer Name: PC-Balu
Event Code: 27
Message: Automatické aktualizace jsou pozastaveny.
Record Number: 75479
Source Name: Microsoft-Windows-WindowsUpdateClient
Time Written: 20130613210938.311494-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

=====Application event log=====

Computer Name: 37L4247E29-32
Event Code: 1001
Message: Chybný blok , typ 0
Název události: PnPRequestAdditionalSoftware
Reakce: Není k dispozici
ID souboru CAB: 0

Podpis problému:
P1: x64
P2: USB\VID_046D&PID_C521&REV_5701&MI_00
P3: 6.1.0.0
P4: 0405
P5: input.inf
P6: *
P7:
P8:
P9:
P10:

Připojené soubory:

Tyto soubory mohou být k dispozici zde:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_f0887f10fc8ea2e261fbfdd9ade9e0393c27e139_cab_06484b70

Symbol analýzy:
Opětovné hledání řešení: 0
ID hlášení: 14181185-487f-11e2-b542-ebf9cb16c820
Stav hlášení: 6
Record Number: 5
Source Name: Windows Error Reporting
Time Written: 20121217192221.000000-000
Event Type: Informace
User:

Computer Name: 37L4247E29-32
Event Code: 5617
Message: Windows Management Instrumentation Service subsystems initialized successfully
Record Number: 4
Source Name: Microsoft-Windows-WMI
Time Written: 20121217192221.000000-000
Event Type: Informace
User:

Computer Name: 37L4247E29-32
Event Code: 5615
Message: Windows Management Instrumentation Service started sucessfully
Record Number: 3
Source Name: Microsoft-Windows-WMI
Time Written: 20121217192220.000000-000
Event Type: Informace
User:

Computer Name: 37L4247E29-32
Event Code: 1531
Message: Služba Profil uživatele byla úspěšně spuštěna.


Record Number: 2
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20121217192220.316829-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: 37L4247E29-32
Event Code: 4625
Message: Subsystém EventSystem zabraňuje vytváření duplicitních záznamů v protokolu událostí po dobu 86400 sekund. Tuto dobu lze změnit pomocí hodnoty REG_DWORD s názvem SuppressDuplicateDuration v následujícím klíči registru: HKLM\Software\Microsoft\EventSystem\EventLog.
Record Number: 1
Source Name: Microsoft-Windows-EventSystem
Time Written: 20121217192220.000000-000
Event Type: Informace
User:

=====Security event log=====

Computer Name: PC-Balu
Event Code: 5061
Message: Kryptografická operace.

Předmět:
ID zabezpečení: S-1-5-19
Název účtu: LOCAL SERVICE
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e5

Kryptografické parametry:
Název poskytovatele: Microsoft Software Key Storage Provider
Název algoritmu: RSA
Název klíče: 10b14eb6-c810-4575-b002-f8bd4ee79d0d
Typ klíče: Klíč počítače

Kryptografická operace:
Operace: Otevřít klíč
Návratový kód: 0x0
Record Number: 8952
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20130203103556.050203-000
Event Type: Úspěšný audit
User:

Computer Name: PC-Balu
Event Code: 5058
Message: Operace se souborem klíče.

Předmět:
ID zabezpečení: S-1-5-19
Název účtu: LOCAL SERVICE
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e5

Kryptografické parametry:
Název poskytovatele: Microsoft Software Key Storage Provider
Název algoritmu: Není k dispozici.
Název klíče: 10b14eb6-c810-4575-b002-f8bd4ee79d0d
Typ klíče: Klíč počítače

Informace o operaci se souborem klíče:
Cesta k souboru: C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\46fa44b3974c24bf64f94d753d9272b9_55d69340-a08d-4b73-8cd4-4db8629538ca
Operace: Čtení trvalého klíče ze souboru
Návratový kód: 0x0
Record Number: 8951
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20130203103556.050203-000
Event Type: Úspěšný audit
User:

Computer Name: PC-Balu
Event Code: 5061
Message: Kryptografická operace.

Předmět:
ID zabezpečení: S-1-5-19
Název účtu: LOCAL SERVICE
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e5

Kryptografické parametry:
Název poskytovatele: Microsoft Software Key Storage Provider
Název algoritmu: RSA
Název klíče: 10b14eb6-c810-4575-b002-f8bd4ee79d0d
Typ klíče: Klíč počítače

Kryptografická operace:
Operace: Otevřít klíč
Návratový kód: 0x0
Record Number: 8950
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20130203102014.498349-000
Event Type: Úspěšný audit
User:

Computer Name: PC-Balu
Event Code: 5058
Message: Operace se souborem klíče.

Předmět:
ID zabezpečení: S-1-5-19
Název účtu: LOCAL SERVICE
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e5

Kryptografické parametry:
Název poskytovatele: Microsoft Software Key Storage Provider
Název algoritmu: Není k dispozici.
Název klíče: 10b14eb6-c810-4575-b002-f8bd4ee79d0d
Typ klíče: Klíč počítače

Informace o operaci se souborem klíče:
Cesta k souboru: C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\46fa44b3974c24bf64f94d753d9272b9_55d69340-a08d-4b73-8cd4-4db8629538ca
Operace: Čtení trvalého klíče ze souboru
Návratový kód: 0x0
Record Number: 8949
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20130203102014.498349-000
Event Type: Úspěšný audit
User:

Computer Name: PC-Balu
Event Code: 5061
Message: Kryptografická operace.

Předmět:
ID zabezpečení: S-1-5-19
Název účtu: LOCAL SERVICE
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3e5

Kryptografické parametry:
Název poskytovatele: Microsoft Software Key Storage Provider
Název algoritmu: RSA
Název klíče: 10b14eb6-c810-4575-b002-f8bd4ee79d0d
Typ klíče: Klíč počítače

Kryptografická operace:
Operace: Otevřít klíč
Návratový kód: 0x0
Record Number: 8948
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20130203101459.521592-000
Event Type: Úspěšný audit
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\PC Connectivity Solution\;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Calibre2\;C:\Program Files (x86)\Common Files\Acronis\SnapAPI\;C:\Program Files (x86)\Common Files\Teleca Shared
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
"PROCESSOR_REVISION"=2a07

-----------------EOF-----------------

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: api.lemurleap.info

#4 Příspěvek od vyosek »

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Avatar uživatele
misabalu
Návštěvník
Návštěvník
Příspěvky: 60
Registrován: 13 Lis 2006 21:27

Re: api.lemurleap.info

#5 Příspěvek od misabalu »

