Stránka 1 z 3

Stále se mi snaží něco otevírat v počítači

Napsal: 05 led 2014 17:00
od zooh
Dobré odpoledne, moc prosím o radu - dnes se mi tu stále snaží něco otevírat. Avast to teda vždy zablokuje, ale je to tak každých 10 minut. Nejčastěji mi to píše že se chce otevřít něco z http://ceigqweqwaywiqgu.org/ a teď před chvílí to byl i nějakej program, kterej se mi chtěl otevřít. Děkuji za pomoc
----------------------------------------

-------------------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Zora at 2014-01-05 16:56:40
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 229 GB (48%) free of 477 GB
Total RAM: 3912 MB (51% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:57:03, on 5.1.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe
C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
C:\Program Files\trend micro\Zora Všelichová.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.tb.ask.com/index.jhtml?n=77 ... 3godp2AApQ
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Deownload kEEepaeeR - {673DBCE8-E819-7F03-4368-C8EAA7057BEF} - C:\Program Files (x86)\Deownload kEEepaeeR\uvwL.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\17.1.3.1\AVG SafeGuard toolbar_toolbar.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: IEExtension.Extension - {d40c654d-7c51-4eb3-95b2-1e23905c2a2d} - mscoree.dll (file missing)
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\17.1.3.1\AVG SafeGuard toolbar_toolbar.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [iSkysoft Helper Compact.exe] C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [Hoolapp Android] "C:\Users\ZORAVE~1\AppData\Roaming\HOOLAP~1\Hoolapp.exe" /Minimized
O4 - HKCU\..\Run: [StickyPassword] "C:\Program Files (x86)\Sticky Password\stpass.exe" /autorunned
O4 - HKCU\..\Run: [MyTomTomSA.exe] "C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe"
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIILE.EXE /EPT "EPLTarget\P0000000000000000" /M "XP-205 207 Series"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: HpM3Util.exe
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\17.1.3\ViProtocol.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) - ABBYY - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: EpsonCustomerResearchParticipation - SEIKO EPSON CORPORATION - C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PirritUpdater - Unknown owner - C:\Program Files (x86)\Pirrit\AutoUpdater.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater17.1.3 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.1.3\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14246 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\system32\WLANExt.exe 3596736
\??\C:\Windows\system32\conhost.exe "9272501906295362981479462939143610911-11453607811929862080701215151306716293
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe" -service
"C:\Users\Zora Všelichová\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HpM3Util.exe"
szndesktop.exe default start
"C:\Program Files (x86)\Launch Manager\LManager.exe"
"C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe"
\??\C:\Windows\system32\conhost.exe "-5459819721295532991-20474371843023957812047143478209817449-714181707-191137419
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
"C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
C:\Windows\system32\igfxext.exe -Embedding
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files (x86)\Launch Manager\LMworker.exe"
"C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe"
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window
"C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Pirrit\AutoUpdater.exe"
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
"C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.1.3\ToolbarUpdater.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.1.3\loggingserver.exe" 72648 "C:\ProgramData\AVG SafeGuard toolbar\Logger\logger.properties"
\??\C:\Windows\system32\conhost.exe "17415660591364721846-486191676-150409366753097471-10656954161656525724683589052
C:\Windows\system32\EscSvc64.exe
WLIDSvcM.exe 3928
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-d4c5d2a6-8fbb-4afa-b31e-415e062a818c -SystemEventPortName:HostProcess-9c288eaa-7b67-4720-936b-8f972016c768 -IoCancelEventPortName:HostProcess-0e51dc97-f7c1-4ded-9566-e818194bb374 -NonStateChangingEventPortName:HostProcess-bf04f24d-93c9-409b-8896-7257c0e5b678 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:4e193fa9-c069-4262-ace9-1f528a85766b -DeviceGroupId:WpdFsGroup
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\system32\svchost.exe -k defragsvc
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4224.12bfed00.1961409830 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 4224 "\\.\pipe\gecko-crash-server-pipe.4224" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe" --proxy-stub-channel=Flash3192.62D6B990.28682 --host-broker-channel=Flash3192.62D6B990.30814 --host-pid=3192 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe" --channel=3044.001AF7C0.848836251 --proxy-stub-channel=Flash3192.62D6B990.28682 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll" --host-npapi-version=27 --type=renderer
"C:\Users\Zora Všelichová\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\17.1.3\\npsitesafety.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3508.0205]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@parallelgraphics.com/Cortona]
"Description"=Cortona VRML Plugin
"Path"=C:\Program Files (x86)\Common Files\ParallelGraphics\Cortona\npcortona.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@parallelgraphics.com/RapidView]
"Description"=Cortona 2D Plugin
"Path"=C:\Program Files (x86)\Common Files\ParallelGraphics\Cortona2D\npCortona2d.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Program Files (x86)\Mozilla Firefox\plugins\
nppdf32.dll

C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\extensions\
6m.9yeu@srymoomv-.edu
cs@dictionaries.addons.mozilla.org
{ea614400-e918-4741-9a97-7a972ff7c30b}

C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\searchplugins\
ask-web-search.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{673DBCE8-E819-7F03-4368-C8EAA7057BEF}]
Deownload kEEepaeeR - C:\Program Files (x86)\Deownload kEEepaeeR\uvwL.x64.dll [2012-11-01 407552]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 431104]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-10-09 6270336]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{673DBCE8-E819-7F03-4368-C8EAA7057BEF}]
Deownload kEEepaeeR - C:\Program Files (x86)\Deownload kEEepaeeR\uvwL.dll [2013-11-01 371712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG SafeGuard toolbar - C:\Program Files (x86)\AVG SafeGuard toolbar\17.1.3.1\AVG SafeGuard toolbar_toolbar.dll [2013-11-20 3135664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-10-09 4502400]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d40c654d-7c51-4eb3-95b2-1e23905c2a2d}]
IEExtension.Extension - C:\Windows\system32\mscoree.dll [2010-11-21 444752]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 431104]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG SafeGuard toolbar - C:\Program Files (x86)\AVG SafeGuard toolbar\17.1.3.1\AVG SafeGuard toolbar_toolbar.dll [2013-11-20 3135664]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-04-23 170264]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-04-23 398616]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-04-23 439064]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-02-14 2868496]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-12-27 12343400]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-03-21 472992]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-11-18 20587168]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2013-12-06 20203904]
"AdobeBridge"= []
"Hoolapp Android"=C:\Users\ZORAVE~1\AppData\Roaming\HOOLAP~1\Hoolapp.exe /Minimized []
"StickyPassword"=C:\Program Files (x86)\Sticky Password\stpass.exe /autorunned []
"MyTomTomSA.exe"=C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe [2013-08-01 458680]
"AlcoholAutomount"=C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
"cz.seznam.software.autoupdate"=C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"EPLTarget\P0000000000000000"=C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIILE.EXE [2012-02-29 283232]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-02-29 56088]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2012-03-23 1105488]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe []
"vProt"=C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe [2013-11-20 2334384]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"EEventManager"=C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2011-10-31 1058400]
"AdobeCS5.5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [2011-01-12 1523360]
"iSkysoft Helper Compact.exe"=C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe []

C:\Users\Zora Všelichová\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
HpM3Util.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-03-27 434688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-01-05 16:00:39 ----D---- C:\Program Files\trend micro
2014-01-05 16:00:31 ----D---- C:\rsit
2013-12-18 13:21:03 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2013-12-18 13:21:01 ----A---- C:\Windows\system32\ieui.dll
2013-12-18 13:21:00 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-12-18 13:21:00 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-12-18 13:21:00 ----A---- C:\Windows\system32\jsproxy.dll
2013-12-18 13:20:59 ----A---- C:\Windows\system32\ieUnatt.exe
2013-12-18 13:20:59 ----A---- C:\Windows\system32\iernonce.dll
2013-12-18 13:20:59 ----A---- C:\Windows\system32\ie4uinit.exe
2013-12-18 13:20:58 ----A---- C:\Windows\system32\iesetup.dll
2013-12-18 13:20:57 ----A---- C:\Windows\system32\ieetwproxystub.dll
2013-12-18 13:20:57 ----A---- C:\Windows\system32\ieetwcollector.exe
2013-12-18 13:20:55 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2013-12-18 13:20:55 ----A---- C:\Windows\system32\mshtml.dll
2013-12-18 13:20:54 ----A---- C:\Windows\system32\jscript9diag.dll
2013-12-18 13:20:54 ----A---- C:\Windows\system32\ieapfltr.dll
2013-12-18 13:20:53 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-12-18 13:20:49 ----A---- C:\Windows\system32\iertutil.dll
2013-12-18 13:20:47 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-12-18 13:20:47 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-12-18 13:20:45 ----A---- C:\Windows\system32\wininet.dll
2013-12-18 13:20:44 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-12-18 13:20:43 ----A---- C:\Windows\system32\urlmon.dll
2013-12-18 13:20:39 ----A---- C:\Windows\system32\ieframe.dll
2013-12-18 13:20:38 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-12-18 13:20:35 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-12-18 13:20:33 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-12-18 13:20:31 ----A---- C:\Windows\system32\jscript9.dll
2013-12-17 21:37:56 ----D---- C:\Users\Zora Všelichová\AppData\Roaming\avidemux
2013-12-17 21:37:17 ----D---- C:\Program Files (x86)\Avidemux 2.6
2013-12-17 12:53:14 ----A---- C:\Windows\system32\IEUDINIT.EXE
2013-12-17 12:47:50 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-12-17 12:47:50 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\url.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\wextract.exe
2013-12-17 12:47:45 ----A---- C:\Windows\system32\webcheck.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\vbscript.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\url.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-12-17 12:47:45 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-17 12:47:45 ----A---- C:\Windows\system32\pngfilt.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\occache.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\msrating.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\msls31.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\mshtmler.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\mshtmled.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\mshta.exe
2013-12-17 12:47:45 ----A---- C:\Windows\system32\msfeedssync.exe
2013-12-17 12:47:45 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\msfeeds.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\licmgr10.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\jsIntl.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\inseng.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\iexpress.exe
2013-12-17 12:47:45 ----A---- C:\Windows\system32\iesysprep.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\iedkcs32.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\ieapfltr.dat
2013-12-17 12:47:45 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\icardie.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\elshyph.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\dxtrans.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\dxtmsft.dll
2013-12-17 12:47:44 ----A---- C:\Windows\system32\MshtmlDac.dll
2013-12-17 12:47:44 ----A---- C:\Windows\system32\jscript.dll
2013-12-17 12:47:44 ----A---- C:\Windows\system32\imgutil.dll
2013-12-17 12:47:44 ----A---- C:\Windows\system32\iepeers.dll
2013-12-17 12:42:52 ----SHD---- C:\Config.Msi
2013-12-15 14:33:58 ----D---- C:\Program Files\EPSON
2013-12-13 17:05:39 ----D---- C:\ProgramData\Pinnacle Studio Ultimate Collection
2013-12-13 16:59:09 ----D---- C:\ProgramData\Studio 14
2013-12-13 16:59:09 ----D---- C:\ProgramData\Pinnacle Studio Plus
2013-12-13 16:59:09 ----D---- C:\Program Files (x86)\Pinnacle
2013-12-13 16:56:34 ----D---- C:\ProgramData\Pinnacle
2013-12-12 15:05:52 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-12-12 14:14:30 ----A---- C:\Windows\system32\wmploc.DLL
2013-12-12 14:14:29 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-12-12 14:14:29 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-12-12 14:14:26 ----A---- C:\Windows\system32\wmp.dll
2013-12-11 23:21:43 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-12-11 23:21:43 ----A---- C:\Windows\system32\WMPhoto.dll
2013-12-11 23:21:42 ----A---- C:\Windows\system32\win32k.sys
2013-12-11 23:21:41 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-12-11 23:21:41 ----A---- C:\Windows\system32\msieftp.dll
2013-12-11 23:21:41 ----A---- C:\Windows\system32\imagehlp.dll
2013-12-11 23:21:40 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-12-11 23:21:37 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-12-11 23:21:37 ----A---- C:\Windows\system32\tzres.dll
2013-12-11 23:21:33 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-12-11 23:21:33 ----A---- C:\Windows\system32\drivers\drmk.sys
2013-12-11 23:21:31 ----A---- C:\Windows\SYSWOW64\wscript.exe
2013-12-11 23:21:31 ----A---- C:\Windows\system32\scrrun.dll
2013-12-11 23:21:31 ----A---- C:\Windows\system32\cscript.exe
2013-12-11 23:21:30 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2013-12-11 23:21:30 ----A---- C:\Windows\system32\wscript.exe
2013-12-11 23:21:29 ----A---- C:\Windows\SYSWOW64\cscript.exe
2013-12-10 12:45:00 ----D---- C:\Users\Zora Všelichová\AppData\Roaming\Windows Live Writer
2013-12-10 12:29:01 ----D---- C:\Windows\cs
2013-12-10 12:25:58 ----D---- C:\Program Files\Windows Live
2013-12-10 12:25:19 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-12-10 12:25:19 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-12-10 12:25:18 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-12-10 12:25:18 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-12-10 12:25:14 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2013-12-10 12:25:14 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-12-10 12:25:11 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2013-12-10 12:25:11 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-12-10 12:24:51 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2013-12-10 12:24:51 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-12-10 12:24:27 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2013-12-10 12:24:27 ----A---- C:\Windows\system32\d3dx9_32.dll

