Stránka 1 z 1

prosím o kontrolu logu z RSIT

Napsal: 06 lis 2013 11:44
od Dennis
počítač při zapnutí nabíhá pomalu

a má takové zpomalené reakce



Logfile of random's system information tool 1.09 (written by random/random)
Run by Zdenek at 2013-11-06 11:16:31
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 4 GB (1%) free of 477 GB
Total RAM: 4079 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:16:34, on 6.11.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16720)
Boot mode: Normal

Running processes:
C:\Users\Zdenek\AppData\Local\TempImg\VerControl.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe
C:\Program Files (x86)\RapidShare AG\RapidShare\RapidShare.exe
C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\totalcmd\TOTALCMD.EXE
C:\Program Files\trend micro\Zdenek.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.forumswatcher.com/search.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: CrossriderApp0035578 - {11111111-1111-1111-1111-110311551178} - C:\Program Files (x86)\Torntv 2\Torntv 2-bho.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: qualitink - {73ad5d47-66e5-4127-80ca-c0eedabafbcc} - C:\Program Files (x86)\qualitink\qualitinkbho.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [VerControl] C:\Users\Zdenek\AppData\Local\TempImg\VerControl.exe
O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
O4 - HKCU\..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
O4 - HKCU\..\Run: [AppleIEDAV] C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe
O4 - HKCU\..\Run: [RapidShare] "C:\Program Files (x86)\RapidShare AG\RapidShare\RapidShare.exe" autostart
O4 - HKCU\..\Run: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O4 - Global Startup: Logo Calibration Loader.lnk = C:\Program Files (x86)\GretagMacbeth\i1\Eye-One Match 3\CalibrationLoader\CalibrationLoader.exe
O4 - Global Startup: ProfileReminder.lnk = C:\Program Files (x86)\GretagMacbeth\i1\Eye-One Match 3\ProfileReminder.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Převést cíl vazby do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Převést do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Připojit cíl vazby k existujícímu PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Připojit k existujícímu PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: Garmin Communicator Plug-In - https://static.garmincdn.com/gcp/ie/2.9 ... ontrol.CAB
O16 - DPF: {82E5DF24-51E8-47CD-864A-F4BD5005AA73} (iCloud Web App Plugin) - https://www.icloud.com/system/iCloud.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O21 - SSODL: EldosMountNotificator-cbfs4-0 - {B6ACEC10-265F-4507-AA35-196F2B143502} - C:\Program Files (x86)\Common Files\CBFS\WOW64\cbfsMntNtf4.dll
O22 - SharedTaskScheduler: Virtual Storage Mount Notification - {B6ACEC10-265F-4507-AA35-196F2B143502} - C:\Program Files (x86)\Common Files\CBFS\WOW64\cbfsMntNtf4.dll
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Canon Driver Information Assist Service - CANON INC. - C:\Program Files\Canon\DIAS\CnxDIAS.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Garmin Core Update Service - Garmin Ltd or its subsidiaries - C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Performance Driver Service - Unknown owner - C:\Program Files\NVIDIA Corporation\Performance Drivers\nvPDsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update qualitink - qualitink - C:\Program Files (x86)\qualitink\updatequalitink.exe
O23 - Service: Util qualitink - qualitink - C:\Program Files (x86)\qualitink\bin\utilqualitink.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 15759 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Alwil Software\Avast5\AvastSvc.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\OO Software\Defrag\oodtray.exe"
"C:\Users\Zdenek\AppData\Local\TempImg\VerControl.exe"
"C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe"
"C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe"
"C:\Program Files (x86)\RapidShare AG\RapidShare\RapidShare.exe" autostart
"C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
"C:\Windows\CmUCREye_x64.exe"
"C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe"
"C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe"
"C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
"C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe" -Embedding
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
taskmgr.exe /3
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe"
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe"
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\Canon\DIAS\CnxDIAS.exe"
taskeng.exe {75524D7E-AAA3-4BC1-90F7-B574BA6B1C70}
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=1956.194f7700.353240656 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 1956 "\\.\pipe\gecko-crash-server-pipe.1956" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe" --proxy-stub-channel=Flash4644.5FFAF308.9410 --host-broker-channel=Flash4644.5FFAF308.7298 --host-pid=4644 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe" --channel=4704.0015F6EC.2063671583 --proxy-stub-channel=Flash4644.5FFAF308.9410 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files\NVIDIA Corporation\Performance Drivers\nvPDsvc.exe"
"C:\Program Files\OO Software\Defrag\oodag.exe"
"C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\qualitink\updatequalitink.exe"
"C:\Program Files (x86)\qualitink\bin\utilqualitink.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\iPod\bin\iPodService.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-5a388b71-0af1-4bb4-9c3a-c75c629fbae0 -SystemEventPortName:HostProcess-ae016287-27a1-401f-8ba0-7b8e11f9a634 -IoCancelEventPortName:HostProcess-51fde6cf-4105-4973-a2fd-270da1f45ef6 -NonStateChangingEventPortName:HostProcess-78db370a-acad-431f-b65e-5cd1dd8ea07f -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:fea507d8-5f83-4d1e-a26a-058777d51012 -DeviceGroupId:WpdFsGroup
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\PANDORA.TV\PanService\PanProcess.exe" PanProcess
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-c2047bae-2850-4bf2-9ad1-e21c9f924d48 -SystemEventPortName:HostProcess-60f275eb-dd27-4e7e-b711-8864f863cb6e -IoCancelEventPortName:HostProcess-bf9267e7-fe7f-4079-aa6c-3205bf3bc3aa -NonStateChangingEventPortName:HostProcess-79e6d6af-8236-400e-8ebe-1a0cf46d829f -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:88d48832-f3df-4f39-8b3a-2cfd39d29bd9 -DeviceGroupId:
"C:\totalcmd\TOTALCMD.EXE"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe12_ Global\UsGthrCtrlFltPipeMssGthrPipe12 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 528 532 540 65536 536
"C:\Users\Zdenek\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\Torntv 2-codedownloader.job
C:\Windows\tasks\Torntv 2-enabler.job
C:\Windows\tasks\Torntv 2-updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\6sprd7ro.default

prefs.js - "browser.search.useDBForOrder" - "false"
prefs.js - "browser.startup.homepage" - "http://www.google.cz/"
prefs.js - "extensions.enabledItems" - "{ea614400-e918-4741-9a97-7a972ff7c30b}:2.0.10, {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.2.0.7165, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.117 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@software602.cz/602XML Filler]
"Description"=Software602 Form Filler Plugin
"Path"=C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.117 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Program Files (x86)\Mozilla Firefox\components\
nsIQTScriptablePlugin.xpt

C:\Program Files (x86)\Mozilla Firefox\plugins\
npdeploytk.dll
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
QuickTimePlugin.class

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
firmycz.xml
mall-cz.xml
mapycz.xml
zbocz.xml

C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\6sprd7ro.default\extensions\
{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}

C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\6sprd7ro.default\searchplugins\
askcom.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551178}]
Torntv 2 - C:\Program Files (x86)\Torntv 2\Torntv 2-bho64.dll [2013-10-23 954368]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551178}]
Torntv 2 - C:\Program Files (x86)\Torntv 2\Torntv 2-bho.dll [2013-10-23 589824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73ad5d47-66e5-4127-80ca-c0eedabafbcc}]
qualitink - C:\Program Files (x86)\qualitink\qualitinkbho.dll [2013-10-05 249632]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2012-05-02 35840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"nwiz"=C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [2009-07-09 1712672]
"Cmiboot"=C:\Windows\cmiboot.exe [2007-02-07 65536]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"OODefragTray"=C:\Program Files\OO Software\Defrag\oodtray.exe [2011-09-18 3993416]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"VerControl"=C:\Users\Zdenek\AppData\Local\TempImg\VerControl.exe [2010-10-04 339968]
""= []
"AdobeBridge"= []
"iCloudServices"=C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [2013-09-14 59720]
"ApplePhotoStreams"=C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [2013-09-15 59720]
"AppleIEDAV"=C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe [2013-09-04 1315144]
"RapidShare"=C:\Program Files (x86)\RapidShare AG\RapidShare\RapidShare.exe [2013-09-10 1209344]
"GarminExpressTrayApp"=C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [2013-09-19 1093976]
"Zoner Photo Studio Autoupdate"=C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE [2013-02-18 774168]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"AdobeCS4ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712]
"ArcSoft Connection Service"=C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27 207424]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-03 284696]
"Adobe Acrobat Speed Launcher"=C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [2008-06-12 37232]
""= []
"Acrobat Assistant 8.0"=C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [2008-06-11 640376]
"avast"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2011-09-06 3722416]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"APSDaemon"=C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]
"mobilegeni daemon"=C:\Program Files (x86)\Mobogenie\DaemonProcess.exe []
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2013-10-23 152392]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Logo Calibration Loader.lnk - C:\Program Files (x86)\GretagMacbeth\i1\Eye-One Match 3\CalibrationLoader\CalibrationLoader.exe
ProfileReminder.lnk - C:\Program Files (x86)\GretagMacbeth\i1\Eye-One Match 3\ProfileReminder.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
EldosMountNotificator-cbfs4-0 - {B6ACEC10-265F-4507-AA35-196F2B143502} - C:\Program Files (x86)\Common Files\CBFS\cbfsMntNtf4.dll [2013-07-03 182632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
Virtual Storage Mount Notification - {B6ACEC10-265F-4507-AA35-196F2B143502} - C:\Program Files (x86)\Common Files\CBFS\cbfsMntNtf4.dll [2013-07-03 182632]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
"{93994DE8-8239-4655-B1D1-5F4E91300429}"=C:\Program Files (x86)\DVD Region+CSS Free\DVDShell.dll [2004-10-09 49152]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.ACDV"=ACDV.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-11-06 11:16:32 ----D---- C:\Program Files\trend micro
2013-11-06 11:14:09 ----D---- C:\Program Files (x86)\trend micro
2013-11-06 11:14:08 ----D---- C:\rsit
2013-11-05 14:36:43 ----D---- C:\ProgramData\nView_Profiles
2013-10-29 08:03:21 ----D---- C:\Program Files\iPod
2013-10-29 08:03:20 ----D---- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-29 08:03:20 ----D---- C:\Program Files\iTunes
2013-10-29 08:03:20 ----D---- C:\Program Files (x86)\iTunes
2013-10-24 10:51:37 ----A---- C:\Windows\system32\drivers\SeqCal.sys
2013-10-24 10:51:37 ----A---- C:\Windows\system32\drivers\EyeOneX64.sys
2013-10-24 10:30:46 ----A---- C:\Windows\AutoRun.ini
2013-10-23 11:12:03 ----D---- C:\Users\Zdenek\AppData\Roaming\RapidDrive
2013-10-23 10:57:20 ----A---- C:\Windows\system32\elevtmsg.dll
2013-10-23 10:57:16 ----D---- C:\Program Files (x86)\RapidShare AG
2013-10-23 10:52:21 ----D---- C:\Users\Zdenek\AppData\Roaming\Babylon
2013-10-23 10:52:21 ----D---- C:\ProgramData\Babylon
2013-10-23 10:52:02 ----D---- C:\Program Files (x86)\qualitink
2013-10-23 10:51:31 ----D---- C:\Program Files (x86)\Torntv 2
2013-10-23 10:51:02 ----D---- C:\Program Files (x86)\TornTV.com
2013-10-21 10:04:29 ----D---- C:\Program Files\Kolor
2013-10-21 09:54:48 ----D---- C:\Profiles
2013-10-21 09:54:48 ----D---- C:\Output
2013-10-21 09:54:48 ----D---- C:\Lists
2013-10-21 09:54:34 ----D---- C:\Program Files\Archiving
2013-10-16 15:59:19 ----A---- C:\Windows\system32\drivers\i1display_x64.sys
2013-10-16 15:59:18 ----D---- C:\Program Files (x86)\X-Rite
2013-10-16 15:59:18 ----A---- C:\Windows\system32\drivers\i1iO2_x64.sys
2013-10-16 15:59:18 ----A---- C:\Windows\system32\drivers\i1_x64.sys
2013-10-16 15:57:20 ----D---- C:\Program Files (x86)\GretagMacbeth
2013-10-10 15:23:04 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-10-10 15:23:03 ----A---- C:\Windows\system32\ieui.dll
2013-10-10 15:23:02 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-10-10 15:23:02 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-10-10 15:23:02 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-10-10 15:23:02 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-10-10 15:23:02 ----A---- C:\Windows\system32\iesetup.dll
2013-10-10 15:23:02 ----A---- C:\Windows\system32\iernonce.dll
2013-10-10 15:23:02 ----A---- C:\Windows\system32\ie4uinit.exe
2013-10-10 15:23:01 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-10-10 15:23:01 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-10 15:23:01 ----A---- C:\Windows\system32\iesysprep.dll
2013-10-10 15:23:00 ----A---- C:\Windows\system32\iertutil.dll
2013-10-10 15:22:59 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-10-10 15:22:59 ----A---- C:\Windows\system32\msfeeds.dll
2013-10-10 15:22:58 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-10-10 15:22:58 ----A---- C:\Windows\system32\jscript9.dll
2013-10-10 15:22:58 ----A---- C:\Windows\system32\jscript.dll
2013-10-10 15:22:57 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-10-10 15:22:56 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-10-10 15:22:56 ----A---- C:\Windows\system32\urlmon.dll
2013-10-10 15:22:54 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-10-10 15:22:54 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-10-10 15:22:54 ----A---- C:\Windows\system32\wininet.dll
2013-10-10 15:22:54 ----A---- C:\Windows\system32\jsproxy.dll
2013-10-10 15:22:53 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-10-10 15:22:51 ----A---- C:\Windows\system32\ieframe.dll
2013-10-10 15:22:49 ----A---- C:\Windows\system32\mshtml.dll
2013-10-10 15:22:47 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-10-10 13:08:36 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-10-10 13:08:36 ----A---- C:\Windows\system32\comctl32.dll
2013-10-10 13:08:35 ----A---- C:\Windows\SYSWOW64\lpk.dll
2013-10-10 13:08:35 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2013-10-10 13:08:35 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-10-10 13:08:35 ----A---- C:\Windows\system32\lpk.dll
2013-10-10 13:08:35 ----A---- C:\Windows\system32\fontsub.dll
2013-10-10 13:08:35 ----A---- C:\Windows\system32\drivers\usbser.sys
2013-10-10 13:08:35 ----A---- C:\Windows\system32\dciman32.dll
2013-10-10 13:08:35 ----A---- C:\Windows\system32\atmfd.dll
2013-10-10 13:08:34 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-10-10 13:08:34 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-10-10 13:08:34 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-10-10 13:08:34 ----A---- C:\Windows\system32\atmlib.dll
2013-10-10 13:08:33 ----A---- C:\Windows\system32\drivers\usbcir.sys
2013-10-10 13:08:33 ----A---- C:\Windows\system32\drivers\hidparse.sys
2013-10-10 13:08:33 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-10-10 13:08:32 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2013-10-10 13:08:32 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2013-10-10 13:08:32 ----A---- C:\Windows\system32\WebClnt.dll
2013-10-10 13:08:32 ----A---- C:\Windows\system32\davclnt.dll
2013-10-10 13:08:31 ----A---- C:\Windows\system32\mswsock.dll
2013-10-10 13:08:31 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-10-10 13:08:31 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-10-10 13:08:31 ----A---- C:\Windows\system32\drivers\afd.sys
2013-10-10 13:08:30 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2013-10-10 13:08:28 ----A---- C:\Windows\system32\win32k.sys
2013-10-10 13:08:25 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-10-10 13:08:25 ----A---- C:\Windows\system32\advapi32.dll
2013-10-10 13:08:24 ----A---- C:\Windows\SYSWOW64\tdh.dll
2013-10-10 13:08:24 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-10-10 13:08:24 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-10-10 13:08:24 ----A---- C:\Windows\system32\tdh.dll
2013-10-10 13:08:23 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-10-10 13:08:23 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2013-10-10 13:08:23 ----A---- C:\Windows\system32\ntdll.dll
2013-10-10 13:08:22 ----A---- C:\Windows\system32\wow64.dll
2013-10-10 13:08:15 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-10-10 13:08:14 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-10-10 13:08:14 ----A---- C:\Windows\SYSWOW64\user.exe
2013-10-10 13:08:14 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-10-10 13:08:14 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-10-10 13:08:10 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 13:08:10 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 13:08:10 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-10-10 13:08:09 ----A---- C:\Windows\system32\scavengeui.dll
2013-10-07 08:44:23 ----D---- C:\Program Files (x86)\Mozilla Firefox

======List of files/folders modified in the last 1 month======

2013-11-06 11:16:34 ----D---- C:\Windows\Prefetch
2013-11-06 11:16:33 ----D---- C:\Windows\Temp
2013-11-06 11:16:32 ----RD---- C:\Program Files
2013-11-06 11:14:09 ----RD---- C:\Program Files (x86)
2013-11-06 10:52:16 ----HD---- C:\ProgramData
2013-11-06 08:37:42 ----D---- C:\Windows\system32\config
2013-11-06 08:25:46 ----SHD---- C:\System Volume Information
2013-11-06 07:55:51 ----D---- C:\Windows\System32
2013-11-06 07:55:51 ----D---- C:\Windows\inf
2013-11-06 07:55:51 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-11-06 07:52:49 ----D---- C:\Windows
2013-11-06 07:47:05 ----D---- C:\Windows\system32\catroot2
2013-10-29 08:04:28 ----SHD---- C:\Windows\Installer
2013-10-29 08:04:04 ----D---- C:\Windows\SysWOW64
2013-10-25 07:18:10 ----D---- C:\Windows\Microsoft.NET
2013-10-24 14:58:58 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-10-24 10:51:37 ----D---- C:\Windows\system32\drivers
2013-10-24 10:21:56 ----D---- C:\Windows\system32\catroot
2013-10-24 08:58:34 ----D---- C:\ProgramData\Package Cache
2013-10-24 08:57:16 ----D---- C:\ProgramData\Garmin
2013-10-24 08:57:05 ----D---- C:\Program Files (x86)\Garmin
2013-10-23 12:46:24 ----D---- C:\Windows\winsxs
2013-10-23 12:38:27 ----D---- C:\Users\Zdenek\AppData\Roaming\BitLord
2013-10-23 12:36:38 ----D---- C:\Program Files (x86)\Common Files
2013-10-23 12:36:35 ----D---- C:\Windows\system32\DriverStore
2013-10-23 12:36:18 ----RSD---- C:\Windows\assembly
2013-10-23 11:31:12 ----D---- C:\Windows\system
2013-10-23 11:31:11 ----D---- C:\Windows\twain_32
2013-10-23 11:31:10 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-10-23 11:21:10 ----D---- C:\Program Files (x86)\imaxel
2013-10-23 11:20:31 ----D---- C:\Program Files (x86)\Fotolab
2013-10-23 10:56:37 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-10-23 10:56:37 ----D---- C:\Windows\system32\cs-CZ
2013-10-23 10:52:42 ----D---- C:\Windows\Tasks
2013-10-23 10:52:42 ----D---- C:\Windows\system32\Tasks
2013-10-23 10:50:02 ----D---- C:\Windows\SYSWOW64\en-US
2013-10-23 10:50:01 ----D---- C:\Windows\system32\en-US
2013-10-22 10:42:02 ----D---- C:\Program Files\Recuva
2013-10-22 09:05:24 ----D---- C:\Program Files (x86)\The KMPlayer
2013-10-21 13:13:29 ----D---- C:\Users\Zdenek\AppData\Roaming\Skype
2013-10-21 10:05:36 ----D---- C:\Users\Zdenek\AppData\Roaming\Adobe
2013-10-18 14:00:05 ----SD---- C:\Users\Zdenek\AppData\Roaming\Microsoft
2013-10-11 09:03:40 ----D---- C:\Windows\rescache
2013-10-11 07:47:03 ----D---- C:\Program Files\Internet Explorer
2013-10-11 07:47:03 ----D---- C:\Program Files (x86)\Internet Explorer
2013-10-11 07:47:02 ----D---- C:\Windows\AppPatch
2013-10-11 07:43:35 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-10-10 15:24:47 ----D---- C:\ProgramData\Microsoft Help
2013-10-10 15:21:28 ----D---- C:\Program Files\Microsoft Silverlight
2013-10-09 15:16:42 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-10-09 07:29:13 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;Intel RAID Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-03-03 540696]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2011-09-06 42328]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2011-09-06 601944]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2011-09-06 301912]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2011-09-06 58200]
R1 cbfs4-0;cbfs4-0; \??\C:\Program Files (x86)\Common Files\CBFS\cbfs4.sys [2013-07-03 385728]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2008-06-27 88632]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2011-09-06 24408]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2011-09-06 65368]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2012-12-13 54784]
R3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 41984]
S2 Hardlock;Hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [2005-06-14 296448]
S2 PDIHWCTL;PDIHWCTL; \??\C:\Windows\system32\drivers\pdihwctl.sys []
S3 61883;61883 Unit Device; C:\Windows\system32\DRIVERS\61883.sys [2009-07-14 60288]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2011-05-13 36328]
S3 Avc;Zařízení AVC; C:\Windows\system32\DRIVERS\avc.sys [2009-07-14 48768]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 CMIUCR;CMIUCR.SYS CM320/CM220 Card Reader Driver; C:\Windows\system32\DRIVERS\cmiucr_x64.SYS [2007-01-15 160256]
S3 EyeOneDisplay;EyeOneDisplay; C:\Windows\System32\Drivers\i1display_x64.sys [2005-12-13 7808]
S3 grmnusb;Garmin USB Driver; C:\Windows\system32\drivers\grmnusb.sys [2012-04-18 19304]
S3 MSDV;Microsoft DV Camera and VCR; C:\Windows\system32\DRIVERS\msdv.sys [2009-07-14 61440]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmbx64.sys [2012-01-09 19968]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbox64.sys [2012-01-09 27136]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2012-04-22 25600]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-05-13 157672]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 16872]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 177640]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-05-13 146920]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2012-01-09 9216]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 33280]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [2012-01-09 9216]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WSDPrintDevice;Podpora tisku WSD prostřednictvím funkce UMB; C:\Windows\system32\DRIVERS\WSDPrint.sys [2009-07-14 23040]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 602XML Updater;602Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [2011-10-10 85344]
R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2013-09-07 55624]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-09-06 44768]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 Canon Driver Information Assist Service;Canon Driver Information Assist Service; C:\Program Files\Canon\DIAS\CnxDIAS.exe [2009-07-31 5762408]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 Garmin Core Update Service;Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2013-09-19 250200]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-03 13336]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-05-18 73728]
R2 NVIDIA Performance Driver Service;NVIDIA Performance Driver Service; C:\Program Files\NVIDIA Corporation\Performance Drivers\nvPDsvc.exe [2009-05-14 4901888]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-07-14 383008]
R2 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2011-09-18 3271496]
R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [2012-09-28 625304]
R2 Update qualitink;Update qualitink; C:\Program Files (x86)\qualitink\updatequalitink.exe [2013-10-05 65312]
R2 Util qualitink;Util qualitink; C:\Program Files (x86)\qualitink\bin\utilqualitink.exe [2013-10-24 65312]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2013-10-23 641352]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-08 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-29 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09 257416]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-12-29 1038088]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-12-29 655624]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-29 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-10-07 118680]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-04-22 720936]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-12-30 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-08 139696]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-08 139696]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-08 139696]

-----------------EOF-----------------

Re: prosím o kontrolu logu z RSIT

Napsal: 06 lis 2013 14:15
od vyosek
Zdravim :)

:arrow: Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
  • Ulozte nejlepe na plochu
  • Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
  • Probehne vytvoreni zalohy a nasledne prohledavani
  • Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte
:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte

Re: prosím o kontrolu logu z RSIT

Napsal: 06 lis 2013 15:06
od Dennis
jrt

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Professional x64
Ran by Zdenek on st 06.11.2013 at 14:42:42,88
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440}



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\1clickdownload
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\dt soft\daemon tools toolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installcore
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installedbrowserextensions
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\compete
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\crossrider
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\freecause
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{08858AF6-42AD-4914-95D2-AC3AB0DC8E28}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0035578.BHO
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0035578.BHO.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0035578.Sandbox
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0035578.Sandbox.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{11111111-1111-1111-1111-110311551178}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{22222222-2222-2222-2222-220322552278}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{55555555-5555-5555-5555-550355555578}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{66666666-6666-6666-6666-660366556678}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{44444444-4444-4444-4444-440344554478}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{11111111-1111-1111-1111-110311551178}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{22222222-2222-2222-2222-220322552278}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{55555555-5555-5555-5555-550355555578}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{66666666-6666-6666-6666-660366556678}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440344554478}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0035578.BHO
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0035578.BHO.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0035578.Sandbox
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0035578.Sandbox.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{55555555-5555-5555-5555-550355555578}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{66666666-6666-6666-6666-660366556678}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{44444444-4444-4444-4444-440344554478}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311551178}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\askChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311551178}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{55555555-5555-5555-5555-550355555578}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{66666666-6666-6666-6666-660366556678}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440344554478}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\askChecker_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\askChecker_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551178}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{55D6CB29-BBF4-4078-9967-F44281F3B91B}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{CD2F82DA-5CDB-4D5C-BB71-E3D79AAEB943}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73ad5d47-66e5-4127-80ca-c0eedabafbcc}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{73ad5d47-66e5-4127-80ca-c0eedabafbcc}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"
Successfully deleted: [Registry Key] "hkey_current_user\software\pip"



~~~ Files



~~~ Folders

Successfully deleted: [Folder] C:\Users\Zdenek\AppData\LocalLow\FCTB000063263
Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\Users\Zdenek\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Program Files (x86)\daemon tools toolbar"
Successfully deleted: [Folder] "C:\Program Files (x86)\pazera toolbar"
Failed to delete: [Folder] "C:\Program Files (x86)\qualitink"
Successfully deleted: [Folder] "C:\Program Files (x86)\torntv 2"
Successfully deleted: [Folder] "C:\Program Files (x86)\torntv.com"
Successfully deleted: [Folder] "C:\Program Files (x86)\Common Files\freecause"



~~~ FireFox

Successfully deleted: [File] C:\Users\Zdenek\AppData\Roaming\mozilla\firefox\profiles\6sprd7ro.default\extensions\trtv3@trtv.com.xpi
Successfully deleted: [File] C:\Users\Zdenek\AppData\Roaming\mozilla\firefox\profiles\6sprd7ro.default\searchplugins\askcom.xml
Emptied folder: C:\Users\Zdenek\AppData\Roaming\mozilla\firefox\profiles\6sprd7ro.default\minidumps [126 files]



~~~ Chrome

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\bicnnkjibmphdeigoodpjlcklcnaobdj



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 06.11.2013 at 14:54:36,19
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


adw

# AdwCleaner v3.011 - Report created 06/11/2013 at 14:58:02
# Updated 03/11/2013 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : Zdenek - ZDENEK-HP
# Running from : C:\Users\Zdenek\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Users\Zdenek\AppData\Local\Temp\boost_interprocess
Folder Deleted : C:\Users\Zdenek\AppData\Roaming\BitLord
Folder Deleted : C:\Users\Zdenek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitLord
Folder Deleted : C:\Users\Zdenek\Documents\BitLord

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{17DE5E5E-BFE3-4E83-8E1F-8755795359EC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3E720453-B472-4954-B7AA-33069EB53906}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E342AF55-B78A-4CD0-A2BB-DA7F52D9D25F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E79DFBCB-5697-4FBD-94E5-5B2A9C7C1612}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Key Deleted : HKLM\Software\PIP

***** [ Browsers ] *****

-\\ Internet Explorer v10.0.9200.16720


-\\ Mozilla Firefox v25.0 (cs)

[ File : C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\6sprd7ro.default\prefs.js ]

Line Deleted : user_pref("browser.search.defaultengine", "Ask.com");
Line Deleted : user_pref("browser.search.order.1", "Ask.com");

-\\ Google Chrome v30.0.1599.101

[ File : C:\Users\Zdenek\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [3619 octets] - [06/11/2013 14:57:16]
AdwCleaner[S0].txt - [3554 octets] - [06/11/2013 14:58:02]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3614 octets] ##########

Re: prosím o kontrolu logu z RSIT

Napsal: 06 lis 2013 18:32
od vyosek
Poprosim o log dle tohoto navodu http://forum.viry.cz/viewtopic.php?f=13&t=133100

Re: prosím o kontrolu logu z RSIT

Napsal: 07 lis 2013 09:01
od Dennis
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 31-10-2013
Ran by Zdenek (administrator) on ZDENEK-HP on 07-11-2013 08:50:57
Running from C:\Users\Zdenek\Desktop
Windows 7 Professional Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
(O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodtray.exe
() C:\Users\Zdenek\AppData\Local\TempImg\VerControl.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe
(RapidShare AG) C:\Program Files (x86)\RapidShare AG\RapidShare\RapidShare.exe
() C:\Windows\CmUCREye_x64.exe
(Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
(AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastUI.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Software602 a.s.) C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(CANON INC.) C:\Program Files\Canon\DIAS\CnxDIAS.exe
(Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
() C:\Program Files\NVIDIA Corporation\Performance Drivers\nvPDsvc.exe
(O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodag.exe
(Pandora.TV) C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
(qualitink) C:\Program Files (x86)\qualitink\updatequalitink.exe
(qualitink) C:\Program Files (x86)\qualitink\bin\utilqualitink.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(PandoraTV) C:\Program Files (x86)\PANDORA.TV\PanService\PanProcess.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(forum.viry.cz) C:\Users\Zdenek\Desktop\FRSTLauncher.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [nwiz] - C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [1712672 2009-07-09] ()
HKLM\...\Run: [Cmiboot] - C:\Windows\cmiboot.exe [65536 2007-02-07] ()
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM\...\Run: [OODefragTray] - C:\Program Files\OO Software\Defrag\oodtray.exe [3993416 2011-09-18] (O&O Software GmbH)
HKCU\...\Run: [VerControl] - C:\Users\Zdenek\AppData\Local\TempImg\VerControl.exe [339968 2010-10-04] ()
HKCU\...\Run: [] - [x]
HKCU\...\Run: [AdobeBridge] - [x]
HKCU\...\Run: [iCloudServices] - C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-09-14] (Apple Inc.)
HKCU\...\Run: [ApplePhotoStreams] - C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-09-15] (Apple Inc.)
HKCU\...\Run: [AppleIEDAV] - C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe [1315144 2013-09-04] (Apple Inc.)
HKCU\...\Run: [RapidShare] - C:\Program Files (x86)\RapidShare AG\RapidShare\RapidShare.exe [1209344 2013-09-10] (RapidShare AG)
HKCU\...\Run: [GarminExpressTrayApp] - C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1093976 2013-09-19] (Garmin Ltd or its subsidiaries)
MountPoints2: {11fd0610-c998-11e1-a059-0011091f3021} - N:\iStudio.exe
MountPoints2: {353699b9-1ae5-11e1-b9b0-0011091f3021} - O:\LaunchU3.exe
MountPoints2: {5b3531bb-bffb-11e0-902b-0011091f3021} - J:\unlock.exe autoplay=true
MountPoints2: {d6070f04-b37d-11e1-bbba-0011091f3021} - N:\Setup.exe
MountPoints2: {fd4e1a4b-1716-11e0-9c80-0011091f3021} - N:\LaunchU3.exe -a
HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [AdobeCS4ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ArcSoft Connection Service] - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-03-03] (Intel Corporation)
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrobat_sl.exe [37232 2008-06-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe [640376 2008-06-11] (Adobe Systems Inc.)
HKLM-x32\...\Run: [avast] - C:\Program Files\Alwil Software\Avast5\AvastUI.exe [3722416 2011-09-06] (AVAST Software)
HKLM-x32\...\Run: [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-10-23] (Apple Inc.)
SSODL: EldosMountNotificator-cbfs4-0 - {B6ACEC10-265F-4507-AA35-196F2B143502} - C:\Program Files (x86)\Common Files\CBFS\cbfsMntNtf4.dll (EldoS Corporation)
SSODL-x32: EldosMountNotificator-cbfs4-0 - {B6ACEC10-265F-4507-AA35-196F2B143502} - C:\Program Files (x86)\Common Files\CBFS\WOW64\cbfsMntNtf4.dll (EldoS Corporation)
BootExecute: autocheck autochk * OODBS

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
URLSearchHook: HKCU - Default Value = {CFBFAE00-17A6-11D0-99CB-00C04FD64497}
BHO: Torntv 2 - {11111111-1111-1111-1111-110311551178} - C:\Program Files (x86)\Torntv 2\Torntv 2-bho64.dll No File
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: qualitink - {73ad5d47-66e5-4127-80ca-c0eedabafbcc} - C:\Program Files (x86)\qualitink\qualitinkBHO.dll (qualitink)
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
DPF: HKLM-x32 {82E5DF24-51E8-47CD-864A-F4BD5005AA73} https://www.icloud.com/system/iCloud.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks-x32: DVDIdleShell Class - {93994DE8-8239-4655-B1D1-5F4E91300429} - C:\Program Files (x86)\DVD Region+CSS Free\DVDShell.dll [49152 2004-10-09] (Fengtao Software Inc.)
Hosts: 0.0.0.0 sams.nikonimaging.com
Tcpip\Parameters: [DhcpNameServer] 193.179.144.2 212.47.0.4