JRT:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.7 (10.15.2013:3)
OS: Windows 7 Professional x64
Ran by Balu on so 19.10.2013 at 15:26:46,56
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{0E45512E-5B95-4C8C-9393-64ED0470E8D2}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\apn dtx
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{415419C3-DAD0-4DF1-AC37-22C72AD81878}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{415419C3-DAD0-4DF1-AC37-22C72AD81878}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\s
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\updater.amiupd
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\updater.amiupd.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{99c91fc5-db5b-4aa0-bb70-5d89c5a4df96}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_undelete-360-portable_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_undelete-360-portable_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_vanbasco-karaoke-player-253_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SoftonicDownloader_for_vanbasco-karaoke-player-253_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_undelete-360-portable_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_undelete-360-portable_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_vanbasco-karaoke-player-253_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\SoftonicDownloader_for_vanbasco-karaoke-player-253_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{415419c3-dad0-4df1-ac37-22c72ad81878}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{415419c3-dad0-4df1-ac37-22c72ad81878}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"
Successfully deleted: [Registry Key] "hkey_current_user\software\pip"



~~~ Files

Successfully deleted: [File] C:\Windows\Tasks\amiupdxp.job



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\apn"
Successfully deleted: [Folder] "C:\Users\Balu\AppData\Roaming\pdfforge"
Successfully deleted: [Folder] "C:\Users\Balu\appdata\local\swvupdater"
Successfully deleted: [Folder] "C:\Users\Balu\appdata\locallow\searchresultstb"
Failed to delete: [Folder] "C:\Program Files (x86)\lemurleap"
Successfully deleted: [Folder] "C:\Program Files (x86)\myfree codec"
Successfully deleted: [Folder] "C:\Program Files (x86)\ytd"