======List of files/folders modified in the last 1 month======

2014-01-05 16:57:01 ----D---- C:\Windows\Prefetch
2014-01-05 16:56:54 ----D---- C:\Windows\Temp
2014-01-05 16:52:07 ----D---- C:\Users\Zora Všelichová\AppData\Roaming\Skype
2014-01-05 16:50:51 ----D---- C:\Windows\system32\config
2014-01-05 16:40:20 ----D---- C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz
2014-01-05 16:39:28 ----A---- C:\Windows\SYSWOW64\log.txt
2014-01-05 16:00:39 ----RD---- C:\Program Files
2014-01-05 15:29:13 ----RD---- C:\Program Files (x86)
2014-01-01 01:23:41 ----D---- C:\Windows\System32
2014-01-01 01:23:41 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-01-01 01:23:40 ----D---- C:\Windows\inf
2013-12-31 12:44:10 ----SHD---- C:\System Volume Information
2013-12-24 23:13:23 ----D---- C:\Users\Zora Všelichová\AppData\Roaming\uTorrent
2013-12-20 23:18:15 ----RSD---- C:\Windows\Fonts
2013-12-19 14:55:02 ----D---- C:\Windows\winsxs
2013-12-19 14:52:03 ----D---- C:\Windows\SysWOW64
2013-12-19 14:52:03 ----D---- C:\Program Files\Internet Explorer
2013-12-19 14:52:03 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-18 13:21:26 ----D---- C:\Windows\system32\catroot
2013-12-18 13:21:24 ----D---- C:\Windows\system32\catroot2
2013-12-17 17:55:33 ----D---- C:\Windows\rescache
2013-12-17 17:10:54 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-17 17:10:02 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-12-17 17:10:02 ----D---- C:\Windows\system32\cs-CZ
2013-12-17 17:10:01 ----D---- C:\Windows\SYSWOW64\migration
2013-12-17 17:10:01 ----D---- C:\Windows\SYSWOW64\en-US
2013-12-17 17:10:00 ----D---- C:\Windows\system32\migration
2013-12-17 17:10:00 ----D---- C:\Windows\system32\en-US
2013-12-17 17:10:00 ----D---- C:\Windows\PolicyDefinitions
2013-12-17 12:53:14 ----D---- C:\Windows\Logs
2013-12-17 12:45:52 ----D---- C:\Windows
2013-12-17 12:45:39 ----D---- C:\Windows\system32\MRT
2013-12-17 12:43:20 ----SHD---- C:\Windows\Installer
2013-12-17 12:39:27 ----A---- C:\Windows\system32\MRT.exe
2013-12-15 14:35:41 ----D---- C:\ProgramData\EPSON
2013-12-13 17:07:21 ----D---- C:\Windows\system32\DriverStore
2013-12-13 17:07:13 ----D---- C:\Windows\system32\drivers
2013-12-13 17:06:53 ----SD---- C:\Users\Zora Všelichová\AppData\Roaming\Microsoft
2013-12-13 17:06:51 ----D---- C:\Program Files (x86)\Common Files
2013-12-13 17:05:39 ----HD---- C:\ProgramData
2013-12-12 14:31:53 ----D---- C:\Program Files\Windows Media Player
2013-12-12 14:31:53 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-12 01:00:52 ----D---- C:\Users\Zora Všelichová\AppData\Roaming\Pirrit
2013-12-11 21:07:01 ----D---- C:\Windows\Microsoft.NET
2013-12-11 21:05:28 ----RSD---- C:\Windows\assembly
2013-12-11 11:10:34 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-12-11 11:08:45 ----D---- C:\Program Files (x86)\Google
2013-12-10 12:26:33 ----D---- C:\Program Files (x86)\Windows Live
2013-12-09 19:33:30 ----D---- C:\Windows\system32\FxsTmp
2013-12-06 23:30:24 ----D---- C:\ProgramData\regid.1986-12.com.adobe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-05-09 65336]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-06-30 189936]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2012-02-01 568600]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2013-05-10 564824]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2013-05-09 22600]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2013-05-09 72016]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-06-30 1030952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-06-30 378944]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-05-09 64288]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2013-11-20 46368]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-05-09 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-05-09 80816]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2012-01-10 2801664]
R3 b57xdbd;Broadcom xD Picture Bus Driver Service; C:\Windows\system32\DRIVERS\b57xdbd.sys [2011-11-04 68648]
R3 b57xdmp;Broadcom xD Picture vstorp client drv; C:\Windows\system32\DRIVERS\b57xdmp.sys [2011-11-04 19496]
R3 bScsiMSa;bScsiMSa; C:\Windows\system32\DRIVERS\bScsiMSa.sys [2011-09-02 51752]
R3 bScsiSDa;bScsiSDa; C:\Windows\system32\DRIVERS\bScsiSDa.sys [2012-06-01 83576]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-03-27 14748416]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-01-03 4730344]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2011-12-06 331264]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2012-01-18 435240]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-23 261120]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2011-11-10 60184]
R3 SmbDrv;SmbDrv; C:\Windows\system32\DRIVERS\Smb_driver.sys [2012-02-14 22800]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2012-02-14 412944]
S3 ayc5ykvb;ayc5ykvb; C:\Windows\system32\drivers\ayc5ykvb.sys []
S3 Huawei;HUAWEI Mobile Connect - USB Smart Card Reader; C:\Windows\system32\DRIVERS\ewdcsc.sys [2009-12-15 29696]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-12-15 117248]
S3 hwusbdev;Huawei DataCard USB PNP Device; C:\Windows\system32\DRIVERS\ewusbdev.sys [2009-12-15 114304]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [2009-05-14 759048]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-03-23 355920]
R2 EpsonBidirectionalService;EpsonBidirectionalService; C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe [2006-12-19 94208]
R2 EpsonCustomerResearchParticipation;EpsonCustomerResearchParticipation; C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [2013-09-05 653888]
R2 EpsonScanSvc;Epson Scanner Service; C:\Windows\system32\EscSvc64.exe [2011-12-11 135824]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-02-01 13592]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-02 628448]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-08 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-08 277784]
R2 PirritUpdater;PirritUpdater; C:\Program Files (x86)\Pirrit\AutoUpdater.exe [2013-11-29 55296]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-10-09 3275136]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-08 363800]
R2 vToolbarUpdater17.1.3;vToolbarUpdater17.1.3; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.1.3\ToolbarUpdater.exe [2013-11-20 1643696]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
S2 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-04 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-04-23 276248]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-04 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-12 119408]
S3 SwitchBoard;Adobe SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-05-06 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 05 led 2014 17:05
od Márty84
Zdravim :)

:arrow: Udelejte !!!kompletni!!! kontrolu s MBAM http://forum.viry.cz/viewtopic.php?f=29&t=115222 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 05 led 2014 19:24
od zooh
Márty84 píše:Zdravim :)

:arrow: Udelejte !!!kompletni!!! kontrolu s MBAM http://forum.viry.cz/viewtopic.php?f=29&t=115222 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware.) 1.75.0.1300
www.malwarebytes.org

Verze: v2014.01.05.02

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16476

Ochrana: Povolena

5.1.2014 17:38:46
MBAM-log-2014-01-05 (19-22-31).txt

Typ: Kompletní kontrola (C:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 425657
Uplynulý čas: 1 hodin, 39 minut, 37 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 7
HKCR\CLSID\{673DBCE8-E819-7F03-4368-C8EAA7057BEF} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{673DBCE8-E819-7F03-4368-C8EAA7057BEF} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{673DBCE8-E819-7F03-4368-C8EAA7057BEF} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{673DBCE8-E819-7F03-4368-C8EAA7057BEF} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{673DBCE8-E819-7F03-4368-C8EAA7057BEF} (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C1A27135-69EB-8D44-7358-34727DD7B820} (PUP.Optional.MultiPlug) -> Nebyla provedena žádná instrukce.
HKCU\SOFTWARE\INSTALLCORE (PUP.Optional.InstallCore.A) -> Nebyla provedena žádná instrukce.

Nalezené hodnoty v registru: 1
HKCU\Software\InstallCore|tb (PUP.Optional.InstallCore.A) -> Data: 0D1Z0DtG0XtF0P -> Nebyla provedena žádná instrukce.

Nalezené datové položky v registru: 1
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.Optional.AskWebSearch) -> Špatný: (http://home.tb.ask.com/index.jhtml?n=77 ... 3godp2AApQ) Dobrý: (http://www.google.com) -> Nebyla provedena žádná instrukce.

Nalezené složky: 4
C:\Users\Zora Všelichová\AppData\Roaming\OpenCandy (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Roaming\OpenCandy\C41360E7C9B44D2BB05F6B5E1D6DB380 (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Roaming\OpenCandy\OpenCandy_C41360E7C9B44D2BB05F6B5E1D6DB380 (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Local\Temp\CT1750559 (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.

Nalezené soubory: 23
C:\Program Files (x86)\Deownload kEEepaeeR\uvwL.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\PhotoshopPortable\App\PhotoshopCS6\amtlib.dll (PUP.RiskwareTool.CK) -> Nebyla provedena žádná instrukce.
C:\Program Files (x86)\Deownload kEEepaeeR\uvwL.x64.dll (PUP.Optional.MultiPlug.A) -> Nebyla provedena žádná instrukce.
C:\ProgramData\Deownload kEEepaeeR\LL8rn.exe (PUP.Optional.MultiPlug) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Local\Application Data\Bundled software uninstaller\bi_client.exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1BK8APG5\ja14cq44[1].exe (PUP.Optional.BundleLoader.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4F3W4UGW\6[1].exe (PUP.Optional.BundleLoader.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4UV8N6YA\bi_downloader[1].exe (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4UV8N6YA\Setup[1].exe (PUP.Optional.Outobox.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Local\Temp\down.4820.ext_setup.exe (PUP.Optional.BundleLoader.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Local\Temp\nswB230.tmp (PUP.Optional.Somoto.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Local\Temp\{64787F18-E023-47D6-A53D-A801BF9B5DEE}\Custom.dll (PUP.Optional.InstalleRex) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Local\Temp\{64787F18-E023-47D6-A53D-A801BF9B5DEE}\Addons\ext_setup.exe (PUP.Optional.BundleLoader.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Roaming\verison.dll (Trojan.Ransom.ED) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HpM3Util.exe (Trojan.Ransom.ED) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\Downloads\adobe_flash_cs5_.exe (PUP.Optional.OneClickDownloader.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\Downloads\Reba McEntire - For My Broken Heart.exe (PUP.Optional.InstalleRex) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\Downloads\YTDSetup.exe (PUP.Optional.Spigot.A) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\Downloads\Adobe Flash Pro CS6\DLL FILE\32bit\amtlib.dll (PUP.RiskwareTool.CK) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\Downloads\Adobe Flash Pro CS6\DLL FILE\64bit\amtlib.dll (PUP.RiskwareTool.CK) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\Downloads\Adobe Flash Pro CS6\DLL FILE\Original - 32bit\Flash Pro\amtlib.dll (PUP.RiskwareTool.CK) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Roaming\OpenCandy\C41360E7C9B44D2BB05F6B5E1D6DB380\TuneUpUtilities2013-2200329_cs-CZ.exe (PUP.Optional.OpenCandy) -> Nebyla provedena žádná instrukce.
C:\Users\Zora Všelichová\AppData\Local\Temp\CT1750559\ddt.csf (PUP.Optional.Conduit.A) -> Nebyla provedena žádná instrukce.