FireFox:
========
FF ProfilePath: C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\6sprd7ro.default
FF DefaultSearchEngine: Wikipedie (cs)
FF SelectedSearchEngine: Wikipedie (cs)
FF Homepage: hxxp://www.google.cz/
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @nokia.com/EnablerPlugin - C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
FF Plugin-x32: @software602.cz/602XML Filler - C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll (Software602 a.s.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\firmycz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\mall-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\mapycz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\zbocz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Garmin Communicator - C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\6sprd7ro.default\Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}
FF Extension: firefox - C:\Users\Zdenek\AppData\Roaming\Mozilla\Firefox\Profiles\6sprd7ro.default\Extensions\firefox@qualitink.net.xpi
FF Extension: Skype extension - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Seznam lištička - C:\Program Files (x86)\Mozilla Firefox\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}

Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\12.0.742.100\pdf.dll No File
CHR Plugin: (Google Gears 0.5.33.0) - C:\Program Files (x86)\Google\Chrome\Application\12.0.742.100\gears.dll No File
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\12.0.742.100\gcswf32.dll No File
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.2.183.23\npGoogleOneClick8.dll No File
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR HKLM-x32\...\Chrome\Extension: [ljkcijnbckdflhifmbnfnkjacokloacf] - C:\Program Files (x86)\qualitink\ljkcijnbckdflhifmbnfnkjacokloacf.crx

==================== Services (Whitelisted) =================

R2 602XML Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s.)
R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [44768 2011-09-06] (AVAST Software)
R2 Canon Driver Information Assist Service; C:\Program Files\Canon\DIAS\CnxDIAS.exe [5762408 2009-07-31] (CANON INC.)
R2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [250200 2013-09-19] (Garmin Ltd or its subsidiaries)
R2 NVIDIA Performance Driver Service; C:\Program Files\NVIDIA Corporation\Performance Drivers\nvPDsvc.exe [4901888 2009-05-14] ()
R2 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [3271496 2011-09-18] (O&O Software GmbH)
R2 PanService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [625304 2012-09-28] (Pandora.TV)
R2 Update qualitink; C:\Program Files (x86)\qualitink\updatequalitink.exe [65312 2013-10-05] (qualitink)
R2 Util qualitink; C:\Program Files (x86)\qualitink\bin\utilqualitink.exe [65312 2013-10-24] (qualitink)

==================== Drivers (Whitelisted) ====================

S3 61883; C:\Windows\System32\DRIVERS\61883.sys [60288 2009-07-14] (Microsoft Corporation)
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [24408 2011-09-06] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [65368 2011-09-06] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswRdr.sys [42328 2011-09-06] (AVAST Software)
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [601944 2011-09-06] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [301912 2011-09-06] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [58200 2011-09-06] (AVAST Software)
R1 cbfs4-0; C:\Program Files (x86)\Common Files\CBFS\cbfs4.sys [385728 2013-07-03] (EldoS Corporation)
S3 CMIUCR; C:\Windows\System32\DRIVERS\cmiucr_x64.SYS [160256 2007-01-15] (C-Media Corporation)
S3 EyeOneDisplay; C:\Windows\System32\Drivers\i1display_x64.sys [7808 2005-12-13] (GretagMacbeth LLC)
S2 PDIHWCTL; \??\C:\Windows\system32\drivers\pdihwctl.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-11-07 08:50 - 2013-11-07 08:50 - 00000000 ____D C:\FRST
2013-11-06 14:57 - 2013-11-06 14:58 - 00000000 ____D C:\AdwCleaner
2013-11-06 14:56 - 2013-11-06 14:56 - 01073262 _____ C:\Users\Zdenek\Desktop\adwcleaner.exe
2013-11-06 14:54 - 2013-11-06 14:54 - 00007915 _____ C:\Users\Zdenek\Desktop\JRT.txt
2013-11-06 14:42 - 2013-11-06 14:42 - 01034531 _____ (Thisisu) C:\Users\Zdenek\Desktop\JRT.exe
2013-11-06 11:16 - 2013-11-06 11:16 - 00000000 ____D C:\Program Files\trend micro
2013-11-06 11:15 - 2013-11-06 11:15 - 00935175 _____ C:\Users\Zdenek\Downloads\RSITx64.exe
2013-11-06 11:14 - 2013-11-06 11:16 - 00000000 ____D C:\rsit
2013-11-06 11:14 - 2013-11-06 11:14 - 00000000 ____D C:\Program Files (x86)\trend micro
2013-11-06 10:48 - 2013-11-01 10:53 - 00781383 _____ C:\Users\Zdenek\Desktop\RSIT.exe
2013-11-06 08:34 - 2013-11-06 14:55 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-06 07:53 - 2013-11-06 07:48 - 01957098 _____ (Farbar) C:\Users\Zdenek\Desktop\FRST64.exe
2013-11-06 07:52 - 2013-11-05 10:41 - 00112128 _____ (forum.viry.cz) C:\Users\Zdenek\Desktop\FRSTLauncher.exe
2013-11-06 07:48 - 2013-11-06 07:48 - 01957098 _____ (Farbar) C:\Users\Zdenek\Downloads\FRST64.exe
2013-11-05 10:41 - 2013-11-05 10:41 - 01089445 _____ (Farbar) C:\Users\Zdenek\Downloads\FRST.exe
2013-11-05 10:41 - 2013-11-05 10:41 - 00112128 _____ (forum.viry.cz) C:\Users\Zdenek\Downloads\FRSTLauncher.exe
2013-11-04 12:26 - 2013-11-04 12:29 - 05143677 _____ (Swearware) C:\Users\Zdenek\Downloads\ComboFix.exe
2013-11-01 10:53 - 2013-11-01 10:53 - 00781383 _____ C:\Users\Zdenek\Downloads\RSIT.exe
2013-10-29 08:04 - 2013-10-29 08:04 - 00001783 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-10-29 08:03 - 2013-10-29 08:04 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-29 08:03 - 2013-10-29 08:04 - 00000000 ____D C:\Program Files\iTunes
2013-10-29 08:03 - 2013-10-29 08:03 - 00000000 ____D C:\Program Files\iPod
2013-10-29 08:03 - 2013-10-29 08:03 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-10-25 08:15 - 2013-10-25 08:15 - 00070742 _____ C:\Users\Zdenek\Documents\priznani_DPH_5401_18a.xlsm
2013-10-25 08:14 - 2013-10-25 08:14 - 00010750 _____ C:\Users\Zdenek\Documents\pneucentrum 2013.xlsx
2013-10-25 08:10 - 2013-10-25 08:10 - 00066954 _____ C:\Users\Zdenek\Documents\priznani_DPH_5401_18a Teichman.xlsx
2013-10-24 10:52 - 2013-10-24 10:52 - 00001388 _____ C:\Users\Zdenek\Desktop\Eye-One Diagnostics.lnk
2013-10-24 10:51 - 2006-05-18 15:13 - 00047104 _____ (Thesycon GmbH, Germany) C:\Windows\system32\Drivers\EyeOneX64.sys
2013-10-24 10:51 - 2006-05-18 15:13 - 00007808 _____ (GretagMacbeth LLC) C:\Windows\system32\Drivers\SeqCal.sys
2013-10-24 10:30 - 2013-10-24 11:51 - 00000034 _____ C:\Windows\AutoRun.ini
2013-10-24 10:09 - 2013-10-24 10:10 - 23785848 _____ (GretagMacbeth ) C:\Users\Zdenek\Downloads\i1Match_3.6.2_Win7(1).exe
2013-10-24 08:57 - 2013-10-24 08:57 - 00001888 _____ C:\Users\Public\Desktop\Garmin Express.lnk
2013-10-23 12:38 - 2013-10-23 12:38 - 00000218 _____ C:\Users\Zdenek\.recently-used.xbel
2013-10-23 11:15 - 2013-10-23 11:15 - 00000000 ____D C:\Users\Zdenek\Documents\Mobogenie
2013-10-23 11:15 - 2013-10-23 11:15 - 00000000 ____D C:\Users\Zdenek\AppData\Local\Mobogenie
2013-10-23 11:15 - 2013-10-23 11:15 - 00000000 ____D C:\Users\Zdenek\AppData\Local\cache
2013-10-23 11:15 - 2013-10-23 11:15 - 00000000 _____ C:\Users\Zdenek\daemonprocess.txt
2013-10-23 11:14 - 2013-10-23 11:14 - 00723824 _____ C:\Users\Zdenek\Downloads\BitLordInstaller - Kolor Autopano Giga v3.0.8 [x86x64] Multilingual with Key - [MUMBAI].exe
2013-10-23 11:12 - 2013-10-23 11:12 - 00000000 ____D C:\Users\Zdenek\AppData\Roaming\RapidDrive
2013-10-23 11:12 - 2013-10-23 11:12 - 00000000 ____D C:\Users\Zdenek\AppData\Local\RapidShare_AG
2013-10-23 10:57 - 2013-10-23 10:57 - 00001161 _____ C:\Users\Public\Desktop\RapidShare.lnk
2013-10-23 10:57 - 2013-10-23 10:57 - 00000000 ____D C:\Program Files (x86)\RapidShare AG
2013-10-23 10:57 - 2013-07-03 11:23 - 00009064 _____ (EldoS Corporation) C:\Windows\system32\elevtmsg.dll
2013-10-23 10:55 - 2013-10-23 10:55 - 00298384 _____ C:\Users\Zdenek\Downloads\Kolor_Autopano_Giga_v3.0.exe
2013-10-23 10:55 - 2013-10-23 10:55 - 00298384 _____ C:\Users\Zdenek\Downloads\Kolor_Autopano_Giga_v3.0(1).exe
2013-10-23 10:52 - 2013-11-07 08:44 - 00001270 _____ C:\Windows\Tasks\Torntv 2-updater.job
2013-10-23 10:52 - 2013-11-07 08:44 - 00001072 _____ C:\Windows\Tasks\Torntv 2-enabler.job
2013-10-23 10:52 - 2013-11-06 15:34 - 00000000 ____D C:\Program Files (x86)\qualitink
2013-10-23 10:52 - 2013-10-23 10:52 - 00004300 _____ C:\Windows\System32\Tasks\Torntv 2-updater
2013-10-23 10:52 - 2013-10-23 10:52 - 00004102 _____ C:\Windows\System32\Tasks\Torntv 2-enabler
2013-10-23 10:51 - 2013-11-07 08:44 - 00001162 _____ C:\Windows\Tasks\Torntv 2-codedownloader.job
2013-10-23 10:51 - 2013-10-23 10:55 - 00000000 ____D C:\Users\Zdenek\Documents\Autopano Giga 3.0.5
2013-10-23 10:51 - 2013-10-23 10:51 - 00004192 _____ C:\Windows\System32\Tasks\Torntv 2-codedownloader
2013-10-23 10:50 - 2013-10-23 10:50 - 00298328 _____ C:\Users\Zdenek\Downloads\Autopano_Giga_3.0.exe
2013-10-23 10:46 - 2013-10-23 10:46 - 09428640 _____ (RapidShare AG) C:\Users\Zdenek\Downloads\RapidShareSetup.exe
2013-10-22 10:41 - 2013-10-22 10:41 - 03844296 _____ (Piriform Ltd) C:\Users\Zdenek\Downloads\rcsetup148.exe
2013-10-22 09:27 - 2013-10-22 09:36 - 00000000 ____D C:\Users\Zdenek\Desktop\100NIKON
2013-10-21 10:10 - 2013-10-21 10:11 - 54698656 _____ C:\Users\Zdenek\Downloads\AutopanoGiga_x64_308_2013-09-05.exe
2013-10-21 10:05 - 2013-10-21 10:05 - 00000000 ____D C:\Users\Zdenek\AppData\Local\Kolor
2013-10-21 10:04 - 2013-10-21 10:11 - 00001023 _____ C:\Users\Public\Desktop\Kolor Autopano Giga 3.0.lnk
2013-10-21 10:04 - 2013-10-21 10:04 - 00000000 ____D C:\Program Files\Kolor
2013-10-21 09:58 - 2013-10-21 09:58 - 00000000 ____D C:\Users\Zdenek\Documents\Kolor Autopano Giga 3.0.0 (8.12.2012) ™
2013-10-21 09:57 - 2013-10-21 09:57 - 01138397 _____ C:\Users\Zdenek\Downloads\7z922.exe
2013-10-21 09:54 - 2013-10-21 09:54 - 00801865 _____ C:\Users\Zdenek\Downloads\S7Z-0.7.1-1.win32.exe
2013-10-21 09:54 - 2013-10-21 09:54 - 00000000 ____D C:\Program Files\Archiving
2013-10-21 09:54 - 2013-10-21 09:54 - 00000000 ____D C:\Output
2013-10-21 09:54 - 2013-10-21 09:54 - 00000000 ____D C:\Lists
2013-10-21 09:51 - 2013-10-21 09:52 - 94209348 _____ C:\Users\Zdenek\Downloads\Kolor-Autopano-Giga-3.0.0--(8.12.2012)-™.7z
2013-10-16 15:59 - 2013-10-16 15:59 - 00000000 ____D C:\Program Files (x86)\X-Rite
2013-10-16 15:59 - 2007-02-08 12:48 - 00051600 _____ (Thesycon GmbH, Germany) C:\Windows\system32\Drivers\i1iO2_x64.sys
2013-10-16 15:59 - 2007-02-08 12:48 - 00051600 _____ (Thesycon GmbH, Germany) C:\Windows\system32\Drivers\i1_x64.sys
2013-10-16 15:59 - 2005-12-13 23:53 - 00007808 _____ (GretagMacbeth LLC) C:\Windows\system32\Drivers\i1display_x64.sys
2013-10-16 15:57 - 2013-10-16 15:57 - 00000000 ____D C:\Program Files (x86)\GretagMacbeth
2013-10-16 15:56 - 2013-10-16 15:55 - 23785848 _____ (GretagMacbeth ) C:\Users\Zdenek\Downloads\i1Match_3.6.2_Win7.exe
2013-10-15 11:48 - 2013-10-15 12:15 - 296916390 _____ C:\Users\Zdenek\Downloads\2-10_1.RAR
2013-10-15 11:48 - 2013-10-15 12:10 - 297939267 _____ C:\Users\Zdenek\Downloads\2-10_2.RAR
2013-10-15 11:48 - 2013-10-15 12:03 - 185548116 _____ C:\Users\Zdenek\Downloads\2-10_3.RAR
2013-10-15 11:37 - 2013-10-15 11:42 - 159122600 _____ C:\Users\Zdenek\Downloads\žut a Tijan part 1.rar
2013-10-15 11:36 - 2013-10-15 11:42 - 193954266 _____ C:\Users\Zdenek\Downloads\žut a Tijan part2.rar
2013-10-15 09:09 - 2013-10-15 09:10 - 00000000 ____D C:\Users\Zdenek\Desktop\eifel
2013-10-15 08:10 - 2013-10-16 07:58 - 00000000 ____D C:\Users\Zdenek\Desktop\atelier
2013-10-10 15:23 - 2013-09-23 00:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-10 15:23 - 2013-09-23 00:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-10-10 15:23 - 2013-09-23 00:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-10 15:23 - 2013-09-23 00:27 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-10 15:23 - 2013-09-23 00:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-10 15:23 - 2013-09-22 23:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-10-10 15:23 - 2013-09-22 23:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-10 15:23 - 2013-09-22 23:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-10 15:23 - 2013-09-22 23:54 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-10-10 15:23 - 2013-09-22 23:54 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-10-10 15:23 - 2013-09-22 23:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-10-10 15:23 - 2013-09-21 04:38 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-10 15:23 - 2013-09-21 04:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-10 15:23 - 2013-09-21 03:48 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-10 15:23 - 2013-09-21 03:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-10 15:22 - 2013-09-23 00:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-10 15:22 - 2013-09-23 00:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-10 15:22 - 2013-09-23 00:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-10 15:22 - 2013-09-23 00:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-10 15:22 - 2013-09-23 00:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-10 15:22 - 2013-09-23 00:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-10 15:22 - 2013-09-23 00:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-10 15:22 - 2013-09-23 00:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-10 15:22 - 2013-09-22 23:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-10 15:22 - 2013-09-22 23:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-10 15:22 - 2013-09-22 23:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-10 15:22 - 2013-09-22 23:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-10 15:22 - 2013-09-22 23:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-10 15:22 - 2013-09-22 23:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-10 15:22 - 2013-09-22 23:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-10 15:22 - 2013-09-22 23:54 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-10 13:08 - 2013-09-14 02:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-10-10 13:08 - 2013-09-08 03:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-10-10 13:08 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2013-10-10 13:08 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-10-10 13:08 - 2013-08-29 03:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-10-10 13:08 - 2013-08-29 03:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-10-10 13:08 - 2013-08-29 03:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2013-10-10 13:08 - 2013-08-29 03:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-10-10 13:08 - 2013-08-29 03:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2013-10-10 13:08 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-10-10 13:08 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-10-10 13:08 - 2013-08-29 02:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-10-10 13:08 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-10-10 13:08 - 2013-08-29 02:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-10-10 13:08 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-10-10 13:08 - 2013-08-29 02:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys
2013-10-10 13:08 - 2013-08-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-10-10 13:08 - 2013-08-29 01:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-10-10 13:08 - 2013-08-29 01:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-10-10 13:08 - 2013-08-29 01:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-10-10 13:08 - 2013-08-28 02:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-10 13:08 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2013-10-10 13:08 - 2013-08-01 13:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-10 13:08 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 13:08 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 13:08 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2013-10-10 13:08 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2013-10-10 13:08 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-10 13:08 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2013-10-10 13:08 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2013-10-10 13:08 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2013-10-10 13:08 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-10 13:08 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2013-10-10 13:08 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2013-10-10 13:08 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-10 13:08 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-10 13:08 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2013-10-10 13:08 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2013-10-10 13:08 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2013-10-10 13:08 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-10 13:08 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-10-10 13:08 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-10-10 13:08 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-10-10 13:08 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-10 13:08 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-10 13:08 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-08 10:02 - 2013-10-08 10:05 - 93891963 _____ C:\Users\Zdenek\Downloads\Nová složka.zip
2013-10-08 08:52 - 2013-10-08 08:52 - 00007605 _____ C:\Users\Zdenek\AppData\Local\Resmon.ResmonCfg

==================== One Month Modified Files and Folders =======

2013-11-07 08:51 - 2010-12-29 15:16 - 01389922 _____ C:\Windows\WindowsUpdate.log
2013-11-07 08:50 - 2013-11-07 08:50 - 00000000 ____D C:\FRST
2013-11-07 08:49 - 2010-12-30 14:33 - 00000000 ____D C:\Program Files\Zoner
2013-11-07 08:44 - 2013-10-23 10:52 - 00001270 _____ C:\Windows\Tasks\Torntv 2-updater.job
2013-11-07 08:44 - 2013-10-23 10:52 - 00001072 _____ C:\Windows\Tasks\Torntv 2-enabler.job
2013-11-07 08:44 - 2013-10-23 10:51 - 00001162 _____ C:\Windows\Tasks\Torntv 2-codedownloader.job
2013-11-07 08:44 - 2010-12-29 15:39 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-11-07 08:44 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-07 08:41 - 2011-01-28 08:31 - 00387821 _____ C:\Windows\setupact.log
2013-11-07 08:41 - 2010-12-30 14:57 - 00933461 _____ C:\Windows\system32\oodbs.lor
2013-11-06 16:04 - 2013-09-24 19:53 - 00000000 ____D C:\Users\Zdenek\AppData\Local\5956911B-3C33-4403-BD0D-684F4B4453A9.aplzod
2013-11-06 15:34 - 2013-10-23 10:52 - 00000000 ____D C:\Program Files (x86)\qualitink
2013-11-06 15:15 - 2012-12-21 13:46 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-11-06 15:12 - 2013-02-17 20:44 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-11-06 15:11 - 2009-07-14 05:45 - 00014848 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-06 15:11 - 2009-07-14 05:45 - 00014848 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-06 15:09 - 2009-07-14 16:18 - 00672136 _____ C:\Windows\system32\perfh005.dat
2013-11-06 15:09 - 2009-07-14 16:18 - 00142732 _____ C:\Windows\system32\perfc005.dat
2013-11-06 15:09 - 2009-07-14 06:13 - 01593150 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-06 14:59 - 2012-05-03 16:26 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-06 14:59 - 2011-01-31 11:43 - 00145402 _____ C:\Windows\PFRO.log
2013-11-06 14:58 - 2013-11-06 14:57 - 00000000 ____D C:\AdwCleaner
2013-11-06 14:56 - 2013-11-06 14:56 - 01073262 _____ C:\Users\Zdenek\Desktop\adwcleaner.exe
2013-11-06 14:55 - 2013-11-06 08:34 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-06 14:54 - 2013-11-06 14:54 - 00007915 _____ C:\Users\Zdenek\Desktop\JRT.txt
2013-11-06 14:42 - 2013-11-06 14:42 - 01034531 _____ (Thisisu) C:\Users\Zdenek\Desktop\JRT.exe
2013-11-06 11:16 - 2013-11-06 11:16 - 00000000 ____D C:\Program Files\trend micro
2013-11-06 11:16 - 2013-11-06 11:14 - 00000000 ____D C:\rsit
2013-11-06 11:15 - 2013-11-06 11:15 - 00935175 _____ C:\Users\Zdenek\Downloads\RSITx64.exe
2013-11-06 11:14 - 2013-11-06 11:14 - 00000000 ____D C:\Program Files (x86)\trend micro
2013-11-06 07:48 - 2013-11-06 07:53 - 01957098 _____ (Farbar) C:\Users\Zdenek\Desktop\FRST64.exe
2013-11-06 07:48 - 2013-11-06 07:48 - 01957098 _____ (Farbar) C:\Users\Zdenek\Downloads\FRST64.exe
2013-11-05 14:37 - 2011-01-14 15:53 - 00000000 ____D C:\Users\Zdenek\AppData\Local\Apple Computer
2013-11-05 10:41 - 2013-11-06 07:52 - 00112128 _____ (forum.viry.cz) C:\Users\Zdenek\Desktop\FRSTLauncher.exe
2013-11-05 10:41 - 2013-11-05 10:41 - 01089445 _____ (Farbar) C:\Users\Zdenek\Downloads\FRST.exe
2013-11-05 10:41 - 2013-11-05 10:41 - 00112128 _____ (forum.viry.cz) C:\Users\Zdenek\Downloads\FRSTLauncher.exe
2013-11-04 12:29 - 2013-11-04 12:26 - 05143677 _____ (Swearware) C:\Users\Zdenek\Downloads\ComboFix.exe
2013-11-01 10:53 - 2013-11-06 10:48 - 00781383 _____ C:\Users\Zdenek\Desktop\RSIT.exe
2013-11-01 10:53 - 2013-11-01 10:53 - 00781383 _____ C:\Users\Zdenek\Downloads\RSIT.exe
2013-11-01 09:46 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-10-29 11:34 - 2011-02-10 14:22 - 00053248 _____ C:\Users\Zdenek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-10-29 08:04 - 2013-10-29 08:04 - 00001783 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-10-29 08:04 - 2013-10-29 08:03 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-10-29 08:04 - 2013-10-29 08:03 - 00000000 ____D C:\Program Files\iTunes
2013-10-29 08:03 - 2013-10-29 08:03 - 00000000 ____D C:\Program Files\iPod
2013-10-29 08:03 - 2013-10-29 08:03 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-10-25 15:14 - 2012-05-02 11:41 - 00000000 ____D C:\Users\Zdenek\AppData\Local\CrashDumps
2013-10-25 08:15 - 2013-10-25 08:15 - 00070742 _____ C:\Users\Zdenek\Documents\priznani_DPH_5401_18a.xlsm
2013-10-25 08:14 - 2013-10-25 08:14 - 00010750 _____ C:\Users\Zdenek\Documents\pneucentrum 2013.xlsx
2013-10-25 08:10 - 2013-10-25 08:10 - 00066954 _____ C:\Users\Zdenek\Documents\priznani_DPH_5401_18a Teichman.xlsx
2013-10-25 07:43 - 2011-10-14 09:57 - 00000000 ____D C:\Users\Zdenek\Desktop\kalendář
2013-10-24 14:58 - 2011-05-23 07:24 - 01567864 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-10-24 11:51 - 2013-10-24 10:30 - 00000034 _____ C:\Windows\AutoRun.ini
2013-10-24 10:52 - 2013-10-24 10:52 - 00001388 _____ C:\Users\Zdenek\Desktop\Eye-One Diagnostics.lnk
2013-10-24 10:10 - 2013-10-24 10:09 - 23785848 _____ (GretagMacbeth ) C:\Users\Zdenek\Downloads\i1Match_3.6.2_Win7(1).exe
2013-10-24 08:58 - 2013-05-10 08:55 - 00000000 ____D C:\ProgramData\Package Cache
2013-10-24 08:57 - 2013-10-24 08:57 - 00001888 _____ C:\Users\Public\Desktop\Garmin Express.lnk
2013-10-24 08:57 - 2012-03-08 10:20 - 00000000 ____D C:\ProgramData\Garmin
2013-10-24 08:57 - 2011-07-02 07:01 - 00000000 ____D C:\Program Files (x86)\Garmin
2013-10-23 12:38 - 2013-10-23 12:38 - 00000218 _____ C:\Users\Zdenek\.recently-used.xbel
2013-10-23 12:38 - 2010-12-29 15:16 - 00000000 ____D C:\Users\Zdenek
2013-10-23 12:36 - 2011-06-03 08:04 - 00059732 _____ C:\Windows\DPINST.LOG
2013-10-23 11:31 - 2010-12-30 11:11 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-10-23 11:31 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system
2013-10-23 11:21 - 2012-05-16 19:00 - 00000000 ____D C:\Program Files (x86)\imaxel
2013-10-23 11:20 - 2012-03-30 09:53 - 00000000 ____D C:\Program Files (x86)\Fotolab
2013-10-23 11:15 - 2013-10-23 11:15 - 00000000 ____D C:\Users\Zdenek\Documents\Mobogenie
2013-10-23 11:15 - 2013-10-23 11:15 - 00000000 ____D C:\Users\Zdenek\AppData\Local\Mobogenie
2013-10-23 11:15 - 2013-10-23 11:15 - 00000000 ____D C:\Users\Zdenek\AppData\Local\cache
2013-10-23 11:15 - 2013-10-23 11:15 - 00000000 _____ C:\Users\Zdenek\daemonprocess.txt
2013-10-23 11:14 - 2013-10-23 11:14 - 00723824 _____ C:\Users\Zdenek\Downloads\BitLordInstaller - Kolor Autopano Giga v3.0.8 [x86x64] Multilingual with Key - [MUMBAI].exe
2013-10-23 11:12 - 2013-10-23 11:12 - 00000000 ____D C:\Users\Zdenek\AppData\Roaming\RapidDrive
2013-10-23 11:12 - 2013-10-23 11:12 - 00000000 ____D C:\Users\Zdenek\AppData\Local\RapidShare_AG
2013-10-23 10:57 - 2013-10-23 10:57 - 00001161 _____ C:\Users\Public\Desktop\RapidShare.lnk
2013-10-23 10:57 - 2013-10-23 10:57 - 00000000 ____D C:\Program Files (x86)\RapidShare AG
2013-10-23 10:55 - 2013-10-23 10:55 - 00298384 _____ C:\Users\Zdenek\Downloads\Kolor_Autopano_Giga_v3.0.exe
2013-10-23 10:55 - 2013-10-23 10:55 - 00298384 _____ C:\Users\Zdenek\Downloads\Kolor_Autopano_Giga_v3.0(1).exe
2013-10-23 10:55 - 2013-10-23 10:51 - 00000000 ____D C:\Users\Zdenek\Documents\Autopano Giga 3.0.5
2013-10-23 10:52 - 2013-10-23 10:52 - 00004300 _____ C:\Windows\System32\Tasks\Torntv 2-updater
2013-10-23 10:52 - 2013-10-23 10:52 - 00004102 _____ C:\Windows\System32\Tasks\Torntv 2-enabler
2013-10-23 10:51 - 2013-10-23 10:51 - 00004192 _____ C:\Windows\System32\Tasks\Torntv 2-codedownloader
2013-10-23 10:50 - 2013-10-23 10:50 - 00298328 _____ C:\Users\Zdenek\Downloads\Autopano_Giga_3.0.exe
2013-10-23 10:46 - 2013-10-23 10:46 - 09428640 _____ (RapidShare AG) C:\Users\Zdenek\Downloads\RapidShareSetup.exe
2013-10-22 10:42 - 2010-12-30 14:02 - 00000000 ____D C:\Program Files\Recuva
2013-10-22 10:41 - 2013-10-22 10:41 - 03844296 _____ (Piriform Ltd) C:\Users\Zdenek\Downloads\rcsetup148.exe
2013-10-22 10:41 - 2010-12-30 14:02 - 00001658 _____ C:\Users\Public\Desktop\Recuva.lnk
2013-10-22 09:36 - 2013-10-22 09:27 - 00000000 ____D C:\Users\Zdenek\Desktop\100NIKON
2013-10-22 09:05 - 2013-01-29 14:07 - 00000000 ____D C:\Program Files (x86)\The KMPlayer
2013-10-21 13:13 - 2011-03-08 09:14 - 00000000 ____D C:\Users\Zdenek\AppData\Roaming\Skype
2013-10-21 10:11 - 2013-10-21 10:10 - 54698656 _____ C:\Users\Zdenek\Downloads\AutopanoGiga_x64_308_2013-09-05.exe
2013-10-21 10:11 - 2013-10-21 10:04 - 00001023 _____ C:\Users\Public\Desktop\Kolor Autopano Giga 3.0.lnk
2013-10-21 10:05 - 2013-10-21 10:05 - 00000000 ____D C:\Users\Zdenek\AppData\Local\Kolor
2013-10-21 10:05 - 2010-12-29 15:32 - 00000000 ____D C:\Users\Zdenek\AppData\Roaming\Adobe
2013-10-21 10:04 - 2013-10-21 10:04 - 00000000 ____D C:\Program Files\Kolor
2013-10-21 09:58 - 2013-10-21 09:58 - 00000000 ____D C:\Users\Zdenek\Documents\Kolor Autopano Giga 3.0.0 (8.12.2012) ™
2013-10-21 09:57 - 2013-10-21 09:57 - 01138397 _____ C:\Users\Zdenek\Downloads\7z922.exe
2013-10-21 09:54 - 2013-10-21 09:54 - 00801865 _____ C:\Users\Zdenek\Downloads\S7Z-0.7.1-1.win32.exe
2013-10-21 09:54 - 2013-10-21 09:54 - 00000000 ____D C:\Program Files\Archiving
2013-10-21 09:54 - 2013-10-21 09:54 - 00000000 ____D C:\Output
2013-10-21 09:54 - 2013-10-21 09:54 - 00000000 ____D C:\Lists
2013-10-21 09:52 - 2013-10-21 09:51 - 94209348 _____ C:\Users\Zdenek\Downloads\Kolor-Autopano-Giga-3.0.0--(8.12.2012)-™.7z
2013-10-21 08:34 - 2010-12-29 15:40 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-10-17 15:14 - 2011-01-19 08:25 - 00000000 ____D C:\Users\Zdenek\Documents\DVD Architect Pro 5.2 Projects
2013-10-16 15:59 - 2013-10-16 15:59 - 00000000 ____D C:\Program Files (x86)\X-Rite
2013-10-16 15:57 - 2013-10-16 15:57 - 00000000 ____D C:\Program Files (x86)\GretagMacbeth
2013-10-16 15:55 - 2013-10-16 15:56 - 23785848 _____ (GretagMacbeth ) C:\Users\Zdenek\Downloads\i1Match_3.6.2_Win7.exe
2013-10-16 13:07 - 2013-02-17 20:44 - 00003948 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-16 13:07 - 2010-12-29 15:39 - 00003696 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-16 07:58 - 2013-10-15 08:10 - 00000000 ____D C:\Users\Zdenek\Desktop\atelier
2013-10-15 12:15 - 2013-10-15 11:48 - 296916390 _____ C:\Users\Zdenek\Downloads\2-10_1.RAR
2013-10-15 12:10 - 2013-10-15 11:48 - 297939267 _____ C:\Users\Zdenek\Downloads\2-10_2.RAR
2013-10-15 12:03 - 2013-10-15 11:48 - 185548116 _____ C:\Users\Zdenek\Downloads\2-10_3.RAR
2013-10-15 11:42 - 2013-10-15 11:37 - 159122600 _____ C:\Users\Zdenek\Downloads\žut a Tijan part 1.rar
2013-10-15 11:42 - 2013-10-15 11:36 - 193954266 _____ C:\Users\Zdenek\Downloads\žut a Tijan part2.rar
2013-10-15 09:10 - 2013-10-15 09:09 - 00000000 ____D C:\Users\Zdenek\Desktop\eifel
2013-10-11 09:03 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2013-10-11 07:53 - 2009-07-14 05:45 - 08683128 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-11 07:43 - 2013-03-14 03:02 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-10 15:24 - 2010-12-29 15:31 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-10 15:21 - 2013-03-14 03:02 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-09 15:16 - 2012-12-21 13:46 - 00003852 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-10-09 15:16 - 2012-04-12 07:32 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-09 15:16 - 2011-05-17 06:44 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-08 10:05 - 2013-10-08 10:02 - 93891963 _____ C:\Users\Zdenek\Downloads\Nová složka.zip
2013-10-08 10:02 - 2010-12-29 16:45 - 00000000 ____D C:\Users\Zdenek\AppData\Local\Mozilla
2013-10-08 08:52 - 2013-10-08 08:52 - 00007605 _____ C:\Users\Zdenek\AppData\Local\Resmon.ResmonCfg

Files to move or delete:
====================
C:\ProgramData\PKP_DLbx.DAT


Some content of TEMP:
====================
C:\Users\Zdenek\AppData\Local\Temp\3ddgtwrl.dll
C:\Users\Zdenek\AppData\Local\Temp\8.3.20.1-EasyShrx.Dll
C:\Users\Zdenek\AppData\Local\Temp\AskSLib.dll
C:\Users\Zdenek\AppData\Local\Temp\bassmod.dll
C:\Users\Zdenek\AppData\Local\Temp\faktk4rx.dll
C:\Users\Zdenek\AppData\Local\Temp\haspdinst_x64.exe
C:\Users\Zdenek\AppData\Local\Temp\jre-6u37-windows-i586-iftw.exe
C:\Users\Zdenek\AppData\Local\Temp\KMP_3.6.0.87.exe
C:\Users\Zdenek\AppData\Local\Temp\NEventMessages.dll
C:\Users\Zdenek\AppData\Local\Temp\NOSEventMessages.dll
C:\Users\Zdenek\AppData\Local\Temp\PIPInstaller_PTV_.exe
C:\Users\Zdenek\AppData\Local\Temp\Quarantine.exe
C:\Users\Zdenek\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Zdenek\AppData\Local\Temp\tmp83AD.exe
C:\Users\Zdenek\AppData\Local\Temp\vcredist_x64_VS2008SP1.exe
C:\Users\Zdenek\AppData\Local\Temp\VistaLib64_1.dll


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-10-31 10:05




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:465.66 GB) (Free:4.65 GB) NTFS
Drive d: () (Fixed) (Total:181.29 GB) (Free:30.14 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (prac) (Fixed) (Total:465.76 GB) (Free:8.9 GB) NTFS
Drive f: (zaloha) (Fixed) (Total:465.76 GB) (Free:15.38 GB) NTFS
Drive g: (pracovni) (Fixed) (Total:274.46 GB) (Free:9.38 GB) NTFS
Drive h: (HP_RECOVERY) (Fixed) (Total:10 GB) (Free:7.02 GB) NTFS
Drive k: (NIKON D300) (Removable) (Total:1.91 GB) (Free:0.53 GB) FAT
Drive r: (RapidShare) (Removable) (Total:9.31 GB) (Free:9.31 GB) NTFS

Available physical RAM: 1752.24 MB
Total physical RAM: 4079.34 MB
Percentage of memory in use: 57%

==================== MBR and Partition Table ==================

Disk: 0 (Size: 466 GB) (Disk ID: 5BE85BE8)
Partition 1: (Active) - (Size=181 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=274 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=10 GB) - (Type=07 NTFS)
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: FC136D06)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS)
Disk: 2 (MBR Code: Windows XP) (Size: 466 GB) (Disk ID: D6C0782F)
Partition 1: (Not Active) - (Size=466 GB) - (Type=07 NTFS)
Disk: 3 (MBR Code: Windows 7 or Vista) (Size: 466 GB) (Disk ID: DADFA8AD)
Partition 1: (Not Active) - (Size=466 GB) - (Type=07 NTFS)
Disk: 4 (Size: 2 GB) (Disk ID: 00000000)
Partition 1: (Active) - (Size=2 GB) - (Type=06)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Torntv 2-codedownloader.job => C:\Program Files (x86)\Torntv 2\Torntv 2-codedownloader.exe
Task: C:\Windows\Tasks\Torntv 2-enabler.job => C:\Program Files (x86)\Torntv 2\Torntv 2-enabler.exe
Task: C:\Windows\Tasks\Torntv 2-updater.job => C:\Program Files (x86)\Torntv 2\Torntv 2-updater.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Enabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C}
AS: avast! Antivirus (Enabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 28_09_2013 (06)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Zdenek\Desktop" je 295556 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Re: prosím o kontrolu logu z RSIT

Napsal: 07 lis 2013 09:19
od vyosek
:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM\...\Run: [Cmiboot] - C:\Windows\cmiboot.exe [65536 2007-02-07] ()
    HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
    HKLM\...\Run: [OODefragTray] - C:\Program Files\OO Software\Defrag\oodtray.exe [3993416 2011-09-18] (O&O Software GmbH)
    HKCU\...\Run: [VerControl] - C:\Users\Zdenek\AppData\Local\TempImg\VerControl.exe [339968 2010-10-04] ()
    HKCU\...\Run: [] - [x]
    HKCU\...\Run: [AdobeBridge] - [x]
    MountPoints2: {11fd0610-c998-11e1-a059-0011091f3021} - N:\iStudio.exe
    MountPoints2: {353699b9-1ae5-11e1-b9b0-0011091f3021} - O:\LaunchU3.exe
    MountPoints2: {5b3531bb-bffb-11e0-902b-0011091f3021} - J:\unlock.exe autoplay=true
    MountPoints2: {d6070f04-b37d-11e1-bbba-0011091f3021} - N:\Setup.exe
    MountPoints2: {fd4e1a4b-1716-11e0-9c80-0011091f3021} - N:\LaunchU3.exe -a
    HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
    HKLM-x32\...\Run: [AdobeCS4ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrobat_sl.exe [37232 2008-06-12] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [] - [x]
    HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe [640376 2008-06-11] (Adobe Systems Inc.)
    HKLM-x32\...\Run: [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [AdobeCS5ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-10-23] (Apple Inc.)
    
    URLSearchHook: HKCU - Default Value = {CFBFAE00-17A6-11D0-99CB-00C04FD64497}
    BHO: Torntv 2 - {11111111-1111-1111-1111-110311551178} - C:\Program Files (x86)\Torntv 2\Torntv 2-bho64.dll No File
    BHO-x32: qualitink - {73ad5d47-66e5-4127-80ca-c0eedabafbcc} - C:\Program Files (x86)\qualitink\qualitinkBHO.dll (qualitink)
    Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
    Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
    
    FF Plugin: @microsoft.com/GENUINE - disabled No File
    FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
    
    CHR HKLM-x32\...\Chrome\Extension: [ljkcijnbckdflhifmbnfnkjacokloacf] - C:\Program Files (x86)\qualitink\ljkcijnbckdflhifmbnfnkjacokloacf.crx
    
    R2 PanService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [625304 2012-09-28] (Pandora.TV)
    R2 Update qualitink; C:\Program Files (x86)\qualitink\updatequalitink.exe [65312 2013-10-05] (qualitink)
    R2 Util qualitink; C:\Program Files (x86)\qualitink\bin\utilqualitink.exe [65312 2013-10-24] (qualitink)
    S2 PDIHWCTL; \??\C:\Windows\system32\drivers\pdihwctl.sys [x]
    
    2013-10-23 10:52 - 2013-11-07 08:44 - 00001270 _____ C:\Windows\Tasks\Torntv 2-updater.job
    2013-10-23 10:52 - 2013-11-07 08:44 - 00001072 _____ C:\Windows\Tasks\Torntv 2-enabler.job
    2013-10-23 10:52 - 2013-11-06 15:34 - 00000000 ____D C:\Program Files (x86)\qualitink
    2013-10-23 10:52 - 2013-10-23 10:52 - 00004300 _____ C:\Windows\System32\Tasks\Torntv 2-updater
    2013-10-23 10:52 - 2013-10-23 10:52 - 00004102 _____ C:\Windows\System32\Tasks\Torntv 2-enabler
    2013-10-23 10:51 - 2013-11-07 08:44 - 00001162 _____ C:\Windows\Tasks\Torntv 2-codedownloader.job
    2013-10-23 10:51 - 2013-10-23 10:51 - 00004192 _____ C:\Windows\System32\Tasks\Torntv 2-codedownloader
    C:\ProgramData\PKP_DLbx.DAT
    C:\Users\Zdenek\AppData\Local\Temp\3ddgtwrl.dll
    C:\Users\Zdenek\AppData\Local\Temp\8.3.20.1-EasyShrx.Dll
    C:\Users\Zdenek\AppData\Local\Temp\AskSLib.dll
    C:\Users\Zdenek\AppData\Local\Temp\bassmod.dll
    C:\Users\Zdenek\AppData\Local\Temp\faktk4rx.dll
    C:\Users\Zdenek\AppData\Local\Temp\haspdinst_x64.exe
    C:\Users\Zdenek\AppData\Local\Temp\jre-6u37-windows-i586-iftw.exe
    C:\Users\Zdenek\AppData\Local\Temp\KMP_3.6.0.87.exe
    C:\Users\Zdenek\AppData\Local\Temp\NEventMessages.dll
    C:\Users\Zdenek\AppData\Local\Temp\NOSEventMessages.dll
    C:\Users\Zdenek\AppData\Local\Temp\PIPInstaller_PTV_.exe
    C:\Users\Zdenek\AppData\Local\Temp\Quarantine.exe
    C:\Users\Zdenek\AppData\Local\Temp\SkypeSetup.exe
    C:\Users\Zdenek\AppData\Local\Temp\tmp83AD.exe
    C:\Users\Zdenek\AppData\Local\Temp\vcredist_x64_VS2008SP1.exe
    C:\Users\Zdenek\AppData\Local\Temp\VistaLib64_1.dll
    
    Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\Torntv 2-codedownloader.job => C:\Program Files (x86)\Torntv 2\Torntv 2-codedownloader.exe
    Task: C:\Windows\Tasks\Torntv 2-enabler.job => C:\Program Files (x86)\Torntv 2\Torntv 2-enabler.exe
    Task: C:\Windows\Tasks\Torntv 2-updater.job => C:\Program Files (x86)\Torntv 2\Torntv 2-updater.exe
    
    C:\Program Files (x86)\PANDORA.TV
    C:\Program Files (x86)\Torntv 2
    C:\Program Files (x86)\qualitink
    
    Hosts:
    
    End
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt

Re: prosím o kontrolu logu z RSIT

Napsal: 07 lis 2013 09:35
od Dennis
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 31-10-2013
Ran by Zdenek at 2013-11-07 09:22:54 Run:1
Running from C:\Users\Zdenek\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [Cmiboot] - C:\Windows\cmiboot.exe [65536 2007-02-07] ()
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM\...\Run: [OODefragTray] - C:\Program Files\OO Software\Defrag\oodtray.exe [3993416 2011-09-18] (O&O Software GmbH)
HKCU\...\Run: [VerControl] - C:\Users\Zdenek\AppData\Local\TempImg\VerControl.exe [339968 2010-10-04] ()
HKCU\...\Run: [] - [x]
HKCU\...\Run: [AdobeBridge] - [x]
MountPoints2: {11fd0610-c998-11e1-a059-0011091f3021} - N:\iStudio.exe
MountPoints2: {353699b9-1ae5-11e1-b9b0-0011091f3021} - O:\LaunchU3.exe
MountPoints2: {5b3531bb-bffb-11e0-902b-0011091f3021} - J:\unlock.exe autoplay=true
MountPoints2: {d6070f04-b37d-11e1-bbba-0011091f3021} - N:\Setup.exe
MountPoints2: {fd4e1a4b-1716-11e0-9c80-0011091f3021} - N:\LaunchU3.exe -a
HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [AdobeCS4ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrobat_sl.exe [37232 2008-06-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe [640376 2008-06-11] (Adobe Systems Inc.)
HKLM-x32\...\Run: [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-10-23] (Apple Inc.)

URLSearchHook: HKCU - Default Value = {CFBFAE00-17A6-11D0-99CB-00C04FD64497}
BHO: Torntv 2 - {11111111-1111-1111-1111-110311551178} - C:\Program Files (x86)\Torntv 2\Torntv 2-bho64.dll No File
BHO-x32: qualitink - {73ad5d47-66e5-4127-80ca-c0eedabafbcc} - C:\Program Files (x86)\qualitink\qualitinkBHO.dll (qualitink)
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File

FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File

CHR HKLM-x32\...\Chrome\Extension: [ljkcijnbckdflhifmbnfnkjacokloacf] - C:\Program Files (x86)\qualitink\ljkcijnbckdflhifmbnfnkjacokloacf.crx

R2 PanService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [625304 2012-09-28] (Pandora.TV)
R2 Update qualitink; C:\Program Files (x86)\qualitink\updatequalitink.exe [65312 2013-10-05] (qualitink)
R2 Util qualitink; C:\Program Files (x86)\qualitink\bin\utilqualitink.exe [65312 2013-10-24] (qualitink)
S2 PDIHWCTL; \??\C:\Windows\system32\drivers\pdihwctl.sys [x]

2013-10-23 10:52 - 2013-11-07 08:44 - 00001270 _____ C:\Windows\Tasks\Torntv 2-updater.job
2013-10-23 10:52 - 2013-11-07 08:44 - 00001072 _____ C:\Windows\Tasks\Torntv 2-enabler.job
2013-10-23 10:52 - 2013-11-06 15:34 - 00000000 ____D C:\Program Files (x86)\qualitink
2013-10-23 10:52 - 2013-10-23 10:52 - 00004300 _____ C:\Windows\System32\Tasks\Torntv 2-updater
2013-10-23 10:52 - 2013-10-23 10:52 - 00004102 _____ C:\Windows\System32\Tasks\Torntv 2-enabler
2013-10-23 10:51 - 2013-11-07 08:44 - 00001162 _____ C:\Windows\Tasks\Torntv 2-codedownloader.job
2013-10-23 10:51 - 2013-10-23 10:51 - 00004192 _____ C:\Windows\System32\Tasks\Torntv 2-codedownloader
C:\ProgramData\PKP_DLbx.DAT
C:\Users\Zdenek\AppData\Local\Temp\3ddgtwrl.dll
C:\Users\Zdenek\AppData\Local\Temp\8.3.20.1-EasyShrx.Dll
C:\Users\Zdenek\AppData\Local\Temp\AskSLib.dll
C:\Users\Zdenek\AppData\Local\Temp\bassmod.dll
C:\Users\Zdenek\AppData\Local\Temp\faktk4rx.dll
C:\Users\Zdenek\AppData\Local\Temp\haspdinst_x64.exe
C:\Users\Zdenek\AppData\Local\Temp\jre-6u37-windows-i586-iftw.exe
C:\Users\Zdenek\AppData\Local\Temp\KMP_3.6.0.87.exe
C:\Users\Zdenek\AppData\Local\Temp\NEventMessages.dll
C:\Users\Zdenek\AppData\Local\Temp\NOSEventMessages.dll
C:\Users\Zdenek\AppData\Local\Temp\PIPInstaller_PTV_.exe
C:\Users\Zdenek\AppData\Local\Temp\Quarantine.exe
C:\Users\Zdenek\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Zdenek\AppData\Local\Temp\tmp83AD.exe
C:\Users\Zdenek\AppData\Local\Temp\vcredist_x64_VS2008SP1.exe
C:\Users\Zdenek\AppData\Local\Temp\VistaLib64_1.dll

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Torntv 2-codedownloader.job => C:\Program Files (x86)\Torntv 2\Torntv 2-codedownloader.exe
Task: C:\Windows\Tasks\Torntv 2-enabler.job => C:\Program Files (x86)\Torntv 2\Torntv 2-enabler.exe
Task: C:\Windows\Tasks\Torntv 2-updater.job => C:\Program Files (x86)\Torntv 2\Torntv 2-updater.exe

C:\Program Files (x86)\PANDORA.TV
C:\Program Files (x86)\Torntv 2
C:\Program Files (x86)\qualitink

Hosts:

End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Cmiboot => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\OODefragTray => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\VerControl => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => Value deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{11fd0610-c998-11e1-a059-0011091f3021} => Key deleted successfully.
HKCR\CLSID\{11fd0610-c998-11e1-a059-0011091f3021} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{353699b9-1ae5-11e1-b9b0-0011091f3021} => Key deleted successfully.
HKCR\CLSID\{353699b9-1ae5-11e1-b9b0-0011091f3021} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5b3531bb-bffb-11e0-902b-0011091f3021} => Key deleted successfully.
HKCR\CLSID\{5b3531bb-bffb-11e0-902b-0011091f3021} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d6070f04-b37d-11e1-bbba-0011091f3021} => Key deleted successfully.
HKCR\CLSID\{d6070f04-b37d-11e1-bbba-0011091f3021} => Key not found.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{fd4e1a4b-1716-11e0-9c80-0011091f3021} => Key deleted successfully.
HKCR\CLSID\{fd4e1a4b-1716-11e0-9c80-0011091f3021} => Key not found.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\GrooveMonitor => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS4ServiceManager => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Acrobat Speed Launcher => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Acrobat Assistant 8.0 => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS5ServiceManager => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\ => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551178} => Key deleted successfully.
HKCR\CLSID\{11111111-1111-1111-1111-110311551178} => Key deleted successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73ad5d47-66e5-4127-80ca-c0eedabafbcc} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{73ad5d47-66e5-4127-80ca-c0eedabafbcc} => Key deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => Value deleted successfully.
HKCR\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => Key not found.
HKCR\PROTOCOLS\Handler\skype-ie-addon-data => Key deleted successfully.
HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8} => Key not found.
HKLM\Software\MozillaPlugins\FF Plugin: @microsoft.com/GENUINE - disabled No File => Key not found.
"FF Plugin: @microsoft.com/GENUINE - disabled No File" => not found.
HKLM\Software\Wow6432Node\MozillaPlugins\FF Plugin-x32: @microsoft.com/GENUINE - disabled No File => Key not found.
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ljkcijnbckdflhifmbnfnkjacokloacf => Key deleted successfully.
C:\Program Files (x86)\qualitink\ljkcijnbckdflhifmbnfnkjacokloacf.crx => Moved successfully.
PanService => Service deleted successfully.
Update qualitink => Service deleted successfully.
Util qualitink => Service deleted successfully.
PDIHWCTL => Service deleted successfully.
C:\Windows\Tasks\Torntv 2-updater.job => Moved successfully.
C:\Windows\Tasks\Torntv 2-enabler.job => Moved successfully.
C:\Program Files (x86)\qualitink => Moved successfully.
C:\Windows\System32\Tasks\Torntv 2-updater => Moved successfully.
C:\Windows\System32\Tasks\Torntv 2-enabler => Moved successfully.
C:\Windows\Tasks\Torntv 2-codedownloader.job => Moved successfully.
C:\Windows\System32\Tasks\Torntv 2-codedownloader => Moved successfully.
C:\ProgramData\PKP_DLbx.DAT => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\3ddgtwrl.dll => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\8.3.20.1-EasyShrx.Dll => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\AskSLib.dll => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\bassmod.dll => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\faktk4rx.dll => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\haspdinst_x64.exe => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\jre-6u37-windows-i586-iftw.exe => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\KMP_3.6.0.87.exe => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\NEventMessages.dll => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\NOSEventMessages.dll => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\PIPInstaller_PTV_.exe => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\SkypeSetup.exe => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\tmp83AD.exe => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\vcredist_x64_VS2008SP1.exe => Moved successfully.
C:\Users\Zdenek\AppData\Local\Temp\VistaLib64_1.dll => Moved successfully.
C:\Windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\Torntv 2-codedownloader.job not found.
C:\Windows\Tasks\Torntv 2-enabler.job not found.
C:\Windows\Tasks\Torntv 2-updater.job not found.
C:\Program Files (x86)\PANDORA.TV => Moved successfully.
"C:\Program Files (x86)\Torntv 2" => File/Directory not found.
"C:\Program Files (x86)\qualitink" => File/Directory not found.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.


The system needs a manual reboot.

==== End of Fixlog ====

Re: prosím o kontrolu logu z RSIT

Napsal: 07 lis 2013 09:49
od vyosek
:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: Doporucuji provest defragmentaci disku
  • Nejjednodussi (ale nejmene ucinny) zpusob je pomoci utility ve windowsech
    • Kliknete na Tento pocitac, dale na disk kliknete pravym tlacitkem, vyberte Vlastnosti
    • prepnete se do zalozky Nastroje
    • Nyni vidite pomucky Defragmentace - spustte ji kliknutim na Defragmentovat
    • Toto provedte se vsemi disky
  • Dalsi moznosti (a mnou doporucenou) je pres programek Defraggler http://www.stahuj.centrum.cz/utility_a_ ... efraggler/
    • Program stahnete, nainstalujte (dejte fajfku pryc u yahoo toolbaru) a spustte
    • Kliknete na Analyzovat
    • Pokud je ve sloupci Fragmentováno vice jak 5%, doporucuji provest defragmentaci (klik na Defragmentovat)
    • Postup provedte se vsemi disky
  • Posledni moznost je pres jednoduchy programek JKDefrag http://www.stahuj.centrum.cz/utility_a_ ... /jkdefrag/
    • Vyhodou programku je, ze se neinstaluje
    • Staci tedy jen stahnout dle verze vaseho OS a rozbalit
    • Nasledne spustit pomoci souboru JKDefrag pripadne JKDefrag64
    • Probehne analyza disku a nasledne i defragmentace
:arrow: Napiste, jak se chova PC

Re: prosím o kontrolu logu z RSIT

Napsal: 07 lis 2013 17:01
od Dennis
počítač ze znatelně rychlejší

děkuji mnohokrát

Re: prosím o kontrolu logu z RSIT

Napsal: 07 lis 2013 17:09
od vyosek
Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek

A na zaklade Pravidla o zamykani temat :lock: