Stránka 1 z 1

Pomalé Pc

Napsal: 27 črc 2014 15:26
od civrs
ESET Online Scanner mi našel nějaké problémy a dokonce i nějakého trojana.Vše snad smazal..
Pc se mi zdá celkově pomalé.
Prosím o kontrolu díky.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Admin at 2014-07-27 16:15:59
Microsoft Windows XP Home Edition Service Pack 3
System drive E: has 21 GB (30%) free of 70 GB
Total RAM: 3070 MB (29% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:16:05, on 27.7.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\WINDOWS\system32\Ati2evxx.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\svchost.exe
E:\Program Files\AVAST Software\Avast\AvastSvc.exe
E:\WINDOWS\system32\Ati2evxx.exe
E:\WINDOWS\system32\spoolsv.exe
E:\WINDOWS\Explorer.EXE
E:\Program Files\Google\Update\1.3.24.15\GoogleCrashHandler.exe
E:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
E:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
E:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
E:\Program Files\Java\jre7\bin\jqs.exe
E:\Program Files\Nero\Update\NASvc.exe
E:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
E:\WINDOWS\system32\PnkBstrA.exe
E:\WINDOWS\System32\PAStiSvc.exe
E:\WINDOWS\system32\svchost.exe
E:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
E:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
E:\WINDOWS\system32\wbem\wmiapsrv.exe
E:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\RTHDCPL.EXE
E:\Program Files\AVAST Software\Avast\avastUI.exe
E:\Program Files\Common Files\Java\Java Update\jusched.exe
E:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
E:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
E:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
E:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
E:\WINDOWS\system32\rundll32.exe
E:\WINDOWS\system32\MSTMON_Q.EXE
E:\WINDOWS\system32\ctfmon.exe
E:\Program Files\Google\Drive\googledrivesync.exe
E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\bin\szndesktop.exe
E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
E:\Program Files\Skype\Phone\Skype.exe
E:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE
E:\Program Files\Google\Drive\googledrivesync.exe
E:\Program Files\Common Files\Java\Java Update\jucheck.exe
E:\Program Files\Mozilla Firefox\firefox.exe
E:\Program Files\Mozilla Firefox\plugin-container.exe
E:\Documents and Settings\Admin\Dokumenty\Stažené soubory\RSIT.exe
E:\Program Files\trend micro\Admin.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.ividi.org/?src=tbhp&id=04 ... a&affilt=3
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - E:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - E:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - E:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - E:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - E:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [avast] "E:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Adobe ARM] "E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [ApnTBMon] "E:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKLM\..\Run: [TrueImageMonitor.exe] "E:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe"
O4 - HKLM\..\Run: [AcronisTibMounterMonitor] E:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
O4 - HKLM\..\Run: [Služba Acronis Scheduler2] "E:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "E:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [BCSSync] "E:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [KONICA MINOLTA PagePro 1350WStatusDisplay] E:\WINDOWS\system32\MSTMON_Q.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [GoogleDriveSync] "E:\Program Files\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [EADM] D:\PROGRAMY INSTAL\Origin\Origin.exe -AutoStart
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "E:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Skype] "E:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "E:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://E:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://E:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - E:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - E:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 3978607934
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - E:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - E:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Acronis Scheduler2 (AcrSch2Svc) - Acronis - E:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - E:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Acronis Nonstop Backup Service (afcdpsrv) - Acronis - E:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - E:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - E:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - AVAST Software - E:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - E:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - E:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - E:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - E:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - E:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - E:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero Update (NAUpdate) - Nero AG - E:\Program Files\Nero\Update\NASvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - E:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - E:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - E:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - E:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia - E:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - E:\Program Files\Skype\Updater\Updater.exe
O23 - Service: STI Simulator - Unknown owner - E:\WINDOWS\System32\PAStiSvc.exe
O23 - Service: Acronis Sync Agent Service (syncagentsrv) - Acronis - E:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - E:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe

--
End of file - 11524 bytes

======Scheduled tasks folder======

E:\WINDOWS\tasks\Adobe Flash Player Updater.job - E:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
E:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - E:\Program Files\Google\Update\GoogleUpdate.exe /c
E:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - E:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
E:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - E:\WINDOWS\system32\xp_eos.exe
E:\WINDOWS\tasks\Nero Info.job - E:\Program Files\Common Files\Nero\Nero Info\NeroInfo.exe -shedul
E:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - E:\WINDOWS\system32\xp_eos.exe -c

=========Mozilla firefox=========

ProfilePath - E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default

prefs.js - "browser.search.useDBForOrder" - true

"wrc@avast.com"=E:\Program Files\AVAST Software\Avast\WebRep\FF
"{20a82645-c095-46ed-80e3-08825760534b}"=E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.145 Plugin
"Path"=E:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=E:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=E:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@mcafee.com/McAfeeMssPlugin]
"Description"=McAfee Mss Plugin
"Path"=E:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMss.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=E:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=E:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=E:\PROGRA~1\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=E:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=E:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=E:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=E:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


E:\Program Files\Mozilla Firefox\plugins\
nppdf32.dll

E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default\extensions\
f87f900b-ebb4-498d-a3ac-077cfae44103@52f83dfc-3a94-49d3-b0ff-c4470a645eb5.com
WebSiteRecommendation@weliketheweb.com
{ea614400-e918-4741-9a97-7a972ff7c30b}

E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default\searchplugins\
ask-search.xml
firmycz.xml
ividi.xml
mapycz.xml
zbocz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}]
MSS+ Identifier - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=E:\WINDOWS\RTHDCPL.EXE [2012-06-06 20065936]
"avast"=E:\Prog [2013-05-09 6583664]
"StartCCC"=E:\Prog [2013-05-09 6583664]
"Adobe ARM"=E:\Prog [2013-05-09 6583664]
"SunJavaUpdateSched"=E:\Prog [2013-05-09 6583664]
"ApnTBMon"=E:\Prog [2013-05-09 6583664]
"TrueImageMonitor.exe"=E:\Prog [2013-05-09 6583664]
"AcronisTibMounterMonitor"=E:\Prog [2013-05-09 6583664]
"Služba Acronis Scheduler2"=E:\Prog [2013-05-09 6583664]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"seznam-listicka-distribuce"=E:\Prog [2013-05-09 6583664]
"BCSSync"=E:\Prog [2013-05-09 6583664]
"KONICA MINOLTA PagePro 1350WStatusDisplay"=E:\WINDOWS\system32\MSTMON_Q.EXE [2004-11-26 167936]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=E:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"GoogleDriveSync"=E:\Prog [2013-05-09 6583664]
"EADM"=D:\PROGRAMY INSTAL\Origin\Origin.exe [2014-05-18 3588952]
"DAEMON Tools Pro Agent"=E:\Prog [2013-05-09 6583664]
"cz.seznam.software.autoupdate"=E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"Skype"=E:\Prog [2013-05-09 6583664]
"Zoner Photo Studio Autoupdate"=E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Bloody2]
E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KONICA MINOLTA PagePro 1350WStatusDisplay]
E:\WINDOWS\system32\MSTMON_Q.EXE [2004-11-26 167936]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\E:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^McAfee Security Scan Plus.lnk]
E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
E:\WINDOWS\system32\Ati2evxx.dll [2012-11-16 192512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - E:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"E:\Program Files\Nero\Nero8\Nero ShowTime\ShowTime.exe"="E:\Program Files\Nero\Nero8\Nero ShowTime\ShowTime.exe:*:Enabled:Nero ShowTime"
"E:\Program Files\Microsoft Office\Office14\GROOVE.EXE"="E:\Program Files\Microsoft Office\Office14\GROOVE.EXE:*:Enabled:Microsoft SharePoint Workspace"
"E:\Program Files\Microsoft Office\Office14\ONENOTE.EXE"="E:\Program Files\Microsoft Office\Office14\ONENOTE.EXE:*:Enabled:Microsoft OneNote"
"E:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE"="E:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"E:\Program Files\Java\jre7\bin\javaw.exe"="E:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"D:\PROGRAMY INSTAL\Steam\Steam.exe"="D:\PROGRAMY INSTAL\Steam\Steam.exe:*:Enabled:Steam Client Bootstrapper (buildbot_winslave04_steam_steam_rel_client_win32@winslave04)"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe:*:Enabled:Crysis 2 Maximum Edition"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2.exe:*:Enabled:Crysis2"
"E:\Program Files\Pando Networks\Media Booster\PMB.exe"="E:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4mpOLD.exe"="C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4mpOLD.exe:*:Enabled: "
"C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4sp.exe"="C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4sp.exe:*:Enabled:iw4sp"
"E:\WINDOWS\system32\PnkBstrA.exe"="E:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"E:\WINDOWS\system32\PnkBstrB.exe"="E:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4mp.exe"="C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4mp.exe:*:Enabled:IW4 Launcher"
"C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\bootstrap\iw4mp.exe"="C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\bootstrap\iw4mp.exe:*:Enabled:IW4 Launcher"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer"
"D:\hry instal\cod4\iw3mp.exe"="D:\hry instal\cod4\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) "
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe:*:Enabled:borderlands game"
"E:\Documents and Settings\All Users\Data aplikací\Electronic Arts\Need for Speed World\Data\nfsw.exe"="E:\Documents and Settings\All Users\Data aplikací\Electronic Arts\Need for Speed World\Data\nfsw.exe:*:Enabled:Need for Speed World"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe:*:Enabled:Borderlands 2"
"E:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe"="E:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe:*:Enabled:Acronis Sync Agent Service"
"D:\hry instal\Hearthstone\Hearthstone\Hearthstone.exe"="D:\hry instal\Hearthstone\Hearthstone\Hearthstone.exe:*:Enabled:Hearthstone"
"D:\Program Files\Origin Games\Need for Speed World\GameLauncher.exe"="D:\Program Files\Origin Games\Need for Speed World\GameLauncher.exe:*:Enabled:Need For Speed™ World"
"E:\Program Files\Nero\Nero Blu-ray Player\Blu-rayPlayer.exe"="E:\Program Files\Nero\Nero Blu-ray Player\Blu-rayPlayer.exe:*:Enabled:Nero Blu-ray Player"
"E:\Program Files\Nero\KM\NMDllHost.exe"="E:\Program Files\Nero\KM\NMDllHost.exe:*:Enabled:NMDllHost"
"E:\WINDOWS\system32\javaw.exe"="E:\WINDOWS\system32\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Epigenesis\Binaries\Win32\Epigenesis.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Epigenesis\Binaries\Win32\Epigenesis.exe:*:Enabled:Epigenesis"
"D:\hry instal\audiosurf\Audiosurf\engine\QuestViewer.exe"="D:\hry instal\audiosurf\Audiosurf\engine\QuestViewer.exe:*:Enabled:QuestViewer"
"E:\Program Files\Skype\Phone\Skype.exe"="E:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"E:\Program Files\Google\Chrome\Application\chrome.exe"="E:\Program Files\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"E:\Program Files\Pando Networks\Media Booster\PMB.exe"="E:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=E:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=E:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FFDS"=ff_vfw.dll
"vidc.VP60"=E:\WINDOWS\system32\vp6vfw.dll
"vidc.VP61"=E:\WINDOWS\system32\vp6vfw.dll
"VIDC.FPS1"=frapsvid.dll

======List of files/folders created in the last 1 month======

2014-07-27 16:15:59 ----D---- E:\rsit
2014-07-26 14:08:27 ----D---- E:\Documents and Settings\All Users\Data aplikací\VS Revo Group
2014-07-26 14:08:27 ----A---- E:\WINDOWS\system32\drivers\revoflt.sys
2014-07-26 14:08:24 ----D---- E:\Program Files\VS Revo Group

======List of files/folders modified in the last 1 month======

2014-07-27 16:16:05 ----D---- E:\WINDOWS\Prefetch
2014-07-27 16:16:05 ----D---- E:\Program Files\trend micro
2014-07-27 13:19:17 ----D---- E:\Program Files\Apps Hat Madness
2014-07-27 12:57:59 ----D---- E:\WINDOWS\Temp
2014-07-27 12:15:20 ----D---- E:\WINDOWS\Logs
2014-07-27 12:15:20 ----D---- E:\WINDOWS\Debug
2014-07-27 12:15:20 ----D---- E:\WINDOWS
2014-07-27 11:31:12 ----D---- E:\WINDOWS\system32
2014-07-27 11:31:11 ----A---- E:\WINDOWS\system32\PnkBstrB.exe
2014-07-27 09:31:38 ----D---- E:\Program Files\PokerStars
2014-07-27 08:53:33 ----D---- E:\Documents and Settings\Admin\Data aplikací\Seznam.cz
2014-07-27 08:49:43 ----D---- E:\WINDOWS\system32\CatRoot2
2014-07-26 15:32:57 ----N---- E:\WINDOWS\SchedLgU.Txt
2014-07-26 14:41:51 ----D---- E:\Program Files\AppGraffiti
2014-07-26 14:33:41 ----HD---- E:\Program Files\InstallShield Installation Information
2014-07-26 14:08:33 ----D---- E:\WINDOWS\system32\drivers
2014-07-26 14:08:32 ----HD---- E:\WINDOWS\inf
2014-07-26 14:08:24 ----RD---- E:\Program Files
2014-07-26 14:00:43 ----SHD---- E:\WINDOWS\Installer
2014-07-26 14:00:42 ----SHD---- E:\Config.Msi
2014-07-26 13:52:59 ----SHD---- E:\WINDOWS\system32\AI_RecycleBin
2014-07-26 13:51:53 ----D---- E:\Program Files\Common Files\Blizzard Entertainment
2014-07-26 13:49:48 ----D---- E:\Documents and Settings\All Users\Data aplikací\Electronic Arts
2014-07-26 13:48:01 ----D---- E:\Program Files\Bloody4
2014-07-25 12:41:47 ----D---- E:\WINDOWS\system32\config
2014-07-20 11:40:40 ----D---- E:\Documents and Settings\Admin\Data aplikací\Skype
2014-07-18 08:37:06 ----D---- E:\WINDOWS\system32\Restore
2014-07-09 11:52:23 ----D---- E:\WINDOWS\system32\MRT
2014-07-09 00:04:07 ----D---- E:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2014-07-08 23:56:47 ----A---- E:\WINDOWS\system32\MRT.exe
2014-07-08 21:58:26 ----A---- E:\WINDOWS\system32\FlashPlayerApp.exe
2014-07-07 21:17:10 ----SD---- E:\WINDOWS\Tasks
2014-06-30 16:45:17 ----D---- E:\Documents and Settings\Admin\Data aplikací\.minecraft

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; E:\WINDOWS\system32\drivers\aswRvrt.sys [2013-05-09 49376]
R0 aswVmm;aswVmm; E:\WINDOWS\system32\drivers\aswVmm.sys [2013-07-16 175176]
R0 fltsrv;Acronis Storage Filter Management; E:\WINDOWS\system32\DRIVERS\fltsrv.sys [2013-12-06 86304]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; E:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 snapman;Acronis Snapshots Manager; E:\WINDOWS\system32\DRIVERS\snapman.sys [2013-12-06 185120]
R0 tib;Acronis TIB Manager; E:\WINDOWS\system32\DRIVERS\tib.sys [2013-12-06 736192]
R0 tib_mounter;Acronis TIB Mounter; E:\WINDOWS\system32\DRIVERS\tib_mounter.sys [2013-12-06 130488]
R0 vididr;Acronis Virtual Disk; E:\WINDOWS\system32\DRIVERS\vididr.sys [2013-12-06 116000]
R0 vidsflt;Acronis Disk Storage Filter; E:\WINDOWS\system32\DRIVERS\vidsflt.sys [2013-12-06 85280]
R1 AmdK8;Ovladač procesoru AMD; E:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-07-01 43008]
R1 AswRdr;aswRdr; E:\WINDOWS\system32\drivers\AswRdr.sys [2013-05-09 49760]
R1 aswSnx;aswSnx; E:\WINDOWS\system32\drivers\aswSnx.sys [2013-07-16 770344]
R1 aswSP;aswSP; E:\WINDOWS\system32\drivers\aswSP.sys [2013-07-16 369584]
R1 aswTdi;avast! Network Shield Support; E:\WINDOWS\system32\drivers\aswTdi.sys [2013-05-09 56080]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; E:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2013-11-27 242240]
R1 kbdhid;Ovladač klávesnice standardu HID; E:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R2 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC};Power Control [2013/07/16 15:07:43]; \??\E:\Program Files\CyberLink\PowerDVD10\NavFilter\000.fcl []
R2 aswFsBlk;aswFsBlk; E:\WINDOWS\system32\drivers\aswFsBlk.sys [2013-05-09 29816]
R2 aswMonFlt;aswMonFlt; \??\E:\WINDOWS\system32\drivers\aswMonFlt.sys []
R2 MLPTDR_Q;MLPTDR_Q; \??\E:\WINDOWS\system32\MLPTDR_Q.SYS []
R3 afcdp;afcdp; E:\WINDOWS\system32\DRIVERS\afcdp.sys [2013-12-06 234752]
R3 Arp1394;Protokol 1394 ARP Client; E:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 ati2mtag;ati2mtag; E:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2012-11-16 7874560]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; E:\WINDOWS\system32\drivers\AtihdXP3.sys [2012-05-14 103040]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; E:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 HidUsb;Ovladač třídy standardu HID; E:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); E:\WINDOWS\system32\drivers\RtkHDAud.sys [2012-06-19 6141584]
R3 mouhid;Ovladač myši standardu HID; E:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 NIC1394;1394 Net Driver; E:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; E:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2007-06-28 45824]
R3 nvnetbus;NVIDIA Network Bus Enumerator; E:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2007-06-28 20480]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\E:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys []
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; E:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; E:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-07-13 91904]
S3 Ambfilt;Ambfilt; E:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 AndNetDiag;LGE AndroidNet USB Serial Port; E:\WINDOWS\system32\DRIVERS\lgandnetdiag.sys [2012-07-03 23040]
S3 ANDNetModem;LGE AndroidNet USB Modem; E:\WINDOWS\system32\DRIVERS\lgandnetmodem.sys [2012-07-03 27776]
S3 BthEnum;Ovladač pro Bluetooth Request Block; E:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-14 17024]
S3 BTHMODEM;Ovladač pro sériovou komunikaci protokolem Bluetooth; E:\WINDOWS\system32\DRIVERS\bthmodem.sys [2008-04-14 37888]
S3 BthPan;Bluetooth Device (Personal Area Network); E:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-14 101120]
S3 BTHPORT;Ovladač portu Bluetooth; E:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; E:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-14 18944]
S3 CCDECODE;Dekodér Closed Caption; E:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 EagleXNt;EagleXNt; \??\E:\WINDOWS\system32\drivers\EagleXNt.sys []
S3 hamachi;Hamachi Network Interface; E:\WINDOWS\system32\DRIVERS\hamachi.sys [2013-09-04 25280]
S3 Monfilt;Monfilt; E:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; E:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; E:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; E:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nmwcd;Nokia USB Phone Parent Driver; E:\WINDOWS\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; E:\WINDOWS\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 PAC207;VideoCAM GF112; E:\WINDOWS\system32\DRIVERS\pfc027.sys [2005-04-08 162176]
S3 pccsmcfd;PCCS Mode Change Filter Driver; E:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2012-06-11 19072]
S3 Revoflt;Revoflt; E:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 27064]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); E:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-14 59136]
S3 RTHDMIAzAudService;Service for HDMI; E:\WINDOWS\system32\drivers\RtKHDMI.sys [2011-12-02 4125352]
S3 SLIP;BDA Slip De-Framer; E:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; E:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 tdrpman;Acronis Try&Decide and Restore Points filter; E:\WINDOWS\system32\DRIVERS\tdrpman.sys [2013-12-06 889888]
S3 upperdev;upperdev; E:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2012-01-09 8192]
S3 usbprint;Třída USB Printer; E:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; E:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 usbser;USB Modem Driver; E:\WINDOWS\system32\DRIVERS\usbser.sys [2013-08-29 26240]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; E:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 Wdf01000;Kernel Mode Driver Frameworks service; E:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WpdUsb;WpdUsb; E:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; E:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; E:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-07-13 132224]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AcrSch2Svc;Služba Acronis Scheduler2; E:\Prog [2013-05-09 6583664]
R2 afcdpsrv;Acronis Nonstop Backup Service; E:\Prog [2013-05-09 6583664]
R2 APNMCP;Ask Update Service; E:\Prog [2013-05-09 6583664]
R2 Ati HotKey Poller;Ati HotKey Poller; E:\WINDOWS\system32\Ati2evxx.exe [2012-11-16 643072]
R2 avast! Antivirus;avast! Antivirus; E:\Prog [2013-05-09 6583664]
R2 BthServ;Bluetooth Support Service; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; E:\Prog [2013-05-09 6583664]
R2 NAUpdate;Nero Update; E:\Prog [2013-05-09 6583664]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; E:\Prog [2013-05-09 6583664]
R2 PnkBstrA;PnkBstrA; E:\WINDOWS\system32\PnkBstrA.exe [2014-05-04 76888]
R2 STI Simulator;STI Simulator; E:\WINDOWS\System32\PAStiSvc.exe [2005-01-14 53248]
R2 syncagentsrv;Acronis Sync Agent Service; E:\Prog [2013-05-09 6583664]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; E:\Prog [2013-05-09 6583664]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); E:\Prog [2013-05-09 6583664]
S2 SkypeUpdate;Skype Updater; E:\Prog [2013-05-09 6583664]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; E:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-08 262320]
S3 aspnet_state;ASP.NET State Service; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); E:\Prog [2013-05-09 6583664]
S3 IDriverT;InstallDriver Table Manager; E:\Prog [2013-05-09 6583664]
S3 idsvc;Windows CardSpace; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 McComponentHostService;McAfee Security Scan Component Host Service; E:\Prog [2013-05-09 6583664]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; E:\Prog [2013-05-09 6583664]
S3 MozillaMaintenance;Mozilla Maintenance Service; E:\Prog [2013-05-09 6583664]
S3 NMIndexingService;NMIndexingService; E:\Prog [2013-05-09 6583664]
S3 npggsvc;nProtect GameGuard Service; E:\WINDOWS\system32\GameMon.des [2014-01-15 4784312]
S3 ose;Office Source Engine; E:\Prog [2013-05-09 6583664]
S3 osppsvc;Office Software Protection Platform; E:\Prog [2013-05-09 6583664]
S3 ServiceLayer;ServiceLayer; E:\Prog [2013-05-09 6583664]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; E:\Prog [2013-05-09 6583664]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: Pomalé Pc

Napsal: 27 črc 2014 17:07
od Rudy
Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Pomalé Pc

Napsal: 27 črc 2014 17:31
od civrs
Děkuji,log je zde

# AdwCleaner v3.216 - Report created 27/07/2014 at 18:24:44
# Updated 17/07/2014 by Xplode
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Admin - ADMIN-260F498AE
# Running from : E:\Documents and Settings\Admin\Plocha\adwcleaner_3.216.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : APNMCP

***** [ Files / Folders ] *****

Folder Deleted : E:\Documents and Settings\All Users\Data aplikací\apn
Folder Deleted : E:\Documents and Settings\All Users\Data aplikací\AskPartnerNetwork
Folder Deleted : E:\Documents and Settings\All Users\Data aplikací\IBUpdaterService
Folder Deleted : E:\Program Files\AppGraffiti
Folder Deleted : E:\Program Files\AskPartnerNetwork
Folder Deleted : E:\Program Files\Apps Hat Madness
Folder Deleted : E:\Documents and Settings\Admin\Local Settings\Data aplikací\AppsHat Mobile Apps
Folder Deleted : E:\Documents and Settings\Admin\Local Settings\Data aplikací\AskPartnerNetwork
Folder Deleted : E:\Documents and Settings\Admin\Local Settings\Data aplikací\Apps Hat Madness
Folder Deleted : E:\Documents and Settings\Admin\Data aplikací\OpenCandy
Folder Deleted : E:\Documents and Settings\Admin\Data aplikací\SimilarSites
Folder Deleted : E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default\Extensions\WebSiteRecommendation@weliketheweb.com
Folder Deleted : E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default\Extensions\f87f900b-ebb4-498d-a3ac-077cfae44103@52f83dfc-3a94-49d3-b0ff-c4470a645eb5.com
[!] Folder Deleted : E:\Documents and Settings\Admin\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh
File Deleted : E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default\searchplugins\ask-search.xml
File Deleted : E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default\searchplugins\ividi.xml
File Deleted : E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default\user.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon]
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048555.BHO
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048555.BHO.1
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048555.Sandbox
Key Deleted : HKLM\SOFTWARE\Classes\CrossriderApp0048555.Sandbox.1
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{685F23D9-FCFD-475C-B56A-362645945C5A}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{11111111-1111-1111-1111-110411851155}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220422852255}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550455855555}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660466856655}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440444854455}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC99A798-FD3D-4AB4-969E-6071612524F9}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110411851155}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110411851155}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110411851155}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66a1d40c-5dbc-45a2-ab1c-540c6646affd}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97357bf0-033b-4de9-86e3-3371840c35ee}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{b85aca3b-9795-4f78-bed3-628364ee1a04}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d95f8625-4bf7-4d1d-91ee-fea22d6f9af8}
Key Deleted : HKCU\Software\AskPartnerNetwork
Key Deleted : HKCU\Software\BI
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Crossrider
Key Deleted : HKCU\Software\CToolbar
Key Deleted : HKCU\Software\filescout
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\installedbrowserextensions
Key Deleted : HKCU\Software\iVIDI Plugin
Key Deleted : HKCU\Software\Unitech LLC
Key Deleted : HKCU\Software\UpdateStar
Key Deleted : HKCU\Software\Apps Hat Madness
Key Deleted : HKLM\Software\AskPartnerNetwork
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\CToolbar
Key Deleted : HKLM\Software\Unitech LLC
Key Deleted : HKLM\Software\Apps Hat Madness
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\AppsHat Mobile Apps
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Apps Hat Madness
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AppsHat Mobile Apps
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}_is1
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\bi_uninstaller
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Apps Hat Madness

***** [ Browsers ] *****

-\\ Internet Explorer v8.0.6001.18702

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v30.0 (cs)

[ File : E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default\prefs.js ]

Line Deleted : user_pref("browser.uiCustomization.state", "{\"placements\":{\"PanelUI-contents\":[\"edit-controls\",\"zoom-controls\",\"new-window-button\",\"privatebrowsing-button\",\"save-page-button\",\"print-but[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.InstallationThankYouPage", false);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.InstallationTime", 1387916229);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.active", true);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.addressbar", "NA");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.addressbarenhanced", "");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555_dbWasSet", true);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555_dbWasSet_FF25_FIX", true[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.asyncdb.was_copied", "true");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.asyncdb_dbWasSet", true);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.asyncdb_dbWasSet_FF25_FIX", true);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.asyncinternaldb.was_copied", "true");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.asyncinternaldb_dbWasSet", true);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.asyncinternaldb_dbWasSet_FF25_FIX", true);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.backgroundver", 9);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.certdomaininstaller", "");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.changeprevious", false);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.cookie.InstallationTime.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.cookie.InstallationTime.value", "%221387916229%22");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.cookie.InstallerParams.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.cookie.InstallerParams.value", "%7B%22source_id%22%3A%22000818%22%2C%22sub_id%22%3A%220%22%2C%22uz[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.description", "Apps Hat is the cool new Android app store that helps you discover hot new apps, bo[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.domain", "");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.enablesearch", false);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.homepage", "");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.iframe", true);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.InstallerIdentifiers.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.InstallerIdentifiers.value", "%7B%22installer_bic%22%3A%22F5728CFB835B4017B0597E212BBCB[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.InstallerParams.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.InstallerParams.value", "%7B%22source_id%22%3A%22000818%22%2C%22sub_id%22%3A%220%22%2C%[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.InstallerParamsCache.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.InstallerParamsCache.value", "%7B%22source_id%22%3A%22000818%22%2C%22sub_id%22%3A%220%2[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.InstallerUserIdentifiersCache.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.InstallerUserIdentifiersCache.value", "%7B%22installer_bic%22%3A%22F5728CFB835B4017B059[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_appVer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_appVer.value", "34");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_lastVersion.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_lastVersion.value", "6");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_meta.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_meta.value", "%7B%2219x19.png%22%3A%7B%22id%22%3A474712%2C%22ver%22%3A6%2C%22[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_nextCheck.expiration", "Sun Jul 27 2014 22:12:19 GMT+0200");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_nextCheck.value", "true");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_queue.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_queue.value", "%7B%7D");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_remote_resources.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_remote_resources.value", "%7B%22remoteId%22%3A0%7D");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_resource_474712.expiration", "Sat Oct 25 2014 16:17:38 GMT+0200");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.Resources_resource_474712.value", "%22data%3Aimage/png%3Bbase64%2CiVBORw0KGgoAAAANSUhEU[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.installer.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.installer.value", "%7B%22InstallerIdentifiers%22%3A%7B%22installer_bic%22%3A%22F5728CFB[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssf[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.monetization_plugin_bundledWithHash.value", "null");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.monetization_plugin_last_executable_request.expiration", "Mon Jul 28 2014 04:15:44 GMT+[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.monetization_plugin_last_executable_request.value", "%22hxxp%3A//images.malwareremoval.[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.monetization_plugin_regBundledWithSoftware.expiration", "Fri Feb 01 2030 00:00:00 GMT+0[...]
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.internaldb.monetization_plugin_regBundledWithSoftware.value", "%7B%7D");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.lastDailyReport", "1406470338518");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.lastUpdate", "1406470335928");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.manifesturl", "");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.name", "Apps Hat Madness");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.newtab", "");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.opensearch", "");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.pluginsurl", "hxxp://js.genstatsnet.com/plugin/apps/48555/plugins/na/ff/plugins.json");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.pluginsversion", 15);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.publisher", "Nero");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.searchstatus", 0);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.setnewtab", false);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.thankyou", "");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.updateinterval", 360);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.48555.ver", 34);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.FilesValidatorDueTime", "1403006680165");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.apps", "48555");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.bic", "1432641bbc773ca2bff4ae488a161ddf");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.cid", 48555);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.firstrun", false);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.hadappinstalled", true);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.installationdate", 1387916279);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.modetype", "production");
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.reportInstall", true);
Line Deleted : user_pref("extensions.af87f900bebb4498da3ac077cfae4410352f83dfc3a9449d3b0ffc4470a645eb5com48555.statsDailyCounter", 406);
Line Deleted : user_pref("extensions.crossrider.bic", "1432641bbc773ca2bff4ae488a161ddf");
Line Deleted : user_pref("extensions.fvd_single.seopack.b_surfcanyon", true);
Line Deleted : user_pref("extensions.fvd_single.surfcanyon.ramp.start_time", "1395610071519");
Line Deleted : user_pref("extensions.ividi.admin", false);
Line Deleted : user_pref("extensions.ividi.aflt", "3");
Line Deleted : user_pref("extensions.ividi.appId", "{685F23D9-FCFD-475C-B56A-362645945C5A}");
Line Deleted : user_pref("extensions.ividi.autoRvrt", "false");
Line Deleted : user_pref("extensions.ividi.dfltLng", "");
Line Deleted : user_pref("extensions.ividi.dfltSrch", true);
Line Deleted : user_pref("extensions.ividi.dnsErr", true);
Line Deleted : user_pref("extensions.ividi.excTlbr", true);
Line Deleted : user_pref("extensions.ividi.ffxUnstlRst", false);
Line Deleted : user_pref("extensions.ividi.hmpg", true);
Line Deleted : user_pref("extensions.ividi.hmpgUrl", "hxxp://search.ividi.org/?src=tbhp&id=04848b95000000000000001fd06b81ea&affilt=3");
Line Deleted : user_pref("extensions.ividi.hpOld0", "");
Line Deleted : user_pref("extensions.ividi.id", "04848b95000000000000001fd06b81ea");
Line Deleted : user_pref("extensions.ividi.instlDay", "15979");
Line Deleted : user_pref("extensions.ividi.instlRef", "");
Line Deleted : user_pref("extensions.ividi.kw_url", "hxxp://search.ividi.org/?src=tbsp&id=04848b95000000000000001fd06b81ea&affilt=3&q=");
Line Deleted : user_pref("extensions.ividi.newTab", true);
Line Deleted : user_pref("extensions.ividi.newTabUrl", "hxxp://search.ividi.org/?q={searchTerms}&src=tbnt&id=04848b95000000000000001fd06b81ea&affilt=3");
Line Deleted : user_pref("extensions.ividi.prdct", "ividi");
Line Deleted : user_pref("extensions.ividi.prtnrId", "ividi");
Line Deleted : user_pref("extensions.ividi.rvrt", "false");
Line Deleted : user_pref("extensions.ividi.smplGrp", "none");
Line Deleted : user_pref("extensions.ividi.srchPrvdr", "Search ");
Line Deleted : user_pref("extensions.ividi.tlbrId", "base");
Line Deleted : user_pref("extensions.ividi.tlbrSrchUrl", "hxxp://search.ividi.org/?src=tbsp&id=04848b95000000000000001fd06b81ea&affilt=3&q=");
Line Deleted : user_pref("extensions.ividi.vrsn", "1.8.23.0");
Line Deleted : user_pref("extensions.ividi.vrsnTs", "1.8.23.06:14:40");
Line Deleted : user_pref("extensions.ividi.vrsni", "1.8.23.0");

-\\ Google Chrome v36.0.1985.125

[ File : E:\Documents and Settings\Admin\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://searchab.com/?aff=7&uid=e5584960-598f-11e2-8fbe-001fd06b81ea&q={searchTerms}
Deleted [Search Provider] : hxxp://isearch.avg.com/search?cid={3A79E68D-9488-4EED-A58F-840B729F0837}&mid=f12b132c14a747d0823cd156968f6819-7acadf5bd1809c1e43b7e65bf29678314febee76&ds=qw011&lang=en&v=13.2.0.4&pr=sa&d=2012-12-25 11:39:48&sap=dsp&q={searchTerms}
Deleted [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=ORJ&o=&locale=&apn_uid=ED6531C7-5F4A-45F7-A1EC-E295C6DD0B5F&apn_ptnrs=U3&apn_sauid=C7BF21AF-CBC4-426A-869E-05A6C53CC121&apn_dtid=OSJ000YYCZ&q={searchTerms}
Deleted [Extension] : bopakagnckmlgajfccecajhnimjiiedh

*************************

AdwCleaner[R0].txt - [24393 octets] - [27/07/2014 18:19:06]
AdwCleaner[S0].txt - [23930 octets] - [27/07/2014 18:24:45]

########## EOF - E:\AdwCleaner\AdwCleaner[S0].txt - [23991 octets] ##########

Re: Pomalé Pc

Napsal: 27 črc 2014 17:36
od Rudy
Dejte nový log RSIT.

Re: Pomalé Pc

Napsal: 27 črc 2014 17:49
od civrs
Logfile of random's system information tool 1.10 (written by random/random)
Run by Admin at 2014-07-27 18:48:16
Microsoft Windows XP Home Edition Service Pack 3
System drive E: has 21 GB (30%) free of 70 GB
Total RAM: 3070 MB (53% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:48:20, on 27.7.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\WINDOWS\system32\Ati2evxx.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\svchost.exe
E:\Program Files\AVAST Software\Avast\AvastSvc.exe
E:\WINDOWS\system32\Ati2evxx.exe
E:\WINDOWS\system32\spoolsv.exe
E:\WINDOWS\Explorer.EXE
E:\Program Files\Google\Update\1.3.24.15\GoogleCrashHandler.exe
E:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
E:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
E:\Program Files\Java\jre7\bin\jqs.exe
E:\Program Files\Nero\Update\NASvc.exe
E:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
E:\WINDOWS\system32\PnkBstrA.exe
E:\WINDOWS\System32\PAStiSvc.exe
E:\WINDOWS\system32\svchost.exe
E:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
E:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
E:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\RTHDCPL.EXE
E:\Program Files\AVAST Software\Avast\avastUI.exe
E:\Program Files\Common Files\Java\Java Update\jusched.exe
E:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
E:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
E:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
E:\WINDOWS\system32\rundll32.exe
E:\WINDOWS\system32\ctfmon.exe
E:\Program Files\Google\Drive\googledrivesync.exe
E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\bin\szndesktop.exe
E:\Program Files\Skype\Phone\Skype.exe
E:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE
E:\WINDOWS\system32\NOTEPAD.EXE
E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
E:\Program Files\Mozilla Firefox\firefox.exe
E:\Program Files\Google\Drive\googledrivesync.exe
E:\Program Files\Common Files\Java\Java Update\jucheck.exe
E:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSAutoupdate.exe
E:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
E:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSAutoupdate.exe
E:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\PROGRAM32\ZPS.EXE
E:\Program Files\Google\Update\GoogleUpdate.exe
E:\Documents and Settings\Admin\Dokumenty\Stažené soubory\RSIT.exe
E:\Program Files\trend micro\Admin.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - E:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - E:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - E:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - E:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - E:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [avast] "E:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Adobe ARM] "E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [TrueImageMonitor.exe] "E:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe"
O4 - HKLM\..\Run: [AcronisTibMounterMonitor] E:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
O4 - HKLM\..\Run: [Služba Acronis Scheduler2] "E:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "E:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [BCSSync] "E:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [KONICA MINOLTA PagePro 1350WStatusDisplay] E:\WINDOWS\system32\MSTMON_Q.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [GoogleDriveSync] "E:\Program Files\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [EADM] D:\PROGRAMY INSTAL\Origin\Origin.exe -AutoStart
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "E:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Skype] "E:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "E:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://E:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://E:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - E:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - E:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 3978607934
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - E:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - E:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Acronis Scheduler2 (AcrSch2Svc) - Acronis - E:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - E:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Acronis Nonstop Backup Service (afcdpsrv) - Acronis - E:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - E:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - AVAST Software - E:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - E:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - E:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - E:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - E:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - E:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - E:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero Update (NAUpdate) - Nero AG - E:\Program Files\Nero\Update\NASvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - E:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - E:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - E:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - E:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia - E:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - E:\Program Files\Skype\Updater\Updater.exe
O23 - Service: STI Simulator - Unknown owner - E:\WINDOWS\System32\PAStiSvc.exe
O23 - Service: Acronis Sync Agent Service (syncagentsrv) - Acronis - E:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - E:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe

--
End of file - 11246 bytes

======Scheduled tasks folder======

E:\WINDOWS\tasks\Adobe Flash Player Updater.job - E:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
E:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - E:\Program Files\Google\Update\GoogleUpdate.exe /c
E:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - E:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
E:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - E:\WINDOWS\system32\xp_eos.exe
E:\WINDOWS\tasks\Nero Info.job - E:\Program Files\Common Files\Nero\Nero Info\NeroInfo.exe -shedul
E:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - E:\WINDOWS\system32\xp_eos.exe -c

=========Mozilla firefox=========

ProfilePath - E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default

prefs.js - "browser.search.useDBForOrder" - true

"wrc@avast.com"=E:\Program Files\AVAST Software\Avast\WebRep\FF
"{20a82645-c095-46ed-80e3-08825760534b}"=E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.145 Plugin
"Path"=E:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=E:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=E:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@mcafee.com/McAfeeMssPlugin]
"Description"=McAfee Mss Plugin
"Path"=E:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMss.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=E:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=E:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=E:\PROGRA~1\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=E:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=E:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=E:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=E:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


E:\Program Files\Mozilla Firefox\plugins\
nppdf32.dll

E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}

E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default\searchplugins\
firmycz.xml
mapycz.xml
zbocz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}]
MSS+ Identifier - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=E:\WINDOWS\RTHDCPL.EXE [2012-06-06 20065936]
"avast"=E:\Prog [2013-05-09 6583664]
"StartCCC"=E:\Prog [2013-05-09 6583664]
"Adobe ARM"=E:\Prog [2013-05-09 6583664]
"SunJavaUpdateSched"=E:\Prog [2013-05-09 6583664]
"TrueImageMonitor.exe"=E:\Prog [2013-05-09 6583664]
"AcronisTibMounterMonitor"=E:\Prog [2013-05-09 6583664]
"Služba Acronis Scheduler2"=E:\Prog [2013-05-09 6583664]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"seznam-listicka-distribuce"=E:\Prog [2013-05-09 6583664]
"BCSSync"=E:\Prog [2013-05-09 6583664]
"KONICA MINOLTA PagePro 1350WStatusDisplay"=E:\WINDOWS\system32\MSTMON_Q.EXE [2004-11-26 167936]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=E:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"GoogleDriveSync"=E:\Prog [2013-05-09 6583664]
"EADM"=D:\PROGRAMY INSTAL\Origin\Origin.exe [2014-05-18 3588952]
"DAEMON Tools Pro Agent"=E:\Prog [2013-05-09 6583664]
"cz.seznam.software.autoupdate"=E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"Skype"=E:\Prog [2013-05-09 6583664]
"Zoner Photo Studio Autoupdate"=E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Bloody2]
E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KONICA MINOLTA PagePro 1350WStatusDisplay]
E:\WINDOWS\system32\MSTMON_Q.EXE [2004-11-26 167936]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\E:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^McAfee Security Scan Plus.lnk]
E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
E:\WINDOWS\system32\Ati2evxx.dll [2012-11-16 192512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - E:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"E:\Program Files\Nero\Nero8\Nero ShowTime\ShowTime.exe"="E:\Program Files\Nero\Nero8\Nero ShowTime\ShowTime.exe:*:Enabled:Nero ShowTime"
"E:\Program Files\Microsoft Office\Office14\GROOVE.EXE"="E:\Program Files\Microsoft Office\Office14\GROOVE.EXE:*:Enabled:Microsoft SharePoint Workspace"
"E:\Program Files\Microsoft Office\Office14\ONENOTE.EXE"="E:\Program Files\Microsoft Office\Office14\ONENOTE.EXE:*:Enabled:Microsoft OneNote"
"E:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE"="E:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"E:\Program Files\Java\jre7\bin\javaw.exe"="E:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"D:\PROGRAMY INSTAL\Steam\Steam.exe"="D:\PROGRAMY INSTAL\Steam\Steam.exe:*:Enabled:Steam Client Bootstrapper (buildbot_winslave04_steam_steam_rel_client_win32@winslave04)"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe:*:Enabled:Crysis 2 Maximum Edition"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2.exe:*:Enabled:Crysis2"
"E:\Program Files\Pando Networks\Media Booster\PMB.exe"="E:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4mpOLD.exe"="C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4mpOLD.exe:*:Enabled: "
"C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4sp.exe"="C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4sp.exe:*:Enabled:iw4sp"
"E:\WINDOWS\system32\PnkBstrA.exe"="E:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"E:\WINDOWS\system32\PnkBstrB.exe"="E:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4mp.exe"="C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4mp.exe:*:Enabled:IW4 Launcher"
"C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\bootstrap\iw4mp.exe"="C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\bootstrap\iw4mp.exe:*:Enabled:IW4 Launcher"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer"
"D:\hry instal\cod4\iw3mp.exe"="D:\hry instal\cod4\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) "
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe:*:Enabled:borderlands game"
"E:\Documents and Settings\All Users\Data aplikací\Electronic Arts\Need for Speed World\Data\nfsw.exe"="E:\Documents and Settings\All Users\Data aplikací\Electronic Arts\Need for Speed World\Data\nfsw.exe:*:Enabled:Need for Speed World"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe:*:Enabled:Borderlands 2"
"E:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe"="E:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe:*:Enabled:Acronis Sync Agent Service"
"D:\hry instal\Hearthstone\Hearthstone\Hearthstone.exe"="D:\hry instal\Hearthstone\Hearthstone\Hearthstone.exe:*:Enabled:Hearthstone"
"D:\Program Files\Origin Games\Need for Speed World\GameLauncher.exe"="D:\Program Files\Origin Games\Need for Speed World\GameLauncher.exe:*:Enabled:Need For Speed™ World"
"E:\Program Files\Nero\Nero Blu-ray Player\Blu-rayPlayer.exe"="E:\Program Files\Nero\Nero Blu-ray Player\Blu-rayPlayer.exe:*:Enabled:Nero Blu-ray Player"
"E:\Program Files\Nero\KM\NMDllHost.exe"="E:\Program Files\Nero\KM\NMDllHost.exe:*:Enabled:NMDllHost"
"E:\WINDOWS\system32\javaw.exe"="E:\WINDOWS\system32\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Epigenesis\Binaries\Win32\Epigenesis.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Epigenesis\Binaries\Win32\Epigenesis.exe:*:Enabled:Epigenesis"
"D:\hry instal\audiosurf\Audiosurf\engine\QuestViewer.exe"="D:\hry instal\audiosurf\Audiosurf\engine\QuestViewer.exe:*:Enabled:QuestViewer"
"E:\Program Files\Skype\Phone\Skype.exe"="E:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"E:\Program Files\Google\Chrome\Application\chrome.exe"="E:\Program Files\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"E:\Program Files\Pando Networks\Media Booster\PMB.exe"="E:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=E:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=E:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FFDS"=ff_vfw.dll
"vidc.VP60"=E:\WINDOWS\system32\vp6vfw.dll
"vidc.VP61"=E:\WINDOWS\system32\vp6vfw.dll
"VIDC.FPS1"=frapsvid.dll

======List of files/folders created in the last 1 month======

2014-07-27 18:20:28 ----A---- E:\WINDOWS\system32\sqlite3.dll
2014-07-27 18:19:01 ----D---- E:\AdwCleaner
2014-07-27 16:15:59 ----D---- E:\rsit
2014-07-26 14:08:27 ----D---- E:\Documents and Settings\All Users\Data aplikací\VS Revo Group
2014-07-26 14:08:27 ----A---- E:\WINDOWS\system32\drivers\revoflt.sys
2014-07-26 14:08:24 ----D---- E:\Program Files\VS Revo Group

======List of files/folders modified in the last 1 month======

2014-07-27 18:48:19 ----D---- E:\Program Files\trend micro
2014-07-27 18:35:13 ----D---- E:\WINDOWS\Prefetch
2014-07-27 18:34:33 ----D---- E:\Documents and Settings\Admin\Data aplikací\Seznam.cz
2014-07-27 18:31:45 ----D---- E:\WINDOWS\system32
2014-07-27 18:31:45 ----A---- E:\WINDOWS\system32\PerfStringBackup.INI
2014-07-27 18:30:16 ----D---- E:\WINDOWS\system32\CatRoot2
2014-07-27 18:29:10 ----D---- E:\WINDOWS\Temp
2014-07-27 18:27:38 ----D---- E:\WINDOWS
2014-07-27 18:26:39 ----A---- E:\WINDOWS\SchedLgU.Txt
2014-07-27 18:25:01 ----RD---- E:\Program Files
2014-07-27 16:29:37 ----D---- E:\Program Files\PokerStars
2014-07-27 12:15:20 ----D---- E:\WINDOWS\Logs
2014-07-27 12:15:20 ----D---- E:\WINDOWS\Debug
2014-07-27 11:31:11 ----A---- E:\WINDOWS\system32\PnkBstrB.exe
2014-07-26 14:33:41 ----HD---- E:\Program Files\InstallShield Installation Information
2014-07-26 14:08:33 ----D---- E:\WINDOWS\system32\drivers
2014-07-26 14:08:32 ----HD---- E:\WINDOWS\inf
2014-07-26 14:00:43 ----SHD---- E:\WINDOWS\Installer
2014-07-26 14:00:42 ----SHD---- E:\Config.Msi
2014-07-26 13:52:59 ----SHD---- E:\WINDOWS\system32\AI_RecycleBin
2014-07-26 13:51:53 ----D---- E:\Program Files\Common Files\Blizzard Entertainment
2014-07-26 13:49:48 ----D---- E:\Documents and Settings\All Users\Data aplikací\Electronic Arts
2014-07-26 13:48:01 ----D---- E:\Program Files\Bloody4
2014-07-25 12:41:47 ----D---- E:\WINDOWS\system32\config
2014-07-20 11:40:40 ----D---- E:\Documents and Settings\Admin\Data aplikací\Skype
2014-07-18 08:37:06 ----D---- E:\WINDOWS\system32\Restore
2014-07-09 11:52:23 ----D---- E:\WINDOWS\system32\MRT
2014-07-09 00:04:07 ----D---- E:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2014-07-08 23:56:47 ----A---- E:\WINDOWS\system32\MRT.exe
2014-07-08 21:58:26 ----A---- E:\WINDOWS\system32\FlashPlayerApp.exe
2014-07-07 21:17:10 ----SD---- E:\WINDOWS\Tasks
2014-06-30 16:45:17 ----D---- E:\Documents and Settings\Admin\Data aplikací\.minecraft

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; E:\WINDOWS\system32\drivers\aswRvrt.sys [2013-05-09 49376]
R0 aswVmm;aswVmm; E:\WINDOWS\system32\drivers\aswVmm.sys [2013-07-16 175176]
R0 fltsrv;Acronis Storage Filter Management; E:\WINDOWS\system32\DRIVERS\fltsrv.sys [2013-12-06 86304]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; E:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 snapman;Acronis Snapshots Manager; E:\WINDOWS\system32\DRIVERS\snapman.sys [2013-12-06 185120]
R0 tib;Acronis TIB Manager; E:\WINDOWS\system32\DRIVERS\tib.sys [2013-12-06 736192]
R0 tib_mounter;Acronis TIB Mounter; E:\WINDOWS\system32\DRIVERS\tib_mounter.sys [2013-12-06 130488]
R0 vididr;Acronis Virtual Disk; E:\WINDOWS\system32\DRIVERS\vididr.sys [2013-12-06 116000]
R0 vidsflt;Acronis Disk Storage Filter; E:\WINDOWS\system32\DRIVERS\vidsflt.sys [2013-12-06 85280]
R1 AmdK8;Ovladač procesoru AMD; E:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-07-01 43008]
R1 AswRdr;aswRdr; E:\WINDOWS\system32\drivers\AswRdr.sys [2013-05-09 49760]
R1 aswSnx;aswSnx; E:\WINDOWS\system32\drivers\aswSnx.sys [2013-07-16 770344]
R1 aswSP;aswSP; E:\WINDOWS\system32\drivers\aswSP.sys [2013-07-16 369584]
R1 aswTdi;avast! Network Shield Support; E:\WINDOWS\system32\drivers\aswTdi.sys [2013-05-09 56080]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; E:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2013-11-27 242240]
R1 kbdhid;Ovladač klávesnice standardu HID; E:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R2 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC};Power Control [2013/07/16 15:07:43]; \??\E:\Program Files\CyberLink\PowerDVD10\NavFilter\000.fcl []
R2 aswFsBlk;aswFsBlk; E:\WINDOWS\system32\drivers\aswFsBlk.sys [2013-05-09 29816]
R2 aswMonFlt;aswMonFlt; \??\E:\WINDOWS\system32\drivers\aswMonFlt.sys []
R2 MLPTDR_Q;MLPTDR_Q; \??\E:\WINDOWS\system32\MLPTDR_Q.SYS []
R3 afcdp;afcdp; E:\WINDOWS\system32\DRIVERS\afcdp.sys [2013-12-06 234752]
R3 Arp1394;Protokol 1394 ARP Client; E:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 ati2mtag;ati2mtag; E:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2012-11-16 7874560]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; E:\WINDOWS\system32\drivers\AtihdXP3.sys [2012-05-14 103040]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; E:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 HidUsb;Ovladač třídy standardu HID; E:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); E:\WINDOWS\system32\drivers\RtkHDAud.sys [2012-06-19 6141584]
R3 mouhid;Ovladač myši standardu HID; E:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 NIC1394;1394 Net Driver; E:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; E:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2007-06-28 45824]
R3 nvnetbus;NVIDIA Network Bus Enumerator; E:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2007-06-28 20480]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\E:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys []
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; E:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; E:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-07-13 91904]
S3 Ambfilt;Ambfilt; E:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 AndNetDiag;LGE AndroidNet USB Serial Port; E:\WINDOWS\system32\DRIVERS\lgandnetdiag.sys [2012-07-03 23040]
S3 ANDNetModem;LGE AndroidNet USB Modem; E:\WINDOWS\system32\DRIVERS\lgandnetmodem.sys [2012-07-03 27776]
S3 BthEnum;Ovladač pro Bluetooth Request Block; E:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-14 17024]
S3 BTHMODEM;Ovladač pro sériovou komunikaci protokolem Bluetooth; E:\WINDOWS\system32\DRIVERS\bthmodem.sys [2008-04-14 37888]
S3 BthPan;Bluetooth Device (Personal Area Network); E:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-14 101120]
S3 BTHPORT;Ovladač portu Bluetooth; E:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; E:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-14 18944]
S3 CCDECODE;Dekodér Closed Caption; E:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 EagleXNt;EagleXNt; \??\E:\WINDOWS\system32\drivers\EagleXNt.sys []
S3 hamachi;Hamachi Network Interface; E:\WINDOWS\system32\DRIVERS\hamachi.sys [2013-09-04 25280]
S3 Monfilt;Monfilt; E:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; E:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; E:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; E:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nmwcd;Nokia USB Phone Parent Driver; E:\WINDOWS\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; E:\WINDOWS\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 PAC207;VideoCAM GF112; E:\WINDOWS\system32\DRIVERS\pfc027.sys [2005-04-08 162176]
S3 pccsmcfd;PCCS Mode Change Filter Driver; E:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2012-06-11 19072]
S3 Revoflt;Revoflt; E:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 27064]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); E:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-14 59136]
S3 RTHDMIAzAudService;Service for HDMI; E:\WINDOWS\system32\drivers\RtKHDMI.sys [2011-12-02 4125352]
S3 SLIP;BDA Slip De-Framer; E:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; E:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 tdrpman;Acronis Try&Decide and Restore Points filter; E:\WINDOWS\system32\DRIVERS\tdrpman.sys [2013-12-06 889888]
S3 upperdev;upperdev; E:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2012-01-09 8192]
S3 usbprint;Třída USB Printer; E:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; E:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 usbser;USB Modem Driver; E:\WINDOWS\system32\DRIVERS\usbser.sys [2013-08-29 26240]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; E:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 Wdf01000;Kernel Mode Driver Frameworks service; E:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WpdUsb;WpdUsb; E:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; E:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; E:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-07-13 132224]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AcrSch2Svc;Služba Acronis Scheduler2; E:\Prog [2013-05-09 6583664]
R2 afcdpsrv;Acronis Nonstop Backup Service; E:\Prog [2013-05-09 6583664]
R2 Ati HotKey Poller;Ati HotKey Poller; E:\WINDOWS\system32\Ati2evxx.exe [2012-11-16 643072]
R2 avast! Antivirus;avast! Antivirus; E:\Prog [2013-05-09 6583664]
R2 BthServ;Bluetooth Support Service; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; E:\Prog [2013-05-09 6583664]
R2 NAUpdate;Nero Update; E:\Prog [2013-05-09 6583664]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; E:\Prog [2013-05-09 6583664]
R2 PnkBstrA;PnkBstrA; E:\WINDOWS\system32\PnkBstrA.exe [2014-05-04 76888]
R2 STI Simulator;STI Simulator; E:\WINDOWS\System32\PAStiSvc.exe [2005-01-14 53248]
R2 syncagentsrv;Acronis Sync Agent Service; E:\Prog [2013-05-09 6583664]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; E:\Prog [2013-05-09 6583664]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); E:\Prog [2013-05-09 6583664]
S2 SkypeUpdate;Skype Updater; E:\Prog [2013-05-09 6583664]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; E:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-08 262320]
S3 aspnet_state;ASP.NET State Service; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); E:\Prog [2013-05-09 6583664]
S3 IDriverT;InstallDriver Table Manager; E:\Prog [2013-05-09 6583664]
S3 idsvc;Windows CardSpace; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 McComponentHostService;McAfee Security Scan Component Host Service; E:\Prog [2013-05-09 6583664]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; E:\Prog [2013-05-09 6583664]
S3 MozillaMaintenance;Mozilla Maintenance Service; E:\Prog [2013-05-09 6583664]
S3 NMIndexingService;NMIndexingService; E:\Prog [2013-05-09 6583664]
S3 npggsvc;nProtect GameGuard Service; E:\WINDOWS\system32\GameMon.des [2014-01-15 4784312]
S3 ose;Office Source Engine; E:\Prog [2013-05-09 6583664]
S3 osppsvc;Office Software Protection Platform; E:\Prog [2013-05-09 6583664]
S3 ServiceLayer;ServiceLayer; E:\Prog [2013-05-09 6583664]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; E:\Prog [2013-05-09 6583664]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: Pomalé Pc

Napsal: 27 črc 2014 19:33
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
E:\Program Files\McAfee Security Scan
E:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
E:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

:services
McComponentHostService

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@mcafee.com/McAfeeMssPlugin]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.

Re: Pomalé Pc

Napsal: 27 črc 2014 20:52
od civrs
Logfile of random's system information tool 1.10 (written by random/random)
Run by Admin at 2014-07-27 21:51:17
Microsoft Windows XP Home Edition Service Pack 3
System drive E: has 21 GB (31%) free of 70 GB
Total RAM: 3070 MB (60% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:51:35, on 27.7.2014
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\WINDOWS\system32\Ati2evxx.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\svchost.exe
E:\Program Files\AVAST Software\Avast\AvastSvc.exe
E:\WINDOWS\system32\Ati2evxx.exe
E:\WINDOWS\system32\spoolsv.exe
E:\WINDOWS\Explorer.EXE
E:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
E:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
E:\Program Files\Java\jre7\bin\jqs.exe
E:\Program Files\Nero\Update\NASvc.exe
E:\Program Files\Google\Update\GoogleUpdate.exe
E:\Program Files\Google\Update\1.3.24.15\GoogleCrashHandler.exe
E:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
E:\WINDOWS\system32\PnkBstrA.exe
E:\WINDOWS\System32\PAStiSvc.exe
E:\WINDOWS\system32\svchost.exe
E:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
E:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
E:\WINDOWS\system32\wuauclt.exe
E:\WINDOWS\system32\wbem\wmiapsrv.exe
E:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\notepad.exe
E:\Program Files\Mozilla Firefox\firefox.exe
E:\WINDOWS\RTHDCPL.EXE
E:\Program Files\AVAST Software\Avast\avastUI.exe
E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
E:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe
E:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
E:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe
E:\WINDOWS\system32\rundll32.exe
E:\WINDOWS\system32\MSTMON_Q.EXE
E:\WINDOWS\system32\ctfmon.exe
E:\Program Files\Google\Drive\googledrivesync.exe
E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\szninstall.exe
E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\bin\szndesktop.exe
E:\Program Files\Skype\Phone\Skype.exe
E:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE
E:\Program Files\Skype\Updater\Updater.exe
E:\Program Files\Google\Drive\googledrivesync.exe
E:\Documents and Settings\Admin\Dokumenty\Stažené soubory\RSIT.exe
E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
E:\Program Files\trend micro\Admin.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - E:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll (file missing)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - E:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - E:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - E:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - E:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [avast] "E:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [StartCCC] "E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Adobe ARM] "E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [TrueImageMonitor.exe] "E:\Program Files\Acronis\TrueImageHome\TrueImageMonitor.exe"
O4 - HKLM\..\Run: [AcronisTibMounterMonitor] E:\Program Files\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
O4 - HKLM\..\Run: [Služba Acronis Scheduler2] "E:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "E:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [BCSSync] "E:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [KONICA MINOLTA PagePro 1350WStatusDisplay] E:\WINDOWS\system32\MSTMON_Q.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [GoogleDriveSync] "E:\Program Files\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [EADM] D:\PROGRAMY INSTAL\Origin\Origin.exe -AutoStart
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "E:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Skype] "E:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] "E:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://E:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://E:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - E:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - E:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - E:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 3978607934
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - E:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - E:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Acronis Scheduler2 (AcrSch2Svc) - Acronis - E:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - E:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Acronis Nonstop Backup Service (afcdpsrv) - Acronis - E:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - E:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - AVAST Software - E:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - E:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - E:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - E:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - E:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - E:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero Update (NAUpdate) - Nero AG - E:\Program Files\Nero\Update\NASvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - E:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - E:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - E:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - E:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia - E:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - E:\Program Files\Skype\Updater\Updater.exe
O23 - Service: STI Simulator - Unknown owner - E:\WINDOWS\System32\PAStiSvc.exe
O23 - Service: Acronis Sync Agent Service (syncagentsrv) - Acronis - E:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - E:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe

--
End of file - 10849 bytes

======Scheduled tasks folder======

E:\WINDOWS\tasks\Adobe Flash Player Updater.job - E:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
E:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - E:\WINDOWS\system32\xp_eos.exe
E:\WINDOWS\tasks\Nero Info.job - E:\Program Files\Common Files\Nero\Nero Info\NeroInfo.exe -shedul
E:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - E:\WINDOWS\system32\xp_eos.exe -c

=========Mozilla firefox=========

ProfilePath - E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default

prefs.js - "browser.search.useDBForOrder" - true

"wrc@avast.com"=E:\Program Files\AVAST Software\Avast\WebRep\FF
"{20a82645-c095-46ed-80e3-08825760534b}"=E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 14.0.0.145 Plugin
"Path"=E:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.45.2]
"Description"=Java™ Deployment Toolkit
"Path"=E:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=E:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=E:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=E:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Nero.com/KM]
"Description"=
"Path"=E:\PROGRA~1\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=E:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=E:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=E:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=E:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll


E:\Program Files\Mozilla Firefox\plugins\
nppdf32.dll

E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default\extensions\
{ea614400-e918-4741-9a97-7a972ff7c30b}

E:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\jg34juu3.default\searchplugins\
firmycz.xml
mapycz.xml
zbocz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}]
MSS+ Identifier - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=E:\WINDOWS\RTHDCPL.EXE [2012-06-06 20065936]
"avast"=E:\Prog [2013-05-09 6583664]
"StartCCC"=E:\Prog [2013-05-09 6583664]
"Adobe ARM"=E:\Prog [2013-05-09 6583664]
"TrueImageMonitor.exe"=E:\Prog [2013-05-09 6583664]
"AcronisTibMounterMonitor"=E:\Prog [2013-05-09 6583664]
"Služba Acronis Scheduler2"=E:\Prog [2013-05-09 6583664]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"seznam-listicka-distribuce"=E:\Prog [2013-05-09 6583664]
"BCSSync"=E:\Prog [2013-05-09 6583664]
"KONICA MINOLTA PagePro 1350WStatusDisplay"=E:\WINDOWS\system32\MSTMON_Q.EXE [2004-11-26 167936]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=E:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"GoogleDriveSync"=E:\Prog [2013-05-09 6583664]
"EADM"=D:\PROGRAMY INSTAL\Origin\Origin.exe [2014-05-18 3588952]
"DAEMON Tools Pro Agent"=E:\Prog [2013-05-09 6583664]
"cz.seznam.software.autoupdate"=E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=E:\Documents and Settings\Admin\Data aplikací\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"Skype"=E:\Prog [2013-05-09 6583664]
"Zoner Photo Studio Autoupdate"=E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Bloody2]
E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KONICA MINOLTA PagePro 1350WStatusDisplay]
E:\WINDOWS\system32\MSTMON_Q.EXE [2004-11-26 167936]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
E:\Prog [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\E:^Documents and Settings^All Users^Nabídka Start^Programy^Po spuštění^McAfee Security Scan Plus.lnk]
E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
E:\WINDOWS\system32\Ati2evxx.dll [2012-11-16 192512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - E:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=E:\PROG [2013-05-09 6583664]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"E:\Program Files\Nero\Nero8\Nero ShowTime\ShowTime.exe"="E:\Program Files\Nero\Nero8\Nero ShowTime\ShowTime.exe:*:Enabled:Nero ShowTime"
"E:\Program Files\Microsoft Office\Office14\GROOVE.EXE"="E:\Program Files\Microsoft Office\Office14\GROOVE.EXE:*:Enabled:Microsoft SharePoint Workspace"
"E:\Program Files\Microsoft Office\Office14\ONENOTE.EXE"="E:\Program Files\Microsoft Office\Office14\ONENOTE.EXE:*:Enabled:Microsoft OneNote"
"E:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE"="E:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"E:\Program Files\Java\jre7\bin\javaw.exe"="E:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"D:\PROGRAMY INSTAL\Steam\Steam.exe"="D:\PROGRAMY INSTAL\Steam\Steam.exe:*:Enabled:Steam Client Bootstrapper (buildbot_winslave04_steam_steam_rel_client_win32@winslave04)"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe:*:Enabled:Crysis 2 Maximum Edition"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2.exe:*:Enabled:Crysis2"
"E:\Program Files\Pando Networks\Media Booster\PMB.exe"="E:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4mpOLD.exe"="C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4mpOLD.exe:*:Enabled: "
"C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4sp.exe"="C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4sp.exe:*:Enabled:iw4sp"
"E:\WINDOWS\system32\PnkBstrA.exe"="E:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"E:\WINDOWS\system32\PnkBstrB.exe"="E:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4mp.exe"="C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\iw4mp.exe:*:Enabled:IW4 Launcher"
"C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\bootstrap\iw4mp.exe"="C:\download\Call of Duty Modern Warfare 2 MP Works 100%\call of duty modern warfare 2\bootstrap\iw4mp.exe:*:Enabled:IW4 Launcher"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Call of Duty Modern Warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer"
"D:\hry instal\cod4\iw3mp.exe"="D:\hry instal\cod4\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) "
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe:*:Enabled:borderlands game"
"E:\Documents and Settings\All Users\Data aplikací\Electronic Arts\Need for Speed World\Data\nfsw.exe"="E:\Documents and Settings\All Users\Data aplikací\Electronic Arts\Need for Speed World\Data\nfsw.exe:*:Enabled:Need for Speed World"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe:*:Enabled:Borderlands 2"
"E:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe"="E:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe:*:Enabled:Acronis Sync Agent Service"
"D:\hry instal\Hearthstone\Hearthstone\Hearthstone.exe"="D:\hry instal\Hearthstone\Hearthstone\Hearthstone.exe:*:Enabled:Hearthstone"
"D:\Program Files\Origin Games\Need for Speed World\GameLauncher.exe"="D:\Program Files\Origin Games\Need for Speed World\GameLauncher.exe:*:Enabled:Need For Speed™ World"
"E:\Program Files\Nero\Nero Blu-ray Player\Blu-rayPlayer.exe"="E:\Program Files\Nero\Nero Blu-ray Player\Blu-rayPlayer.exe:*:Enabled:Nero Blu-ray Player"
"E:\Program Files\Nero\KM\NMDllHost.exe"="E:\Program Files\Nero\KM\NMDllHost.exe:*:Enabled:NMDllHost"
"E:\WINDOWS\system32\javaw.exe"="E:\WINDOWS\system32\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"D:\PROGRAMY INSTAL\Steam\steamapps\common\Epigenesis\Binaries\Win32\Epigenesis.exe"="D:\PROGRAMY INSTAL\Steam\steamapps\common\Epigenesis\Binaries\Win32\Epigenesis.exe:*:Enabled:Epigenesis"
"D:\hry instal\audiosurf\Audiosurf\engine\QuestViewer.exe"="D:\hry instal\audiosurf\Audiosurf\engine\QuestViewer.exe:*:Enabled:QuestViewer"
"E:\Program Files\Skype\Phone\Skype.exe"="E:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"E:\Program Files\Google\Chrome\Application\chrome.exe"="E:\Program Files\Google\Chrome\Application\chrome.exe:*:Enabled:Google Chrome"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"E:\Program Files\Pando Networks\Media Booster\PMB.exe"="E:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=E:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=E:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FFDS"=ff_vfw.dll
"vidc.VP60"=E:\WINDOWS\system32\vp6vfw.dll
"vidc.VP61"=E:\WINDOWS\system32\vp6vfw.dll
"VIDC.FPS1"=frapsvid.dll

======List of files/folders created in the last 1 month======

2014-07-27 21:46:15 ----D---- E:\_OTM
2014-07-27 18:20:28 ----A---- E:\WINDOWS\system32\sqlite3.dll
2014-07-27 18:19:01 ----D---- E:\AdwCleaner
2014-07-27 16:15:59 ----D---- E:\rsit
2014-07-26 14:08:27 ----D---- E:\Documents and Settings\All Users\Data aplikací\VS Revo Group
2014-07-26 14:08:27 ----A---- E:\WINDOWS\system32\drivers\revoflt.sys
2014-07-26 14:08:24 ----D---- E:\Program Files\VS Revo Group

======List of files/folders modified in the last 1 month======

2014-07-27 21:51:27 ----D---- E:\Program Files\trend micro
2014-07-27 21:50:46 ----D---- E:\WINDOWS\system32\CatRoot2
2014-07-27 21:49:09 ----D---- E:\WINDOWS\Temp
2014-07-27 21:49:09 ----D---- E:\WINDOWS\Prefetch
2014-07-27 21:46:53 ----A---- E:\WINDOWS\SchedLgU.Txt
2014-07-27 21:46:41 ----RSHDC---- E:\WINDOWS\system32\dllcache
2014-07-27 21:46:41 ----D---- E:\WINDOWS\system32
2014-07-27 21:46:17 ----SD---- E:\WINDOWS\Tasks
2014-07-27 21:46:17 ----RD---- E:\Program Files
2014-07-27 21:41:45 ----D---- E:\WINDOWS\system32\config
2014-07-27 19:17:38 ----A---- E:\WINDOWS\system32\PnkBstrB.exe
2014-07-27 19:07:02 ----D---- E:\Program Files\PokerStars
2014-07-27 18:34:33 ----D---- E:\Documents and Settings\Admin\Data aplikací\Seznam.cz
2014-07-27 18:31:45 ----A---- E:\WINDOWS\system32\PerfStringBackup.INI
2014-07-27 18:27:38 ----D---- E:\WINDOWS
2014-07-27 12:15:20 ----D---- E:\WINDOWS\Logs
2014-07-27 12:15:20 ----D---- E:\WINDOWS\Debug
2014-07-26 14:33:41 ----HD---- E:\Program Files\InstallShield Installation Information
2014-07-26 14:08:33 ----D---- E:\WINDOWS\system32\drivers
2014-07-26 14:08:32 ----HD---- E:\WINDOWS\inf
2014-07-26 14:00:43 ----SHD---- E:\WINDOWS\Installer
2014-07-26 14:00:42 ----SHD---- E:\Config.Msi
2014-07-26 13:52:59 ----SHD---- E:\WINDOWS\system32\AI_RecycleBin
2014-07-26 13:51:53 ----D---- E:\Program Files\Common Files\Blizzard Entertainment
2014-07-26 13:49:48 ----D---- E:\Documents and Settings\All Users\Data aplikací\Electronic Arts
2014-07-26 13:48:01 ----D---- E:\Program Files\Bloody4
2014-07-20 11:40:40 ----D---- E:\Documents and Settings\Admin\Data aplikací\Skype
2014-07-18 08:37:06 ----D---- E:\WINDOWS\system32\Restore
2014-07-09 11:52:23 ----D---- E:\WINDOWS\system32\MRT
2014-07-09 00:04:07 ----D---- E:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2014-07-08 23:56:47 ----A---- E:\WINDOWS\system32\MRT.exe
2014-07-08 21:58:26 ----A---- E:\WINDOWS\system32\FlashPlayerApp.exe
2014-06-30 16:45:17 ----D---- E:\Documents and Settings\Admin\Data aplikací\.minecraft

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;aswRvrt; E:\WINDOWS\system32\drivers\aswRvrt.sys [2013-05-09 49376]
R0 aswVmm;aswVmm; E:\WINDOWS\system32\drivers\aswVmm.sys [2013-07-16 175176]
R0 fltsrv;Acronis Storage Filter Management; E:\WINDOWS\system32\DRIVERS\fltsrv.sys [2013-12-06 86304]
R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; E:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 snapman;Acronis Snapshots Manager; E:\WINDOWS\system32\DRIVERS\snapman.sys [2013-12-06 185120]
R0 tib;Acronis TIB Manager; E:\WINDOWS\system32\DRIVERS\tib.sys [2013-12-06 736192]
R0 tib_mounter;Acronis TIB Mounter; E:\WINDOWS\system32\DRIVERS\tib_mounter.sys [2013-12-06 130488]
R0 vididr;Acronis Virtual Disk; E:\WINDOWS\system32\DRIVERS\vididr.sys [2013-12-06 116000]
R0 vidsflt;Acronis Disk Storage Filter; E:\WINDOWS\system32\DRIVERS\vidsflt.sys [2013-12-06 85280]
R1 AmdK8;Ovladač procesoru AMD; E:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-07-01 43008]
R1 AswRdr;aswRdr; E:\WINDOWS\system32\drivers\AswRdr.sys [2013-05-09 49760]
R1 aswSnx;aswSnx; E:\WINDOWS\system32\drivers\aswSnx.sys [2013-07-16 770344]
R1 aswSP;aswSP; E:\WINDOWS\system32\drivers\aswSP.sys [2013-07-16 369584]
R1 aswTdi;avast! Network Shield Support; E:\WINDOWS\system32\drivers\aswTdi.sys [2013-05-09 56080]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; E:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2013-11-27 242240]
R1 kbdhid;Ovladač klávesnice standardu HID; E:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R2 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC};Power Control [2013/07/16 15:07:43]; \??\E:\Program Files\CyberLink\PowerDVD10\NavFilter\000.fcl []
R2 aswFsBlk;aswFsBlk; E:\WINDOWS\system32\drivers\aswFsBlk.sys [2013-05-09 29816]
R2 aswMonFlt;aswMonFlt; \??\E:\WINDOWS\system32\drivers\aswMonFlt.sys []
R2 MLPTDR_Q;MLPTDR_Q; \??\E:\WINDOWS\system32\MLPTDR_Q.SYS []
R3 afcdp;afcdp; E:\WINDOWS\system32\DRIVERS\afcdp.sys [2013-12-06 234752]
R3 Arp1394;Protokol 1394 ARP Client; E:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 ati2mtag;ati2mtag; E:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2012-11-16 7874560]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; E:\WINDOWS\system32\drivers\AtihdXP3.sys [2012-05-14 103040]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; E:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 HidUsb;Ovladač třídy standardu HID; E:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); E:\WINDOWS\system32\drivers\RtkHDAud.sys [2012-06-19 6141584]
R3 mouhid;Ovladač myši standardu HID; E:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 NIC1394;1394 Net Driver; E:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; E:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2007-06-28 45824]
R3 nvnetbus;NVIDIA Network Bus Enumerator; E:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2007-06-28 20480]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\E:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesDriver32.sys []
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; E:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
R3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; E:\WINDOWS\system32\DRIVERS\WudfPf.sys [2009-07-13 91904]
S3 Ambfilt;Ambfilt; E:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 AndNetDiag;LGE AndroidNet USB Serial Port; E:\WINDOWS\system32\DRIVERS\lgandnetdiag.sys [2012-07-03 23040]
S3 ANDNetModem;LGE AndroidNet USB Modem; E:\WINDOWS\system32\DRIVERS\lgandnetmodem.sys [2012-07-03 27776]
S3 BthEnum;Ovladač pro Bluetooth Request Block; E:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-14 17024]
S3 BTHMODEM;Ovladač pro sériovou komunikaci protokolem Bluetooth; E:\WINDOWS\system32\DRIVERS\bthmodem.sys [2008-04-14 37888]
S3 BthPan;Bluetooth Device (Personal Area Network); E:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-14 101120]
S3 BTHPORT;Ovladač portu Bluetooth; E:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; E:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-14 18944]
S3 CCDECODE;Dekodér Closed Caption; E:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 EagleXNt;EagleXNt; \??\E:\WINDOWS\system32\drivers\EagleXNt.sys []
S3 hamachi;Hamachi Network Interface; E:\WINDOWS\system32\DRIVERS\hamachi.sys [2013-09-04 25280]
S3 Monfilt;Monfilt; E:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; E:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; E:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; E:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 nmwcd;Nokia USB Phone Parent Driver; E:\WINDOWS\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; E:\WINDOWS\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 PAC207;VideoCAM GF112; E:\WINDOWS\system32\DRIVERS\pfc027.sys [2005-04-08 162176]
S3 pccsmcfd;PCCS Mode Change Filter Driver; E:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2012-06-11 19072]
S3 Revoflt;Revoflt; E:\WINDOWS\system32\DRIVERS\revoflt.sys [2009-12-30 27064]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); E:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-14 59136]
S3 RTHDMIAzAudService;Service for HDMI; E:\WINDOWS\system32\drivers\RtKHDMI.sys [2011-12-02 4125352]
S3 SLIP;BDA Slip De-Framer; E:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; E:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 tdrpman;Acronis Try&Decide and Restore Points filter; E:\WINDOWS\system32\DRIVERS\tdrpman.sys [2013-12-06 889888]
S3 upperdev;upperdev; E:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2012-01-09 8192]
S3 usbprint;Třída USB Printer; E:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Ovladač skeneru USB; E:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 usbser;USB Modem Driver; E:\WINDOWS\system32\DRIVERS\usbser.sys [2013-08-29 26240]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; E:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 Wdf01000;Kernel Mode Driver Frameworks service; E:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S3 WpdUsb;WpdUsb; E:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WSTCODEC;Dálnopisný kodek světového standardu; E:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; E:\WINDOWS\system32\DRIVERS\wudfrd.sys [2009-07-13 132224]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AcrSch2Svc;Služba Acronis Scheduler2; E:\Prog [2013-05-09 6583664]
R2 afcdpsrv;Acronis Nonstop Backup Service; E:\Prog [2013-05-09 6583664]
R2 Ati HotKey Poller;Ati HotKey Poller; E:\WINDOWS\system32\Ati2evxx.exe [2012-11-16 643072]
R2 avast! Antivirus;avast! Antivirus; E:\Prog [2013-05-09 6583664]
R2 BthServ;Bluetooth Support Service; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; E:\Prog [2013-05-09 6583664]
R2 NAUpdate;Nero Update; E:\Prog [2013-05-09 6583664]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; E:\Prog [2013-05-09 6583664]
R2 PnkBstrA;PnkBstrA; E:\WINDOWS\system32\PnkBstrA.exe [2014-05-04 76888]
R2 SkypeUpdate;Skype Updater; E:\Prog [2013-05-09 6583664]
R2 STI Simulator;STI Simulator; E:\WINDOWS\System32\PAStiSvc.exe [2005-01-14 53248]
R2 syncagentsrv;Acronis Sync Agent Service; E:\Prog [2013-05-09 6583664]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; E:\Prog [2013-05-09 6583664]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Služba Google Update (gupdate); E:\Prog [2013-05-09 6583664]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; E:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-08 262320]
S3 aspnet_state;ASP.NET State Service; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gupdatem;Služba Google Update (gupdatem); E:\Prog [2013-05-09 6583664]
S3 IDriverT;InstallDriver Table Manager; E:\Prog [2013-05-09 6583664]
S3 idsvc;Windows CardSpace; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; E:\Prog [2013-05-09 6583664]
S3 MozillaMaintenance;Mozilla Maintenance Service; E:\Prog [2013-05-09 6583664]
S3 NMIndexingService;NMIndexingService; E:\Prog [2013-05-09 6583664]
S3 npggsvc;nProtect GameGuard Service; E:\WINDOWS\system32\GameMon.des [2014-01-15 4784312]
S3 ose;Office Source Engine; E:\Prog [2013-05-09 6583664]
S3 osppsvc;Office Software Protection Platform; E:\Prog [2013-05-09 6583664]
S3 ServiceLayer;ServiceLayer; E:\Prog [2013-05-09 6583664]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; E:\Prog [2013-05-09 6583664]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: Pomalé Pc

Napsal: 27 črc 2014 21:19
od Rudy
Dvouklikem na soubor E:\Program Files\trend micro\Admin.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - E:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll (file missing)
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.

Re: Pomalé Pc

Napsal: 27 črc 2014 21:41
od civrs
Zdá se to lepší,kdyby byl problém ozvu se,mockrát děkuji.

Re: Pomalé Pc

Napsal: 28 črc 2014 16:39
od Rudy
OK. Nemáte zač! :)