(konec)

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 05 led 2014 19:47
od Márty84
:arrow: Vsechny nalezy nechte odstranit.

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a program zacne pracovat.
Az skonci, vyplivne na vas log (pokud ne, najdete ho zde C:\AdwCleaner\AdwCleaner[R?].txt ), ten mi sem zkopirujte.

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 06 led 2014 14:28
od zooh
Márty84 píše::arrow: Vsechny nalezy nechte odstranit.

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a program zacne pracovat.
Az skonci, vyplivne na vas log (pokud ne, najdete ho zde C:\AdwCleaner\AdwCleaner[R?].txt ), ten mi sem zkopirujte.
-----------
# AdwCleaner v3.016 - Report created 06/01/2014 at 13:21:48
# Updated 23/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Zora Všelichová - ZORAVŠELICHOVÁ
# Running from : C:\Users\Zora Všelichová\Downloads\adwcleaner.exe
# Option : Scan

***** [ Services ] *****

Service Found : PirritUpdater
Service Found : vToolbarUpdater17.1.3

***** [ Files / Folders ] *****

File Found : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\safeguard-secure-search.xml
File Found : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\Extensions\suggestor@suggestor.pirrit.com.xpi
File Found : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\searchplugins\ask-web-search.xml
File Found : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\user.js
Folder Found : C:\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjpdnoojnohifgekbkmnfbiobhcbedka
Folder Found : C:\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Folder Found : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
Folder Found : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\Extensions\6m.9yeu@srymoomv-.edu
Folder Found : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\Extensions\cs@dictionaries.addons.mozilla.org
Folder Found C:\Program Files (x86)\AVG SafeGuard toolbar
Folder Found C:\Program Files (x86)\Common Files\AVG Secure Search
Folder Found C:\Program Files (x86)\Deownload kEEepaeeR
Folder Found C:\Program Files (x86)\MyPC Backup
Folder Found C:\Program Files (x86)\Pirrit
Folder Found C:\ProgramData\AVG SafeGuard toolbar
Folder Found C:\ProgramData\Deownload kEEepaeeR
Folder Found C:\Users\Zora Všelichová\AppData\Local\AVG SafeGuard toolbar
Folder Found C:\Users\Zora Všelichová\AppData\Local\Pirrit Suggestor
Folder Found C:\Users\Zora Všelichová\AppData\LocalLow\AVG SafeGuard toolbar
Folder Found C:\Users\Zora Všelichová\AppData\Roaming\Pirrit

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\APN PIP
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\AVG SafeGuard toolbar
Key Found : HKCU\Software\BI
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Key Found : [x64] HKCU\Software\APN PIP
Key Found : [x64] HKCU\Software\AVG SafeGuard toolbar
Key Found : [x64] HKCU\Software\BI
Key Found : [x64] HKCU\Software\Conduit
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKLM\Software\AVG SafeGuard toolbar
Key Found : HKLM\Software\AVG Security Toolbar
Key Found : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Found : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Found : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Found : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Found : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI.1
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj
Key Found : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj.1
Key Found : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{A43DE495-3D00-47D4-9D2C-303115707939}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Found : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Found : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Found : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Found : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Key Found : HKLM\SOFTWARE\Classes\S
Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Found : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Found : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Found : HKLM\Software\Conduit
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG SafeGuard toolbar
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Key Found : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Found : HKLM\Software\PIP
Key Found : HKLM\Software\Pirrit
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{17B10E59-09E1-4C39-A738-6774D7AB7778}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{2D9083CE-8758-4704-BA57-3C891D7452BD}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{3E9469AF-E866-4476-B767-810630F1F6E7}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{716E443D-7CAA-44F1-866B-F45D00E712CC}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{7FC87AC5-FA93-476E-A32C-A941229DED0B}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Speedchecker Limited
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Value Found : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Mozilla Firefox v26.0 (cs)

[ File : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\prefs.js ]

Line Found : user_pref("extensions.51b457e78e5db.scode", "(function(){try{if('aol.com,mail.google.com,premiumreports.info,search.babylon.com,search.gboxapp.com'.indexOf(window.self.location.hostname)>-1) return;}c[...]
Line Found : user_pref("extensions.mywebsearch.prevDefaultEngine", "Google");
Line Found : user_pref("extensions.mywebsearch.prevSelectedEngine", "Google");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.homepage", "hxxp://home.tb.ask.com/index.jhtml?ptb=93C6929A-14F9-4F04-9D59-233B6D668262&n=77fd33f8&p2=^HJ^xdm007^YYA^cz&si=CNvXyJ6rm7kCFUgV3godp2AAp[...]
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.hp.enabled", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.hp.lastGuardTime", -1134991847);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.hp.numGuards", 1);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.initialized", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.contextKey", "");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.installDate", "2013082616");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerId", "^HJ^xdm007^YYA^cz");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerSubId", "CNvXyJ6rm7kCFUgV3godp2AApQ");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.success", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.toolbarId", "93C6929A-14F9-4F04-9D59-233B6D668262");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.lastActivePing", "1377549529646");
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.options.defaultSearch", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.options.homePageEnabled", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.options.keywordEnabled", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.options.tabEnabled", true);
Line Found : user_pref("extensions.toolbar.mindspark._4zMembers_.weather.location", "10001");
Line Found : user_pref("extensions.toolbar.mindspark._57Members_.toolbarCollapsed", true);
Line Found : user_pref("extensions.toolbar.mindspark.hp.enabled", false);
Line Found : user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "");
Line Found : user_pref("extensions.toolbar.mindspark.lastInstalled", "marineaquariumfree@mindspark.com");

-\\ Google Chrome v31.0.1650.63

[ File : C:\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [13367 octets] - [06/01/2014 13:21:48]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [13428 octets] ##########

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 06 led 2014 17:36
od Márty84
:arrow: Odinstalujte MBAM


:arrow: Znovu ukoncete vsechny programy a spustte AdwCleaner jako spravce.
Tentokrat kliknete na Clean
Program zacne pracovat (muze dojit k restartu pc) a vyplivne dalsi log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zase zkopirujte.


:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe , ulozte ho na plochu, kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Zprava a objevi se log. Ten mi sem vlozte

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 06 led 2014 22:07
od zooh
Márty84 píše::arrow: Odinstalujte MBAM


:arrow: Znovu ukoncete vsechny programy a spustte AdwCleaner jako spravce.
Tentokrat kliknete na Clean
Program zacne pracovat (muze dojit k restartu pc) a vyplivne dalsi log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zase zkopirujte.
-----------
# AdwCleaner v3.016 - Report created 06/01/2014 at 22:01:30
# Updated 23/12/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Zora Všelichová - ZORAVŠELICHOVÁ
# Running from : C:\Users\Zora Všelichová\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

[#] Service Deleted : PirritUpdater
Service Deleted : vToolbarUpdater17.1.3

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\AVG SafeGuard toolbar
Folder Deleted : C:\ProgramData\Deownload kEEepaeeR
Folder Deleted : C:\Program Files (x86)\AVG SafeGuard toolbar
Folder Deleted : C:\Program Files (x86)\MyPC Backup
Folder Deleted : C:\Program Files (x86)\Pirrit
Folder Deleted : C:\Program Files (x86)\Deownload kEEepaeeR
Folder Deleted : C:\Program Files (x86)\Common Files\AVG Secure Search
[!] Folder Deleted : C:\Users\Zora Všelichová\AppData\Local\AVG SafeGuard toolbar
Folder Deleted : C:\Users\Zora Všelichová\AppData\Local\Pirrit Suggestor
Folder Deleted : C:\Users\Zora Všelichová\AppData\LocalLow\AVG SafeGuard toolbar
Folder Deleted : C:\Users\Zora Všelichová\AppData\Roaming\Pirrit
Folder Deleted : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\Extensions\6m.9yeu@srymoomv-.edu
Folder Deleted : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\Extensions\cs@dictionaries.addons.mozilla.org
Folder Deleted : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
Folder Deleted : C:\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjpdnoojnohifgekbkmnfbiobhcbedka
Folder Deleted : C:\Users\Zora Všelichová\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
File Deleted : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\Extensions\suggestor@suggestor.pirrit.com.xpi
File Deleted : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\searchplugins\ask-web-search.xml
File Deleted : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\safeguard-secure-search.xml
File Deleted : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\user.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.BrowserWndAPI.1
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj
Key Deleted : HKLM\SOFTWARE\Classes\AVG SafeGuard toolbar.PugiObj.1
Key Deleted : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{A43DE495-3D00-47D4-9D2C-303115707939}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D40C654D-7C51-4EB3-95B2-1E23905C2A2D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{17B10E59-09E1-4C39-A738-6774D7AB7778}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{2D9083CE-8758-4704-BA57-3C891D7452BD}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3E9469AF-E866-4476-B767-810630F1F6E7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{716E443D-7CAA-44F1-866B-F45D00E712CC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{7FC87AC5-FA93-476E-A32C-A941229DED0B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\AVG SafeGuard toolbar
Key Deleted : HKCU\Software\BI
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKLM\Software\AVG SafeGuard toolbar
Key Deleted : HKLM\Software\AVG Security Toolbar
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\PIP
Key Deleted : HKLM\Software\Pirrit
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG SafeGuard toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Key Deleted : [x64] HKLM\SOFTWARE\Speedchecker Limited

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Mozilla Firefox v26.0 (cs)

[ File : C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default\prefs.js ]

Line Deleted : user_pref("extensions.51b457e78e5db.scode", "(function(){try{if('aol.com,mail.google.com,premiumreports.info,search.babylon.com,search.gboxapp.com'.indexOf(window.self.location.hostname)>-1) return;}c[...]
Line Deleted : user_pref("extensions.mywebsearch.prevDefaultEngine", "Google");
Line Deleted : user_pref("extensions.mywebsearch.prevSelectedEngine", "Google");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.homepage", "hxxp://home.tb.ask.com/index.jhtml?ptb=93C6929A-14F9-4F04-9D59-233B6D668262&n=77fd33f8&p2=^HJ^xdm007^YYA^cz&si=CNvXyJ6rm7kCFUgV3godp2AAp[...]
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.hp.enabled", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.hp.lastGuardTime", -1134991847);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.hp.numGuards", 1);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.initialized", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.contextKey", "");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.installDate", "2013082616");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerId", "^HJ^xdm007^YYA^cz");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.partnerSubId", "CNvXyJ6rm7kCFUgV3godp2AApQ");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.success", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.installation.toolbarId", "93C6929A-14F9-4F04-9D59-233B6D668262");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.lastActivePing", "1377549529646");
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.options.defaultSearch", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.options.homePageEnabled", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.options.keywordEnabled", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.options.tabEnabled", true);
Line Deleted : user_pref("extensions.toolbar.mindspark._4zMembers_.weather.location", "10001");
Line Deleted : user_pref("extensions.toolbar.mindspark._57Members_.toolbarCollapsed", true);
Line Deleted : user_pref("extensions.toolbar.mindspark.hp.enabled", false);
Line Deleted : user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "");
Line Deleted : user_pref("extensions.toolbar.mindspark.lastInstalled", "marineaquariumfree@mindspark.com");

*************************

AdwCleaner[R0].txt - [13613 octets] - [06/01/2014 13:21:48]
AdwCleaner[R1].txt - [13672 octets] - [06/01/2014 14:26:04]
AdwCleaner[R2].txt - [13733 octets] - [06/01/2014 21:59:54]
AdwCleaner[S0].txt - [13463 octets] - [06/01/2014 22:01:30]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [13524 octets] ##########

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 06 led 2014 22:15
od zooh
Márty84 píše: Stahnete RogueKiller http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe , ulozte ho na plochu, kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Zprava a objevi se log. Ten mi sem vlozte
----------
RogueKiller V8.8.0 [Dec 27 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Zora Všelichová [Práva správce]
Mód : Kontrola -- Datum : 01/06/2014 22:12:02
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 2 ¤¤¤
[SUSP UNIC] szndesktop.exe -- C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\bin\szndesktop.exe [7] -> SMAZÁNO [TermProc]
[SUSP UNIC] listicka-x64.exe -- C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe [7] -> SMAZÁNO [TermThr]

¤¤¤ ¤¤¤ Záznamy Registrů: : 7 ¤¤¤
[RUN][SUSP UNIC] HKCU\[...]\Run : Hoolapp Android ("C:\Users\ZORAVE~1\AppData\Roaming\HOOLAP~1\Hoolapp.exe" /Minimized [x]) -> NALEZENO
[RUN][SUSP UNIC] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> NALEZENO
[RUN][SUSP UNIC] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CCSet\[...]\{CB15D106-AE1C-4BAF-B879-B354DEC0F34C} : NameServer (217.77.165.81 217.77.161.131 [CZECH REPUBLIC (CZ) - CZECH REPUBLIC (CZ)]) -> NALEZENO
[DNS][PUM] HKLM\[...]\CS001\[...]\{CB15D106-AE1C-4BAF-B879-B354DEC0F34C} : NameServer (217.77.165.81 217.77.161.131 [CZECH REPUBLIC (CZ) - CZECH REPUBLIC (CZ)]) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NALEZENO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NALEZENO

¤¤¤ naplánované úlohy : 2 ¤¤¤
[V2][SUSP PATH] Hoolapp For Android : C:\Users\ZORAVE~1\AppData\Roaming\HOOLAP~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> NALEZENO
[V2][SUSP UNIC] Hoolapp Init : C:\Users\ZORAVE~1\AppData\Roaming\HOOLAP~1\Hoolapp.exe - /Minimized [x] -> NALEZENO

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD5000LPVT-22G33T0 +++++
--- User ---
[MBR] c560d3a50f6ed0c638e316ed2724cc0b
[BSP] 684c98b42c662962fdaf36b050231367 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 476838 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ ) Broadcom SD SCSI Disk Device +++++
--- User ---
[MBR] 0fd187cf91273d74f0f3458e2cd1733f
[BSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code
Partition table:
0 - [XXXXXX] FAT32 (0x0b) [VISIBLE] Offset (sectors): 8192 | Size: 7587 Mo
User = LL1 ... OK!
Error reading LL2 MBR! ([0x1] Nesprávná funkce. )

Dokončeno : << RKreport[0]_S_01062014_221202.txt >>

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 06 led 2014 22:27
od Márty84
Pokud nepouzivate, doporucuji odinstalovat Seznam Software


:arrow: Znovu spustte RogueKiller jako spravce (pokud jste ho jeste nezavrel/a, rovnou kliknete na napis Smazat)
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Smazat.
Pak kliknete na napis Zprava a objevi se log. Ten mi sem vlozte.
Pak kliknete na napis Oprava Host a Zprava.
Objevi se dalsi log. I ten mi sem vlozte.

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 07 led 2014 11:08
od zooh
Márty84 píše:Pokud nepouzivate, doporucuji odinstalovat Seznam Software


:arrow: Znovu spustte RogueKiller jako spravce (pokud jste ho jeste nezavrel/a, rovnou kliknete na napis Smazat)
Probehne kratoucky testik a pak se zpristupni vpravo nahore tlacitko Prohledat. Na to kliknete a probehne dalsi test.
Po dokonceni kliknete na napis Smazat.
Pak kliknete na napis Zprava a objevi se log. Ten mi sem vlozte.
---
RogueKiller V8.8.0 [Dec 27 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Zora Všelichová [Práva správce]
Mód : Odebrat -- Datum : 01/07/2014 11:07:34
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 2 ¤¤¤
[SUSP UNIC] szndesktop.exe -- C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\bin\szndesktop.exe [7] -> SMAZÁNO [TermProc]
[SUSP UNIC] listicka-x64.exe -- C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe [7] -> SMAZÁNO [TermThr]

¤¤¤ ¤¤¤ Záznamy Registrů: : 5 ¤¤¤
[RUN][SUSP UNIC] HKCU\[...]\Run : Hoolapp Android ("C:\Users\ZORAVE~1\AppData\Roaming\HOOLAP~1\Hoolapp.exe" /Minimized [x]) -> VYMAZÁNO
[RUN][SUSP UNIC] HKCU\[...]\Run : cz.seznam.software.autoupdate ("C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\szninstall.exe" -c [7]) -> VYMAZÁNO
[RUN][SUSP UNIC] HKCU\[...]\Run : cz.seznam.software.szndesktop ("C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q [7]) -> VYMAZÁNO
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> NAHRAZENO (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> NAHRAZENO (0)

¤¤¤ naplánované úlohy : 2 ¤¤¤
[V2][SUSP PATH] Hoolapp For Android : C:\Users\ZORAVE~1\AppData\Roaming\HOOLAP~1\UPDATE~1\UPDATE~1.EXE - /Check [x] -> VYMAZÁNO
[V2][SUSP UNIC] Hoolapp Init : C:\Users\ZORAVE~1\AppData\Roaming\HOOLAP~1\Hoolapp.exe - /Minimized [x] -> VYMAZÁNO

¤¤¤ spuštění položky : 0 ¤¤¤

¤¤¤ Webové prohlížeče : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Zvláštní soubory / Složky: ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Kontrola MBR: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) WDC WD5000LPVT-22G33T0 +++++
--- User ---
[MBR] c560d3a50f6ed0c638e316ed2724cc0b
[BSP] 684c98b42c662962fdaf36b050231367 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 476838 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ ) Broadcom SD SCSI Disk Device +++++
--- User ---
[MBR] 0fd187cf91273d74f0f3458e2cd1733f
[BSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code
Partition table:
0 - [XXXXXX] FAT32 (0x0b) [VISIBLE] Offset (sectors): 8192 | Size: 7587 Mo
User = LL1 ... OK!
Error reading LL2 MBR! ([0x1] Nesprávná funkce. )

Dokončeno : << RKreport[0]_D_01072014_110734.txt >>
RKreport[0]_S_01062014_221202.txt

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 07 led 2014 11:09
od zooh
Márty84 píše:Pokud nepouzivate, doporucuji odinstalovat Seznam Software


Pak kliknete na napis Oprava Host a Zprava.
Objevi se dalsi log. I ten mi sem vlozte.
---
RogueKiller V8.8.0 [Dec 27 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Podpora : http://www.adlice.com/forum/
Webové stránky : http://www.adlice.com/softwares/roguekiller/
: http://www.adlice.com

Operační systém : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Spuštěno v : Normální režim
Uživatel : Zora Všelichová [Práva správce]
Mód : Oprava HOSTS -- Datum : 01/07/2014 11:08:32
| ARK || FAK || MBR |

¤¤¤ Škodlivé procesy: : 2 ¤¤¤
[SUSP UNIC] szndesktop.exe -- C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\bin\szndesktop.exe [7] -> SMAZÁNO [TermProc]
[SUSP UNIC] listicka-x64.exe -- C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe [7] -> SMAZÁNO [TermThr]

¤¤¤ ¤¤¤ Záznamy Registrů: : 0 ¤¤¤

¤¤¤ Ovladač : [NENAHRÁNO 0x0] ¤¤¤

¤¤¤ Externí včelstvo: ¤¤¤

¤¤¤ Nákaza : ¤¤¤

¤¤¤ Soubor HOSTS: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts




¤¤¤ Resetovaný HOSTS: ¤¤¤
127.0.0.1 localhost


Dokončeno : << RKreport[0]_H_01072014_110832.txt >>
RKreport[0]_D_01072014_110734.txt;RKreport[0]_S_01062014_221202.txt

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 07 led 2014 11:38
od Márty84
Dejte novy log z RSIT

a k tomu

:!: Jestli bude Avast rvat, ze to chce otevrit v sandboxu, nedovolte to! Vyberte moznost Otevrit normalne
:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 07 led 2014 13:37
od zooh
[quote="Márty84"]Dejte novy log z RSIT
------------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Zora Všelichová at 2014-01-07 12:18:27
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 227 GB (48%) free of 477 GB
Total RAM: 3912 MB (42% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:18:46, on 7.1.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Program Files\trend micro\Zora Všelichová.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [iSkysoft Helper Compact.exe] C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [StickyPassword] "C:\Program Files (x86)\Sticky Password\stpass.exe" /autorunned
O4 - HKCU\..\Run: [MyTomTomSA.exe] "C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe"
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIILE.EXE /EPT "EPLTarget\P0000000000000000" /M "XP-205 207 Series"
O4 - HKCU\..\RunOnce: [SeznamInstall-uninstall:109723d3078d28757fa6a6d685989c23] "C:\Users\ZORAVE~1\AppData\Local\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe" -c "C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) - ABBYY - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: EpsonCustomerResearchParticipation - SEIKO EPSON CORPORATION - C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12486 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\Windows\system32\WLANExt.exe 3086656
\??\C:\Windows\system32\conhost.exe "2029278147574217173-1490914954-9093275518135722441703536550-1661590126-1530953338
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe"
"C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe" -service
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe"
"C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe"
"C:\Program Files (x86)\Launch Manager\LMworker.exe"
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window
"C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe"
"C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Launch Manager\LManager.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
C:\Windows\system32\EscSvc64.exe
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe"
WLIDSvcM.exe 2936
"C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-98493f08-c59f-4cd0-ab54-7a56b97432e7 -SystemEventPortName:HostProcess-0dc9647f-768c-42e3-8e53-30ca83ff9f39 -IoCancelEventPortName:HostProcess-f2c2d069-7559-4071-ac0f-b18d173d5d5c -NonStateChangingEventPortName:HostProcess-e33239db-73c4-48c3-b553-bd563c02ba1b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:6118f38f-0c98-45af-9444-b17502cc15e0 -DeviceGroupId:WpdFsGroup
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4836.16294500.812768188 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 4836 "\\.\pipe\gecko-crash-server-pipe.4836" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe" --proxy-stub-channel=Flash936.6841B990.16253 --host-broker-channel=Flash936.6841B990.28115 --host-pid=936 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe" --channel=2572.002EF578.385711678 --proxy-stub-channel=Flash936.6841B990.16253 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll" --host-npapi-version=27 --type=renderer
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe"
"C:\Users\Zora Všelichová\Downloads\RSITx64.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe7_ Global\UsGthrCtrlFltPipeMssGthrPipe7 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 512 516 524 65536 520
C:\Windows\System32\svchost.exe -k WerSvcGroup

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Zora Všelichová\AppData\Roaming\Mozilla\Firefox\Profiles\7g1a9gkq.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59]
"Description"=Intel IPT WebApi plugin
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater]
"Description"=This plugin updates Intel WebAPI component
"Path"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3508.0205]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@parallelgraphics.com/Cortona]
"Description"=Cortona VRML Plugin
"Path"=C:\Program Files (x86)\Common Files\ParallelGraphics\Cortona\npcortona.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@parallelgraphics.com/RapidView]
"Description"=Cortona 2D Plugin
"Path"=C:\Program Files (x86)\Common Files\ParallelGraphics\Cortona2D\npCortona2d.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.9.900.170 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll

C:\Program Files (x86)\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

C:\Program Files (x86)\Mozilla Firefox\plugins\
nppdf32.dll

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{673DBCE8-E819-7F03-4368-C8EAA7057BEF}]
Deownload kEEepaeeR - C:\Program Files (x86)\Deownload kEEepaeeR\uvwL.x64.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 529664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}]
Easy Photo Print - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 431104]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení k účtu Microsoft - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17 441592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]
{9421DD08-935F-4701-A9CA-22DF90AC4EA6} - Easy Photo Print - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26 431104]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-04-23 170264]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-04-23 398616]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-04-23 439064]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-02-14 2868496]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-12-27 12343400]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-03-21 472992]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-11-18 20587168]
"GoogleDriveSync"=C:\Program Files (x86)\Google\Drive\googledrivesync.exe [2013-12-06 20203904]
"AdobeBridge"= []
"StickyPassword"=C:\Program Files (x86)\Sticky Password\stpass.exe /autorunned []
"MyTomTomSA.exe"=C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe [2013-08-01 458680]
"AlcoholAutomount"=C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
"EPLTarget\P0000000000000000"=C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIILE.EXE [2012-02-29 283232]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SeznamInstall-uninstall:109723d3078d28757fa6a6d685989c23"=C:\Users\ZORAVE~1\AppData\Local\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe [2014-01-07 534528]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-02-29 56088]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2012-03-23 1105488]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe []
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"EEventManager"=C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2011-10-31 1058400]
"AdobeCS5.5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [2011-01-12 1523360]
"iSkysoft Helper Compact.exe"=C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-03-27 434688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-01-06 22:11:59 ----A---- C:\Windows\system32\drivers\WUDFRd.sys.bak
2014-01-06 22:11:59 ----A---- C:\Windows\system32\drivers\WUDFPf.sys.bak
2014-01-06 22:11:59 ----A---- C:\Windows\system32\drivers\ws2ifsl.sys.bak
2014-01-06 22:11:58 ----A---- C:\Windows\system32\drivers\wmilib.sys.bak
2014-01-06 22:11:58 ----A---- C:\Windows\system32\drivers\wmiacpi.sys.bak
2014-01-06 22:11:58 ----A---- C:\Windows\system32\drivers\winusb.sys.bak
2014-01-06 22:11:58 ----A---- C:\Windows\system32\drivers\wimmount.sys.bak
2014-01-06 22:11:58 ----A---- C:\Windows\system32\drivers\wfplwf.sys.bak
2014-01-06 22:11:57 ----A---- C:\Windows\system32\drivers\WdfLdr.sys.bak
2014-01-06 22:11:57 ----A---- C:\Windows\system32\drivers\Wdf01000.sys.bak
2014-01-06 22:11:57 ----A---- C:\Windows\system32\drivers\wd.sys.bak
2014-01-06 22:11:57 ----A---- C:\Windows\system32\drivers\watchdog.sys.bak
2014-01-06 22:11:57 ----A---- C:\Windows\system32\drivers\wanarp.sys.bak
2014-01-06 22:11:57 ----A---- C:\Windows\system32\drivers\wacompen.sys.bak
2014-01-06 22:11:57 ----A---- C:\Windows\system32\drivers\vwifimp.sys.bak
2014-01-06 22:11:56 ----A---- C:\Windows\system32\drivers\vwififlt.sys.bak
2014-01-06 22:11:56 ----A---- C:\Windows\system32\drivers\vwifibus.sys.bak
2014-01-06 22:11:56 ----A---- C:\Windows\system32\drivers\vsmraid.sys.bak
2014-01-06 22:11:56 ----A---- C:\Windows\system32\drivers\volsnap.sys.bak
2014-01-06 22:11:55 ----A---- C:\Windows\system32\drivers\volmgrx.sys.bak
2014-01-06 22:11:55 ----A---- C:\Windows\system32\drivers\volmgr.sys.bak
2014-01-06 22:11:55 ----A---- C:\Windows\system32\drivers\videoprt.sys.bak
2014-01-06 22:11:55 ----A---- C:\Windows\system32\drivers\viaide.sys.bak
2014-01-06 22:11:55 ----A---- C:\Windows\system32\drivers\vhdmp.sys.bak
2014-01-06 22:11:54 ----A---- C:\Windows\system32\drivers\vgapnp.sys.bak
2014-01-06 22:11:54 ----A---- C:\Windows\system32\drivers\vga.sys.bak
2014-01-06 22:11:54 ----A---- C:\Windows\system32\drivers\vdrvroot.sys.bak
2014-01-06 22:11:54 ----A---- C:\Windows\system32\drivers\usbvideo.sys.bak
2014-01-06 22:11:54 ----A---- C:\Windows\system32\drivers\usbuhci.sys.bak
2014-01-06 22:11:54 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS.bak
2014-01-06 22:11:54 ----A---- C:\Windows\system32\drivers\usbrpm.sys.bak
2014-01-06 22:11:54 ----A---- C:\Windows\system32\drivers\usbprint.sys.bak
2014-01-06 22:11:53 ----A---- C:\Windows\system32\drivers\usbport.sys.bak
2014-01-06 22:11:53 ----A---- C:\Windows\system32\drivers\usbohci.sys.bak
2014-01-06 22:11:53 ----A---- C:\Windows\system32\drivers\usbhub.sys.bak
2014-01-06 22:11:53 ----A---- C:\Windows\system32\drivers\usbehci.sys.bak
2014-01-06 22:11:53 ----A---- C:\Windows\system32\drivers\usbd.sys.bak
2014-01-06 22:11:53 ----A---- C:\Windows\system32\drivers\usbcir.sys.bak
2014-01-06 22:11:52 ----A---- C:\Windows\system32\drivers\usbccgp.sys.bak
2014-01-06 22:11:52 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys.bak
2014-01-06 22:11:52 ----A---- C:\Windows\system32\drivers\usb8023x.sys.bak
2014-01-06 22:11:52 ----A---- C:\Windows\system32\drivers\usb8023.sys.bak
2014-01-06 22:11:52 ----A---- C:\Windows\system32\drivers\umpass.sys.bak
2014-01-06 22:11:52 ----A---- C:\Windows\system32\drivers\umbus.sys.bak
2014-01-06 22:11:52 ----A---- C:\Windows\system32\drivers\ULIAGPKX.SYS.bak
2014-01-06 22:11:51 ----A---- C:\Windows\system32\drivers\udfs.sys.bak
2014-01-06 22:11:51 ----A---- C:\Windows\system32\drivers\UAGP35.SYS.bak
2014-01-06 22:11:51 ----A---- C:\Windows\system32\drivers\tunnel.sys.bak
2014-01-06 22:11:51 ----A---- C:\Windows\system32\drivers\TsUsbGD.sys.bak
2014-01-06 22:11:51 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys.bak
2014-01-06 22:11:51 ----A---- C:\Windows\system32\drivers\tssecsrv.sys.bak
2014-01-06 22:11:51 ----A---- C:\Windows\system32\drivers\termdd.sys.bak
2014-01-06 22:11:50 ----A---- C:\Windows\system32\drivers\tdx.sys.bak
2014-01-06 22:11:50 ----A---- C:\Windows\system32\drivers\tdtcp.sys.bak
2014-01-06 22:11:50 ----A---- C:\Windows\system32\drivers\tdpipe.sys.bak
2014-01-06 22:11:50 ----A---- C:\Windows\system32\drivers\tdi.sys.bak
2014-01-06 22:11:50 ----A---- C:\Windows\system32\drivers\tcpipreg.sys.bak
2014-01-06 22:11:50 ----A---- C:\Windows\system32\drivers\tcpip.sys.bak
2014-01-06 22:11:49 ----A---- C:\Windows\system32\drivers\tape.sys.bak
2014-01-06 22:11:49 ----A---- C:\Windows\system32\drivers\SynTP.sys.bak
2014-01-06 22:11:49 ----A---- C:\Windows\system32\drivers\swenum.sys.bak
2014-01-06 22:11:49 ----A---- C:\Windows\system32\drivers\stream.sys.bak
2014-01-06 22:11:49 ----A---- C:\Windows\system32\drivers\storport.sys.bak
2014-01-06 22:11:49 ----A---- C:\Windows\system32\drivers\stexstor.sys.bak
2014-01-06 22:11:48 ----A---- C:\Windows\system32\drivers\srvnet.sys.bak
2014-01-06 22:11:48 ----A---- C:\Windows\system32\drivers\srv2.sys.bak
2014-01-06 22:11:48 ----A---- C:\Windows\system32\drivers\srv.sys.bak
2014-01-06 22:11:48 ----A---- C:\Windows\system32\drivers\sptd.sys.bak
2014-01-06 22:11:48 ----A---- C:\Windows\system32\drivers\spsys.sys.bak
2014-01-06 22:11:48 ----A---- C:\Windows\system32\drivers\spldr.sys.bak
2014-01-06 22:11:47 ----A---- C:\Windows\system32\drivers\smclib.sys.bak
2014-01-06 22:11:47 ----A---- C:\Windows\system32\drivers\Smb_driver.sys.bak
2014-01-06 22:11:47 ----A---- C:\Windows\system32\drivers\smb.sys.bak
2014-01-06 22:11:47 ----A---- C:\Windows\system32\drivers\sisraid4.sys.bak
2014-01-06 22:11:47 ----A---- C:\Windows\system32\drivers\sisraid2.sys.bak
2014-01-06 22:11:47 ----A---- C:\Windows\system32\drivers\sfloppy.sys.bak
2014-01-06 22:11:46 ----A---- C:\Windows\system32\drivers\sffp_sd.sys.bak
2014-01-06 22:11:46 ----A---- C:\Windows\system32\drivers\sffp_mmc.sys.bak
2014-01-06 22:11:46 ----A---- C:\Windows\system32\drivers\sffdisk.sys.bak
2014-01-06 22:11:46 ----A---- C:\Windows\system32\drivers\sermouse.sys.bak
2014-01-06 22:11:46 ----A---- C:\Windows\system32\drivers\serial.sys.bak
2014-01-06 22:11:46 ----A---- C:\Windows\system32\drivers\serenum.sys.bak
2014-01-06 22:11:46 ----A---- C:\Windows\system32\drivers\secdrv.sys.bak
2014-01-06 22:11:46 ----A---- C:\Windows\system32\drivers\sdbus.sys.bak
2014-01-06 22:11:46 ----A---- C:\Windows\system32\drivers\scsiport.sys.bak
2014-01-06 22:11:45 ----A---- C:\Windows\system32\drivers\scfilter.sys.bak
2014-01-06 22:11:45 ----A---- C:\Windows\system32\drivers\sbp2port.sys.bak
2014-01-06 22:11:44 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys.bak
2014-01-06 22:11:44 ----A---- C:\Windows\system32\drivers\rspndr.sys.bak
2014-01-06 22:11:44 ----A---- C:\Windows\system32\drivers\rootmdm.sys.bak
2014-01-06 22:11:44 ----A---- C:\Windows\system32\drivers\rndismpx.sys.bak
2014-01-06 22:11:44 ----A---- C:\Windows\system32\drivers\RNDISMP.sys.bak
2014-01-06 22:11:43 ----A---- C:\Windows\system32\drivers\rmcast.sys.bak
2014-01-06 22:11:43 ----A---- C:\Windows\system32\drivers\rdyboost.sys.bak
2014-01-06 22:11:43 ----A---- C:\Windows\system32\drivers\rdpwd.sys.bak
2014-01-06 22:11:43 ----A---- C:\Windows\system32\drivers\RDPREFMP.sys.bak
2014-01-06 22:11:43 ----A---- C:\Windows\system32\drivers\RDPENCDD.sys.bak
2014-01-06 22:11:43 ----A---- C:\Windows\system32\drivers\RDPCDD.sys.bak
2014-01-06 22:11:43 ----A---- C:\Windows\system32\drivers\rdpbus.sys.bak
2014-01-06 22:11:42 ----A---- C:\Windows\system32\drivers\rdbss.sys.bak
2014-01-06 22:11:42 ----A---- C:\Windows\system32\drivers\rassstp.sys.bak
2014-01-06 22:11:42 ----A---- C:\Windows\system32\drivers\raspptp.sys.bak
2014-01-06 22:11:42 ----A---- C:\Windows\system32\drivers\raspppoe.sys.bak
2014-01-06 22:11:42 ----A---- C:\Windows\system32\drivers\rasl2tp.sys.bak
2014-01-06 22:11:41 ----A---- C:\Windows\system32\drivers\rasacd.sys.bak
2014-01-06 22:11:41 ----A---- C:\Windows\system32\drivers\qwavedrv.sys.bak
2014-01-06 22:11:41 ----A---- C:\Windows\system32\drivers\ql40xx.sys.bak
2014-01-06 22:11:41 ----A---- C:\Windows\system32\drivers\ql2300.sys.bak
2014-01-06 22:11:40 ----A---- C:\Windows\system32\drivers\PxHlpa64.sys.bak
2014-01-06 22:11:40 ----A---- C:\Windows\system32\drivers\processr.sys.bak
2014-01-06 22:11:40 ----A---- C:\Windows\system32\drivers\portcls.sys.bak
2014-01-06 22:11:40 ----A---- C:\Windows\system32\drivers\PEAuth.sys.bak
2014-01-06 22:11:40 ----A---- C:\Windows\system32\drivers\pcw.sys.bak
2014-01-06 22:11:40 ----A---- C:\Windows\system32\drivers\pcmcia.sys.bak
2014-01-06 22:11:39 ----A---- C:\Windows\system32\drivers\pciidex.sys.bak
2014-01-06 22:11:39 ----A---- C:\Windows\system32\drivers\pciide.sys.bak
2014-01-06 22:11:39 ----A---- C:\Windows\system32\drivers\pci.sys.bak
2014-01-06 22:11:39 ----A---- C:\Windows\system32\drivers\partmgr.sys.bak
2014-01-06 22:11:39 ----A---- C:\Windows\system32\drivers\parport.sys.bak
2014-01-06 22:11:39 ----A---- C:\Windows\system32\drivers\pacer.sys.bak
2014-01-06 22:11:38 ----A---- C:\Windows\system32\drivers\ohci1394.sys.bak
2014-01-06 22:11:38 ----A---- C:\Windows\system32\drivers\nwifi.sys.bak
2014-01-06 22:11:38 ----A---- C:\Windows\system32\drivers\nvstor.sys.bak
2014-01-06 22:11:38 ----A---- C:\Windows\system32\drivers\nvraid.sys.bak
2014-01-06 22:11:38 ----A---- C:\Windows\system32\drivers\NV_AGP.SYS.bak
2014-01-06 22:11:37 ----A---- C:\Windows\system32\drivers\null.sys.bak
2014-01-06 22:11:37 ----A---- C:\Windows\system32\drivers\ntfs.sys.bak
2014-01-06 22:11:37 ----A---- C:\Windows\system32\drivers\nsiproxy.sys.bak
2014-01-06 22:11:37 ----A---- C:\Windows\system32\drivers\npfs.sys.bak
2014-01-06 22:11:36 ----A---- C:\Windows\system32\drivers\nfrd960.sys.bak
2014-01-06 22:11:36 ----A---- C:\Windows\system32\drivers\netio.sys.bak
2014-01-06 22:11:36 ----A---- C:\Windows\system32\drivers\netbt.sys.bak
2014-01-06 22:11:36 ----A---- C:\Windows\system32\drivers\netbios.sys.bak
2014-01-06 22:11:36 ----A---- C:\Windows\system32\drivers\ndproxy.sys.bak
2014-01-06 22:11:36 ----A---- C:\Windows\system32\drivers\ndiswan.sys.bak
2014-01-06 22:11:35 ----A---- C:\Windows\system32\drivers\ndisuio.sys.bak
2014-01-06 22:11:35 ----A---- C:\Windows\system32\drivers\ndistapi.sys.bak
2014-01-06 22:11:35 ----A---- C:\Windows\system32\drivers\ndiscap.sys.bak
2014-01-06 22:11:35 ----A---- C:\Windows\system32\drivers\ndis.sys.bak
2014-01-06 22:11:35 ----A---- C:\Windows\system32\drivers\mup.sys.bak
2014-01-06 22:11:35 ----A---- C:\Windows\system32\drivers\MTConfig.sys.bak
2014-01-06 22:11:35 ----A---- C:\Windows\system32\drivers\mstee.sys.bak
2014-01-06 22:11:34 ----A---- C:\Windows\system32\drivers\mssmbios.sys.bak
2014-01-06 22:11:34 ----A---- C:\Windows\system32\drivers\msrpc.sys.bak
2014-01-06 22:11:34 ----A---- C:\Windows\system32\drivers\mspqm.sys.bak
2014-01-06 22:11:34 ----A---- C:\Windows\system32\drivers\mspclock.sys.bak
2014-01-06 22:11:33 ----A---- C:\Windows\system32\drivers\mskssrv.sys.bak
2014-01-06 22:11:33 ----A---- C:\Windows\system32\drivers\msiscsi.sys.bak
2014-01-06 22:11:33 ----A---- C:\Windows\system32\drivers\msisadrv.sys.bak
2014-01-06 22:11:33 ----A---- C:\Windows\system32\drivers\mshidkmdf.sys.bak
2014-01-06 22:11:32 ----A---- C:\Windows\system32\drivers\msfs.sys.bak
2014-01-06 22:11:32 ----A---- C:\Windows\system32\drivers\msdsm.sys.bak
2014-01-06 22:11:32 ----A---- C:\Windows\system32\drivers\msahci.sys.bak
2014-01-06 22:11:31 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys.bak
2014-01-06 22:11:31 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys.bak
2014-01-06 22:11:31 ----A---- C:\Windows\system32\drivers\mrxsmb.sys.bak
2014-01-06 22:11:31 ----A---- C:\Windows\system32\drivers\mrxdav.sys.bak
2014-01-06 22:11:30 ----A---- C:\Windows\system32\drivers\mpsdrv.sys.bak
2014-01-06 22:11:30 ----A---- C:\Windows\system32\drivers\mpio.sys.bak
2014-01-06 22:11:30 ----A---- C:\Windows\system32\drivers\mountmgr.sys.bak
2014-01-06 22:11:29 ----A---- C:\Windows\system32\drivers\mouhid.sys.bak
2014-01-06 22:11:29 ----A---- C:\Windows\system32\drivers\mouclass.sys.bak
2014-01-06 22:11:29 ----A---- C:\Windows\system32\drivers\monitor.sys.bak
2014-01-06 22:11:29 ----A---- C:\Windows\system32\drivers\modem.sys.bak
2014-01-06 22:11:29 ----A---- C:\Windows\system32\drivers\MegaSR.sys.bak
2014-01-06 22:11:29 ----A---- C:\Windows\system32\drivers\megasas.sys.bak
2014-01-06 22:11:29 ----A---- C:\Windows\system32\drivers\mcd.sys.bak
2014-01-06 22:11:28 ----A---- C:\Windows\system32\drivers\MarvinBus64.sys.bak
2014-01-06 22:11:28 ----A---- C:\Windows\system32\drivers\luafv.sys.bak
2014-01-06 22:11:28 ----A---- C:\Windows\system32\drivers\lsi_scsi.sys.bak
2014-01-06 22:11:27 ----A---- C:\Windows\system32\drivers\lsi_sas2.sys.bak
2014-01-06 22:11:27 ----A---- C:\Windows\system32\drivers\lsi_sas.sys.bak
2014-01-06 22:11:27 ----A---- C:\Windows\system32\drivers\lsi_fc.sys.bak
2014-01-06 22:11:27 ----A---- C:\Windows\system32\drivers\lltdio.sys.bak
2014-01-06 22:11:27 ----A---- C:\Windows\system32\drivers\ksthunk.sys.bak
2014-01-06 22:11:26 ----A---- C:\Windows\system32\drivers\ksecpkg.sys.bak
2014-01-06 22:11:26 ----A---- C:\Windows\system32\drivers\ksecdd.sys.bak
2014-01-06 22:11:25 ----A---- C:\Windows\system32\drivers\ks.sys.bak
2014-01-06 22:11:25 ----A---- C:\Windows\system32\drivers\kbdhid.sys.bak
2014-01-06 22:11:25 ----A---- C:\Windows\system32\drivers\kbdclass.sys.bak
2014-01-06 22:11:25 ----A---- C:\Windows\system32\drivers\k57nd60a.sys.bak
2014-01-06 22:11:24 ----A---- C:\Windows\system32\drivers\isapnp.sys.bak
2014-01-06 22:11:24 ----A---- C:\Windows\system32\drivers\irenum.sys.bak
2014-01-06 22:11:24 ----A---- C:\Windows\system32\drivers\irda.sys.bak
2014-01-06 22:11:24 ----A---- C:\Windows\system32\drivers\ipnat.sys.bak
2014-01-06 22:11:23 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys.bak
2014-01-06 22:11:23 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys.bak
2014-01-06 22:11:22 ----A---- C:\Windows\system32\drivers\intelppm.sys.bak
2014-01-06 22:11:22 ----A---- C:\Windows\system32\drivers\intelide.sys.bak
2014-01-06 22:11:22 ----A---- C:\Windows\system32\drivers\IntcDAud.sys.bak
2014-01-06 22:11:20 ----A---- C:\Windows\system32\drivers\iirsp.sys.bak
2014-01-06 22:11:19 ----A---- C:\Windows\system32\drivers\igdkmd64.sys.bak
2014-01-06 22:11:19 ----A---- C:\Windows\system32\drivers\iaStorV.sys.bak
2014-01-06 22:11:19 ----A---- C:\Windows\system32\drivers\iaStor.sys.bak
2014-01-06 22:11:19 ----A---- C:\Windows\system32\drivers\i8042prt.sys.bak
2014-01-06 22:11:18 ----A---- C:\Windows\system32\drivers\hwpolicy.sys.bak
2014-01-06 22:11:18 ----A---- C:\Windows\system32\drivers\http.sys.bak
2014-01-06 22:11:18 ----A---- C:\Windows\system32\drivers\HpSAMD.sys.bak
2014-01-06 22:11:18 ----A---- C:\Windows\system32\drivers\hidusb.sys.bak
2014-01-06 22:11:17 ----A---- C:\Windows\system32\drivers\hidparse.sys.bak
2014-01-06 22:11:17 ----A---- C:\Windows\system32\drivers\hidir.sys.bak
2014-01-06 22:11:17 ----A---- C:\Windows\system32\drivers\hidclass.sys.bak
2014-01-06 22:11:17 ----A---- C:\Windows\system32\drivers\hidbth.sys.bak
2014-01-06 22:11:17 ----A---- C:\Windows\system32\drivers\hidbatt.sys.bak
2014-01-06 22:11:16 ----A---- C:\Windows\system32\drivers\HECIx64.sys.bak
2014-01-06 22:11:16 ----A---- C:\Windows\system32\drivers\HdAudio.sys.bak
2014-01-06 22:11:16 ----A---- C:\Windows\system32\drivers\hdaudbus.sys.bak
2014-01-06 22:11:16 ----A---- C:\Windows\system32\drivers\hcw85cir.sys.bak
2014-01-06 22:11:16 ----A---- C:\Windows\system32\drivers\GAGP30KX.SYS.bak
2014-01-06 22:11:16 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS.bak
2014-01-06 22:11:15 ----A---- C:\Windows\system32\drivers\fvevol.sys.bak
2014-01-06 22:11:15 ----A---- C:\Windows\system32\drivers\fsdepends.sys.bak
2014-01-06 22:11:15 ----A---- C:\Windows\system32\drivers\fs_rec.sys.bak
2014-01-06 22:11:15 ----A---- C:\Windows\system32\drivers\fltMgr.sys.bak
2014-01-06 22:11:15 ----A---- C:\Windows\system32\drivers\flpydisk.sys.bak
2014-01-06 22:11:15 ----A---- C:\Windows\system32\drivers\filetrace.sys.bak
2014-01-06 22:11:15 ----A---- C:\Windows\system32\drivers\fileinfo.sys.bak
2014-01-06 22:11:15 ----A---- C:\Windows\system32\drivers\fdc.sys.bak
2014-01-06 22:11:14 ----A---- C:\Windows\system32\drivers\fastfat.sys.bak
2014-01-06 22:11:14 ----A---- C:\Windows\system32\drivers\exfat.sys.bak
2014-01-06 22:11:14 ----A---- C:\Windows\system32\drivers\ewusbnet.sys.bak
2014-01-06 22:11:14 ----A---- C:\Windows\system32\drivers\ewusbmdm.sys.bak
2014-01-06 22:11:14 ----A---- C:\Windows\system32\drivers\ewusbdev.sys.bak
2014-01-06 22:11:13 ----A---- C:\Windows\system32\drivers\ewdcsc.sys.bak
2014-01-06 22:11:13 ----A---- C:\Windows\system32\drivers\evbda.sys.bak
2014-01-06 22:11:13 ----A---- C:\Windows\system32\drivers\errdev.sys.bak
2014-01-06 22:11:12 ----A---- C:\Windows\system32\drivers\elxstor.sys.bak
2014-01-06 22:11:12 ----A---- C:\Windows\system32\drivers\dxgmms1.sys.bak
2014-01-06 22:11:12 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys.bak
2014-01-06 22:11:12 ----A---- C:\Windows\system32\drivers\dxg.sys.bak
2014-01-06 22:11:12 ----A---- C:\Windows\system32\drivers\dxapi.sys.bak
2014-01-06 22:11:12 ----A---- C:\Windows\system32\drivers\dumpfve.sys.bak
2014-01-06 22:11:11 ----A---- C:\Windows\system32\drivers\Dumpata.sys.bak
2014-01-06 22:11:11 ----A---- C:\Windows\system32\drivers\drmkaud.sys.bak
2014-01-06 22:11:11 ----A---- C:\Windows\system32\drivers\drmk.sys.bak
2014-01-06 22:11:11 ----A---- C:\Windows\system32\drivers\Diskdump.sys.bak
2014-01-06 22:11:11 ----A---- C:\Windows\system32\drivers\disk.sys.bak
2014-01-06 22:11:11 ----A---- C:\Windows\system32\drivers\discache.sys.bak
2014-01-06 22:11:11 ----A---- C:\Windows\system32\drivers\dfsc.sys.bak
2014-01-06 22:11:11 ----A---- C:\Windows\system32\drivers\crcdisk.sys.bak
2014-01-06 22:11:10 ----A---- C:\Windows\system32\drivers\crashdmp.sys.bak
2014-01-06 22:11:10 ----A---- C:\Windows\system32\drivers\CompositeBus.sys.bak
2014-01-06 22:11:10 ----A---- C:\Windows\system32\drivers\compbatt.sys.bak
2014-01-06 22:11:10 ----A---- C:\Windows\system32\drivers\cng.sys.bak
2014-01-06 22:11:10 ----A---- C:\Windows\system32\drivers\cmdide.sys.bak
2014-01-06 22:11:10 ----A---- C:\Windows\system32\drivers\CmBatt.sys.bak
2014-01-06 22:11:09 ----A---- C:\Windows\system32\drivers\Classpnp.sys.bak
2014-01-06 22:11:09 ----A---- C:\Windows\system32\drivers\circlass.sys.bak
2014-01-06 22:11:09 ----A---- C:\Windows\system32\drivers\cdrom.sys.bak
2014-01-06 22:11:09 ----A---- C:\Windows\system32\drivers\cdralw2k.sys.bak
2014-01-06 22:11:08 ----A---- C:\Windows\system32\drivers\cdr4_xp.sys.bak
2014-01-06 22:11:08 ----A---- C:\Windows\system32\drivers\cdfs.sys.bak
2014-01-06 22:11:08 ----A---- C:\Windows\system32\drivers\bxvbda.sys.bak
2014-01-06 22:11:08 ----A---- C:\Windows\system32\drivers\bthmodem.sys.bak
2014-01-06 22:11:08 ----A---- C:\Windows\system32\drivers\bScsiSDa.sys.bak
2014-01-06 22:11:07 ----A---- C:\Windows\system32\drivers\bScsiMSa.sys.bak
2014-01-06 22:11:07 ----A---- C:\Windows\system32\drivers\BrUsbSer.sys.bak
2014-01-06 22:11:07 ----A---- C:\Windows\system32\drivers\BrUsbMdm.sys.bak
2014-01-06 22:11:07 ----A---- C:\Windows\system32\drivers\BrSerWdm.sys.bak
2014-01-06 22:11:07 ----A---- C:\Windows\system32\drivers\BrSerId.sys.bak
2014-01-06 22:11:07 ----A---- C:\Windows\system32\drivers\bridge.sys.bak
2014-01-06 22:11:07 ----A---- C:\Windows\system32\drivers\BrFiltUp.sys.bak
2014-01-06 22:11:06 ----A---- C:\Windows\system32\drivers\BrFiltLo.sys.bak
2014-01-06 22:11:06 ----A---- C:\Windows\system32\drivers\bowser.sys.bak
2014-01-06 22:11:06 ----A---- C:\Windows\system32\drivers\blbdrive.sys.bak
2014-01-06 22:11:06 ----A---- C:\Windows\system32\drivers\beep.sys.bak
2014-01-06 22:11:06 ----A---- C:\Windows\system32\drivers\battc.sys.bak
2014-01-06 22:11:06 ----A---- C:\Windows\system32\drivers\b57xdmp.sys.bak
2014-01-06 22:11:06 ----A---- C:\Windows\system32\drivers\b57xdbd.sys.bak
2014-01-06 22:11:05 ----A---- C:\Windows\system32\drivers\b57nd60a.sys.bak
2014-01-06 22:11:05 ----A---- C:\Windows\system32\drivers\avgtpx64.sys.bak
2014-01-06 22:11:05 ----A---- C:\Windows\system32\drivers\athrx.sys.bak
2014-01-06 22:11:04 ----A---- C:\Windows\system32\drivers\ataport.sys.bak
2014-01-06 22:11:04 ----A---- C:\Windows\system32\drivers\atapi.sys.bak
2014-01-06 22:11:04 ----A---- C:\Windows\system32\drivers\asyncmac.sys.bak
2014-01-06 22:11:04 ----A---- C:\Windows\system32\drivers\arcsas.sys.bak
2014-01-06 22:11:04 ----A---- C:\Windows\system32\drivers\arc.sys.bak
2014-01-06 22:11:03 ----A---- C:\Windows\system32\drivers\appid.sys.bak
2014-01-06 22:11:03 ----A---- C:\Windows\system32\drivers\amdxata.sys.bak
2014-01-06 22:11:03 ----A---- C:\Windows\system32\drivers\amdsbs.sys.bak
2014-01-06 22:11:03 ----A---- C:\Windows\system32\drivers\amdsata.sys.bak
2014-01-06 22:11:03 ----A---- C:\Windows\system32\drivers\amdppm.sys.bak
2014-01-06 22:11:03 ----A---- C:\Windows\system32\drivers\amdk8.sys.bak
2014-01-06 22:11:03 ----A---- C:\Windows\system32\drivers\amdide.sys.bak
2014-01-06 22:11:02 ----A---- C:\Windows\system32\drivers\aliide.sys.bak
2014-01-06 22:11:02 ----A---- C:\Windows\system32\drivers\AGP440.sys.bak
2014-01-06 22:11:02 ----A---- C:\Windows\system32\drivers\agilevpn.sys.bak
2014-01-06 22:11:02 ----A---- C:\Windows\system32\drivers\afd.sys.bak
2014-01-06 22:11:02 ----A---- C:\Windows\system32\drivers\adpu320.sys.bak
2014-01-06 22:11:01 ----A---- C:\Windows\system32\drivers\adpahci.sys.bak
2014-01-06 22:11:01 ----A---- C:\Windows\system32\drivers\adp94xx.sys.bak
2014-01-06 22:11:01 ----A---- C:\Windows\system32\drivers\acpipmi.sys.bak
2014-01-06 22:11:01 ----A---- C:\Windows\system32\drivers\acpi.sys.bak
2014-01-06 22:11:01 ----A---- C:\Windows\system32\drivers\1394ohci.sys.bak
2014-01-06 22:11:00 ----A---- C:\Windows\system32\drivers\1394bus.sys.bak
2014-01-06 13:21:42 ----D---- C:\AdwCleaner
2014-01-05 17:36:35 ----D---- C:\Users\Zora Všelichová\AppData\Roaming\Malwarebytes
2014-01-05 17:36:05 ----D---- C:\ProgramData\Malwarebytes
2014-01-05 16:00:39 ----D---- C:\Program Files\trend micro
2014-01-05 16:00:31 ----D---- C:\rsit
2013-12-18 13:21:03 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2013-12-18 13:21:01 ----A---- C:\Windows\system32\ieui.dll
2013-12-18 13:21:00 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-12-18 13:21:00 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-12-18 13:21:00 ----A---- C:\Windows\system32\jsproxy.dll
2013-12-18 13:20:59 ----A---- C:\Windows\system32\ieUnatt.exe
2013-12-18 13:20:59 ----A---- C:\Windows\system32\iernonce.dll
2013-12-18 13:20:59 ----A---- C:\Windows\system32\ie4uinit.exe
2013-12-18 13:20:58 ----A---- C:\Windows\system32\iesetup.dll
2013-12-18 13:20:57 ----A---- C:\Windows\system32\ieetwproxystub.dll
2013-12-18 13:20:57 ----A---- C:\Windows\system32\ieetwcollector.exe
2013-12-18 13:20:55 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2013-12-18 13:20:55 ----A---- C:\Windows\system32\mshtml.dll
2013-12-18 13:20:54 ----A---- C:\Windows\system32\jscript9diag.dll
2013-12-18 13:20:54 ----A---- C:\Windows\system32\ieapfltr.dll
2013-12-18 13:20:53 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-12-18 13:20:49 ----A---- C:\Windows\system32\iertutil.dll
2013-12-18 13:20:47 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-12-18 13:20:47 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-12-18 13:20:45 ----A---- C:\Windows\system32\wininet.dll
2013-12-18 13:20:44 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-12-18 13:20:43 ----A---- C:\Windows\system32\urlmon.dll
2013-12-18 13:20:39 ----A---- C:\Windows\system32\ieframe.dll
2013-12-18 13:20:38 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-12-18 13:20:35 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-12-18 13:20:33 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-12-18 13:20:31 ----A---- C:\Windows\system32\jscript9.dll
2013-12-17 21:37:56 ----D---- C:\Users\Zora Všelichová\AppData\Roaming\avidemux
2013-12-17 21:37:17 ----D---- C:\Program Files (x86)\Avidemux 2.6
2013-12-17 12:53:14 ----A---- C:\Windows\system32\IEUDINIT.EXE
2013-12-17 12:47:50 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-12-17 12:47:50 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\url.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\jsIntl.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-12-17 12:47:45 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\wextract.exe
2013-12-17 12:47:45 ----A---- C:\Windows\system32\webcheck.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\vbscript.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\url.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-12-17 12:47:45 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-17 12:47:45 ----A---- C:\Windows\system32\pngfilt.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\occache.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\msrating.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\msls31.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\mshtmler.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\mshtmled.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\mshta.exe
2013-12-17 12:47:45 ----A---- C:\Windows\system32\msfeedssync.exe
2013-12-17 12:47:45 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\msfeeds.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\licmgr10.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\jsIntl.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\inseng.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\iexpress.exe
2013-12-17 12:47:45 ----A---- C:\Windows\system32\iesysprep.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\iedkcs32.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\ieapfltr.dat
2013-12-17 12:47:45 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\icardie.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\elshyph.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\dxtrans.dll
2013-12-17 12:47:45 ----A---- C:\Windows\system32\dxtmsft.dll
2013-12-17 12:47:44 ----A---- C:\Windows\system32\MshtmlDac.dll
2013-12-17 12:47:44 ----A---- C:\Windows\system32\jscript.dll
2013-12-17 12:47:44 ----A---- C:\Windows\system32\imgutil.dll
2013-12-17 12:47:44 ----A---- C:\Windows\system32\iepeers.dll
2013-12-17 12:42:52 ----SHD---- C:\Config.Msi
2013-12-15 14:33:58 ----D---- C:\Program Files\EPSON
2013-12-13 17:05:39 ----D---- C:\ProgramData\Pinnacle Studio Ultimate Collection
2013-12-13 16:59:09 ----D---- C:\ProgramData\Studio 14
2013-12-13 16:59:09 ----D---- C:\ProgramData\Pinnacle Studio Plus
2013-12-13 16:59:09 ----D---- C:\Program Files (x86)\Pinnacle
2013-12-13 16:56:34 ----D---- C:\ProgramData\Pinnacle
2013-12-12 15:05:52 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-12-12 14:14:30 ----A---- C:\Windows\system32\wmploc.DLL
2013-12-12 14:14:29 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-12-12 14:14:29 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-12-12 14:14:26 ----A---- C:\Windows\system32\wmp.dll
2013-12-11 23:21:43 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-12-11 23:21:43 ----A---- C:\Windows\system32\WMPhoto.dll
2013-12-11 23:21:42 ----A---- C:\Windows\system32\win32k.sys
2013-12-11 23:21:41 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-12-11 23:21:41 ----A---- C:\Windows\system32\msieftp.dll
2013-12-11 23:21:41 ----A---- C:\Windows\system32\imagehlp.dll
2013-12-11 23:21:40 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-12-11 23:21:37 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-12-11 23:21:37 ----A---- C:\Windows\system32\tzres.dll
2013-12-11 23:21:33 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-12-11 23:21:33 ----A---- C:\Windows\system32\drivers\drmk.sys
2013-12-11 23:21:31 ----A---- C:\Windows\SYSWOW64\wscript.exe
2013-12-11 23:21:31 ----A---- C:\Windows\system32\scrrun.dll
2013-12-11 23:21:31 ----A---- C:\Windows\system32\cscript.exe
2013-12-11 23:21:30 ----A---- C:\Windows\SYSWOW64\scrrun.dll
2013-12-11 23:21:30 ----A---- C:\Windows\system32\wscript.exe
2013-12-11 23:21:29 ----A---- C:\Windows\SYSWOW64\cscript.exe
2013-12-10 12:45:00 ----D---- C:\Users\Zora Všelichová\AppData\Roaming\Windows Live Writer
2013-12-10 12:29:01 ----D---- C:\Windows\cs
2013-12-10 12:25:58 ----D---- C:\Program Files\Windows Live
2013-12-10 12:25:19 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2013-12-10 12:25:19 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2013-12-10 12:25:18 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2013-12-10 12:25:18 ----A---- C:\Windows\system32\XAudio2_7.dll
2013-12-10 12:25:14 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2013-12-10 12:25:14 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2013-12-10 12:25:11 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2013-12-10 12:25:11 ----A---- C:\Windows\system32\d3dx11_43.dll
2013-12-10 12:24:51 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2013-12-10 12:24:51 ----A---- C:\Windows\system32\d3dx10_42.dll
2013-12-10 12:24:27 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2013-12-10 12:24:27 ----A---- C:\Windows\system32\d3dx9_32.dll

======List of files/folders modified in the last 1 month======

2014-01-07 12:18:43 ----D---- C:\Windows\Temp
2014-01-07 12:06:16 ----D---- C:\Users\Zora Všelichová\AppData\Roaming\Skype
2014-01-07 11:11:01 ----D---- C:\Users\Zora Všelichová\AppData\Roaming\Seznam.cz
2014-01-07 11:10:03 ----D---- C:\Windows\system32\config
2014-01-07 11:07:34 ----D---- C:\Windows\system32\Tasks
2014-01-07 10:58:56 ----SHD---- C:\System Volume Information
2014-01-07 01:49:46 ----D---- C:\Windows\System32
2014-01-07 01:49:46 ----D---- C:\Windows\inf
2014-01-07 01:49:46 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-01-06 22:11:59 ----D---- C:\Windows\system32\drivers
2014-01-06 22:06:27 ----A---- C:\Windows\SYSWOW64\log.txt
2014-01-06 22:01:40 ----D---- C:\Program Files (x86)\Common Files
2014-01-06 22:01:38 ----RD---- C:\Program Files (x86)
2014-01-06 22:01:37 ----HD---- C:\ProgramData
2014-01-05 20:14:39 ----D---- C:\Windows\Prefetch
2014-01-05 16:00:39 ----RD---- C:\Program Files
2013-12-24 23:13:23 ----D---- C:\Users\Zora Všelichová\AppData\Roaming\uTorrent
2013-12-20 23:18:15 ----RSD---- C:\Windows\Fonts
2013-12-19 14:55:02 ----D---- C:\Windows\winsxs
2013-12-19 14:52:03 ----D---- C:\Windows\SysWOW64
2013-12-19 14:52:03 ----D---- C:\Program Files\Internet Explorer
2013-12-19 14:52:03 ----D---- C:\Program Files (x86)\Internet Explorer
2013-12-18 13:21:26 ----D---- C:\Windows\system32\catroot
2013-12-18 13:21:24 ----D---- C:\Windows\system32\catroot2
2013-12-17 17:55:33 ----D---- C:\Windows\rescache
2013-12-17 17:10:54 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-17 17:10:02 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-12-17 17:10:02 ----D---- C:\Windows\system32\cs-CZ
2013-12-17 17:10:01 ----D---- C:\Windows\SYSWOW64\migration
2013-12-17 17:10:01 ----D---- C:\Windows\SYSWOW64\en-US
2013-12-17 17:10:00 ----D---- C:\Windows\system32\migration
2013-12-17 17:10:00 ----D---- C:\Windows\system32\en-US
2013-12-17 17:10:00 ----D---- C:\Windows\PolicyDefinitions
2013-12-17 12:53:14 ----D---- C:\Windows\Logs
2013-12-17 12:45:52 ----D---- C:\Windows
2013-12-17 12:45:39 ----D---- C:\Windows\system32\MRT
2013-12-17 12:43:20 ----SHD---- C:\Windows\Installer
2013-12-17 12:39:27 ----A---- C:\Windows\system32\MRT.exe
2013-12-15 14:35:41 ----D---- C:\ProgramData\EPSON
2013-12-13 17:07:21 ----D---- C:\Windows\system32\DriverStore
2013-12-13 17:06:53 ----SD---- C:\Users\Zora Všelichová\AppData\Roaming\Microsoft
2013-12-12 14:31:53 ----D---- C:\Program Files\Windows Media Player
2013-12-12 14:31:53 ----D---- C:\Program Files (x86)\Windows Media Player
2013-12-11 21:07:01 ----D---- C:\Windows\Microsoft.NET
2013-12-11 21:05:28 ----RSD---- C:\Windows\assembly
2013-12-11 11:10:34 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-12-11 11:08:45 ----D---- C:\Program Files (x86)\Google
2013-12-10 12:26:33 ----D---- C:\Program Files (x86)\Windows Live
2013-12-09 19:33:30 ----D---- C:\Windows\system32\FxsTmp

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-05-09 65336]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-06-30 189936]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2012-02-01 568600]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2013-05-10 564824]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2013-05-09 22600]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2013-05-09 72016]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-06-30 1030952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-06-30 378944]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-05-09 64288]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2013-11-20 46368]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-05-09 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-05-09 80816]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2012-01-10 2801664]
R3 b57xdbd;Broadcom xD Picture Bus Driver Service; C:\Windows\system32\DRIVERS\b57xdbd.sys [2011-11-04 68648]
R3 b57xdmp;Broadcom xD Picture vstorp client drv; C:\Windows\system32\DRIVERS\b57xdmp.sys [2011-11-04 19496]
R3 bScsiMSa;bScsiMSa; C:\Windows\system32\DRIVERS\bScsiMSa.sys [2011-09-02 51752]
R3 bScsiSDa;bScsiSDa; C:\Windows\system32\DRIVERS\bScsiSDa.sys [2012-06-01 83576]
R3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-12-15 117248]
R3 hwusbdev;Huawei DataCard USB PNP Device; C:\Windows\system32\DRIVERS\ewusbdev.sys [2009-12-15 114304]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-03-27 14748416]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-01-03 4730344]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2011-12-06 331264]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2012-01-18 435240]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-23 261120]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2011-11-10 60184]
R3 SmbDrv;SmbDrv; C:\Windows\system32\DRIVERS\Smb_driver.sys [2012-02-14 22800]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2012-02-14 412944]
S3 afwfl4ho;afwfl4ho; C:\Windows\system32\drivers\afwfl4ho.sys []
S3 Huawei;HUAWEI Mobile Connect - USB Smart Card Reader; C:\Windows\system32\DRIVERS\ewdcsc.sys [2009-12-15 29696]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2010-11-21 109056]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [2009-05-14 759048]
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2012-03-23 355920]
R2 EpsonBidirectionalService;EpsonBidirectionalService; C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe [2006-12-19 94208]
R2 EpsonCustomerResearchParticipation;EpsonCustomerResearchParticipation; C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [2013-09-05 653888]
R2 EpsonScanSvc;Epson Scanner Service; C:\Windows\system32\EscSvc64.exe [2011-12-11 135824]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-02-01 13592]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-02-02 628448]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-02-08 161560]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-02-08 277784]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-10-09 3275136]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-02-08 363800]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2012-07-17 2292480]
S2 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2012-01-05 75624]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-04 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-11 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-04-23 276248]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-04 116648]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2013-11-26 111616]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-12-12 119408]
S3 SwitchBoard;Adobe SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-05-06 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 07 led 2014 14:31
od Márty84
Fajn, jeste ten OTL a budem mazat :) Porad se vam neco zkousi v pc otevrit?

Re: Stále se mi snaží něco otevírat v počítači

Napsal: 07 led 2014 17:51
od zooh
Márty84 píše:Fajn, jeste ten OTL a budem mazat :) Porad se vam neco zkousi v pc otevrit?
ten OTL mi nefunguje, zkoušela jsem to 2x a když dojede na konec a chce asi vygenerovat Log tak mi hodí hlášku: "Cannot create file C:/Users/Zora Všelichová/ Desktop/ cmd.bat."

Jinak ale už se mi tu dlouho nic neotevřelo, takže to asi bude ok :)))