Stránka 1 z 1

Problém s flash diskem - zástupci

Napsal: 24 lis 2013 14:23
od Fire-man
Zdravím Vás, po dlouhé době bych opět potřeboval poradit.
Přítelkyni se na flashce udělali zástupci ze souborů a složek. Na jiném PC se po rozkliku soubory zobrazí ale v novém okně.

Ve vlastnostech složky je cíl tento:
C:\WINDOWS\system32\cmd.exe /c start iTunesHelper.vbe&start explorer Povodně" "2013&exit

Díky za rady.

Re: Problém s flash diskem - zástupci

Napsal: 24 lis 2013 16:40
od Fire-man
Děkuji velice vše proběhlo v pořádku! Mám podezření že má zavšivený i PC asi ho přeinstaluju, nebo se mám pokusit dělat nějaký logy z HiJackThis? Díky za pomoc.

LOG:
############################## | UsbFix V 7.134 | [Deletion]

User: Kristýna (Administrator) # KRISTYNA-PC
Updated 06/09/2013 by El Desaparecido
Started at 16:23:04 | 24/11/2013

Website: http://www.sosvirus.net/
Upload Malware: http://www.sosvirus.net/upload_malware.php
Contact: eldesaparecido@sosvirus.net

PC: LENOVO (20079 ) (x64-based PC)
CPU: Intel(R) Celeron(R) CPU B800 @ 1.50GHz (1500)
RAM -> [Total : 4040 | Free : 2274]
BIOS: InsydeH2O Version 03.60.4240CN31WW(V2.17)
BOOT: Normal boot

OS: Microsoft Windows 7 Home Premium (6.1.7601 64-Bit) # Service Pack 1
WB: Windows Internet Explorer 10.0.9200.16736

SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: avast! Antivirus [(!) Disabled | Updated]
FW: Windows FireWall Service [Enabled]

C:\ (%systemdrive%) -> Fixed drive # 422 Gb (352 Mb free - 83%) [] # NTFS
D:\ -> Fixed drive # 29 Gb (26 Mb free - 91%) [LENOVO] # NTFS
F:\ -> CD-ROM
G:\ -> Removable drive # 15 Gb (8 Mb free - 53%) [KRISTYNA] # NTFS

################## | El Desaparecido Section |

HKLM\SOFTWARE | Run : [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
HKLM\SOFTWARE | Run : [332BigDog] - C:\Program Files (x86)\USB Camera2\VM332_STI.EXE
HKLM\SOFTWARE | Run : [UpdateP2GShortCut] - "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
HKLM\SOFTWARE | Run : [VeriFaceManager] - C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
HKLM\SOFTWARE | Run : [UpdatePRCShortCut] - "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
HKLM\SOFTWARE | Run : [vspdfprsrv.exe] - C:\Program Files (x86)\Visagesoft\eXPert PDF 8\vspdfprsrv.exe --background
HKLM\SOFTWARE | Run : [avast] - "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
HKLM\SOFTWARE | Run : [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKLM\SOFTWARE | Run : [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKLM\SOFTWARE | Run : [20131121] - C:\Program Files\AVAST Software\Avast\setup\emupdate\6bbbda31-adf1-4a24-bbc7-64933f4cca34.exe /check
HKLM\SOFTWARE\wow6432Node | Run : [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
HKLM\SOFTWARE\wow6432Node | Run : [332BigDog] - C:\Program Files (x86)\USB Camera2\VM332_STI.EXE
HKLM\SOFTWARE\wow6432Node | Run : [UpdateP2GShortCut] - "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
HKLM\SOFTWARE\wow6432Node | Run : [VeriFaceManager] - C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
HKLM\SOFTWARE\wow6432Node | Run : [UpdatePRCShortCut] - "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
HKLM\SOFTWARE\wow6432Node | Run : [vspdfprsrv.exe] - C:\Program Files (x86)\Visagesoft\eXPert PDF 8\vspdfprsrv.exe --background
HKLM\SOFTWARE\wow6432Node | Run : [avast] - "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
HKLM\SOFTWARE\wow6432Node | Run : [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKLM\SOFTWARE\wow6432Node | Run : [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKLM\SOFTWARE\wow6432Node | Run : [20131121] - C:\Program Files\AVAST Software\Avast\setup\emupdate\6bbbda31-adf1-4a24-bbc7-64933f4cca34.exe /check
HKLM\SOFTWARE | RunOnce : [] -
HKLM\SOFTWARE\wow6432Node | RunOnce : [] -
HKU\S-1-5-19\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-20\SOFTWARE | Run : [Sidebar] - %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
HKU\S-1-5-21-1665224874-587437680-1338892239-1000\SOFTWARE | Run : [QIP Internet Guardian] - C:\Users\Kristýna\AppData\Roaming\QipGuard\QipGuard.exe /p
HKU\S-1-5-21-1665224874-587437680-1338892239-1000\SOFTWARE | Run : [Power2GoExpress] - "C:\Program Files (x86)\Lenovo\Power2Go\Power2GoExpress.exe" /Startup
HKU\S-1-5-21-1665224874-587437680-1338892239-1000\SOFTWARE | Run : [Seznam Postak] - "C:\Program Files (x86)\Seznam.cz\bin\postak.exe" -s
HKU\S-1-5-21-1665224874-587437680-1338892239-1000\SOFTWARE | Run : [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
HKU\S-1-5-19\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe
HKU\S-1-5-20\SOFTWARE | RunOnce : [mctadmin] - C:\Windows\System32\mctadmin.exe

################## | Stopped processes |

Stopped! C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe (832)
Stopped! C:\Program Files\AVAST Software\Avast\AvastSvc.exe (1284)
Stopped! C:\windows\System32\spoolsv.exe (1472)
Stopped! C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE (1676)
Stopped! C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (1716)
Stopped! C:\windows\system32\taskhost.exe (1740)
Stopped! C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe (1812)
Stopped! C:\Program Files\IMPI\ExtensionUpdaterService.exe (1872)
Stopped! C:\Program Files (x86)\QipGuard\QipGuard.exe (1664)
Stopped! C:\Program Files\Web Assistant\ExtensionUpdaterService.exe (2128)
Stopped! C:\Windows\System32\igfxtray.exe (2992)
Stopped! C:\Windows\System32\hkcmd.exe (3012)
Stopped! C:\Windows\System32\igfxpers.exe (3020)
Stopped! C:\windows\system32\SearchIndexer.exe (2028)
Stopped! C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (1412)
Stopped! C:\Program Files\Windows Media Player\wmpnetwk.exe (3176)
Stopped! C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe (3336)
Stopped! C:\Program Files (x86)\Lenovo\Energy Management\utility.exe (3432)
Stopped! C:\Users\Kristýna\AppData\Roaming\QipGuard\QipGuard.exe (3508)
Stopped! C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (3632)
Stopped! C:\Program Files (x86)\USB Camera2\VM332_STI.EXE (4044)
Stopped! C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (2656)
Stopped! C:\Program Files (x86)\Visagesoft\eXPert PDF 8\vspdfprsrv.exe (2232)
Stopped! C:\Program Files\AVAST Software\Avast\AvastUI.exe (3244)
Stopped! C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (3228)
Stopped! C:\windows\system32\DllHost.exe (3544)
Stopped! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (4932)
Stopped! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (4148)
Stopped! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (4228)
Stopped! C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (4172)
Stopped! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (5388)
Stopped! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3272)
Stopped! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3960)
Stopped! C:\windows\system32\wuauclt.exe (2108)
Stopped! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3916)
Stopped! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (7584)
Stopped! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (8036)
Stopped! C:\Program Files (x86)\Skype\Phone\Skype.exe (6708)
Stopped! C:\windows\System32\WUDFHost.exe (4516)
Stopped! \\?\C:\windows\system32\wbem\WMIADAP.EXE (6628)

################## | Files # Infected Folders |

Deleted ! C:\Users\Kristýna\AppData\Roaming\SUPERAntiSpyware.com
Deleted ! C:\ProgramData\SUPERAntiSpyware.com
Deleted ! G:\102769801-a.lnk
Deleted ! G:\11912_411030418995890_1239702172_n.lnk
Deleted ! G:\13911-12.lnk
Deleted ! G:\200px-Scchtrba_L_V.lnk
Deleted ! G:\220px-B.lnk
Deleted ! G:\220px-Die_Gartenlaube_(1858)_b_560.lnk
Deleted ! G:\220px-Franz_Bopp.lnk
Deleted ! G:\319007716.lnk
Deleted ! G:\499px-August_Schleicher_1869_Kriehuber.lnk
Deleted ! G:\antoine_meillet.lnk
Deleted ! G:\AVT_Roman-Jakobson_8024.lnk
Deleted ! G:\B12996008T12996013.lnk
Deleted ! G:\BdeC1.lnk
Deleted ! G:\Buškův hamr zredukovaná verze.lnk
Deleted ! G:\Buškův _hamr_Průvodní slovo_vše.lnk
Deleted ! G:\Chorvatsko zbytek dodelat.lnk
Deleted ! G:\dalajlama-smysl-zivota.lnk
Deleted ! G:\Ferdinand_de_Saussure.lnk
Deleted ! G:\FF-9189-version1-auk_77_havranek2_00227_small.lnk
Deleted ! G:\fortunatov.lnk
Deleted ! G:\Fotky z foťáku.lnk
Deleted ! G:\Georg_Wenker_Georg_Wenker_(1852-1911)_(Alter_Fritz).lnk
Deleted ! G:\getImage.lnk
Deleted ! G:\humboldt.lnk
Deleted ! G:\IFORUM-12982-version1-big4.lnk
Deleted ! G:\já 20.lnk
Deleted ! G:\latka-z-prednasek.lnk
Deleted ! G:\Pedagogika - maturitní otázky.lnk
Deleted ! G:\Povodně 2013.lnk
Deleted ! G:\Prezentace1.lnk
Deleted ! G:\Rasmus_Rask2.lnk
Deleted ! G:\Revival-(2013).lnk
Deleted ! G:\sanskrt.lnk
Deleted ! G:\schuchardt_hugo_400px.lnk
Deleted ! G:\Smysl života.lnk
Deleted ! G:\Trnka.lnk
Deleted ! G:\Trubeckoj-II.lnk
Deleted ! G:\Vossler_GG.lnk
Deleted ! G:\VŠ 2.lnk
Deleted ! G:\iTunesHelper.vbe

(!) Temporary files deleted.

################## | Registry |

Deleted ! HKCU\Software\Microsoft\Windows\CurrentVersion\Run|SUPERAntiSpyware

################## | Mountpoints2 |

Deleted ! HKCU\.\.\.\.\Explorer\MountPoints2\{1442bbba-74f4-11e2-b93b-6427378b7fbd}

################## | Listing |

[06/11/2012 - 15:30:49 | SHD ] C:\$Recycle.Bin
[31/03/2013 - 09:55:58 | D ] C:\32788R22FWJFW
[23/03/2013 - 18:15:08 | N | 0] C:\asc_rdflag
[24/11/2013 - 10:33:24 | D ] C:\Config.Msi
[14/07/2009 - 06:08:56 | SHD ] C:\Documents and Settings
[29/05/2013 - 17:38:07 | N | 9] C:\END
[24/11/2013 - 16:07:10 | N | 2970278] C:\FaceProv.log
[23/11/2013 - 09:15:02 | ASH | 3177074688] C:\hiberfil.sys
[13/04/2012 - 21:35:20 | D ] C:\Intel
[06/10/2013 - 09:51:09 | D ] C:\Kristýna
[23/11/2013 - 09:15:08 | ASH | 4236099584] C:\pagefile.sys
[14/07/2009 - 04:20:08 | D ] C:\PerfLogs
[20/08/2013 - 17:29:29 | D ] C:\Peugeot
[24/11/2013 - 10:33:24 | D ] C:\Program Files
[13/11/2013 - 17:10:24 | D ] C:\Program Files (x86)
[24/11/2013 - 16:26:46 | HD ] C:\ProgramData
[16/07/2012 - 20:06:50 | SHD ] C:\Recovery
[05/01/2013 - 14:05:06 | D ] C:\Ross-Tech
[24/11/2013 - 16:20:16 | SHD ] C:\System Volume Information
[24/11/2013 - 16:26:48 | D ] C:\UsbFix
[24/11/2013 - 16:27:08 | A | 10615] C:\UsbFix [Clean 1] KRISTYNA-PC.txt
[13/09/2012 - 18:52:25 | N | 772] C:\user.js
[13/04/2012 - 21:56:19 | D ] C:\UserGuidePDF
[16/07/2012 - 20:09:04 | D ] C:\Users
[21/11/2013 - 15:41:32 | D ] C:\Windows
[16/07/2012 - 20:12:18 | SHD ] D:\$RECYCLE.BIN
[13/04/2012 - 22:12:48 | D ] D:\Application
[13/04/2012 - 22:15:35 | D ] D:\drivers
[18/07/2012 - 07:24:53 | D ] D:\Lenovo
[13/04/2012 - 21:18:09 | SHD ] D:\System Volume Information
[01/06/2013 - 19:02:33 | D ] D:\Záloha
[01/01/1995 - 01:00:00 | R | 44] F:\Track01.cda
[01/01/1995 - 01:00:00 | R | 44] F:\Track02.cda
[01/01/1995 - 01:00:00 | R | 44] F:\Track03.cda
[01/01/1995 - 01:00:00 | R | 44] F:\Track04.cda
[01/01/1995 - 01:00:00 | R | 44] F:\Track05.cda
[01/01/1995 - 01:00:00 | R | 44] F:\Track06.cda
[01/01/1995 - 01:00:00 | R | 44] F:\Track07.cda
[01/01/1995 - 01:00:00 | R | 44] F:\Track08.cda
[24/11/2013 - 13:03:23 | N | 101] G:\.~lock.Prezentace+Všichni+hrajeme+divadlo..ppt#
[20/11/2013 - 17:35:35 | N | 43467] G:\102769801-a.jpg
[20/11/2013 - 17:31:39 | N | 77867] G:\11912_411030418995890_1239702172_n.jpg
[17/11/2013 - 14:35:24 | N | 25309] G:\13911-12.jpg
[17/11/2013 - 14:47:11 | N | 6072] G:\200px-Scchtrba_L_V.jpg
[17/11/2013 - 14:42:10 | N | 13849] G:\220px-B.Croce.jpg
[10/11/2013 - 11:29:01 | N | 18645] G:\220px-Die_Gartenlaube_(1858)_b_560.jpg
[10/11/2013 - 11:27:05 | N | 20322] G:\220px-Franz_Bopp.JPG
[17/11/2013 - 15:05:10 | N | 22459] G:\319007716.501.jpg
[10/11/2013 - 11:35:50 | N | 74741] G:\499px-August_Schleicher_1869_Kriehuber.jpg
[17/11/2013 - 14:38:58 | N | 37978] G:\antoine_meillet.jpg
[17/11/2013 - 14:53:46 | N | 33026] G:\AVT_Roman-Jakobson_8024.jpeg
[17/11/2013 - 14:43:34 | N | 9824] G:\B12996008T12996013.jpg
[17/11/2013 - 14:45:57 | N | 44655] G:\BdeC1.jpg
[11/04/2013 - 18:07:55 | N | 58880] G:\Buškův hamr zredukovaná verze.doc
[11/04/2013 - 17:15:33 | N | 79872] G:\Buškův _hamr_Průvodní slovo_vše.1doc.doc
[13/10/2013 - 14:01:55 | D ] G:\Chorvatsko zbytek dodelat
[02/04/2013 - 19:20:47 | N | 48513] G:\dalajlama-smysl-zivota.jpg
[17/11/2013 - 14:49:15 | N | 29946] G:\Ferdinand_de_Saussure.jpg
[17/11/2013 - 14:58:33 | N | 13046] G:\FF-9189-version1-auk_77_havranek2_00227_small.jpg
[17/11/2013 - 14:47:57 | N | 16244] G:\fortunatov.jpg
[13/09/2013 - 09:50:15 | D ] G:\Fotky z foťáku
[17/11/2013 - 14:36:57 | N | 7235] G:\Georg_Wenker_Georg_Wenker_(1852-1911)_(Alter_Fritz).jpg
[17/11/2013 - 15:03:07 | N | 8723] G:\getImage.jsp.jpeg
[10/11/2013 - 11:02:21 | N | 156118] G:\humboldt.JPG
[17/11/2013 - 14:51:26 | N | 434066] G:\IFORUM-12982-version1-big4.jpg
[18/01/2013 - 17:22:58 | D ] G:\já 20
[03/12/2012 - 20:57:30 | N | 597504] G:\latka-z-prednasek.doc
[04/12/2012 - 08:05:03 | D ] G:\Pedagogika - maturitní otázky
[02/06/2013 - 08:14:32 | D ] G:\Povodně 2013
[24/11/2013 - 10:36:13 | N | 500736] G:\Prezentace+Všichni+hrajeme+divadlo. (1).ppt
[24/11/2013 - 13:03:24 | N | 494080] G:\Prezentace+Všichni+hrajeme+divadlo..ppt
[24/11/2013 - 13:41:29 | N | 2457600] G:\Prezentace+Všichni+hrajeme+divadlo_2.ppt
[24/11/2013 - 13:42:07 | N | 1174448] G:\Prezentace+Všichni+hrajeme+divadlo_2.pptx
[10/11/2013 - 11:51:53 | N | 596930] G:\Prezentace1.pptx
[10/11/2013 - 11:25:55 | N | 91167] G:\Rasmus_Rask2.jpg
[14/11/2013 - 23:03:14 | N | 1765115904] G:\Revival-(2013).avi
[10/11/2013 - 11:04:37 | N | 16695] G:\sanskrt.gif
[10/11/2013 - 12:55:59 | N | 41051] G:\schuchardt_hugo_400px.jpg
[02/04/2013 - 19:46:21 | N | 135692] G:\Smysl života.pptx
[17/11/2013 - 15:00:35 | N | 20548] G:\Trnka.jpg
[17/11/2013 - 14:55:17 | N | 26910] G:\Trubeckoj-II.jpg
[17/11/2013 - 14:40:17 | N | 9339] G:\Vossler_GG.jpg
[10/11/2013 - 09:54:08 | D ] G:\VŠ 2

################## | Vaccin |

C:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
G:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)

################## | E.O.F | http://www.sosvirus.net |

Re: Problém s flash diskem - zástupci

Napsal: 29 lis 2013 12:08
od Fire-man
Děkuji!!!

FRST:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-11-2013
Ran by Kristýna (administrator) on KRISTYNA-PC on 29-11-2013 12:02:23
Running from C:\Users\Kristýna\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
() C:\Program Files\IMPI\ExtensionUpdaterService.exe
(QIP.ru) C:\Program Files (x86)\QipGuard\QipGuard.exe
() C:\Program Files\Web Assistant\ExtensionUpdaterService.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(QIP.ru) C:\Users\Kristýna\AppData\Roaming\QipGuard\QipGuard.exe
() C:\Program Files (x86)\Seznam.cz\bin\postak.exe
(Vimicro) C:\Program Files (x86)\USB Camera2\VM332_STI.EXE
(Visagesoft) C:\Program Files (x86)\Visagesoft\eXPert PDF 8\vspdfprsrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Kristýna\Desktop\FRSTLauncher.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [HotKeysCmds] - C:\windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2741544 2011-04-08] (Synaptics Incorporated)
HKLM\...\Run: [Lenovo EE Boot Optimizer] - C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [114688 2012-04-13] (Lenovo)
HKLM\...\Run: [Energy Management] - C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [9753024 2012-04-13] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] - C:\Program Files (x86)\Lenovo\Energy Management\utility.exe [5908928 2012-04-13] (Lenovo(beijing) Limited)
HKLM-x32\...\Winlogon: [Userinit] C:\windows\SysWOW64\Userinit.exe, [x]
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [QIP Internet Guardian] - C:\Users\Kristýna\AppData\Roaming\QipGuard\QipGuard.exe [191440 2012-03-23] (QIP.ru)
HKCU\...\Run: [Power2GoExpress] - C:\Program Files (x86)\Lenovo\Power2Go\Power2GoExpress.exe [2532648 2011-01-03] (Cyberlink)
HKCU\...\Run: [Seznam Postak] - C:\Program Files (x86)\Seznam.cz\bin\postak.exe [491040 2012-01-10] ()
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2011-02-18] (Intel Corporation)
HKLM-x32\...\Run: [332BigDog] - C:\Program Files (x86)\USB Camera2\VM332_STI.EXE [536576 2010-01-19] (Vimicro)
HKLM-x32\...\Run: [UpdateP2GShortCut] - C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2010-07-26] (CyberLink Corp.)
HKLM-x32\...\Run: [VeriFaceManager] - C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [329056 2012-04-13] (Lenovo)
HKLM-x32\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [222504 2009-05-13] (CyberLink Corp.)
HKLM-x32\...\Run: [vspdfprsrv.exe] - C:\Program Files (x86)\Visagesoft\eXPert PDF 8\vspdfprsrv.exe [3611136 2012-12-05] (Visagesoft)
HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [4767304 2013-03-07] (AVAST Software)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [20131121] - C:\Program Files\AVAST Software\Avast\Setup\emupdate\6bbbda31-adf1-4a24-bbc7-64933f4cca34.exe [180184 2013-11-23] (AVAST Software)
AppInit_DLLs: [ ] ()
Startup: C:\Users\Kristýna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (No File)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://search.icq.com/search/results.ph ... &ch_id=osd
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://search.babylon.com/?affID=120606 ... 6D575FDC96
HKCU\Software\Microsoft\Internet Explorer\Main,Default_search_url = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Secondary Start Pages =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm
URLSearchHook: HKLM-x32 - (No Name) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - No File
URLSearchHook: HKCU - (No Name) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - No File
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM-x32 - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?sr ... earchTerms}
SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
SearchScopes: HKCU - ${searchCLSID} URL = http://search.live.com/results.aspx?q={ ... rer:source?}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.delta-search.com/?q={searchT ... 6D575FDC96
SearchScopes: HKCU - {349118AA-BBBB-4165-92CE-16851E393023} URL = http://websearch.ask.com/redirect?clien ... 9E30BA7D27
SearchScopes: HKCU - {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = http://search.icq.com/search/results.ph ... &ch_id=osd
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKCU - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} URL = http://search.qip.ru/search?query={searchTerms}&from=IE
SearchScopes: HKCU - {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = http://mystart.incredibar.com/mb174/?se ... 7PPXz&i=26
SearchScopes: HKCU - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?sr ... 27378B7FBD}
BHO: IMPI - {17E113E6-CD0E-4045-B154-65F0E57959EF} - C:\Program Files\IMPI\Extension64.dll ()
BHO: avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Web Assistant - {336D0C35-8A85-403a-B9D2-65C292C39087} - C:\Program Files\Web Assistant\Extension64.dll ()
BHO: No Name - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - No File
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: No Name - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - No File
BHO-x32: IMPI - {17E113E6-CD0E-4045-B154-65F0E57959EF} - C:\Program Files\IMPI\Extension32.dll ()
BHO-x32: Web Assistant - {336D0C35-8A85-403a-B9D2-65C292C39087} - C:\Program Files\Web Assistant\Extension32.dll ()
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: QIPBHO Class - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Kristýna\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files (x86)\Seznam.cz\bin\core.4.dll ()
Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - No Name - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - No File
Toolbar: HKLM-x32 - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKLM-x32 - Nástroje Lištičky - {1EA00BE1-6E54-4E2A-8099-680300BF23E1} - C:\Program Files (x86)\Seznam.cz\toolbar\toolbar.dll ()
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks: - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - No File [ ]
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 10.10.10.1

FireFox:
========
FF ProfilePath: C:\Users\Kristýna\AppData\Roaming\Mozilla\Firefox\Profiles\9evmlu3n.default
FF user.js: detected! => C:\Users\Kristýna\AppData\Roaming\Mozilla\Firefox\Profiles\9evmlu3n.default\user.js
FF NewTab: hxxp://www.delta-search.com/?affID=120606&tt=g ... 6D575FDC96
FF DefaultSearchEngine: BS Player ControlBar Customized Web Search
FF SearchEngineOrder.1: Delta Search
FF SelectedSearchEngine: BS Player ControlBar Customized Web Search
FF Homepage: hxxp://search.conduit.com/?ctid=CT1750559&CUI=UN10664337011499541&UM=1&SearchSource=13&sspv=TB_CFS
FF Keyword.URL: hxxp://search.conduit.com/ResultsExt.aspx?SSPV=&ctid=CT1750559&SearchSource=2&CUI=UN10664337011499541&UM=1&q=
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_11_9_900_152.dll ()
FF Plugin: @microsoft.com/GENUINE - C:\windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL No File
FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - C:\windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Kristýna\AppData\Roaming\Mozilla\Firefox\Profiles\9evmlu3n.default\searchplugins\askcom.xml
FF SearchPlugin: C:\Users\Kristýna\AppData\Roaming\Mozilla\Firefox\Profiles\9evmlu3n.default\searchplugins\babylon.xml
FF SearchPlugin: C:\Users\Kristýna\AppData\Roaming\Mozilla\Firefox\Profiles\9evmlu3n.default\searchplugins\bs-player-controlbar-customized-web-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: BS Player ControlBar - C:\Users\Kristýna\AppData\Roaming\Mozilla\Firefox\Profiles\9evmlu3n.default\Extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
FF HKLM\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\Web Assistant\Firefox
FF Extension: Web Assistant - C:\Program Files\Web Assistant\Firefox
FF HKLM\...\Firefox\Extensions: [{17E113E6-CD0E-4045-B154-65F0E57959EF}] - C:\Program Files\IMPI\Firefox
FF Extension: No Name - C:\Program Files\IMPI\Firefox
FF HKLM\...\Firefox\Extensions: [{8E9E3331-D360-4f87-8803-52DE43566502}] - C:\Program Files\Web Assistant\Firefox
FF Extension: Web Assistant - C:\Program Files\Web Assistant\Firefox
FF HKLM-x32\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\Web Assistant\Firefox
FF Extension: Web Assistant - C:\Program Files\Web Assistant\Firefox
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! WebRep - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [{17E113E6-CD0E-4045-B154-65F0E57959EF}] - C:\Program Files\IMPI\Firefox
FF Extension: No Name - C:\Program Files\IMPI\Firefox
FF HKLM-x32\...\Firefox\Extensions: [{8E9E3331-D360-4f87-8803-52DE43566502}] - C:\Program Files\Web Assistant\Firefox
FF Extension: Web Assistant - C:\Program Files\Web Assistant\Firefox

Chrome:
=======
CHR RestoreOnStartup: "hxxp://www.delta-search.com/?affID=120606&tt=g ... 6D575FDC96"
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\pdf.dll ()
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Picasa) - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 7 U17) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Shockwave Flash) - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.170.2) - C:\windows\SysWOW64\npDeployJava1.dll No File
CHR Plugin: (Windows Activation Technologies) - C:\windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll No File
CHR Extension: (Docs) - C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0
CHR Extension: (Google Drive) - C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0
CHR Extension: (YouTube) - C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0
CHR Extension: (Google Search) - C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0
CHR Extension: (Web Assistant) - C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd\2.0.0.100_0
CHR Extension: (avast! WebRep) - C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\8.0.1483_0
CHR Extension: (Yulia Brodskaya) - C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlgdloilieclkegafohackmhffbmdpko\2_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0
CHR Extension: (Gmail) - C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR HKLM\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\Web Assistant\source.crx
CHR HKLM-x32\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\Web Assistant\source.crx
CHR HKLM-x32\...\Chrome\Extension: [icmlaeflemplmjndnaapfdbbnpncnbda] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx
CHR HKLM-x32\...\Chrome\Extension: [jcdgjdiieiljkfkdcloehkohchhpekkn] - C:\Users\Kristýna\AppData\Local\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetFB.crx
CHR HKLM-x32\...\Chrome\Extension: [kiplfnciaokpcennlkldkdaeaaomamof] - C:\Users\Kristýna\AppData\Local\Torch\Plugins\TorchPlugin.crx
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [140672 2012-07-11] (SUPERAntiSpyware.com)
R2 AdvancedSystemCareService6; C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [465216 2013-01-15] (IObit)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [45248 2013-03-07] (AVAST Software)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [953632 2010-12-14] (Broadcom Corporation.)
R2 IMPI Updater; C:\Program Files\IMPI\ExtensionUpdaterService.exe [185856 2013-02-05] ()
R2 QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [191440 2012-03-23] (QIP.ru)
R2 Web Assistant; C:\Program Files\Web Assistant\ExtensionUpdaterService.exe [188760 2013-06-30] ()

==================== Drivers (Whitelisted) ====================

R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-03-07] (AVAST Software)
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [80816 2013-03-07] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [70992 2013-03-07] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-03-07] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1025808 2013-03-07] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [377920 2013-03-07] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [68920 2013-03-07] (AVAST Software)
S3 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [178624 2013-03-07] ()
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
U3 BcmSqlStartupSvc;
U2 CLKMSVC10_3A60B698;
U2 CLKMSVC10_C3B3B687;
U2 DriverService;
U2 iATAgentService;
U2 idealife Update Service;
U3 IGRS;
U2 IviRegMgr;
U2 nvUpdatusService;
U2 Oasis2Service;
U2 PCCarerService;
U2 ReadyComm.DirectRouter;
U2 RichVideo;
U2 RtLedService;
U2 SeaPort;
U2 SoftwareService;
U3 SQLWriter;
U2 Stereo Service;

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-11-29 12:02 - 2013-11-29 12:02 - 00024066 _____ C:\Users\Kristýna\Desktop\FRST.txt
2013-11-29 12:01 - 2013-11-29 12:01 - 00000000 ____D C:\FRST
2013-11-29 12:00 - 2013-11-29 12:00 - 01959024 _____ (Farbar) C:\Users\Kristýna\Downloads\FRST64.exe
2013-11-29 12:00 - 2013-11-29 12:00 - 01959024 _____ (Farbar) C:\Users\Kristýna\Desktop\FRST64.exe
2013-11-29 12:00 - 2013-11-29 11:59 - 00112640 _____ (forum.viry.cz) C:\Users\Kristýna\Desktop\FRSTLauncher.exe
2013-11-29 11:58 - 2013-11-29 11:59 - 00112640 _____ (forum.viry.cz) C:\Users\Kristýna\Downloads\FRSTLauncher.exe
2013-11-28 16:30 - 2013-11-28 16:30 - 00117273 _____ C:\Users\Kristýna\Desktop\text k prezentaci finální verze.odt
2013-11-28 16:26 - 2013-11-28 16:26 - 00044457 _____ C:\Users\Kristýna\Desktop\text+k+prezentaci2.odt
2013-11-27 21:32 - 2013-11-27 21:32 - 01650001 _____ C:\Users\Kristýna\Downloads\Prezentace1.pptx
2013-11-24 16:31 - 2013-11-24 16:31 - 00014705 _____ C:\Users\Kristýna\Desktop\UsbFix [Clean 1] KRISTYNA-PC.txt
2013-11-24 16:23 - 2013-11-24 16:30 - 00014705 _____ C:\UsbFix [Clean 1] KRISTYNA-PC.txt
2013-11-24 16:18 - 2013-11-24 16:26 - 00000000 ____D C:\UsbFix
2013-11-24 16:18 - 2013-11-24 16:18 - 01144875 _____ (El Desaparecido - SosVirus.net) C:\Users\Kristýna\Desktop\UsbFix.exe
2013-11-24 11:39 - 2013-11-24 11:39 - 00383262 _____ C:\Users\Kristýna\Desktop\Prezentace+Všichni+hrajeme+divadlo..odp
2013-11-24 10:36 - 2013-11-24 10:36 - 00500736 _____ C:\Users\Kristýna\Downloads\Prezentace+Všichni+hrajeme+divadlo. (1).ppt
2013-11-23 09:27 - 2013-11-23 09:27 - 00023406 _____ C:\Users\Kristýna\Downloads\6. úkol.odt
2013-11-22 20:47 - 2013-11-24 11:39 - 00490496 _____ C:\Users\Kristýna\Downloads\Prezentace+Všichni+hrajeme+divadlo..ppt
2013-11-21 15:41 - 2013-11-29 11:46 - 00000504 _____ C:\windows\setupact.log
2013-11-21 15:41 - 2013-11-21 15:41 - 00000000 _____ C:\windows\setuperr.log
2013-11-20 16:05 - 2013-11-20 16:47 - 372166656 _____ C:\Users\Kristýna\Downloads\Once.Upon.a.Time.S03E08.cz.titulky.HDTV.XviD-AFG.avi
2013-11-17 15:43 - 2013-11-17 15:43 - 01280794 _____ C:\Users\Kristýna\Desktop\Prezentace1.odp
2013-11-16 08:47 - 2013-10-12 08:02 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2013-11-16 08:47 - 2013-10-12 07:35 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2013-11-16 08:47 - 2013-10-12 07:08 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2013-11-16 08:46 - 2013-10-12 09:45 - 02241536 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2013-11-16 08:46 - 2013-10-12 09:45 - 01364992 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2013-11-16 08:46 - 2013-10-12 09:45 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2013-11-16 08:46 - 2013-10-12 09:43 - 19269632 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2013-11-16 08:46 - 2013-10-12 09:43 - 15404544 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2013-11-16 08:46 - 2013-10-12 09:43 - 03959808 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2013-11-16 08:46 - 2013-10-12 09:43 - 02648576 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2013-11-16 08:46 - 2013-10-12 09:43 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2013-11-16 08:46 - 2013-10-12 09:43 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2013-11-16 08:46 - 2013-10-12 09:43 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2013-11-16 08:46 - 2013-10-12 09:43 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2013-11-16 08:46 - 2013-10-12 09:43 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2013-11-16 08:46 - 2013-10-12 09:43 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2013-11-16 08:46 - 2013-10-12 09:43 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2013-11-16 08:46 - 2013-10-12 08:03 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2013-11-16 08:46 - 2013-10-12 08:03 - 01138176 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2013-11-16 08:46 - 2013-10-12 08:02 - 14355968 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2013-11-16 08:46 - 2013-10-12 08:02 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2013-11-16 08:46 - 2013-10-12 08:02 - 02877952 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2013-11-16 08:46 - 2013-10-12 08:02 - 02049024 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2013-11-16 08:46 - 2013-10-12 08:02 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2013-11-16 08:46 - 2013-10-12 08:02 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2013-11-16 08:46 - 2013-10-12 08:02 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2013-11-16 08:46 - 2013-10-12 08:02 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2013-11-16 08:46 - 2013-10-12 08:02 - 00039424 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2013-11-16 08:46 - 2013-10-12 08:02 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2013-11-16 08:46 - 2013-10-12 06:44 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2013-11-16 08:46 - 2013-10-12 06:15 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2013-11-14 19:46 - 2013-11-14 19:46 - 00007800 _____ C:\Users\Kristýna\Downloads\Metallica-referát.txt
2013-11-14 18:49 - 2013-11-14 18:49 - 248879314 _____ C:\Users\Kristýna\Downloads\Revival-(2013).avi.crdownload
2013-11-14 17:49 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll
2013-11-14 17:49 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\windows\system32\IKEEXT.DLL
2013-11-14 17:49 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\windows\system32\FWPUCLNT.DLL
2013-11-14 17:49 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\windows\SysWOW64\nshwfp.dll
2013-11-14 17:49 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\windows\SysWOW64\FWPUCLNT.DLL
2013-11-14 17:49 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2013-11-14 17:49 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2013-11-14 17:49 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\windows\system32\SmartcardCredentialProvider.dll
2013-11-14 17:49 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\credui.dll
2013-11-14 17:49 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2013-11-14 17:49 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\windows\SysWOW64\SmartcardCredentialProvider.dll
2013-11-14 17:49 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2013-11-14 17:49 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\credui.dll
2013-11-14 17:49 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2013-11-14 17:49 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2013-11-14 17:49 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2013-11-14 17:49 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2013-11-14 17:49 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2013-11-14 17:49 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2013-11-14 17:49 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2013-11-14 17:49 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2013-11-14 17:49 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2013-11-14 17:49 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2013-11-14 17:49 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2013-11-14 17:49 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2013-11-14 17:49 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2013-11-14 17:49 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2013-11-14 17:49 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2013-11-14 17:49 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2013-11-14 17:49 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2013-11-13 17:12 - 2013-11-13 17:12 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk
2013-11-13 17:10 - 2013-11-13 17:10 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-11-13 17:10 - 2013-11-13 17:10 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-11-13 17:10 - 2013-11-13 17:10 - 00174504 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-11-13 17:10 - 2013-11-13 17:10 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-11-13 17:10 - 2013-11-13 17:10 - 00000000 ____D C:\ProgramData\Oracle
2013-11-13 17:10 - 2013-11-13 17:10 - 00000000 ____D C:\Program Files (x86)\Java
2013-11-13 17:09 - 2013-11-13 17:09 - 24278649 _____ C:\Users\Kristýna\Downloads\vlc-2.1.0-win32.exe
2013-11-13 17:08 - 2013-11-29 11:40 - 00000914 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2013-11-13 17:08 - 2013-11-13 17:08 - 29040552 _____ (Oracle Corporation) C:\Users\Kristýna\Downloads\jre-7u45-windows-i586.exe
2013-11-13 17:08 - 2013-11-13 17:08 - 00003852 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2013-11-09 21:51 - 2013-11-09 21:51 - 00113637 _____ C:\Users\Kristýna\Desktop\eKnizky.sk » Zadarmo stovky kníh online (eKnihy) na stiahnutie » Povinné čítanie.htm
2013-11-09 21:51 - 2013-11-09 21:51 - 00000000 ____D C:\Users\Kristýna\Desktop\eKnizky.sk » Zadarmo stovky kníh online (eKnihy) na stiahnutie » Povinné čítanie_files
2013-11-09 18:48 - 2013-11-09 18:48 - 00000000 ____D C:\Users\Kristýna\Desktop\pisničky
2013-11-03 20:11 - 2013-11-03 21:19 - 00000000 ____D C:\Users\Kristýna\Desktop\mikro učebnice pdf
2013-11-01 17:52 - 2013-11-01 17:52 - 00032206 _____ C:\Users\Kristýna\Downloads\Klíčové pojmy.zip

==================== One Month Modified Files and Folders =======

2013-11-29 12:02 - 2013-11-29 12:02 - 00024066 _____ C:\Users\Kristýna\Desktop\FRST.txt
2013-11-29 12:01 - 2013-11-29 12:01 - 00000000 ____D C:\FRST
2013-11-29 12:00 - 2013-11-29 12:00 - 01959024 _____ (Farbar) C:\Users\Kristýna\Downloads\FRST64.exe
2013-11-29 12:00 - 2013-11-29 12:00 - 01959024 _____ (Farbar) C:\Users\Kristýna\Desktop\FRST64.exe
2013-11-29 11:59 - 2013-11-29 12:00 - 00112640 _____ (forum.viry.cz) C:\Users\Kristýna\Desktop\FRSTLauncher.exe
2013-11-29 11:59 - 2013-11-29 11:58 - 00112640 _____ (forum.viry.cz) C:\Users\Kristýna\Downloads\FRSTLauncher.exe
2013-11-29 11:57 - 2013-09-16 16:41 - 00000956 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-11-29 11:53 - 2009-07-14 05:45 - 00026192 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-29 11:53 - 2009-07-14 05:45 - 00026192 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-29 11:51 - 2013-03-23 11:04 - 01868694 _____ C:\windows\WindowsUpdate.log
2013-11-29 11:47 - 2012-08-08 19:15 - 00000000 ____D C:\Users\Kristýna\AppData\Local\CrashDumps
2013-11-29 11:46 - 2013-11-21 15:41 - 00000504 _____ C:\windows\setupact.log
2013-11-29 11:46 - 2013-09-16 16:41 - 00000952 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-11-29 11:46 - 2013-03-23 11:01 - 00525133 _____ C:\windows\system32\fastboot.set
2013-11-29 11:46 - 2012-07-16 20:06 - 02992204 _____ C:\FaceProv.log
2013-11-29 11:46 - 2009-07-14 06:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2013-11-29 11:44 - 2012-08-08 18:46 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-11-29 11:40 - 2013-11-13 17:08 - 00000914 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2013-11-29 11:39 - 2012-04-13 12:58 - 00631526 _____ C:\windows\system32\perfh005.dat
2013-11-29 11:39 - 2012-04-13 12:58 - 00122148 _____ C:\windows\system32\perfc005.dat
2013-11-29 11:39 - 2009-07-14 06:13 - 01470298 _____ C:\windows\system32\PerfStringBackup.INI
2013-11-28 16:30 - 2013-11-28 16:30 - 00117273 _____ C:\Users\Kristýna\Desktop\text k prezentaci finální verze.odt
2013-11-28 16:26 - 2013-11-28 16:26 - 00044457 _____ C:\Users\Kristýna\Desktop\text+k+prezentaci2.odt
2013-11-27 21:32 - 2013-11-27 21:32 - 01650001 _____ C:\Users\Kristýna\Downloads\Prezentace1.pptx
2013-11-27 20:36 - 2009-07-14 06:08 - 00032598 _____ C:\windows\Tasks\SCHEDLGU.TXT
2013-11-24 16:41 - 2012-07-27 16:49 - 00000000 ____D C:\Users\Kristýna\AppData\Roaming\Skype
2013-11-24 16:31 - 2013-11-24 16:31 - 00014705 _____ C:\Users\Kristýna\Desktop\UsbFix [Clean 1] KRISTYNA-PC.txt
2013-11-24 16:30 - 2013-11-24 16:23 - 00014705 _____ C:\UsbFix [Clean 1] KRISTYNA-PC.txt
2013-11-24 16:26 - 2013-11-24 16:18 - 00000000 ____D C:\UsbFix
2013-11-24 16:18 - 2013-11-24 16:18 - 01144875 _____ (El Desaparecido - SosVirus.net) C:\Users\Kristýna\Desktop\UsbFix.exe
2013-11-24 11:39 - 2013-11-24 11:39 - 00383262 _____ C:\Users\Kristýna\Desktop\Prezentace+Všichni+hrajeme+divadlo..odp
2013-11-24 11:39 - 2013-11-22 20:47 - 00490496 _____ C:\Users\Kristýna\Downloads\Prezentace+Všichni+hrajeme+divadlo..ppt
2013-11-24 10:36 - 2013-11-24 10:36 - 00500736 _____ C:\Users\Kristýna\Downloads\Prezentace+Všichni+hrajeme+divadlo. (1).ppt
2013-11-23 09:27 - 2013-11-23 09:27 - 00023406 _____ C:\Users\Kristýna\Downloads\6. úkol.odt
2013-11-21 15:41 - 2013-11-21 15:41 - 00000000 _____ C:\windows\setuperr.log
2013-11-20 18:32 - 2012-09-23 12:03 - 00000000 ____D C:\Users\Kristýna\AppData\Roaming\vlc
2013-11-20 16:47 - 2013-11-20 16:05 - 372166656 _____ C:\Users\Kristýna\Downloads\Once.Upon.a.Time.S03E08.cz.titulky.HDTV.XviD-AFG.avi
2013-11-20 09:48 - 2012-07-17 19:26 - 00000000 ____D C:\windows\Minidump
2013-11-20 09:48 - 2011-02-22 12:19 - 00000000 ____D C:\windows\Panther
2013-11-17 15:43 - 2013-11-17 15:43 - 01280794 _____ C:\Users\Kristýna\Desktop\Prezentace1.odp
2013-11-16 08:44 - 2013-09-16 16:42 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-11-14 19:46 - 2013-11-14 19:46 - 00007800 _____ C:\Users\Kristýna\Downloads\Metallica-referát.txt
2013-11-14 18:49 - 2013-11-14 18:49 - 248879314 _____ C:\Users\Kristýna\Downloads\Revival-(2013).avi.crdownload
2013-11-13 17:12 - 2013-11-13 17:12 - 00001066 _____ C:\Users\Public\Desktop\VLC media player.lnk
2013-11-13 17:10 - 2013-11-13 17:10 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2013-11-13 17:10 - 2013-11-13 17:10 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2013-11-13 17:10 - 2013-11-13 17:10 - 00174504 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2013-11-13 17:10 - 2013-11-13 17:10 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2013-11-13 17:10 - 2013-11-13 17:10 - 00000000 ____D C:\ProgramData\Oracle
2013-11-13 17:10 - 2013-11-13 17:10 - 00000000 ____D C:\Program Files (x86)\Java
2013-11-13 17:09 - 2013-11-13 17:09 - 24278649 _____ C:\Users\Kristýna\Downloads\vlc-2.1.0-win32.exe
2013-11-13 17:08 - 2013-11-13 17:08 - 29040552 _____ (Oracle Corporation) C:\Users\Kristýna\Downloads\jre-7u45-windows-i586.exe
2013-11-13 17:08 - 2013-11-13 17:08 - 00003852 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2013-11-13 17:08 - 2013-03-11 14:11 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2013-11-13 17:08 - 2013-03-11 14:11 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-11-13 17:08 - 2012-07-17 08:08 - 00000000 ____D C:\Users\Kristýna\AppData\Local\Adobe
2013-11-11 05:50 - 2010-11-21 04:27 - 00267936 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2013-11-09 21:51 - 2013-11-09 21:51 - 00113637 _____ C:\Users\Kristýna\Desktop\eKnizky.sk » Zadarmo stovky kníh online (eKnihy) na stiahnutie » Povinné čítanie.htm
2013-11-09 21:51 - 2013-11-09 21:51 - 00000000 ____D C:\Users\Kristýna\Desktop\eKnizky.sk » Zadarmo stovky kníh online (eKnihy) na stiahnutie » Povinné čítanie_files
2013-11-09 18:48 - 2013-11-09 18:48 - 00000000 ____D C:\Users\Kristýna\Desktop\pisničky
2013-11-03 21:19 - 2013-11-03 20:11 - 00000000 ____D C:\Users\Kristýna\Desktop\mikro učebnice pdf
2013-11-03 10:25 - 2013-02-26 19:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-02 08:46 - 2013-07-18 11:21 - 00000000 ____D C:\windows\system32\MRT
2013-11-01 17:52 - 2013-11-01 17:52 - 00032206 _____ C:\Users\Kristýna\Downloads\Klíčové pojmy.zip
2013-10-30 11:00 - 2009-07-14 04:20 - 00000000 ____D C:\windows\system32\NDF

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-03-15 15:06




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:421.81 GB) (Free:352.85 GB) NTFS
Drive d: (LENOVO) (Fixed) (Total:29 GB) (Free:26.5 GB) NTFS

Available physical RAM: 2495.01 MB
Total physical RAM: 4039.86 MB
Percentage of memory in use: 38%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 0FA32635)
Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=422 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=29 GB) - (Type=OF Extended)
Partition 4: (Not Active) - (Size=15 GB) - (Type=12)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C}
AS: avast! Antivirus (Disabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Krist�na\Desktop" je 1358 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync
"C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess
Re�im ECHO je vypnut.


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================


ADDITION:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-11-2013
Ran by Kristýna at 2013-11-29 12:03:10
Running from C:\Users\Kristýna\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: avast! Antivirus (Disabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C}
AS: avast! Antivirus (Disabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

7-Zip 9.20 (x32)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.152)
Adobe Reader XI (11.0.05) - Czech (x32 Version: 11.0.05)
Advanced SystemCare 6 (x32 Version: 6.1)
Atheros Client Installation Program (x32 Version: 7.0)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (x32 Version: 1.0.0.39)
aTube Catcher (x32 Version: 2.9.1025)
avast! Free Antivirus (x32 Version: 8.0.1483.0)
Balíček ovladače systému Windows - Ross-Tech USB Driver Package (08/16/2011 2.08.14) (Version: 08/16/2011 2.08.14)
BitGuard (x32)
BS Player Toolbar (x32 Version: 6.8.11.4)
BS.Player FREE (x32 Version: 2.65.1074)
CCleaner (Version: 3.28)
Conexant HD Audio (Version: 8.54.4.51)
D3DX10 (x32 Version: 15.4.2368.0902)
Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition
Energy Management (x32 Version: 6.0.2.0)
eXPert PDF 8 (x32 Version: 8.0.460.0)
FairStars CD Ripper 1.10 (x32)
FilesFrog Update Checker (x32)
Fotolab Fotosvet (x32 Version: 5.0.6)
GIMP 2.8.6 (Version: 2.8.6)
Google Chrome (x32 Version: 31.0.1650.57)
Google Update Helper (x32 Version: 1.3.21.165)
HP Deskjet 2050 J510 series Nápověda (x32 Version: 140.0.61.61)
IMPI 2.0.0.429
Intel(R) Control Center (x32 Version: 1.2.1.1007)
Intel(R) Management Engine Components (x32 Version: 7.0.0.1144)
Intel(R) Processor Graphics (x32 Version: 8.15.10.2342)
Intel(R) Rapid Storage Technology (x32 Version: 10.1.5.1001)
IrfanView (remove only) (x32 Version: 4.35)
Java 7 Update 45 (x32 Version: 7.0.450)
Java Auto Updater (x32 Version: 2.1.9.8)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
Lenovo Bluetooth with Enhanced Data Rate Software (Version: 6.3.0.7400)
Lenovo EasyCamera (x32 Version: 1.10.1209.1)
Lenovo EE Boot Optimizer (Version: 0.0.1.6)
Lenovo OneKey Recovery (Version: 7.0.1628)
Lenovo OneKey Recovery (x32 Version: 7.0.1628)
Mesh Runtime (x32 Version: 15.4.5722.2)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile CSY Language Pack (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office Access MUI (Czech) 2010 (Version: 14.0.6029.1000)
Microsoft Office Excel MUI (Czech) 2010 (Version: 14.0.6029.1000)
Microsoft Office Groove MUI (Czech) 2010 (Version: 14.0.6029.1000)
Microsoft Office InfoPath MUI (Czech) 2010 (Version: 14.0.6029.1000)
Microsoft Office Office 32-bit Components 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (Czech) 2010 (Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (Czech) 2010 (Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (Czech) 2010 (Version: 14.0.6029.1000)
Microsoft Office Professional Plus 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (Czech) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proof (Slovak) 2010 (Version: 14.0.6029.1000)
Microsoft Office Proofing (Czech) 2010 (Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (Czech) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared 32-bit MUI (Czech) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (Czech) 2010 (Version: 14.0.6029.1000)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Mozilla Firefox 23.0.1 (x86 cs) (x32 Version: 23.0.1)
Mozilla Maintenance Service (x32 Version: 23.0.1)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
OpenOffice 4.0.1 (x32 Version: 4.01.9714)
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (x32 Version: 15.4.5722.2)
Ovládací prvok ActiveX programu Windows Live Mesh pre vzdialené pripojenia (x32 Version: 15.4.5722.2)
Picasa 3 (x32 Version: 3.9)
Power2Go (x32 Version: 5.6.0.7303)
QIP 2012 4.0.7221 (HKCU Version: 4.0.7221)
QIP Internet Guardian (HKCU)
Realtek USB 2.0 Reader Driver (x32 Version: 6.1.7600.10003)
Seznam Pošťák 2 (Všichni uživatelé tohoto počítače.) (x32)
Skype™ 6.3 (x32 Version: 6.3.105)
SUPERAntiSpyware (Version: 5.6.1014)
Synaptics Pointing Device Driver (Version: 15.3.0.0)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3)
Update for Microsoft Office 2010 (KB2553065)
Update for Microsoft Office 2010 (KB2553092)
Update for Microsoft Office 2010 (KB2553181) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553267) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553378) 64-Bit Edition
Update for Microsoft Office 2010 (KB2566458)
Update for Microsoft Office 2010 (KB2687509) 64-Bit Edition
Update for Microsoft Office 2010 (KB2760631) 64-Bit Edition
Update for Microsoft Office 2010 (KB2767886) 64-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 64-Bit Edition
Update for Microsoft Outlook 2010 (KB2597090) 64-Bit Edition
Update for Microsoft Outlook 2010 (KB2687623) 64-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 64-Bit Edition
Update for Microsoft PowerPoint 2010 (KB2598240) 64-Bit Edition
Update for Microsoft SharePoint Workspace 2010 (KB2589371) 64-Bit Edition
UsbFix By El Desaparecido (x32)
UserGuide (x32 Version: 1.0.0.6)
VeriFace (x32 Version: 4.0.0.1224)
VLC media player 2.1.0 (x32 Version: 2.1.0)
Web Assistant 2.0.0.604 (Version: 2.0.0.604)
Windows Driver Package - Lenovo (ACPIVPC) System (12/02/2010 6.1.0.1) (Version: 12/02/2010 6.1.0.1)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3508.1109)
Windows Live Fotogaléria (x32 Version: 15.4.3502.0922)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3508.1109)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Mesh (x32 Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2)
Windows Live Messenger (x32 Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
Základní software zařízení HP Deskjet 2050 J510 series (Version: 22.50.231.0)

==================== Restore Points =========================

17-11-2013 19:08:55 Windows Update
19-11-2013 07:57:26 Windows Update
20-11-2013 18:44:07 Windows Update
21-11-2013 19:59:03 Windows Update
23-11-2013 08:20:29 Windows Update
24-11-2013 09:21:51 Windows Update
26-11-2013 19:37:19 Windows Update
27-11-2013 18:19:19 Windows Update
28-11-2013 14:45:06 Windows Update
28-11-2013 21:32:11 Windows Update

==================== Hosts content: ==========================

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {044A6734-E90E-4F8F-B357-B2DC8AB3B5EC} - \Microsoft\Windows\Time Synchronization\SynchronizeTime No Task File
Task: {04976A0F-8CCB-4389-8F12-CEEDF73EE716} - \{B41CCE09-AD5F-433B-8746-E216047FA3A7} No Task File
Task: {069C6DD4-13D5-4582-87DD-0E258643247D} - \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask No Task File
Task: {088482FA-65B8-4E17-9ABF-1DCD48E8D373} - \Microsoft\Windows\Tcpip\IpAddressConflict1 No Task File
Task: {09F06BFE-A3C8-40E3-846A-6E6F4000C238} - \Microsoft\Windows\Tcpip\IpAddressConflict2 No Task File
Task: {0B76B771-032D-49CD-BCA6-F8B05D2512A1} - \{C9EAD3D3-E7EF-4AF2-945B-6F2147E505D3} No Task File
Task: {0C52C1A3-95E4-48B8-849A-149DBFA8ACAC} - \{AC5478A5-ACEF-4E0F-BE39-F0B3A54EDCB1} No Task File
Task: {0D56B74E-7A05-4476-B522-1CABC46E3D44} - \{05FDB572-C9ED-4358-914B-0A7555960967} No Task File
Task: {0FF1F7CD-6865-4CA5-9171-9C7981862F2C} - \{A54A52D3-8BF8-48C4-AA27-5C07E8513D78} No Task File
Task: {1115EE52-0438-43A5-9B8A-8060CDB5F610} - \{1A428CF8-347D-4838-BC02-1C4C79447FBD} No Task File
Task: {16AB886F-F30B-49A8-ABAC-9569230E5AC4} - \Microsoft\Windows\SideShow\SystemDataProviders No Task File
Task: {18BE0BCB-8C1C-4379-9DE6-2C738F21E1C9} - \{2D01FA54-103D-4C43-8AA9-5F3B168D85A4} No Task File
Task: {1F7B7221-AE8F-44F3-BA82-F7D260F51964} - \Microsoft\Windows\Task Manager\Interactive No Task File
Task: {1F951149-E140-4A43-8ABC-1299E25ACAFB} - \{A9F52E0C-41FA-4552-A189-F7DB941E52BA} No Task File
Task: {20366FDE-CEBC-4EA2-91A2-17C185F681C1} - \OfficeSoftwareProtectionPlatform\SvcRestartTask No Task File
Task: {21B15826-A8F7-440F-AB8D-0C9CDABF0598} - \{F294DAE9-49ED-4F01-B423-7DDCF890C20B} No Task File
Task: {2470470F-2634-478E-B181-571E98A789BB} - \Microsoft\Windows\Multimedia\SystemSoundsService No Task File
Task: {28011108-68DF-4C73-B91B-57427D501BBA} - \Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual) No Task File
Task: {28A633DB-6953-4976-AD75-C79A373800A1} - \Microsoft\Windows\Media Center\OCURDiscovery No Task File
Task: {2A25D2BE-406B-41EA-96CA-9A0D871FD7A5} - \{3F6264F4-3FFC-4C24-AEEF-8735FE554391} No Task File
Task: {2AC22808-DFC3-421A-B5CF-3EB80CEB18E4} - \Microsoft\Windows\MUI\Mcbuilder No Task File
Task: {2B08E777-2BC7-47ED-88F3-779A0EBF01A0} - \{C970663E-AC4F-45E5-84BB-DFC66851DD2D} No Task File
Task: {2B305C60-F070-462B-BBA1-3761693D7234} - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector No Task File
Task: {2E329329-C02D-4D0F-AC2C-FA82EFBF9398} - \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline No Task File
Task: {2F270877-AA95-4684-BEF2-774DF3368490} - \Microsoft\Windows\MUI\Lpksetup No Task File
Task: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} - \Microsoft\Windows\WindowsBackup\ConfigNotification No Task File
Task: {30971D26-B1D0-49E0-94A4-4B8DA67E9162} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-16] (Google Inc.)
Task: {335CF3BB-C189-46FE-BEBE-6C12C720A658} - \{8B1EB57D-F154-483A-90B7-1BC5E06AF263} No Task File
Task: {34B2D5EE-5548-4A3E-B2AB-628D692233E5} - \Microsoft\Windows\Media Center\InstallPlayReady No Task File
Task: {3525A788-D81E-4BB1-8A88-F7147AE4A18E} - \{26773B4E-8E7D-4D0F-A202-77A533A6F40E} No Task File
Task: {3565B17E-8EC4-4E39-8DE4-9AB8997DD89B} - \{D6457986-A2CB-4A6C-860B-00C7F6114760} No Task File
Task: {37E468A2-E6A0-4F3F-B11E-4C718E31DE45} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-16] (Google Inc.)
Task: {3A6098AF-C05D-4608-BDEB-9FA4CC7097E7} - \Microsoft\Windows\WindowsBackup\AutomaticBackup No Task File
Task: {3D6DCA9D-2F22-4E1D-91EF-41D1F99B2836} - \Microsoft\Windows\Media Center\PvrScheduleTask No Task File
Task: {3F9F2B31-6299-4756-8418-4692C5190947} - \Microsoft\Windows\Media Center\ehDRMInit No Task File
Task: {3FBDCA6F-BC2E-40AD-B685-19C35D05EEAC} - \{201D0829-C8A6-4D3E-86A7-D3CA2FAD198A} No Task File
Task: {401DFC28-B097-4A95-922A-80514F969EF3} - \{E5D2DCC4-41F6-45CC-A14F-2227D828C6B1} No Task File
Task: {402AF089-0052-46ED-AB22-6C9C34719158} - \{23000D71-58BD-441D-9E7D-54739411EB0D} No Task File
Task: {40FB6DA5-A94E-4846-99A0-732FEC59F3D6} - \Microsoft\Windows\Media Center\PBDADiscoveryW2 No Task File
Task: {44386209-2F39-4B07-BD91-9A7074055006} - \{807A6CC5-7BEE-4AFE-9116-F699C7204FCF} No Task File
Task: {46C89305-B920-420A-9709-DCF34DA7C782} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-03-07] (AVAST Software)
Task: {47536D45-EEEC-4BDC-8183-A4DC1F8DA9E4} - \Microsoft\Windows\Customer Experience Improvement Program\UsbCeip No Task File
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - \Microsoft\Windows\Shell\WindowsParentalControlsMigration No Task File
Task: {48CDD335-BA9A-498F-A577-6BAF3BB550A7} - \{9D7503E7-3615-4692-AF18-F0EE7ABEA325} No Task File
Task: {4C8B01A2-11FF-4C41-848F-508EF4F00CF7} - \Microsoft\Windows\TextServicesFramework\MsCtfMonitor No Task File
Task: {4E9348E6-B06B-4A51-A48C-ABAEA1155267} - \{20617DCB-241A-4B55-A039-D16F841C197C} No Task File
Task: {504D2CBC-EDC6-4B38-9086-D20B79F299E8} - \Microsoft\Windows\Windows Activation Technologies\ValidationTask No Task File
Task: {5101F2B7-FA3F-4691-B3C1-96EEDF92711B} - \{892EEF96-E7BF-4FA6-B4BF-8A790D67CF25} No Task File
Task: {5214133D-45DA-41B3-A342-1C6EE729FC5E} - \{A2E5D674-AD61-4B97-9FF8-50F87A1C8908} No Task File
Task: {54B9CD4B-9107-406D-960F-5FC0761DFC30} - \{111C0A4F-CCE9-443D-85A9-F17316E4E2FC} No Task File
Task: {573A2E5D-03FC-4D66-A570-07930B88F21E} - \{34297166-5956-4223-A4B6-B9DC95852745} No Task File
Task: {590F85B1-363C-4ABB-A15B-E65AAF9DB240} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-13] (Adobe Systems Incorporated)
Task: {5A40E926-9E86-4B89-9CFD-B12311724371} - \Microsoft\Windows\UPnP\UPnPHostConfig No Task File
Task: {5A5927DD-7B89-4BE7-9514-152BC02118F6} - \{35C18A51-E81D-4308-A021-28B62D821229} No Task File
Task: {5B017B4F-8010-4882-BBAE-5681B31E5624} - \{36DA2D4B-8768-41D0-AE9E-C833AFB878D8} No Task File
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - \Microsoft\Windows\Shell\WindowsParentalControls No Task File
Task: {5B490B85-4743-44F5-A8B8-F5DB45899F50} - \{DF82D141-410D-41B1-B358-342E102A533D} No Task File
Task: {5C0AEEEA-C154-45BE-8499-BEA5F11BAFF6} - \Microsoft\Windows\Defrag\ScheduledDefrag No Task File
Task: {5C6AA91A-DA4B-4988-8B96-707399505368} - \Microsoft\Windows\Media Center\MediaCenterRecoveryTask No Task File
Task: {5DB74010-D2E1-47B5-8653-EC710C1A6DE6} - \Microsoft\Windows\Media Center\PvrRecoveryTask No Task File
Task: {5DFD777A-CFB3-4E03-ABDE-62518DBB1B9A} - \{19043051-8A64-4014-88C8-9BFAA66D37A8} No Task File
Task: {5F5A18EB-DC73-4E45-A11C-B59043598412} - \Microsoft\Windows\CertificateServicesClient\SystemTask No Task File
Task: {613612BA-897D-44CE-8DC1-8FC283F9FD51} - \Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated) No Task File
Task: {61CC0108-933B-4C43-B2DA-356B67CCA246} - \Microsoft\Windows\Media Center\PBDADiscoveryW1 No Task File
Task: {6243C7B3-9C64-4B81-9B80-504B87F231D2} - \{982D63C6-26F0-4600-ACCB-C63678DAD28A} No Task File
Task: {6332520B-4DC5-4701-87C1-271771C9E2AE} - \Microsoft\Windows\Media Center\PeriodicScanRetry No Task File
Task: {64645BE7-82D7-4F42-A380-D8CE78828E6E} - \Microsoft\Windows\Media Center\SqlLiteRecoveryTask No Task File
Task: {64EEAEA8-545C-462A-BC16-006862A34303} - \{131FCC02-F494-442B-9DD6-9CF2CB19C62F} No Task File
Task: {66BB3159-3A64-43B2-A783-4E3FE088E84D} - \Microsoft\Windows\Media Center\RegisterSearch No Task File
Task: {6738BA6E-EA75-4B6B-B8B8-71F0336DD8EF} - \Microsoft\Windows\User Profile Service\HiveUploadTask No Task File
Task: {67A78D71-303B-427B-8819-6D13F208C0B5} - \{842B7051-45C2-4EB7-ACEC-073CE4E7FE45} No Task File
Task: {6D303486-C69B-4FB0-B7E2-D15C55F0F88A} - \{E2E50C54-7AF7-4DEE-B384-132F44149906} No Task File
Task: {6D30D3F1-530B-408A-B22B-BA73DFAE66E5} - \{1B1A9543-89A6-4DFB-A097-B138D787F592} No Task File
Task: {6E452DE2-7ADA-4C06-91DD-798ED2D32D20} - \{5DF64BA9-F94C-4ED8-B4F4-C540AAC0A9CB} No Task File
Task: {71AB37C1-5B0A-4F17-AA28-B85E00B9C43B} - \{895C9A4F-4A5A-4CEE-89B0-073055F28D15} No Task File
Task: {72DB7465-BC54-491B-A92A-4637A28C9BBF} - \Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck No Task File
Task: {753C47AE-EC5E-44B3-95A9-2C8E553F0E39} - \Microsoft\Windows\Windows Media Sharing\UpdateLibrary No Task File
Task: {7808F5CB-9DD0-4EC1-BE19-C4F129BA9A89} - \{EFC33B38-488B-4963-9042-BF37C3778059} No Task File
Task: {79D814E2-CD13-4814-A774-B21E47347800} - \{DE08A5F1-637F-49B4-B12B-50B158ED00AE} No Task File
Task: {7AFCC0CA-7121-422A-AB45-B0E8D599FF08} - \Microsoft\Windows\CertificateServicesClient\UserTask No Task File
Task: {7C31646B-7A88-4D5D-873A-9FCEE61CD70A} - \{1ED88A42-A93B-4DE3-B903-C823686995EF} No Task File
Task: {7C401DF3-C612-4EA6-9B22-75E801688C3C} - \{157F79B4-D518-4C98-A945-CC64D8D63933} No Task File
Task: {7CF618B6-48AB-4566-8F58-84890DE7D095} - \{EF2DA2F5-81F8-4944-992C-381B710A838B} No Task File
Task: {7F09EB8A-A5F5-45E3-9F84-34E4B4ACEE1C} - \Microsoft\Windows\SideShow\SessionAgent No Task File
Task: {81540B9F-B5BF-47EB-9C95-BE195BF2C664} - \Microsoft\Windows\NetTrace\GatherNetworkInfo No Task File
Task: {81DD8D57-AAC4-4BFE-AE2B-E9731D2463B4} - \{A44A25D6-DE28-4351-8EB0-FF09D7B2AC56} No Task File
Task: {82813FA8-622D-41BA-9AB9-A8C68E8A9F86} - \Microsoft\Windows\MobilePC\HotStart No Task File
Task: {83EA0856-3511-447F-8856-00DA4565492A} - \Microsoft\Windows\Media Center\ReindexSearchRoot No Task File
Task: {87CB59FD-DA18-4CAB-A5CA-A9E555040C63} - \{09BE4C47-4C6B-49CD-AE63-8062287A4D07} No Task File
Task: {87E8DA6C-6CEE-4176-A928-C787C78CAD2D} - \Microsoft\Windows\Media Center\ConfigureInternetTimeService No Task File
Task: {882918A8-0510-428C-8710-5264FD65CAF8} - \{BC1811BB-A0CF-46C7-8DE0-486074B6B2C4} No Task File
Task: {89536EEC-EE36-4AA4-985B-807FDC143DDB} - \Microsoft\Windows\Media Center\UpdateRecordPath No Task File
Task: {8D8C2D53-9C0A-45B8-A42D-06AF46C5FE1E} - \{406B15BA-A448-41CD-9E8D-9C7264A11C91} No Task File
Task: {8DA495FC-8050-42DB-89D2-7BCA972E0BA3} - \{A5B842AF-AB7C-4497-B0E9-7835939C6821} No Task File
Task: {924FF338-8305-4415-B3AE-CB2A883ADAE7} - \{7DB178C9-EE3B-41F2-BACB-7A4F839918F4} No Task File
Task: {9354634F-C747-406E-B90D-AB073A4DA104} - System32\Tasks\AutoKMS => C:\windows\AutoKMS.exe
Task: {9435F817-FED2-454E-88CD-7F78FDA62C48} - \Microsoft\Windows\WDI\ResolutionHost No Task File
Task: {95EB9113-2AA2-4C20-9AD3-31E14195D7EB} - \{58B1171E-E03F-466F-BFD8-94AB4ADADAF5} No Task File
Task: {971ABE28-9739-4BC0-9E41-3591E5E67048} - \{9C859713-7765-411D-B895-96B84665391E} No Task File
Task: {972AAA08-374E-42B4-A70D-615FE3880787} - \{AF0BB211-18D4-4C8F-97A1-C1EEE20252AA} No Task File
Task: {994C86AD-A929-4B2C-88A0-4E25A107A029} - \Microsoft\Windows\SystemRestore\SR No Task File
Task: {9979CB83-103A-4105-9E5D-C74B0AF6D198} - \Microsoft\Windows\CertificateServicesClient\UserTask-Roam No Task File
Task: {9A0A1808-5722-4943-8BC4-81AA10C8C37A} - \Microsoft\Windows Live\SOXE\Extractor Definitions Update Task No Task File
Task: {A1BE53D3-2E81-4EFF-BDAD-9F87496ECB7B} - \Microsoft\Windows\Media Center\PBDADiscovery No Task File
Task: {A35BB7A6-5F0C-4C9F-8450-2B3BED532D51} - \Microsoft\Windows\WindowsColorSystem\Calibration Loader No Task File
Task: {A3EB5F59-809B-475B-9C5A-77C5E0D1C7C3} - \Microsoft\Windows\Media Center\ActivateWindowsSearch No Task File
Task: {A48CABBF-24C8-4B87-B00F-9261807C3B43} - \Microsoft\Windows\AppID\PolicyConverter No Task File
Task: {A6AF9377-77CE-47AB-AD7D-EC32CAD0C82D} - \Microsoft\Windows\Location\Notifications No Task File
Task: {A7BBE58D-C64C-4564-9C2F-E14B1961CCA7} - \{38F3E9F1-E095-42D8-8B2C-3C9B2618F58B} No Task File
Task: {A7C73732-9F11-4281-8D19-764D4EC9D94D} - \Microsoft\Windows\Application Experience\ProgramDataUpdater No Task File
Task: {A8E8B9ED-BA82-4A6E-9792-7A1BF5E79EC4} - \{6CB79288-EBB9-4DAA-A197-725300E17F38} No Task File
Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - \Microsoft\Windows\Application Experience\AitAgent No Task File
Task: {AC668097-4D6B-4093-AC14-014C09DBF820} - \Microsoft\Windows\Ras\MobilityManager No Task File
Task: {AD9226BD-F346-48B2-BC33-8B7334276E71} - \{457EAECA-3476-4826-BAA8-C2682D295E9F} No Task File
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - \Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor No Task File
Task: {B5B21AE7-6C8E-497B-A2E6-8B8730819FA0} - \{97DB7A12-2088-496A-9970-A2D0A0E67604} No Task File
Task: {BB96D6A2-6787-4D4C-85BF-CA68E7A9C992} - \{5BF622FD-F906-4794-A3DE-C685E5CC774D} No Task File
Task: {BC1946DE-6DD0-40F9-A204-CA3D16BEBE02} - \{AAD76BD7-9F64-4F20-BD9C-09CB1B9EB0C0} No Task File
Task: {BD908750-1C21-49DB-9160-CD7D7DC7332A} - \{986E89D0-3854-43FF-A38F-508C7EDF2B17} No Task File
Task: {BE669C13-8165-4536-96D0-6D6C39292AAE} - \Microsoft\Windows\Diagnosis\Scheduled No Task File
Task: {C016366B-7126-46CA-B36B-592A3D95A60B} - \Microsoft\Windows\Customer Experience Improvement Program\Consolidator No Task File
Task: {C130FD90-F0B7-47D6-B7BA-3F2EB5A16101} - \{7E5CCB48-03D5-46E1-8095-95169BC5CF89} No Task File
Task: {C976E5D7-1C49-4596-820B-C24184E4234A} - \{03C0B624-D6F9-4140-B05C-775342B666E8} No Task File
Task: {CA4B8FF2-A4D2-4D88-A52E-3A5BDAF7F56E} - \Microsoft\Windows\Registry\RegIdleBackup No Task File
Task: {CA843B9D-30C8-479C-BAB8-98A63C08DBB4} - \{B53AFDFC-B31E-4CC1-B6AC-86E1CC255C80} No Task File
Task: {CB3D64BF-C0C9-45FF-BFB0-FF1A8F680186} - \Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask No Task File
Task: {CCC2EFFC-4E04-472C-A025-5F3C6C652320} - \{4CA6FC27-9D3C-40E0-AF80-8E1D3A655B32} No Task File
Task: {CE75224D-D1B1-406C-A30B-F7C09068FA46} - \{5BE8E3D2-2082-44D1-B5F7-A28C6BA62608} No Task File
Task: {CEE64558-E1A7-4D9D-80A7-2001912BE5B5} - \Microsoft\Windows\MemoryDiagnostic\CorruptionDetector No Task File
Task: {D002B837-7BCA-44AD-BD9A-FBC2A57C0B78} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-02-25] (Piriform Ltd)
Task: {D0250F3F-6480-484F-B719-42F659AC64D5} - \Microsoft\Windows\Windows Error Reporting\QueueReporting No Task File
Task: {D3422AE9-DF49-406D-A3CD-224DB1CF181D} - \{0F7C51B6-CA78-434D-9221-F5773EB9068D} No Task File
Task: {D70530E1-E6DA-4594-8C58-3AF20F2BB5B5} - \{460289B2-36BE-443D-8810-357A6DF1E048} No Task File
Task: {D7B6E81D-3CF4-432C-84D2-24213F4316E6} - \Microsoft\Windows\Autochk\Proxy No Task File
Task: {DA41DE71-8431-42FB-9DB0-EB64A961DEAD} - \Microsoft\Windows\Maintenance\WinSAT No Task File
Task: {DD7F8413-CD57-4F47-A780-C40AA13F4356} - \{65F462B5-4533-4C12-BF42-CC5DDDF5399A} No Task File
Task: {DD9F510C-95F4-499A-90C8-BAC5BC372FF4} - \Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask No Task File
Task: {DE186F1D-7224-4550-B290-0F7CD23566AC} - \Microsoft\Windows\Media Center\OCURActivate No Task File
Task: {DFCF8F3B-4DC7-492C-88F6-7E258A12E34E} - \{B6E210A6-3675-4933-A80B-D46783FD04B2} No Task File
Task: {E1FD0EB8-08DA-407D-BC1F-3B9A773ADEC9} - \{28E32327-D40B-44D7-AF1A-6552A943C1A5} No Task File
Task: {E22A8667-F75B-4BA9-BA46-067ED4429DE8} - \Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange No Task File
Task: {E3163C33-301D-4730-A266-5518C5ED3967} - \Microsoft\Windows\Bluetooth\UninstallDeviceTask No Task File
Task: {E3E191F4-0677-4348-8186-524CF2859CC7} - \{EB2DE27B-B7A3-4780-9279-EEDD3D14976F} No Task File
Task: {E474A239-7BAA-4B2A-992C-C4E096570F46} - \{541CD24B-86F7-40A3-A5BB-1B771B5EC3E4} No Task File
Task: {E840C6AE-1B17-4168-90FF-B0FA22D25BF8} - \{E97DF294-6BC5-4E96-A6BA-5B1BFB69C926} No Task File
Task: {E8425DF3-D59F-4344-934E-409B846116CC} - \{6EF0D677-78DD-4045-AD65-0B9FCEDE0F24} No Task File
Task: {E99A425C-2F09-42C1-8B54-386F328D880E} - \{F1C5AE64-CAD3-4699-83F9-39F2099B38DD} No Task File
Task: {E9DF7EDE-C234-4678-8DD4-C2BC3A320757} - \{24E13234-4771-4604-B920-5F8579B6A6D4} No Task File
Task: {EA1D27F0-0D9F-4A06-AB96-7A90219E64E3} - \{51974E05-3DA1-4849-8A91-58AE16992B0E} No Task File
Task: {EACA24FF-236C-401D-A1E7-B3D5267B8A50} - \Microsoft\Windows\RAC\RacTask No Task File
Task: {EB02381F-D652-4B1C-894A-712498C62C51} - \Microsoft\Windows\MUI\LPRemove No Task File
Task: {EDA694AF-71E1-49DC-96B6-A5F055FD74F6} - \Microsoft\Windows\SideShow\AutoWake No Task File
Task: {F0886E31-E838-48F8-B906-C88F05FCA8F3} - \{D00F818A-98AD-453C-A70A-F90FE3275B0F} No Task File
Task: {F19CB294-3C25-46EB-98F7-CBEA4CA88701} - \{CE77C93C-3993-4B06-9B87-20F90B7CDF57} No Task File
Task: {F23AF9CD-8F8F-4FBA-BFCC-A986756EF0B9} - \Microsoft\Windows\Media Center\mcupdate No Task File
Task: {F4443043-1D7A-4183-9BFA-0D29E6D5D668} - \{B28F01D7-2048-42F0-8C7E-2AE1CE788B8D} No Task File
Task: {F44991C5-8018-47C8-A7E9-8E03CE51558A} - \{D888E4EB-95D5-4C2F-AF10-BC251B842A6E} No Task File
Task: {F4EC53B4-B606-4980-AF51-20EE53E19736} - \Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver No Task File
Task: {F504A855-DF2F-4691-9962-3D6F2670BB13} - \Microsoft\Windows\Media Center\RecordingRestart No Task File
Task: {F584BCB2-8753-4DB8-9480-799A5B02DE05} - \{D233B85D-86CF-407D-8C7E-A7ADB7CF86B9} No Task File
Task: {F825C2DB-6ED9-4B0A-8FBA-1A5FDE5522D1} - \{A9049152-8A99-4336-8D1C-391E3E890619} No Task File
Task: {F826A68F-A0C3-435E-844A-303BE55E543F} - \Microsoft\Windows\Media Center\DispatchRecoveryTasks No Task File
Task: {F975EAC0-3977-4ABD-874F-4A75B2A04957} - \Microsoft\Windows\SideShow\GadgetManager No Task File
Task: {FA2BC0A6-8D4B-458A-85C8-2B8C72487513} - \Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector No Task File
Task: {FA41E23F-3993-4367-B0C7-B2A356580060} - \{0D28C0CC-7D90-4673-959F-36E2697CAFC1} No Task File
Task: {FA847E19-B971-422B-905D-10FD4B769496} - \{E5C06B57-4ED9-4A5D-BCE5-204E6FFCFE2A} No Task File
Task: {FB027031-C4DA-4C0E-B3BB-AC24CBA8514F} - System32\Tasks\{EADD1AD9-D41F-4F26-93D9-15A7BD0F43D6} => E:\Programy\PORTABLE\MS Office 2007-portable\Microsoft Word 2007.exe
Task: {FB3C354D-297A-4EB2-9B58-090F6361906B} - \Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem No Task File
Task: {FDBEEAD5-FC06-4CD3-8F16-E33D88E2F6BF} - \Microsoft\Windows\WindowsBackup\Windows Backup Monitor No Task File
Task: {FDD56C73-F0D5-41B6-B767-6EFFD7966428} - \Microsoft\Windows\Customer Experience Improvement Program\KernelCeipTask No Task File
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2012-04-13 22:03 - 2012-04-13 22:03 - 01508192 _____ () C:\windows\system32\IcnOvrly.dll
2012-04-13 22:03 - 2012-04-13 22:03 - 00628064 _____ () C:\windows\system32\SimpleExt.dll
2013-03-23 17:48 - 2013-01-15 18:59 - 00161088 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCExtMenu_64.dll
2012-04-13 21:35 - 2011-03-25 10:28 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2008-12-20 04:20 - 2012-04-13 22:15 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\HookLib.dll
2008-12-20 04:20 - 2012-04-13 22:15 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\kbdhook.dll
2013-11-29 11:37 - 2013-11-28 19:20 - 02241536 _____ () C:\Program Files\AVAST Software\Avast\defs\13112801\algo.dll
2012-07-16 21:11 - 2012-03-23 15:55 - 00185808 _____ () C:\Users\Kristýna\AppData\Roaming\QipGuard\chrome.dll
2012-09-09 13:47 - 2012-01-10 13:51 - 00822816 _____ () C:\Program Files (x86)\Seznam.cz\bin\email.4.dll
2012-09-09 13:47 - 2012-01-10 13:51 - 01151520 _____ () C:\Program Files (x86)\Seznam.cz\bin\core.4.dll
2012-12-05 09:05 - 2012-12-05 09:05 - 01191424 _____ () C:\Program Files (x86)\Visagesoft\eXPert PDF 8\TMSLITE160.BPL
2012-12-05 09:05 - 2012-12-05 09:05 - 00087552 _____ () C:\Program Files (x86)\Visagesoft\eXPert PDF 8\VSPROPSAVER160.BPL
2012-12-05 09:05 - 2012-12-05 09:05 - 02478592 _____ () C:\Program Files (x86)\Visagesoft\eXPert PDF 8\VSVECTOR160.BPL
2012-12-05 09:05 - 2012-12-05 09:05 - 04682752 _____ () C:\Program Files (x86)\Visagesoft\eXPert PDF 8\VSPDFCORE160.BPL
2012-12-05 09:05 - 2012-12-05 09:05 - 02810368 _____ () C:\Program Files (x86)\Visagesoft\eXPert PDF 8\BBlite160.bpl
2012-02-23 14:11 - 2012-02-23 14:11 - 00025088 _____ () C:\Program Files (x86)\Visagesoft\eXPert PDF 8\vstrees160.bpl
2012-12-05 09:05 - 2012-12-05 09:05 - 00064512 _____ () C:\Program Files (x86)\Visagesoft\eXPert PDF 8\vsprinters160.bpl
2012-12-05 09:05 - 2012-12-05 09:05 - 00064512 _____ () C:\Program Files (x86)\Visagesoft\eXPert PDF 8\vspdfprinter160.bpl
2012-11-16 09:14 - 2012-11-16 09:14 - 00687856 _____ () C:\Program Files (x86)\Visagesoft\eXPert PDF 8\js32.dll
2012-12-05 09:05 - 2012-12-05 09:05 - 00097280 _____ () C:\Program Files (x86)\Visagesoft\eXPert PDF 8\EXPERTPDFCORE160.BPL
2012-12-05 09:05 - 2012-12-05 09:05 - 02253824 _____ () C:\Program Files (x86)\Visagesoft\eXPert PDF 8\PKIECTRL160.BPL
2012-12-05 09:05 - 2012-12-05 09:05 - 00518656 _____ () C:\Program Files (x86)\Visagesoft\eXPert PDF 8\VSPDFEDITOR160.BPL
2012-11-30 12:24 - 2012-11-30 12:24 - 01620480 _____ () C:\Program Files (x86)\Visagesoft\eXPert PDF 8\vp.dll
2011-03-17 00:11 - 2011-03-17 00:11 - 04297568 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2013-11-16 08:44 - 2013-11-14 12:28 - 00702416 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\libglesv2.dll
2013-11-16 08:44 - 2013-11-14 12:28 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\libegl.dll
2013-11-16 08:44 - 2013-11-14 12:29 - 04055504 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\pdf.dll
2013-11-16 08:44 - 2013-11-14 12:29 - 00399312 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\ppGoogleNaClPluginChrome.dll
2013-11-16 08:44 - 2013-11-14 12:28 - 01619408 _____ () C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\ffmpegsumo.dll

==================== Alternate Data Streams (whitelisted) =========


==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"

==================== Faulty Device Manager Devices =============

Name: Broadcom Bluetooth 2.1 USB
Description: Broadcom Bluetooth 2.1 USB
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Broadcom
Service: BTHUSB
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (11/29/2013 11:47:07 AM) (Source: SideBySide) (User: )
Description: Generování kontextu aktivace pro Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"1 se nezdařilo.
Závislé sestavení Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (11/29/2013 11:47:05 AM) (Source: Application Error) (User: )
Description: Název chybující aplikace: Power2GoExpress.exe, verze: 5.5.1.7303, časové razítko: 0x4cd75bec
Název chybujícího modulu: MUITransfer.dll, verze: 1.1.0.726, časové razítko: 0x4c4d48f6
Kód výjimky: 0xc0000005
Posun chyby: 0x00009253
ID chybujícího procesu: 0x4d4
Čas spuštění chybující aplikace: 0xPower2GoExpress.exe0
Cesta k chybující aplikaci: Power2GoExpress.exe1
Cesta k chybujícímu modulu: Power2GoExpress.exe2
ID zprávy: Power2GoExpress.exe3

Error: (11/29/2013 11:46:37 AM) (Source: SideBySide) (User: )
Description: Generování kontextu aktivace pro Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"1 se nezdařilo.
Závislé sestavení Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (11/29/2013 11:44:58 AM) (Source: MsiInstaller) (User: NT AUTHORITY)
Description: Aktualizaci Update for Microsoft Office 2010 (KB2589352) 64-Bit Edition produktu Microsoft Office Professional Plus 2010 nebylo možné nainstalovat. Kód chyby: 1603. Instalační služba systému Windows může vytvořit soubor protokolu s informacemi, které usnadní řešení potíží při instalaci softwaru. Další informace naleznete na webu na adrese http://go.microsoft.com/fwlink/?LinkId=23127

Error: (11/29/2013 11:44:56 AM) (Source: MsiInstaller) (User: NT AUTHORITY)
Description: Produkt: Microsoft Office Professional Plus 2010 – Chyba 25531Nepodařilo se otevřít soubor XML C:\Program Files\Microsoft Office\Office14\BCSEvents.man, systémová chyba: -2147024786

Error: (11/29/2013 11:44:40 AM) (Source: MsiInstaller) (User: NT AUTHORITY)
Description: Aktualizaci Update for Microsoft Office 2010 (KB2760598) 64-Bit Edition produktu Microsoft Office Professional Plus 2010 nebylo možné nainstalovat. Kód chyby: 1603. Instalační služba systému Windows může vytvořit soubor protokolu s informacemi, které usnadní řešení potíží při instalaci softwaru. Další informace naleznete na webu na adrese http://go.microsoft.com/fwlink/?LinkId=23127

Error: (11/29/2013 11:44:39 AM) (Source: MsiInstaller) (User: NT AUTHORITY)
Description: Produkt: Microsoft Office Professional Plus 2010 – Chyba 25531Nepodařilo se otevřít soubor XML C:\Program Files\Microsoft Office\Office14\BCSEvents.man, systémová chyba: -2147024786

Error: (11/29/2013 11:44:23 AM) (Source: MsiInstaller) (User: NT AUTHORITY)
Description: Aktualizaci Security Update for Microsoft Office 2010 (KB2687423) 64-Bit Edition produktu Microsoft Office Professional Plus 2010 nebylo možné nainstalovat. Kód chyby: 1603. Instalační služba systému Windows může vytvořit soubor protokolu s informacemi, které usnadní řešení potíží při instalaci softwaru. Další informace naleznete na webu na adrese http://go.microsoft.com/fwlink/?LinkId=23127

Error: (11/29/2013 11:44:21 AM) (Source: MsiInstaller) (User: NT AUTHORITY)
Description: Produkt: Microsoft Office Professional Plus 2010 – Chyba 25531Nepodařilo se otevřít soubor XML C:\Program Files\Microsoft Office\Office14\BCSEvents.man, systémová chyba: -2147024786

Error: (11/29/2013 11:44:02 AM) (Source: MsiInstaller) (User: NT AUTHORITY)
Description: Aktualizaci Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition produktu Microsoft Office Professional Plus 2010 nebylo možné nainstalovat. Kód chyby: 1603. Instalační služba systému Windows může vytvořit soubor protokolu s informacemi, které usnadní řešení potíží při instalaci softwaru. Další informace naleznete na webu na adrese http://go.microsoft.com/fwlink/?LinkId=23127


System errors:
=============
Error: (11/29/2013 11:48:40 AM) (Source: Service Control Manager) (User: )
Description: Služba Intel(R) Rapid Storage Technology neuspěla při spuštění v důsledku následující chyby:
%%1053

Error: (11/29/2013 11:48:40 AM) (Source: Service Control Manager) (User: )
Description: Při čekání na připojení služby Intel(R) Rapid Storage Technology bylo dosaženo časového limitu (30000 ms).

Error: (11/29/2013 11:44:58 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070643): Aktualizace pro Microsoft Office 2010 (KB2589352) (64bitová edice).

Error: (11/29/2013 11:44:40 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070643): Aktualizace pro Microsoft Office 2010 (KB2760598) (64bitová edice).

Error: (11/29/2013 11:44:23 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070643): Aktualizace zabezpečení pro Microsoft Office 2010 (KB2687423) (64bitová edice).

Error: (11/29/2013 11:44:02 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070643): Aktualizace definice pro Microsoft Office 2010 (KB982726) (64bitová edice).

Error: (11/29/2013 11:43:46 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070643): Aktualizace pro Microsoft Access 2010 (KB2553446) (64bitová edice).

Error: (11/29/2013 11:43:28 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070643): Aktualizace pro Microsoft Word 2010 (KB2827323) (64bitová edice).

Error: (11/29/2013 11:43:09 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070643): Aktualizace pro Microsoft Visio Viewer 2010 (KB2810066) (64bitová edice).

Error: (11/29/2013 11:42:52 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070643): Aktualizace pro Microsoft Office 2010 (KB2825640) (64bitová edice).


Microsoft Office Sessions:
=========================
Error: (11/29/2013 11:47:07 AM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe

Error: (11/29/2013 11:47:05 AM) (Source: Application Error)(User: )
Description: Power2GoExpress.exe5.5.1.73034cd75becMUITransfer.dll1.1.0.7264c4d48f6c0000005000092534d401ceecf0566d8b14C:\Program Files (x86)\Lenovo\Power2Go\Power2GoExpress.exeC:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUITransfer.dll95922f5f-58e3-11e3-b871-446d575fdc96

Error: (11/29/2013 11:46:37 AM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"C:\Program Files (x86)\Lenovo\VeriFace\MainOp.dll

Error: (11/29/2013 11:44:58 AM) (Source: MsiInstaller)(User: NT AUTHORITY)
Description: Microsoft Office Professional Plus 2010Update for Microsoft Office 2010 (KB2589352) 64-Bit Edition1603(NULL)(NULL)(NULL)

Error: (11/29/2013 11:44:56 AM) (Source: MsiInstaller)(User: NT AUTHORITY)
Description: Produkt: Microsoft Office Professional Plus 2010 – Chyba 25531Nepodařilo se otevřít soubor XML C:\Program Files\Microsoft Office\Office14\BCSEvents.man, systémová chyba: -2147024786(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (11/29/2013 11:44:40 AM) (Source: MsiInstaller)(User: NT AUTHORITY)
Description: Microsoft Office Professional Plus 2010Update for Microsoft Office 2010 (KB2760598) 64-Bit Edition1603(NULL)(NULL)(NULL)

Error: (11/29/2013 11:44:39 AM) (Source: MsiInstaller)(User: NT AUTHORITY)
Description: Produkt: Microsoft Office Professional Plus 2010 – Chyba 25531Nepodařilo se otevřít soubor XML C:\Program Files\Microsoft Office\Office14\BCSEvents.man, systémová chyba: -2147024786(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (11/29/2013 11:44:23 AM) (Source: MsiInstaller)(User: NT AUTHORITY)
Description: Microsoft Office Professional Plus 2010Security Update for Microsoft Office 2010 (KB2687423) 64-Bit Edition1603(NULL)(NULL)(NULL)

Error: (11/29/2013 11:44:21 AM) (Source: MsiInstaller)(User: NT AUTHORITY)
Description: Produkt: Microsoft Office Professional Plus 2010 – Chyba 25531Nepodařilo se otevřít soubor XML C:\Program Files\Microsoft Office\Office14\BCSEvents.man, systémová chyba: -2147024786(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (11/29/2013 11:44:02 AM) (Source: MsiInstaller)(User: NT AUTHORITY)
Description: Microsoft Office Professional Plus 2010Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition1603(NULL)(NULL)(NULL)


==================== Memory info ===========================

Percentage of memory in use: 38%
Total physical RAM: 4039.86 MB
Available physical RAM: 2495.01 MB
Total Pagefile: 8077.9 MB
Available Pagefile: 6341.82 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:421.81 GB) (Free:352.85 GB) NTFS
Drive d: (LENOVO) (Fixed) (Total:29 GB) (Free:26.5 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 0FA32635)
Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=422 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=29 GB) - (Type=OF Extended)
Partition 4: (Not Active) - (Size=15 GB) - (Type=12)

==================== End Of Log ============================

Re: Problém s flash diskem - zástupci

Napsal: 01 pro 2013 14:42
od Fire-man
Logfile of random's system information tool 1.08 (written by random/random)
Run by Kristýna at 2013-12-01 14:33:54
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 360 GB (83%) free of 432 GB
Total RAM: 4040 MB (51% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:35:06, on 1.12.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16736)
Boot mode: Normal

Running processes:
C:\Users\Kristýna\AppData\Roaming\QipGuard\QipGuard.exe
C:\Program Files (x86)\Seznam.cz\bin\postak.exe
C:\Program Files (x86)\USB Camera2\VM332_STI.EXE
C:\Program Files (x86)\Visagesoft\eXPert PDF 8\vspdfprsrv.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files\trend micro\Kristýna.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - (no file)
F2 - REG:system.ini: UserInit=C:\windows\SysWOW64\Userinit.exe,
O2 - BHO: IMPI Helper - {17E113E6-CD0E-4045-B154-65F0E57959EF} - C:\Program Files\IMPI\Extension32.dll
O2 - BHO: Web Assistant Helper - {336D0C35-8A85-403a-B9D2-65C292C39087} - C:\Program Files\Web Assistant\Extension32.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Kristýna\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files (x86)\Seznam.cz\bin\core.4.dll
O3 - Toolbar: (no name) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - (no file)
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Nástroje Lištičky - {1EA00BE1-6E54-4E2A-8099-680300BF23E1} - C:\Program Files (x86)\Seznam.cz\toolbar\toolbar.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [332BigDog] C:\Program Files (x86)\USB Camera2\VM332_STI.EXE
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [VeriFaceManager] C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
O4 - HKLM\..\Run: [UpdatePRCShortCut] "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery"
O4 - HKLM\..\Run: [vspdfprsrv.exe] C:\Program Files (x86)\Visagesoft\eXPert PDF 8\vspdfprsrv.exe --background
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [20131121] C:\Program Files\AVAST Software\Avast\setup\emupdate\6bbbda31-adf1-4a24-bbc7-64933f4cca34.exe /check
O4 - HKCU\..\Run: [QIP Internet Guardian] C:\Users\Kristýna\AppData\Roaming\QipGuard\QipGuard.exe /p
O4 - HKCU\..\Run: [Power2GoExpress] "C:\Program Files (x86)\Lenovo\Power2Go\Power2GoExpress.exe" /Startup
O4 - HKCU\..\Run: [Seznam Postak] "C:\Program Files (x86)\Seznam.cz\bin\postak.exe" -s
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C348BC2E93EB2B.dll/cmsidewiki.html
O9 - Extra button: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files (x86)\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files (x86)\Seznam.cz\listicka.dll
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files (x86)\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files (x86)\Seznam.cz\listicka.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Advanced SystemCare Service 6 (AdvancedSystemCareService6) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IMPI Updater - Unknown owner - C:\Program Files\IMPI\ExtensionUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: QipGuard - QIP.ru - C:\Program Files (x86)\QipGuard\QipGuard.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: Web Assistant - Unknown owner - C:\Program Files\Web Assistant\ExtensionUpdaterService.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13714 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
winlogon.exe
C:\windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe"
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\windows\system32\Dwm.exe"
"C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe"
"C:\Program Files\IMPI\ExtensionUpdaterService.exe"
"C:\Program Files (x86)\QipGuard\QipGuard.exe"
C:\windows\Explorer.EXE
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\Web Assistant\ExtensionUpdaterService.exe"
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Users\Kristýna\AppData\Roaming\QipGuard\QipGuard.exe" /p
"C:\Program Files (x86)\Seznam.cz\bin\postak.exe" -s
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\USB Camera2\VM332_STI.EXE"
"C:\Program Files (x86)\Visagesoft\eXPert PDF 8\vspdfprsrv.exe" --background
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 4552
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\windows\system32\wuauclt.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="3780.0.537504371\2081286753" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,3,12,22 --disable-accelerated-video-decode --gpu-vendor-id=0x8086 --gpu-device-id=0x0106 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=8.15.10.2342 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/95-pct/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group4 pct:10c stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_11/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --instant-process --disable-html-notifications --disable-accelerated-video-decode --channel="3780.1.630178438\1103372586" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/95-pct/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group4 pct:10c stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_11/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="3780.3.1868957180\1957358272" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="3780.5.449145711\1854313482" --ppapi-flash-args --lang=cs --ignored=" --type=renderer " /prefetch:-632637702
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AutocompleteDynamicTrial_2/DefaultControl_R2_Stable/BrowserPreReadExperiment/95-pct/CookieRetentionPriorityStudy/ExperimentOn/DeferBackgroundExtensionCreation/RateLimited/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Group4 pct:10c stable:pp1 use_remote_ntp_on_startup:1 espv:210 suppress_on_srp:1/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderDisabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_11/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_12/UMA-Uniformity-Trial-50-Percent/group_01/" --enable-threaded-compositing --renderer-print-preview --disable-html-notifications --disable-accelerated-video-decode --channel="3780.11.1896771663\865086185" /prefetch:673131151
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Users\Kristýna\Downloads\RSITx64.exe"
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\System32\svchost.exe -k WerSvcGroup

======Scheduled tasks folder======

C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{17E113E6-CD0E-4045-B154-65F0E57959EF}]
IMPI - C:\Program Files\IMPI\Extension64.dll [2013-02-05 211456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-03-07 1497560]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{336D0C35-8A85-403a-B9D2-65C292C39087}]
Web Assistant - C:\Program Files\Web Assistant\Extension64.dll [2013-06-30 215896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{17E113E6-CD0E-4045-B154-65F0E57959EF}]
IMPI - C:\Program Files\IMPI\Extension32.dll [2013-02-05 167424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{336D0C35-8A85-403a-B9D2-65C292C39087}]
Web Assistant - C:\Program Files\Web Assistant\Extension32.dll [2013-06-30 170840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-11-13 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}]
QIPBHO Class - C:\Users\Kristýna\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2011-10-12 142288]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-12-21 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-11-13 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}]
Ukazatel S-Rank - C:\Program Files (x86)\Seznam.cz\bin\core.4.dll [2012-01-10 1151520]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-03-07 1497560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]
{1EA00BE1-6E54-4E2A-8099-680300BF23E1} - Nástroje Lištičky - C:\Program Files (x86)\Seznam.cz\toolbar\toolbar.dll [2011-05-25 188960]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-03-29 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-03-29 391704]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-03-29 418840]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2011-04-08 2741544]
"Lenovo EE Boot Optimizer"=C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [2012-04-13 114688]
"Energy Management"=C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [2012-04-13 9753024]
"EnergyUtility"=C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [2012-04-13 5908928]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"QIP Internet Guardian"=C:\Users\Kristýna\AppData\Roaming\QipGuard\QipGuard.exe [2012-03-23 191440]
"Power2GoExpress"=C:\Program Files (x86)\Lenovo\Power2Go\Power2GoExpress.exe [2011-01-03 2532648]
"Seznam Postak"=C:\Program Files (x86)\Seznam.cz\bin\postak.exe [2012-01-10 491040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OfficeSyncProcess]
C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-02-18 283160]
"332BigDog"=C:\Program Files (x86)\USB Camera2\VM332_STI.EXE [2010-01-19 536576]
"UpdateP2GShortCut"=C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [2010-07-26 222504]
"VeriFaceManager"=C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [2012-04-13 329056]
"UpdatePRCShortCut"=C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [2009-05-13 222504]
"vspdfprsrv.exe"=C:\Program Files (x86)\Visagesoft\eXPert PDF 8\vspdfprsrv.exe [2012-12-05 3611136]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-03-07 4767304]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02 254336]
"20131121"=C:\Program Files\AVAST Software\Avast\setup\emupdate\6bbbda31-adf1-4a24-bbc7-64933f4cca34.exe [2013-11-23 180184]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe

C:\Users\Kristýna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-03-25 385024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"= []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2012-08-16 4171424]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=3
"NoDriveTypeAutoRun"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoDriveAutoRun"=3
"NoDriveTypeAutoRun"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2013-12-01 14:33:54 ----D---- C:\rsit
2013-12-01 14:33:54 ----D---- C:\Program Files\trend micro
2013-11-29 12:01:58 ----D---- C:\FRST
2013-11-24 16:27:08 ----RASHD---- C:\Autorun.inf
2013-11-24 16:23:04 ----A---- C:\UsbFix [Clean 1] KRISTYNA-PC.txt
2013-11-24 16:18:54 ----D---- C:\UsbFix
2013-11-16 08:47:00 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-11-16 08:46:59 ----A---- C:\windows\system32\ieui.dll
2013-11-16 08:46:58 ----A---- C:\windows\SYSWOW64\iesetup.dll
2013-11-16 08:46:57 ----A---- C:\windows\SYSWOW64\RegisterIEPKEYs.exe
2013-11-16 08:46:57 ----A---- C:\windows\SYSWOW64\iesysprep.dll
2013-11-16 08:46:57 ----A---- C:\windows\SYSWOW64\iernonce.dll
2013-11-16 08:46:57 ----A---- C:\windows\system32\RegisterIEPKEYs.exe
2013-11-16 08:46:57 ----A---- C:\windows\system32\iesysprep.dll
2013-11-16 08:46:57 ----A---- C:\windows\system32\iesetup.dll
2013-11-16 08:46:57 ----A---- C:\windows\system32\iernonce.dll
2013-11-16 08:46:57 ----A---- C:\windows\system32\ie4uinit.exe
2013-11-16 08:46:56 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-11-16 08:46:55 ----A---- C:\windows\system32\iertutil.dll
2013-11-16 08:46:52 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-11-16 08:46:52 ----A---- C:\windows\system32\msfeeds.dll
2013-11-16 08:46:51 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-11-16 08:46:51 ----A---- C:\windows\system32\jscript.dll
2013-11-16 08:46:50 ----A---- C:\windows\system32\jscript9.dll
2013-11-16 08:46:49 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-11-16 08:46:48 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-11-16 08:46:48 ----A---- C:\windows\system32\urlmon.dll
2013-11-16 08:46:46 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-11-16 08:46:46 ----A---- C:\windows\system32\jsproxy.dll
2013-11-16 08:46:45 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-11-16 08:46:44 ----A---- C:\windows\system32\wininet.dll
2013-11-16 08:46:42 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-11-16 08:46:40 ----A---- C:\windows\system32\ieframe.dll
2013-11-16 08:46:38 ----A---- C:\windows\system32\mshtml.dll
2013-11-16 08:46:34 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-11-14 17:49:18 ----A---- C:\windows\system32\crypt32.dll
2013-11-14 17:49:17 ----A---- C:\windows\SYSWOW64\crypt32.dll
2013-11-14 17:49:15 ----A---- C:\windows\system32\drivers\afd.sys
2013-11-14 17:49:13 ----A---- C:\windows\SYSWOW64\authui.dll
2013-11-14 17:49:13 ----A---- C:\windows\system32\SmartcardCredentialProvider.dll
2013-11-14 17:49:13 ----A---- C:\windows\system32\credui.dll
2013-11-14 17:49:13 ----A---- C:\windows\system32\authui.dll
2013-11-14 17:49:12 ----A---- C:\windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-11-14 17:49:12 ----A---- C:\windows\SYSWOW64\credui.dll
2013-11-14 17:49:08 ----A---- C:\windows\SYSWOW64\schannel.dll
2013-11-14 17:49:08 ----A---- C:\windows\system32\schannel.dll
2013-11-14 17:49:08 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2013-11-14 17:49:08 ----A---- C:\windows\system32\drivers\ksecdd.sys
2013-11-14 17:49:08 ----A---- C:\windows\system32\drivers\cng.sys
2013-11-14 17:49:07 ----A---- C:\windows\SYSWOW64\sspicli.dll
2013-11-14 17:49:07 ----A---- C:\windows\SYSWOW64\secur32.dll
2013-11-14 17:49:07 ----A---- C:\windows\SYSWOW64\ncrypt.dll
2013-11-14 17:49:07 ----A---- C:\windows\system32\sspisrv.dll
2013-11-14 17:49:07 ----A---- C:\windows\system32\sspicli.dll
2013-11-14 17:49:07 ----A---- C:\windows\system32\secur32.dll
2013-11-14 17:49:07 ----A---- C:\windows\system32\ncrypt.dll
2013-11-14 17:49:07 ----A---- C:\windows\system32\lsass.exe
2013-11-14 17:49:07 ----A---- C:\windows\system32\lsasrv.dll
2013-11-14 17:49:05 ----A---- C:\windows\SYSWOW64\gdi32.dll
2013-11-14 17:49:05 ----A---- C:\windows\system32\gdi32.dll
2013-11-14 17:49:04 ----A---- C:\windows\system32\IKEEXT.DLL
2013-11-14 17:49:03 ----A---- C:\windows\SYSWOW64\nshwfp.dll
2013-11-14 17:49:03 ----A---- C:\windows\SYSWOW64\FWPUCLNT.DLL
2013-11-14 17:49:03 ----A---- C:\windows\system32\nshwfp.dll
2013-11-14 17:49:03 ----A---- C:\windows\system32\FWPUCLNT.DLL
2013-11-13 17:10:42 ----D---- C:\ProgramData\Oracle
2013-11-13 17:10:40 ----A---- C:\windows\SYSWOW64\javaws.exe
2013-11-13 17:10:33 ----A---- C:\windows\SYSWOW64\WindowsAccessBridge-32.dll
2013-11-13 17:10:33 ----A---- C:\windows\SYSWOW64\javaw.exe
2013-11-13 17:10:33 ----A---- C:\windows\SYSWOW64\java.exe
2013-11-13 17:10:24 ----D---- C:\Program Files (x86)\Java

======List of files/folders modified in the last 1 months======

2013-12-01 14:34:37 ----D---- C:\Users\Kristýna\AppData\Roaming\Skype
2013-12-01 14:34:10 ----D---- C:\windows\Temp
2013-12-01 14:33:54 ----D---- C:\Program Files
2013-12-01 12:44:04 ----D---- C:\windows\System32
2013-12-01 12:44:04 ----D---- C:\windows\inf
2013-12-01 12:44:04 ----A---- C:\windows\system32\PerfStringBackup.INI
2013-12-01 09:55:05 ----SHD---- C:\windows\Installer
2013-12-01 09:55:05 ----D---- C:\ProgramData\Microsoft Help
2013-12-01 09:55:05 ----D---- C:\Config.Msi
2013-12-01 09:28:02 ----D---- C:\windows\system32\config
2013-12-01 09:09:23 ----D---- C:\windows\system32\catroot2
2013-12-01 09:09:17 ----SHD---- C:\System Volume Information
2013-12-01 09:07:21 ----A---- C:\windows\SYSWOW64\log.txt
2013-12-01 09:04:56 ----D---- C:\Windows
2013-11-29 12:01:30 ----D---- C:\windows\Prefetch
2013-11-24 16:26:46 ----HD---- C:\ProgramData
2013-11-20 18:32:40 ----D---- C:\Users\Kristýna\AppData\Roaming\vlc
2013-11-20 09:48:17 ----D---- C:\windows\Panther
2013-11-20 09:48:12 ----D---- C:\windows\Minidump
2013-11-20 09:48:12 ----D---- C:\windows\debug
2013-11-16 08:51:00 ----D---- C:\windows\winsxs
2013-11-16 08:49:02 ----D---- C:\windows\SysWOW64
2013-11-16 08:49:02 ----D---- C:\Program Files\Internet Explorer
2013-11-16 08:49:02 ----D---- C:\Program Files (x86)\Internet Explorer
2013-11-16 08:49:01 ----D---- C:\windows\SYSWOW64\cs-CZ
2013-11-16 08:49:01 ----D---- C:\windows\system32\drivers
2013-11-16 08:49:01 ----D---- C:\windows\system32\cs-CZ
2013-11-16 08:47:26 ----D---- C:\windows\system32\catroot
2013-11-13 17:10:48 ----D---- C:\Program Files (x86)\Common Files
2013-11-13 17:10:24 ----D---- C:\Program Files (x86)
2013-11-13 17:08:00 ----D---- C:\windows\Tasks
2013-11-13 17:08:00 ----D---- C:\windows\system32\Tasks
2013-11-13 17:08:00 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2013-11-11 05:50:16 ----N---- C:\windows\system32\MpSigStub.exe
2013-11-03 10:25:06 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-02 08:46:18 ----D---- C:\windows\system32\MRT

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\windows\system32\drivers\aswRvrt.sys [2013-03-07 65336]
R0 fbfmon;fbfmon; C:\windows\system32\drivers\fbfmon.sys [2012-04-13 57952]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2011-02-18 439320]
R0 LHDmgr;LHDmgr; C:\windows\System32\DRIVERS\LhdX64.sys [2012-04-13 39008]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 aswRdr;aswRdr; C:\windows\System32\Drivers\aswrdr2.sys [2013-03-07 70992]
R1 aswSnx;aswSnx; C:\windows\system32\drivers\aswSnx.sys [2013-03-07 1025808]
R1 aswSP;aswSP; C:\windows\system32\drivers\aswSP.sys [2013-03-07 377920]
R1 aswTdi;avast! Network Shield Support; C:\windows\system32\drivers\aswTdi.sys [2013-03-07 68920]
R1 BPntDrv;BPntDrv; C:\windows\system32\drivers\BPntDrv.sys [2012-04-13 13408]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\windows\system32\drivers\aswFsBlk.sys [2013-03-07 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\windows\system32\drivers\aswMonFlt.sys [2013-03-07 80816]
R3 ACPIVPC;Lenovo Virtual Power Controller Driver; C:\windows\system32\DRIVERS\AcpiVpc.sys [2012-04-13 29792]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athrx.sys [2010-11-24 2673664]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\windows\system32\drivers\CHDRT64.sys [2011-03-10 1581184]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd64.sys [2011-03-25 12262336]
R3 IntcDAud;Intel(R) Display Audio; C:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x64.sys [2011-01-25 77424]
R3 MEIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2011-04-08 1430576]
R3 vm2uvcflt;Vimicro USB Camera Filter 2; C:\windows\System32\Drivers\vm2uvcflt.sys [2010-09-21 15056]
R3 vm332avs;Lenovo Camera2; C:\windows\System32\Drivers\vm332avs.sys [2010-12-10 234960]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 aswVmm;aswVmm; C:\windows\system32\drivers\aswVmm.sys [2013-03-07 178624]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-09-29 80384]
S3 BTWAMPFL;btwampfl; C:\windows\system32\DRIVERS\btwampfl.sys [2010-12-15 349224]
S3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-12-15 106536]
S3 btwavdt;Bluetooth AVDT Service; C:\windows\system32\DRIVERS\btwavdt.sys [2010-12-15 138280]
S3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-12-15 39464]
S3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-12-15 21416]
S3 clwvd;CyberLink WebCam Virtual Driver; C:\windows\system32\DRIVERS\clwvd.sys [2011-01-29 31088]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\windows\System32\drivers\rdpvideominiport.sys [2013-03-23 19456]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUVStor.sys [2010-09-30 299520]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\windows\system32\DRIVERS\ssadbus.sys [2011-05-13 157672]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 16872]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 177640]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\windows\system32\DRIVERS\ssadserd.sys [2011-05-13 146920]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2013-03-23 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2013-03-23 30208]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
S3 WinUsb;WinUsb; C:\windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2012-07-11 140672]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]
R2 AdvancedSystemCareService6;Advanced SystemCare Service 6; C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [2013-01-15 465216]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-03-07 45248]
R2 btwdins;Bluetooth Service; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [2010-12-14 953632]
R2 IMPI Updater;IMPI Updater; C:\Program Files\IMPI\ExtensionUpdaterService.exe [2013-02-05 185856]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-12-21 325656]
R2 QipGuard;QipGuard; C:\Program Files (x86)\QipGuard\QipGuard.exe [2012-03-23 191440]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-12-21 2656280]
R2 Web Assistant;Web Assistant; C:\Program Files\Web Assistant\ExtensionUpdaterService.exe [2013-06-30 188760]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-16 116648]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-02-18 13336]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-02-28 161384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-13 257416]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-16 116648]
S3 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2011-05-09 136120]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-10-15 117656]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2012-07-17 1255736]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 57184]

-----------------EOF-----------------