~~~ FireFox

Emptied folder: C:\Users\Balu\AppData\Roaming\mozilla\firefox\profiles\nipodq2y.default\minidumps [2 files]



~~~ Chrome

Successfully deleted: [Folder] C:\Users\Balu\appdata\local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on so 19.10.2013 at 15:31:35,95
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Avatar uživatele
misabalu
Návštěvník
Návštěvník
Příspěvky: 60
Registrován: 13 Lis 2006 21:27

Re: api.lemurleap.info

#6 Příspěvek od misabalu »

AdwCleaner:

# AdwCleaner v3.008 - Report created 19/10/2013 at 15:39:38
# Updated 17/10/2013 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Balu - PC-BALU
# Running from : C:\Users\Balu\Downloads\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Folder Deleted : C:\Users\Balu\AppData\Local\Temp\apn
Folder Deleted : C:\Users\Balu\AppData\Roaming\Mozilla\Firefox\Profiles\nipodq2y.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : HKLM\Software\PIP

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16720


-\\ Mozilla Firefox v21.0 (cs)

[ File : C:\Users\Balu\AppData\Roaming\Mozilla\Firefox\Profiles\nipodq2y.default\prefs.js ]


-\\ Google Chrome v30.0.1599.101

[ File : C:\Users\Balu\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [2122 octets] - [19/10/2013 15:34:30]
AdwCleaner[S0].txt - [1979 octets] - [19/10/2013 15:39:38]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2039 octets] ##########

Avatar uživatele
misabalu
Návštěvník
Návštěvník
Příspěvky: 60
Registrován: 13 Lis 2006 21:27

Re: api.lemurleap.info

#7 Příspěvek od misabalu »

R0:

# AdwCleaner v3.008 - Report created 19/10/2013 at 15:34:30
# Updated 17/10/2013 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Balu - PC-BALU
# Running from : C:\Users\Balu\Downloads\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Found : C:\Users\Balu\AppData\Roaming\Mozilla\Firefox\Profiles\nipodq2y.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
Folder Found C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Folder Found C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Folder Found C:\Users\Balu\AppData\Local\Temp\apn

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKLM\SOFTWARE\Classes\CLSID\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Found : HKLM\SOFTWARE\Classes\Interface\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Key Found : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Found : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Found : HKLM\Software\PIP
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16720


-\\ Mozilla Firefox v21.0 (cs)

[ File : C:\Users\Balu\AppData\Roaming\Mozilla\Firefox\Profiles\nipodq2y.default\prefs.js ]


-\\ Google Chrome v30.0.1599.101

[ File : C:\Users\Balu\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [1966 octets] - [19/10/2013 15:34:30]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [2026 octets] ##########

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: api.lemurleap.info

#8 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Avatar uživatele
misabalu
Návštěvník
Návštěvník
Příspěvky: 60
Registrován: 13 Lis 2006 21:27

Stále nedořešeno api.lemurleap.info

#9 Příspěvek od misabalu »

Téma jste ihned uzamkl, nicméně hláška ESETu se znovu objevila, na disku v adresáři Program Files (x86) je adresář LemurLeap, který obsahuje nějaké soubory, kiteré nelze smazat ani správcovských přístupem.

Posílám ten vyžádáný log z FRST:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-10-2013
Ran by Balu (administrator) on PC-BALU on 19-10-2013 16:09:30
Running from C:\Users\Balu\Desktop
Windows 7 Professional Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(LULU Software Limited) C:\Program Files (x86)\Soda PDF 5\HelperService.exe
(LULU Software Limited) C:\Program Files (x86)\Soda PDF 5\ConversionService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(LemurLeap) C:\Program Files (x86)\LemurLeap\updateLemurLeap.exe
(VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
(SEV Computing, s.r.o.) C:\Program Files (x86)\FinWin 1.0\FINWIN.EXE
(ACD Systems) C:\Program Files (x86)\ACD Systems\ACDSee\15.0\ACDSee15InTouch2.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(LemurLeap) C:\Program Files (x86)\LemurLeap\bin\utilLemurLeap.exe
(VIA Technologies, Inc.) C:\Windows\system32\viakaraokesrv.exe
(WIBU-SYSTEMS AG) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
() C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe
(Ghisler Software GmbH) C:\Program Files\totalcmd\TOTALCMD64.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon3\Bin\Maxthon.exe
(forum.viry.cz) C:\Users\Balu\Downloads\FRSTLauncher.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET Smart Security\egui.exe [5618456 2013-09-12] (ESET)
HKCU\...\Run: [ISUSPM Startup] - C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [249856 2005-08-11] (Macrovision Corporation)
HKCU\...\Run: [Facebook Update] - C:\Users\Balu\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-02-18] (Facebook Inc.)
HKCU\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKCU\...\Run: [OEXPRESS] - [x]
HKCU\...\Run: [WDICT32] - [x]
MountPoints2: {6cc7e7f3-84b4-11e2-a54f-c8600098d2d8} - "D:\WD SmartWare.exe" autoplay=true
MountPoints2: {a20700e3-c1d9-11e2-9d5c-c8600098d2d8} - D:\ToolLauncher-Bootstrap.exe
MountPoints2: {d7dbdf2d-e9fe-11e2-a116-c8600098d2d8} - "D:\WD SmartWare.exe" autoplay=true
HKLM-x32\...\Run: [HDAudDeck] - C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5015040 2012-02-09] (VIA)
HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-01-04] (Intel Corporation)
HKLM-x32\...\Run: [zzzHPSETUP] - I:\! DRIVERY\Scannery\_HP ScanJet 5590P\Win7-64\setup_full_5590_3\Setup.exe [653312 2009-08-04] (Hewlett-Packard)
HKLM-x32\...\Run: [hpqSRMon] - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150016 2008-08-20] (Hewlett-Packard)
HKLM-x32\...\Run: [FinWin 1.0] - C:\Program Files (x86)\FinWin 1.0\FINWIN.EXE [347648 2012-12-18] (SEV Computing, s.r.o.)
HKLM-x32\...\Run: [ACSW15EN] - C:\Program Files (x86)\ACD Systems\ACDSee\15.0\ACDSee15InTouch2.exe [1133176 2012-08-31] (ACD Systems)
HKLM-x32\...\Run: [LWS] - C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [205336 2011-11-11] (Logitech Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ISUSScheduler] - C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe [81920 2005-08-11] (Macrovision Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll ()
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Soda PDF 5 IE Helper - {C737F472-1193-4281-BF53-A00B67AB3E19} - C:\Program Files (x86)\Soda PDF 5\PDFIEHelper.dll (LULU Software Limited)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll ()
Toolbar: HKLM-x32 - Soda PDF 5 IE Toolbar - {F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6} - C:\Program Files (x86)\Soda PDF 5\PDFIEPlugin.dll (LULU Software Limited)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: 127.0.0.1 acdid.acdsystems.com
Tcpip\Parameters: [DhcpNameServer] 192.168.0.254

FireFox:
========
FF ProfilePath: C:\Users\Balu\AppData\Roaming\Mozilla\Firefox\Profiles\nipodq2y.default
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.17.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.17.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Balu\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: firefox - C:\Users\Balu\AppData\Roaming\Mozilla\Firefox\Profiles\nipodq2y.default\Extensions\firefox@lemurleap.info.xpi
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF HKLM-x32\...\Firefox\Extensions: [FFSodaPDF5Converter@sodapdf.com] - C:\Program Files (x86)\Soda PDF 5\FFSoda5Ext
FF Extension: Soda PDF 5 Converter For Firefox - C:\Program Files (x86)\Soda PDF 5\FFSoda5Ext
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird

Chrome:
=======
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\PepperFlash\pepflashplayer.dll No File
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.76\pdf.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File
CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Plugin: (Java(TM) Platform SE 7 U17) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (Facebook Video Calling Plugin) - C:\Users\Balu\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.170.2) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
CHR Extension: (Google Docs) - C:\Users\Balu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\Balu\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\Balu\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\Balu\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (LemurLeap) - C:\Users\Balu\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlnfdbbladgcmhhamgkioifhbobjaoof\1.0.0_0
CHR Extension: (Gmail) - C:\Users\Balu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM-x32\...\Chrome\Extension: [jlnfdbbladgcmhhamgkioifhbobjaoof] - C:\Program Files (x86)\LemurLeap\jlnfdbbladgcmhhamgkioifhbobjaoof.crx

==================== Services (Whitelisted) =================

R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1337752 2013-09-12] (ESET)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-07] (Intel Corporation)
R2 Soda PDF 5 Helper Service; C:\Program Files (x86)\Soda PDF 5\HelperService.exe [1097544 2013-06-12] (LULU Software Limited)
R2 Soda PDF 5 Service; C:\Program Files (x86)\Soda PDF 5\ConversionService.exe [794440 2013-06-12] (LULU Software Limited)
R2 Správce výběru OS; C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe [2156952 2010-10-28] ()
R2 Update LemurLeap; C:\Program Files (x86)\LemurLeap\updateLemurLeap.exe [65312 2013-10-03] (LemurLeap)
R2 Util LemurLeap; C:\Program Files (x86)\LemurLeap\bin\utilLemurLeap.exe [65312 2013-10-03] (LemurLeap)
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2011-11-11] (VIA Technologies, Inc.)

==================== Drivers (Whitelisted) ====================

S3 ACSSCR; C:\Windows\System32\DRIVERS\a38usbx64.sys [42752 2007-01-17] (Advanced Card Systems Ltd)
S3 BthAvrcp; C:\Windows\System32\DRIVERS\BthAvrcp.sys [29184 2009-08-13] (CSR, plc)
R1 CbFs; C:\Windows\system32\drivers\cbfs_x64.sys [191960 2009-08-19] (EldoS Corporation)
R1 CbFs; C:\Windows\system32\drivers\cbfs_x64.sys [191960 2009-08-19] (EldoS Corporation)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [239320 2013-09-16] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [168256 2013-09-16] (ESET)
R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [220232 2013-09-16] (ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [44120 2013-09-16] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [62136 2013-09-16] (ESET)
R1 Eve; C:\Windows\System32\DRIVERS\eve.sys [41304 2013-03-28] ()
R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115600 2010-01-29] (EZB Systems, Inc.)
R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115600 2010-01-29] (EZB Systems, Inc.)
R3 MIPDISKPNPv5; C:\Windows\System32\DRIVERS\MIPDISKPNPv5.sys [197752 2012-03-20] (GetData Pty Ltd)
R1 MIPDISKv564; C:\Windows\system32\drivers\MIPDISKv564.sys [65144 2012-04-27] (GetData Pty Ltd)
R1 MIPDISKv564; C:\Windows\system32\drivers\MIPDISKv564.sys [65144 2012-04-27] (GetData Pty Ltd)
R3 MIPFSv5; C:\Windows\System32\DRIVERS\MIPFSv5.sys [345720 2012-05-02] (GetData Pty Ltd)
R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2010-07-16] (CACE Technologies, Inc.)
S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-12] (Microsoft Corporation)
U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [239296 2013-09-16] (ESET)
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-10-19 16:08 - 2013-10-19 16:08 - 00000000 ____D C:\FRST
2013-10-19 16:08 - 2013-10-19 16:07 - 01954124 _____ (Farbar) C:\Users\Balu\Desktop\FRST64.exe
2013-10-19 16:07 - 2013-10-19 16:07 - 01954124 _____ (Farbar) C:\Users\Balu\Downloads\FRST64.exe
2013-10-19 16:07 - 2013-10-19 16:07 - 00112128 _____ (forum.viry.cz) C:\Users\Balu\Downloads\FRSTLauncher.exe
2013-10-19 15:40 - 2013-10-19 15:40 - 00000000 ____H C:\ProgramData\cm-lock
2013-10-19 15:34 - 2013-10-19 15:39 - 00000000 ____D C:\AdwCleaner
2013-10-19 15:33 - 2013-10-19 15:33 - 00000000 ____D C:\jrt
2013-10-19 15:31 - 2013-10-19 15:31 - 00004513 _____ C:\Users\Balu\Desktop\JRT.txt
2013-10-19 15:26 - 2013-10-19 15:26 - 00000000 ____D C:\Windows\ERUNT
2013-10-19 15:25 - 2013-10-19 15:25 - 01050644 _____ C:\Users\Balu\Downloads\adwcleaner.exe
2013-10-19 15:25 - 2013-10-19 15:25 - 01033335 _____ (Thisisu) C:\Users\Balu\Downloads\JRT.exe
2013-10-19 13:40 - 2013-10-19 14:55 - 00000000 ____D C:\rsit
2013-10-19 13:40 - 2013-10-19 14:55 - 00000000 ____D C:\Program Files\trend micro
2013-10-19 13:40 - 2013-10-19 13:40 - 00935175 _____ C:\Users\Balu\Downloads\RSITx64.exe
2013-10-14 22:09 - 2013-10-14 22:09 - 00000000 ____D C:\ProgramData\ESET
2013-10-14 22:09 - 2013-10-14 22:09 - 00000000 ____D C:\Program Files\ESET
2013-10-14 22:06 - 2013-10-14 22:06 - 01582904 _____ (ESET) C:\Users\Balu\Downloads\eset_smart_security_live_installer7.exe
2013-10-11 09:39 - 2013-09-23 01:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-10-11 09:39 - 2013-09-23 00:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-11 09:39 - 2013-09-21 05:38 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-11 09:39 - 2013-09-21 05:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-11 09:38 - 2013-09-23 01:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-11 09:38 - 2013-09-23 01:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-11 09:38 - 2013-09-23 01:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-11 09:38 - 2013-09-23 01:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-11 09:38 - 2013-09-23 01:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-11 09:38 - 2013-09-23 01:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-11 09:38 - 2013-09-23 01:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-11 09:38 - 2013-09-23 01:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-11 09:38 - 2013-09-23 01:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-11 09:38 - 2013-09-23 01:27 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-11 09:38 - 2013-09-23 01:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-11 09:38 - 2013-09-23 01:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-11 09:38 - 2013-09-23 00:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-11 09:38 - 2013-09-23 00:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-11 09:38 - 2013-09-23 00:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-10-11 09:38 - 2013-09-23 00:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-11 09:38 - 2013-09-23 00:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-11 09:38 - 2013-09-23 00:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-11 09:38 - 2013-09-23 00:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-11 09:38 - 2013-09-23 00:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-11 09:38 - 2013-09-23 00:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-11 09:38 - 2013-09-23 00:54 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-10-11 09:38 - 2013-09-23 00:54 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-10-11 09:38 - 2013-09-23 00:54 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-11 09:38 - 2013-09-23 00:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-10-11 09:38 - 2013-09-21 04:48 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-11 09:38 - 2013-09-21 04:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-10 18:57 - 2013-10-19 16:02 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cec5d9d0bd4c77.job
2013-10-10 18:57 - 2013-10-10 18:57 - 00003948 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1cec5d9d0bd4c77
2013-10-10 13:08 - 2013-10-10 13:08 - 01058706 _____ (neftojpg.com ) C:\Users\Balu\Downloads\neftojpg_setup.exe
2013-10-10 08:49 - 2013-08-29 03:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys
2013-10-10 08:49 - 2013-08-28 03:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-10 08:49 - 2013-08-01 14:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-10 08:49 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 08:49 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 08:49 - 2013-07-12 12:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2013-10-10 08:49 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2013-10-10 08:49 - 2013-07-12 12:40 - 00109824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys
2013-10-10 08:49 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-10 08:49 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-10 08:49 - 2013-07-03 06:40 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2013-10-10 08:49 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2013-10-10 08:49 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-10 08:49 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-10 08:49 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2013-10-10 08:49 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2013-10-10 08:49 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2013-10-10 08:49 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-10 08:49 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-10-10 08:49 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-10-10 08:49 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-10-10 08:49 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-10 08:49 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-10 08:49 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-10 08:49 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2013-10-10 08:49 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2013-10-10 08:49 - 2012-11-29 00:56 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2013-09-30 23:51 - 2013-09-30 23:51 - 00001404 _____ C:\Users\Balu\Desktop\Internet Explorer.lnk
2013-09-25 21:49 - 2013-09-25 21:49 - 00072965 _____ C:\Users\Balu\Downloads\1306084383_sb_ssd_zrychleni.zip
2013-09-25 20:49 - 2013-09-25 20:58 - 00000000 ____D C:\Users\Balu\Downloads\Krokomer_PR038_Software_02
2013-09-25 20:41 - 2013-09-25 20:41 - 01296379 _____ C:\Users\Balu\Downloads\Krokomer_PR038_Software_02.zip
2013-09-24 21:37 - 2013-10-19 15:28 - 00000000 ____D C:\Program Files (x86)\LemurLeap

==================== One Month Modified Files and Folders =======

2013-10-19 16:08 - 2013-10-19 16:08 - 00000000 ____D C:\FRST
2013-10-19 16:07 - 2013-10-19 16:08 - 01954124 _____ (Farbar) C:\Users\Balu\Desktop\FRST64.exe
2013-10-19 16:07 - 2013-10-19 16:07 - 01954124 _____ (Farbar) C:\Users\Balu\Downloads\FRST64.exe
2013-10-19 16:07 - 2013-10-19 16:07 - 00112128 _____ (forum.viry.cz) C:\Users\Balu\Downloads\FRSTLauncher.exe
2013-10-19 16:02 - 2013-10-10 18:57 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cec5d9d0bd4c77.job
2013-10-19 15:47 - 2009-07-14 06:45 - 00015504 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-19 15:47 - 2009-07-14 06:45 - 00015504 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-19 15:44 - 2009-07-14 12:49 - 00634308 _____ C:\Windows\system32\perfh005.dat
2013-10-19 15:44 - 2009-07-14 12:49 - 00122898 _____ C:\Windows\system32\perfc005.dat
2013-10-19 15:44 - 2009-07-14 07:13 - 01478586 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-19 15:40 - 2013-10-19 15:40 - 00000000 ____H C:\ProgramData\cm-lock
2013-10-19 15:40 - 2013-06-06 17:01 - 00000348 ____H C:\Windows\Tasks\C__Users_Balu_Downloads_Flippingbook-Publisher_2.2.16.exe.job
2013-10-19 15:40 - 2013-02-19 00:31 - 00000944 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-19 15:40 - 2012-12-18 10:52 - 00000000 ____D C:\ProgramData\NVIDIA
2013-10-19 15:40 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-19 15:40 - 2009-07-14 06:51 - 00141084 _____ C:\Windows\setupact.log
2013-10-19 15:39 - 2013-10-19 15:34 - 00000000 ____D C:\AdwCleaner
2013-10-19 15:39 - 2012-12-17 21:26 - 01286610 _____ C:\Windows\WindowsUpdate.log
2013-10-19 15:33 - 2013-10-19 15:33 - 00000000 ____D C:\jrt
2013-10-19 15:31 - 2013-10-19 15:31 - 00004513 _____ C:\Users\Balu\Desktop\JRT.txt
2013-10-19 15:28 - 2013-09-24 21:37 - 00000000 ____D C:\Program Files (x86)\LemurLeap
2013-10-19 15:28 - 2012-12-17 21:32 - 00000000 ____D C:\Program Files\totalcmd
2013-10-19 15:26 - 2013-10-19 15:26 - 00000000 ____D C:\Windows\ERUNT
2013-10-19 15:25 - 2013-10-19 15:25 - 01050644 _____ C:\Users\Balu\Downloads\adwcleaner.exe
2013-10-19 15:25 - 2013-10-19 15:25 - 01033335 _____ (Thisisu) C:\Users\Balu\Downloads\JRT.exe
2013-10-19 15:18 - 2013-01-06 19:49 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-19 15:12 - 2013-02-18 22:07 - 00000924 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1079416441-1027052400-2168246751-1000UA.job
2013-10-19 14:55 - 2013-10-19 13:40 - 00000000 ____D C:\rsit
2013-10-19 14:55 - 2013-10-19 13:40 - 00000000 ____D C:\Program Files\trend micro
2013-10-19 13:40 - 2013-10-19 13:40 - 00935175 _____ C:\Users\Balu\Downloads\RSITx64.exe
2013-10-19 09:31 - 2012-12-18 00:43 - 00000000 ____D C:\Users\Balu\AppData\Roaming\The Bat!
2013-10-17 21:12 - 2013-02-18 22:07 - 00000902 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1079416441-1027052400-2168246751-1000Core.job
2013-10-16 16:29 - 2012-12-17 21:41 - 00000000 ____D C:\Users\Balu\Documents\! VUT USI 2011-2013
2013-10-15 16:49 - 2012-12-17 21:40 - 00000000 ____D C:\Users\Balu\Documents\! ADRESY
2013-10-15 16:42 - 2012-12-17 21:40 - 00000000 ____D C:\Users\Balu\Documents\_Osobní
2013-10-14 22:09 - 2013-10-14 22:09 - 00000000 ____D C:\ProgramData\ESET
2013-10-14 22:09 - 2013-10-14 22:09 - 00000000 ____D C:\Program Files\ESET
2013-10-14 22:06 - 2013-10-14 22:06 - 01582904 _____ (ESET) C:\Users\Balu\Downloads\eset_smart_security_live_installer7.exe
2013-10-14 22:01 - 2012-12-17 21:41 - 00000000 ____D C:\Users\Balu\Documents\Moje naskenované obrázky
2013-10-14 22:01 - 2012-12-17 21:40 - 00000000 ____D C:\Users\Balu\Documents\! Aleš
2013-10-11 12:40 - 2009-07-14 06:45 - 00355736 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-11 09:37 - 2013-08-15 23:22 - 00000000 ____D C:\Windows\system32\MRT
2013-10-11 09:36 - 2012-12-23 22:44 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-10-10 18:57 - 2013-10-10 18:57 - 00003948 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1cec5d9d0bd4c77
2013-10-10 18:57 - 2013-02-19 00:31 - 00003692 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-10 13:08 - 2013-10-10 13:08 - 01058706 _____ (neftojpg.com ) C:\Users\Balu\Downloads\neftojpg_setup.exe
2013-10-10 11:18 - 2013-01-06 19:49 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-10-10 10:18 - 2013-01-06 19:49 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-10 10:18 - 2013-01-06 19:49 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-08 19:59 - 2012-12-17 21:41 - 00000000 ____D C:\Users\Balu\Documents\Inz
2013-10-04 17:18 - 2012-12-17 21:41 - 00000510 _____ C:\Users\Balu\Documents\WUPDATE.LOG
2013-10-02 11:15 - 2012-12-17 21:41 - 00000000 ____D C:\Users\Balu\Documents\Humor
2013-09-30 23:51 - 2013-09-30 23:51 - 00001404 _____ C:\Users\Balu\Desktop\Internet Explorer.lnk
2013-09-28 01:15 - 2012-12-18 02:48 - 00001057 _____ C:\Users\Balu\AppData\Roaming\vso_ts_preview.xml
2013-09-28 01:15 - 2012-12-18 02:48 - 00000000 ____D C:\Users\Balu\AppData\Roaming\Vso
2013-09-27 23:33 - 2012-12-17 21:41 - 00000000 ____D C:\Users\Balu\Documents\ConvertXtoDVD
2013-09-26 23:53 - 2012-12-17 21:41 - 00000000 ____D C:\Users\Balu\Documents\Seznam DVD 2008
2013-09-26 19:14 - 2012-12-17 21:40 - 00000000 ____D C:\Users\Balu\Documents\! Návody
2013-09-26 10:06 - 2012-12-17 21:41 - 00000000 ____D C:\Users\Balu\Documents\_RONDO
2013-09-25 21:49 - 2013-09-25 21:49 - 00072965 _____ C:\Users\Balu\Downloads\1306084383_sb_ssd_zrychleni.zip
2013-09-25 20:58 - 2013-09-25 20:49 - 00000000 ____D C:\Users\Balu\Downloads\Krokomer_PR038_Software_02
2013-09-25 20:41 - 2013-09-25 20:41 - 01296379 _____ C:\Users\Balu\Downloads\Krokomer_PR038_Software_02.zip
2013-09-25 17:00 - 2013-08-11 00:56 - 00000000 ____D C:\Seznam DVD 2011
2013-09-25 10:41 - 2012-12-17 21:40 - 00000000 ____D C:\Users\Balu\Documents\_Články
2013-09-25 08:28 - 2012-12-17 22:47 - 00024614 _____ C:\Windows\PFRO.log
2013-09-24 18:48 - 2012-12-17 21:41 - 00000000 ____D C:\Users\Balu\Documents\Zákony
2013-09-23 01:28 - 2013-10-11 09:38 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-09-23 01:28 - 2013-10-11 09:38 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-09-23 01:27 - 2013-10-11 09:39 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-09-23 01:27 - 2013-10-11 09:38 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-09-23 01:27 - 2013-10-11 09:38 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-09-23 01:27 - 2013-10-11 09:38 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-09-23 01:27 - 2013-10-11 09:38 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-09-23 01:27 - 2013-10-11 09:38 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-09-23 01:27 - 2013-10-11 09:38 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-09-23 01:27 - 2013-10-11 09:38 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-09-23 01:27 - 2013-10-11 09:38 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-09-23 01:27 - 2013-10-11 09:38 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-09-23 01:27 - 2013-10-11 09:38 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-09-23 00:55 - 2013-10-11 09:38 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-23 00:55 - 2013-10-11 09:38 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-23 00:55 - 2013-10-11 09:38 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-09-23 00:54 - 2013-10-11 09:39 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-23 00:54 - 2013-10-11 09:38 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-23 00:54 - 2013-10-11 09:38 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-23 00:54 - 2013-10-11 09:38 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-23 00:54 - 2013-10-11 09:38 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-23 00:54 - 2013-10-11 09:38 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-23 00:54 - 2013-10-11 09:38 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-23 00:54 - 2013-10-11 09:38 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-09-23 00:54 - 2013-10-11 09:38 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-09-23 00:54 - 2013-10-11 09:38 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-23 00:54 - 2013-10-11 09:38 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-09-21 05:38 - 2013-10-11 09:39 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-21 05:30 - 2013-10-11 09:39 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-09-21 04:48 - 2013-10-11 09:38 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-21 04:39 - 2013-10-11 09:38 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe

Some content of TEMP:
====================
C:\Users\Balu\AppData\Local\Temp\AskSLib.dll
C:\Users\Balu\AppData\Local\Temp\bitool.dll
C:\Users\Balu\AppData\Local\Temp\ChromeSetup.exe
C:\Users\Balu\AppData\Local\Temp\FP_AX_MSI_INSTALLER.exe
C:\Users\Balu\AppData\Local\Temp\fp_pl_pfs_installer.exe
C:\Users\Balu\AppData\Local\Temp\GcQPoxeQhxMeMQcJqwII.DLL
C:\Users\Balu\AppData\Local\Temp\jna4795908950177775937.dll
C:\Users\Balu\AppData\Local\Temp\jna5109563936978314615.dll
C:\Users\Balu\AppData\Local\Temp\jre-7u11-windows-i586-iftw.exe
C:\Users\Balu\AppData\Local\Temp\jre-7u13-windows-i586-iftw.exe
C:\Users\Balu\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe
C:\Users\Balu\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe
C:\Users\Balu\AppData\Local\Temp\KMP_3.6.0.87.exe
C:\Users\Balu\AppData\Local\Temp\KMP_3.7.0.109.exe
C:\Users\Balu\AppData\Local\Temp\nvStInst.exe
C:\Users\Balu\AppData\Local\Temp\OQhLySJvfB.DLL
C:\Users\Balu\AppData\Local\Temp\ose00000.exe
C:\Users\Balu\AppData\Local\Temp\oXRcvhbXkmuOmtBVGtoL.DLL
C:\Users\Balu\AppData\Local\Temp\Quarantine.exe
C:\Users\Balu\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Balu\AppData\Local\Temp\swt-gdip-win32-3452.dll
C:\Users\Balu\AppData\Local\Temp\swt-win32-3452.dll
C:\Users\Balu\AppData\Local\Temp\TeamViewerQS_cs.exe
C:\Users\Balu\AppData\Local\Temp\TeamViewer_Setup_cs(1).exe
C:\Users\Balu\AppData\Local\Temp\TeamViewer_Setup_cs(2).exe
C:\Users\Balu\AppData\Local\Temp\TeamViewer_Setup_cs(3).exe
C:\Users\Balu\AppData\Local\Temp\TeamViewer_Setup_cs(4).exe
C:\Users\Balu\AppData\Local\Temp\TeamViewer_Setup_cs(5).exe
C:\Users\Balu\AppData\Local\Temp\TeamViewer_Setup_cs(6).exe
C:\Users\Balu\AppData\Local\Temp\TeamViewer_Setup_cs.exe
C:\Users\Balu\AppData\Local\Temp\temp38D6L39WOCV73_updater.exe
C:\Users\Balu\AppData\Local\Temp\uybGCcnBqG.DLL
C:\Users\Balu\AppData\Local\Temp\VatYYpbNWJSAwBcGUXWA.DLL
C:\Users\Balu\AppData\Local\Temp\vFRVEAqEXfwjwodjbiPr.DLL
C:\Users\Balu\AppData\Local\Temp\wusetup.exe
C:\Users\Balu\AppData\Local\Temp\ytd-upgrade.exe
C:\Users\Balu\AppData\Local\Temp\_is9BB2.exe
C:\Users\Balu\AppData\Local\Temp\_isED89.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (WIN7PRO) (Fixed) (Total:111.69 GB) (Free:18.76 GB) NTFS
Drive f: (WD1T_XXXNEW) (Fixed) (Total:931.51 GB) (Free:193.5 GB) NTFS
Drive g: (WD1T_GRAFIK) (Fixed) (Total:931.51 GB) (Free:48.58 GB) NTFS
Drive i: (ST1T_INSTAL) (Fixed) (Total:453 GB) (Free:150.44 GB) NTFS
Drive k: (ST1T_MEDIA) (Fixed) (Total:478.51 GB) (Free:54.18 GB) NTFS
Drive t: (WD2T_TREZOR) (Fixed) (Total:931.45 GB) (Free:414.9 GB) NTFS
Drive z: (WD2T_ZNALEC) (Fixed) (Total:931.57 GB) (Free:410.52 GB) NTFS

Available physical RAM: 6464.49 MB
Total physical RAM: 8147.53 MB
Percentage of memory in use: 20%

==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\C__Users_Balu_Downloads_Flippingbook-Publisher_2.2.16.exe.job => C:\Users\Balu\Downloads\Flippingbook-Publisher_2.2.16.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1079416441-1027052400-2168246751-1000Core.job => C:\Users\Balu\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1079416441-1027052400-2168246751-1000UA.job => C:\Users\Balu\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cec5d9d0bd4c77.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\ProgramData\TEMP:2683706C
AlternateDataStreams: C:\ProgramData\TEMP:55580E48
AlternateDataStreams: C:\ProgramData\TEMP:CF54F1CA

==================== Security Center ==================

AV: ESET Smart Security 7.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET Smart Security 7.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: ESET Personální firewall (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 28_09_2013 (06)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Balu\Desktop" je 2 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-10-2013
Ran by Balu at 2013-10-19 16:09:57
Running from C:\Users\Balu\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: ESET Smart Security 7.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET Smart Security 7.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: ESET Personální firewall (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2}

==================== Installed Programs ======================

#1 DVD Audio Ripper 1.2.18 (x32)
64 Bit HP CIO Components Installer (Version: 7.2.4)
ABBYY FineReader 8.0 Professional Edition (x32 Version: 8.00.718.4565)
ACDSee 15 (x32 Version: 15.0.169)
Acronis Disk Director (x32 Version: 11.0.2121)
Active@ Password Changer Demo 5.0 (x32 Version: 5.0)
Active@ Password Changer Professional (x32)
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.117)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.117)
Adobe Photoshop 7.0 CE (x32 Version: 7.0 CE)
Adobe Reader XI - Czech (x32 Version: 11.0.00)
Advanced Office Password Recovery (x32 Version: 5.11.389.1308)
Aktualizace NVIDIA 1.11.3 (Version: 1.11.3)
Any Video Converter 2.6.7 (x32)
Any Video Converter 5 5.0.2 (x32)
Aspi Installer (x32)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (x32 Version: 2.0.11.12)
Audacity 2.0.2 (x32 Version: 2.0.2)
Avanquest update (x32 Version: 1.32)
Balíček ovladače systému Windows - Nokia Modem (02/25/2011 4.7) (Version: 02/25/2011 4.7)
Balíček ovladače systému Windows - Nokia Modem (02/25/2011 7.01.0.9) (Version: 02/25/2011 7.01.0.9)
Balíček ovladače systému Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (Version: 05/31/2012 7.1.2.0)
Belkasoft Skype Analyzer Pro (HKCU)
BufferChm (x32 Version: 130.0.331.000)
calibre (x32 Version: 0.9.10)
CDex extraction audio (x32)
Compiled Driver Disc (Full) 1.0 (Version: 1.0.7.0)
Compiled Driver Disk (Samsung) 1.0 (Version: 1.0.4.0)
ConvertXtoDVD 4.0.12.327 (x32 Version: 4.0.12.327)
CorelDRAW Graphics Suite X3 (x32 Version: 13.0)
CrystalDiskInfo 5.0.4 (x32 Version: 5.0.4)
CZ (x32 Version: 13.0)
Destinations (x32 Version: 130.0.0.0)
Doplněk Microsoft Save as PDF or XPS pro aplikace sady Microsoft Office 2007 (x32 Version: 12.0.4518.1025)
DVD Shrink 3.2 (x32)
ESET Smart Security (Version: 7.0.302.7)
Facebook Video Calling 1.2.0.287 (x32 Version: 1.2.287)
FinWin 1.0 (x32)
FontNav (x32 Version: 5.0)
Google Earth Plug-in (x32 Version: 7.1.1.1888)
Google Chrome (x32 Version: 30.0.1599.101)
Google Update Helper (x32 Version: 1.3.21.165)
GPBaseService2 (x32 Version: 130.0.371.000)
HP Commercial Scanjet 5590 TWAIN Driver (x32)
HP Imaging Device Functions 13.0 (Version: 13.0)
HP LaserJet Professional CP1520 Series (x32)
HP Photosmart Essential 3.5 (Version: 3.5)
HP Solution Center 13.0 (Version: 13.0)
hpg5590 (x32 Version: 13.0.0.0)
HPPhotosmartEssential (x32 Version: 2.04.0000)
HPProductAssistant (x32 Version: 130.0.371.000)
HPScanjet5590Corporate11 (x32 Version: 2.10.0000)
Intel(R) Management Engine Components (x32 Version: 8.0.2.1410)
Intel(R) USB 3.0 eXtensible Host Controller Driver (x32 Version: 1.0.1.209)
Intel® Trusted Connect Service Client (Version: 1.23.605.1)
IrfanView (remove only) (x32 Version: 4.35)
Java 7 Update 17 (x32 Version: 7.0.170)
Java Auto Updater (x32 Version: 2.1.9.0)
Java(TM) 6 Update 31 (x32 Version: 6.0.310)
KindlePreviewer (HKCU Version: 2.901)
LAME v3.99.3 (for Windows) (x32)
Logitech Webcam Software (x32 Version: 2.0)
LookDisk version 5.4 (x32 Version: 5.4)
LWS Webcam Software (x32 Version: 13.31.1038.0)
Maxthon 3 (x32 Version: )
MediaCoder 0.8.18.5360 (x32 Version: 0.8.18.5360)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile CSY Language Pack (Version: 4.0.30319)
Microsoft Office Access MUI (Czech) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Office Enterprise 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Excel MUI (Czech) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Office FrontPage 2003 (x32 Version: 11.0.5614.0)
Microsoft Office Groove MUI (Czech) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Office InfoPath MUI (Czech) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.4518.1014)
Microsoft Office OneNote MUI (Czech) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Office Outlook MUI (Czech) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Office PowerPoint MUI (Czech) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Office Proof (Czech) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Proof (Slovak) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Office Proofing (Czech) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Office Publisher MUI (Czech) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Office Shared 64-bit MUI (Czech) 2007 (Version: 12.0.4518.1025)
Microsoft Office Shared MUI (Czech) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Office Word MUI (Czech) 2007 (x32 Version: 12.0.4518.1025)
Microsoft Silverlight (x32 Version: 5.1.10411.0)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (x32 Version: 10.0.30319)
MOBILedit! Forensic Support Libraries (x32 Version: 1.0.0)
MOBILedit! Forensic ver. 6.9.0.2876 (x32 Version: 6.9.0.2876)
Modiac MP3 to MP4 Audio Converter (x32 Version: 1.0.0.4258)
Mount Image Pro (x32 Version: 5.0.6.1068)
Mozilla Firefox 21.0 (x86 cs) (x32 Version: 21.0)
Mozilla Maintenance Service (x32 Version: 21.0)
MSVC90_x64 (Version: 1.0.1.2)
MSVC90_x86 (x32 Version: 1.0.1.2)
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
MyFreeCodec (HKCU)
Nero 7 Ultra Edition (x32 Version: 7.02.0936)
Nokia Connectivity Cable Driver (x32 Version: 7.1.78.0)
Nokia PC Suite (x32 Version: 7.1.180.94)
NVIDIA Install Application (Version: 2.1002.108.688)
NVIDIA Ovladač 3D Vision 311.06 (Version: 311.06)
NVIDIA Ovladač řídící jednotky 3D Vision 301.42 (Version: 301.42)
NVIDIA Ovladače grafiky 311.06 (Version: 311.06)
NVIDIA PhysX (x32 Version: 9.12.0213)
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.1106)
NVIDIA Systémový software PhysX 9.12.0213 (Version: 9.12.0213)
NVIDIA Update Components (Version: 1.11.3)
Ovládací panel NVIDIA 311.06 (Version: 311.06)
Parrot Software Update Tool (x32)
PC Connectivity Solution (x32 Version: 12.0.27.0)
PDFCreator (x32 Version: 1.7.0)
pdfFactory Pro
Phone Drivers Downloader 1.1 (Version: 1.1.0.0)
Photo DVD Maker Professional 7.91 (x32 Version: 7.91)
Platform (x32 Version: 1.39)
PS3 Media Server (x32 Version: 1.81.0)
Scan (x32 Version: 13.0.0.0)
Scanjet 5590 (Version: 13.0)
Seznam DVD 2008 (x32)
Seznam DVD 2011 (x32)
Skype™ 6.0 (x32 Version: 6.0.126)
Soda PDF 5 (x32 Version: 5.1.192.10803)
SolutionCenter (x32 Version: 130.0.373.000)
Tag&Rename 3.6.1 (x32 Version: 3.6.1)
TeamViewer 8 (x32 Version: 8.0.20202)
The Bat! Professional v5.0.34 (x32 Version: 5.0.34)
The KMPlayer (remove only) (x32 Version: 3.7.0.109)
Total Commander 64-bit (Remove or Repair) (Version: 8.0)
Turistické trasy 2.30 bez map (x32)
UltraISO Premium V9.53 (x32)
Update Manager (x32 Version: 4.60)
vanBasco's Karaoke Player (x32)
VBA (x32 Version: 6.2)
VIA Platforma Ovladače zařízení (x32 Version: 1.39)
VSO Downloader 3.1.0.43 (x32 Version: 3.1.0.43)
VSO EVE Network Driver version 0.4 (x32 Version: 0.4)
WebReg (x32 Version: 130.0.132.017)
Windows 7 USB/DVD Download Tool (x32 Version: 1.0.30)
WinHTTrack Website Copier 3.44-4 (x32 Version: 3.44.4)
WinPcap 4.1.2 (x32 Version: 4.1.0.2001)
WinRAR 4.01 (64-bit) (Version: 4.01.0)
Youtube Downloader 4.55 (x32)

==================== Restore Points =========================

15-10-2013 07:21:47 Windows Update
19-10-2013 07:28:03 Windows Update

==================== Hosts content: ==========================

2009-07-14 04:34 - 2012-12-18 14:32 - 00000856 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 acdid.acdsystems.com

==================== Scheduled Tasks (whitelisted) =============

Task: {554FCAF8-1447-46A8-AAA1-B214706B289B} - System32\Tasks\C__Users_Balu_Downloads_Flippingbook-Publisher_2.2.16.exe => C:\Users\Balu\Downloads\Flippingbook-Publisher_2.2.16.exe
Task: {5C5A25F5-D7D7-4C81-8839-26DF423C1096} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-19] (Google Inc.)
Task: {88F57C92-5E57-4B42-89E7-3556A91F26A8} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1079416441-1027052400-2168246751-1000UA => C:\Users\Balu\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-18] (Facebook Inc.)
Task: {8FB4BE3F-A8D9-4D2B-8318-71214FA0FB9D} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1079416441-1027052400-2168246751-1000Core => C:\Users\Balu\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-18] (Facebook Inc.)
Task: {90FC8497-33BE-420D-949C-440801C31650} - System32\Tasks\Maxthon Update => C:\Program Files (x86)\Maxthon3\Bin\mxup.exe [2013-03-28] (Maxthon International ltd.)
Task: {C82BBEE1-722F-467A-8DCA-3C555B1C91A6} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-10] (Adobe Systems Incorporated)
Task: {FA543236-A656-4A74-99CE-CF8CA93374FB} - System32\Tasks\GoogleUpdateTaskMachineUA1cec5d9d0bd4c77 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-19] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\C__Users_Balu_Downloads_Flippingbook-Publisher_2.2.16.exe.job => C:\Users\Balu\Downloads\Flippingbook-Publisher_2.2.16.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1079416441-1027052400-2168246751-1000Core.job => C:\Users\Balu\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1079416441-1027052400-2168246751-1000UA.job => C:\Users\Balu\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cec5d9d0bd4c77.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2012-12-17 22:11 - 2011-12-06 03:58 - 00078448 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll
2012-12-17 22:11 - 2011-12-06 03:58 - 00386160 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll
2012-12-18 02:07 - 2011-05-28 23:05 - 00164864 _____ () C:\Program Files\WinRAR\rarext.dll
2012-12-17 23:06 - 2012-08-06 04:01 - 00258944 _____ () C:\Program Files (x86)\Maxthon3\bin\Maxzlib.dll
2012-12-17 23:06 - 2012-08-06 04:01 - 00258944 _____ () C:\Program Files (x86)\Maxthon3\Bin\maxzlib.dll
2012-12-17 23:06 - 2012-08-31 04:27 - 09465032 _____ () C:\Program Files (x86)\Maxthon3\Core\Webkit\Npplugins\NPSWF32.dll
2012-12-17 22:19 - 2012-02-07 18:39 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\ProgramData\TEMP:2683706C
AlternateDataStreams: C:\ProgramData\TEMP:55580E48
AlternateDataStreams: C:\ProgramData\TEMP:CF54F1CA

==================== Safe Mode (whitelisted) ===================


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================

System errors:
=============
Error: (10/19/2013 03:42:41 PM) (Source: Service Control Manager) (User: )
Description: Služba NVIDIA Update Service Daemon neuspěla při spuštění v důsledku následující chyby:
%%1069

Error: (10/19/2013 03:42:41 PM) (Source: Service Control Manager) (User: )
Description: Služba nvUpdatusService se nemohla přihlásit jako .\UpdatusUser s aktuálně konfigurovaným heslem z důvodu následující chyby:
%%1330

Chcete-li zajistit správnou konfiguraci služby, použijte modul snap-in Služby konzoly Microsoft Management Console (MMC).


Microsoft Office Sessions:
=========================
Error: (09/10/2013 01:47:12 AM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 51053 seconds with 18540 seconds of active time. This session ended with a crash.

Error: (09/04/2013 09:41:43 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 12520 seconds with 5100 seconds of active time. This session ended with a crash.

Error: (08/23/2013 08:06:18 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 19635 seconds with 9000 seconds of active time. This session ended with a crash.

Error: (01/22/2013 05:07:23 AM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 6134 seconds with 3300 seconds of active time. This session ended with a crash.


==================== Memory info ===========================

Percentage of memory in use: 20%
Total physical RAM: 8147.53 MB
Available physical RAM: 6464.49 MB
Total Pagefile: 16293.25 MB
Available Pagefile: 14499.08 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB

==================== Drives ================================

Drive c: (WIN7PRO) (Fixed) (Total:111.69 GB) (Free:18.76 GB) NTFS
Drive f: (WD1T_XXXNEW) (Fixed) (Total:931.51 GB) (Free:193.5 GB) NTFS
Drive g: (WD1T_GRAFIK) (Fixed) (Total:931.51 GB) (Free:48.58 GB) NTFS
Drive i: (ST1T_INSTAL) (Fixed) (Total:453 GB) (Free:150.44 GB) NTFS
Drive k: (ST1T_MEDIA) (Fixed) (Total:478.51 GB) (Free:54.18 GB) NTFS
Drive t: (WD2T_TREZOR) (Fixed) (Total:931.45 GB) (Free:414.9 GB) NTFS
Drive z: (WD2T_ZNALEC) (Fixed) (Total:931.57 GB) (Free:410.52 GB) NTFS

Avatar uživatele
vyosek
VIP
VIP
Příspěvky: 56365
Registrován: 07 Lis 2006 15:24
Místo/Bydliště: Šalingrad - Brno

Re: api.lemurleap.info

#10 Příspěvek od vyosek »

:arrow: Tema jsem nezamykal, ani o tom neni zminka v MODeratorskem logu :?:

:arrow: Prispevky jsem sloucil

:arrow: Stahnete Malwarebytes' Anti-Malware (zkracene MBAM) http://forum.viry.cz/viewtopic.php?f=29&t=115222
  • Provedte aktualizaci
  • Provedte uplny sken - nic nemazte :!:
  • MBAM miva obcas falesne detekce, proto vlozte log do prispevku a pockejte na posouzeni
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět