Pomalá činnost, záseky
Napsal: 10 led 2015 10:45
Dobrý den,
chtěla bych požádat o kontrolu logu. PC se občas seká a pracuje pomalu. Předem děkuju.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Admin at 2015-01-10 10:44:59
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 74 GB (31%) free of 238 GB
Total RAM: 894 MB (4% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:45:30, on 10.1.2015
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\DllHost.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\system32\DllHost.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Epson Software\Event Manager\EEventManager.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Anvisoft\Cloud System Booster\CSBSvc.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Admin\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Admin.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hppp ... 2041520415
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.mystartsearch.com/web/?type= ... earchTerms}
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: SMTTB2009 - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\HyperCam Toolbar\tbcore3.dll
O3 - Toolbar: HyperCam Toolbar - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files\HyperCam Toolbar\tbcore3.dll
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIHKE.EXE /EPT "EPLTarget\P0000000000000000" /M "Epson Stylus SX230"
O4 - HKCU\..\Run: [NextLive] C:\WINDOWS\system32\rundll32.exe "C:\Documents and Settings\Admin\Data aplikací\newnext.me\nengine.dll",EntryPoint -m l
O4 - HKCU\..\Run: [Facebook Update] "C:\Documents and Settings\Admin\Local Settings\Data aplikací\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Documents and Settings\Admin\Data aplikací\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Documents and Settings\Admin\Data aplikací\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) - ABBYY - C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Anvi Cloud System Booster Speed Service (AnviCsbSvc) - Anvisoft - C:/Program Files/Anvisoft/Cloud System Booster/CSBSvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - Unknown owner - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe (file missing)
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
--
End of file - 8465 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\1e4b86f6-2752-4a22-afa3-8ff12b092ef1-5.job - C:\Program Files\Apps Hat\1e4b86f6-2752-4a22-afa3-8ff12b092ef1-5.exe /fHWwcDXWg /SYfMbI='Apps Hat' /NohsVWmxN=48559 /UxaAlFO='000820' /GujUvcQe='0' /vnzcpc='appshatmadness' /NmFjKSLUm=3B84C03DB13F41A19462D57AE258EF6EIE /jbGrTMhzE=884d72fd814ef5d1b3acd7f02fd7dfe8 /JEkDO=1_34_05_29 /EBSDAN=1402760164 /ISdvQe=http://stats.datademoserv.com /SgkQVKu=http://errors.datademoserv.com /XjiDXoVQ=http://ipgeoapi.com/ /QhQsyN=http://update.datademoserv.com /scbAM=2 /VADKF=http://logs.datademoserv.com /nBHHepT='http://update.datademoserv.com/updater_ ... pdate.json' /JAwXldUm='task' /JgaTfl=''
C:\WINDOWS\tasks\5deb6b58-83bc-41ff-ba79-201a1a2d606a-4.job - C:\Program Files\HDQ-1.2cV09.01\5deb6b58-83bc-41ff-ba79-201a1a2d606a-4.exe /rawdata=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
C:\WINDOWS\tasks\80384460-b08a-415d-8639-86143ac146c2-1.job - C:\Program Files\SavePass 1.1\SavePass 1.1-codedownloader.exe /rawdata=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
C:\WINDOWS\tasks\80384460-b08a-415d-8639-86143ac146c2-2.job - C:\Program Files\SavePass 1.1\80384460-b08a-415d-8639-86143ac146c2-2.exe /rawdata=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
C:\WINDOWS\tasks\80384460-b08a-415d-8639-86143ac146c2-4.job - C:\Program Files\SavePass 1.1\80384460-b08a-415d-8639-86143ac146c2-4.exe /rawdata=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
C:\WINDOWS\tasks\80384460-b08a-415d-8639-86143ac146c2-5.job - C:\Program Files\SavePass 1.1\80384460-b08a-415d-8639-86143ac146c2-5.exe /rawdata=twF/tjNSjvW4KTrV0y+/+Apb4ZLFI8WcpjDhdSho1hyRRlUKcT6hBc3QmXGewdp3260Jv4zXhtFQTsBhHsP/DdPw+drSZso+ujB7Mm4XR37of8rk8dNbNcNF7CNdMycEzIi3tYPnVlvSh5+2ZqsXn+D0Fv4C2HKvAMH+BB64A9kCNag7BqHM6E2cvMrlJVxUD+CTQ4fKLEEzRHkLqKhXsiBcqf1iYl09J/iedYIIOqirSewRH/VvUD+7drKzEuRiL2uMS0oMODkDkKFhXR6tg2LJblEJAlYq8yUuZ5NlqsrARKmX1qt3kt0tLtjGdyOxNsuNpPHxlWhffCaa7RRP4kU1GL7ADQSe3NPppTCEZotdKkvJ/WGyMNVCpl3sLw/BeoGlfqlYAALGtuI4jNkuoxLIOMZeZ0D/9N0S6qdrZv6v49xfnlFFpalMkHCFGrCfOqrBxj9TdW26lHa7edZwfn5egTKAPi0hf6vxqWFZS/UrsWp3hHmmtmkTnehDJ8MvZw6o3SnVRe9hpI135QkwF7wIRfrWVzw1fBIZCd8WbwZ7aU1vBNo1XpawCdQVANBHU5HDjpJo48g6vsSMnKzJPBC10XLHsxojKGknG7KONpSVG8VTEXfbG7MzIwwx4zz7FoUT5DnnU47v8RUZjJGgj4IEEwrsAJ+REcZVQODclUhj3Oy8yBjdXPBJI2mbFoOcKYknOer7U+X3IAc6Y1qUijMSInzBvGsFNlZbAL7+xRaeqdhfa0fcdgYirca2HdNEkzQW7iSKFaLZoygg4mltV0Mo+b3fLDY5Yh8zRWcTB0YHYnDqOm0qIXaxYAlnfjOUbNxLiF95n4BtKPyUILdYyz7iPWsKqjRtOTROm8VP+4+C+6GLPIo1ugWDjMahiKhdw4t3UAVrpzl0fewa4YMoZzufRWWYrkH1FS852CDIEJtPpBFF2HtIR3QF4vbIHObEFKGE4K4uW3yKMEDr76Fz8AthDuaDrlWn2eqtIEJVwckqUScqa3GPb1u4Gvlp3PhA
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\AmiUpdXp.job - C:\Documents and Settings\Admin\Data aplikací\26096\Updater.exe
C:\WINDOWS\tasks\AutoKMS.job - C:\WINDOWS\AutoKMS\AutoKMS.exe
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-1417001333-2146877963-1801674531-1004Core.job - C:\Documents and Settings\Admin\Local Settings\Data aplikací\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-1417001333-2146877963-1801674531-1004UA.job - C:\Documents and Settings\Admin\Local Settings\Data aplikací\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\FCO.job - C:\Documents and Settings\Admin\Data aplikac\FCO.exe /infocmdline=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
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
C:\WINDOWS\tasks\RFVEAQN.job - C:\Documents and Settings\Admin\Data aplikac\RFVEAQN.exe /infocmdline=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
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\5a8crgut.default-1402080547765
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://google.com/"
prefs.js - "keyword.URL" - "http://www.default-search.net/search?si ... &src=ds&p="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.71.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.71.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeExManDetect]
"Description"=
"Path"=C:\Program Files\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll
C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\5a8crgut.default-1402080547765\extensions\
8ef36653-7dcd-4c5f-81f5-7870fda4b7b7@67e486b0-922d-4a2d-9e3f-77394107f67c.com
abs@avira.com
jid1-4P0kohSJxU1qGg@jetpack
safesearch@avira.com
staged
{75656794-AB59-4712-BFBC-5D816D56F3BC}
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\5a8crgut.default-1402080547765\searchplugins\
avira-safesearch.xml
WebSearch.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-10-18 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-10-18 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}]
SMTTB2009 Class - C:\Program Files\HyperCam Toolbar\tbcore3.dll [2010-02-16 2495488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{338B4DFE-2E2C-4338-9E41-E176D497299E} - HyperCam Toolbar - C:\Program Files\HyperCam Toolbar\tbcore3.dll [2010-02-16 2495488]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2005-06-28 344064]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-11-15 77824]
"EEventManager"=C:\Program Files\Epson Software\Event Manager\EEventManager.exe [2010-10-12 979328]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"seznam-listicka-distribuce"=C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2014-12-16 702768]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2014-09-26 271744]
"Avira Systray"=C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [2014-11-20 126200]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"EPLTarget\P0000000000000000"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIHKE.EXE [2012-02-29 249440]
"NextLive"=C:\Documents and Settings\Admin\Data aplikací\newnext.me\nengine.dll [2013-11-14 1283584]
"Facebook Update"=C:\Documents and Settings\Admin\Local Settings\Data aplikací\Facebook\Update\FacebookUpdate.exe [2014-03-31 138096]
"cz.seznam.software.autoupdate"=C:\Documents and Settings\Admin\Data aplikací\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Documents and Settings\Admin\Data aplikací\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2014-11-21 5282584]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2014-08-14 6688024]
C:\Documents and Settings\Admin\Nabídka Start\Programy\Po spuštění
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2005-06-28 46080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2013-05-07 115440]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=181
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Epson Software\Event Manager\EEventManager.exe"="C:\Program Files\Epson Software\Event Manager\EEventManager.exe:*:Enabled:EEventManager Application"
"C:\Documents and Settings\Admin\Data aplikací\uTorrent\utorrent.exe"="C:\Documents and Settings\Admin\Data aplikací\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"C:\WINDOWS\system32\javaw.exe"="C:\WINDOWS\system32\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Java\jre7\bin\javaw.exe"="C:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\vbc.exe"="C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\vbc.exe:*:Enabled:Visual Basic Command Line Compiler"
"C:\Documents and Settings\Admin\Local Settings\Data aplikací\Facebook\Video\Skype\FacebookVideoCalling.exe"="C:\Documents and Settings\Admin\Local Settings\Data aplikací\Facebook\Video\Skype\FacebookVideoCalling.exe:*:Enabled:Facebook Video Calling Plugin"
"C:\Documents and Settings\Admin\Plocha\Age-of-Empires-2-Conquerors\Age of Empires 2 Conquerors\empires2.exe"="C:\Documents and Settings\Admin\Plocha\Age-of-Empires-2-Conquerors\Age of Empires 2 Conquerors\empires2.exe:*:Enabled:Age of Empires II"
"C:\Documents and Settings\Admin\Data aplikací\GameRanger\GameRanger\GameRanger.exe"="C:\Documents and Settings\Admin\Data aplikací\GameRanger\GameRanger\GameRanger.exe:*:Enabled:GameRanger"
"C:\WINDOWS\system32\dplaysvr.exe"="C:\WINDOWS\system32\dplaysvr.exe:*:Enabled:Microsoft DirectPlay Helper"
"C:\Documents and Settings\Admin\Plocha\Age-of-Empires-2-Conquerors\Age of Empires 2 Conquerors\age2_x1\age2_x1.exe"="C:\Documents and Settings\Admin\Plocha\Age-of-Empires-2-Conquerors\Age of Empires 2 Conquerors\age2_x1\age2_x1.exe:*:Enabled:Age of Empires II Expansion"
"C:\Documents and Settings\Admin\Local Settings\Data aplikací\Hola\firefox\app\hola_plugin.exe"="C:\Documents and Settings\Admin\Local Settings\Data aplikací\Hola\firefox\app\hola_plugin.exe:*:Enabled:Hola Internet Acceleration. Faster Internet, Anywhere!"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"VIDC.FMVC"=fmcodec.dll
"vidc.VP60"=C:\WINDOWS\system32\vp6vfw.dll
"vidc.VP61"=C:\WINDOWS\system32\vp6vfw.dll
"vidc.dvsd"=pdvcodec.dll
======List of files/folders created in the last 1 month======
2015-01-10 10:42:42 ----D---- C:\rsit
2015-01-09 23:11:51 ----D---- C:\Documents and Settings\Admin\Data aplikací\SUPERAntiSpyware.com
2015-01-09 22:45:31 ----A---- C:\autoexec.bat
2015-01-09 22:37:07 ----D---- C:\Program Files\Enigma Software Group
2015-01-09 22:01:23 ----A---- C:\WINDOWS\system32\subinacl.exe
2015-01-09 22:01:00 ----D---- C:\Program Files\Common Files\Microsoft
2015-01-09 22:01:00 ----D---- C:\Program Files\Adware-Removal-Tool
2015-01-09 20:55:25 ----D---- C:\Documents and Settings\Admin\Data aplikací\26096
2015-01-09 20:55:18 ----D---- C:\Documents and Settings\Admin\Data aplikací\tricomfi
2015-01-09 20:54:56 ----A---- C:\Documents and Settings\Admin\Data aplikací\FCO.exe
2015-01-09 20:54:35 ----A---- C:\Documents and Settings\Admin\Data aplikací\RFVEAQN.exe
2015-01-09 20:39:06 ----D---- C:\Program Files\DeltaFix
2015-01-09 20:38:12 ----D---- C:\Program Files\Flash Save
2015-01-09 20:37:24 ----D---- C:\Program Files\uonisales
2015-01-09 20:36:55 ----D---- C:\Program Files\unnIssaules
2015-01-09 20:36:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\{36e399d5-946d-dea9-36e3-399d59466756}
2015-01-09 20:34:46 ----D---- C:\Program Files\winrar 45.8.7
2015-01-09 20:29:48 ----D---- C:\Documents and Settings\Admin\Data aplikací\21077
2015-01-09 20:27:36 ----D---- C:\Documents and Settings\Admin\Data aplikací\mystartsearch
2015-01-09 20:27:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\MailUpdate
2015-01-09 20:27:10 ----D---- C:\Documents and Settings\Admin\Data aplikací\MailUpdate
2014-12-13 18:28:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2014-12-12 18:25:45 ----D---- C:\Program Files\Common Files\Adobe Systems Shared
2014-12-12 18:20:19 ----A---- C:\WINDOWS\system32\FileOps.exe
2014-12-12 18:20:17 ----D---- C:\WINDOWS\system32\Adobe
2014-12-12 18:11:09 ----D---- C:\AI_CS2_IE_NonRet
2014-12-11 18:31:26 ----A---- C:\WINDOWS\system32\FlashPlayerInstaller.exe
2014-12-11 17:29:33 ----D---- C:\Program Files\SystemRequirementsLab
2014-12-11 17:29:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\SystemRequirementsLab
======List of files/folders modified in the last 1 month======
2015-01-10 10:45:13 ----D---- C:\Program Files\trend micro
2015-01-10 10:45:11 ----D---- C:\WINDOWS\temp
2015-01-10 10:35:12 ----D---- C:\Documents and Settings\Admin\Data aplikací\newnext.me
2015-01-10 10:31:35 ----D---- C:\Documents and Settings\Admin\Data aplikací\Seznam.cz
2015-01-10 10:28:28 ----D---- C:\WINDOWS\system32\CatRoot2
2015-01-10 10:27:58 ----D---- C:\WINDOWS
2015-01-09 23:39:27 ----A---- C:\WINDOWS\SchedLgU.Txt
2015-01-09 23:28:07 ----D---- C:\Program Files\SUPERAntiSpyware
2015-01-09 23:12:11 ----SD---- C:\WINDOWS\Tasks
2015-01-09 23:10:06 ----D---- C:\WINDOWS\system32\drivers
2015-01-09 23:10:06 ----D---- C:\WINDOWS\LastGood
2015-01-09 23:08:53 ----A---- C:\WINDOWS\NeroDigital.ini
2015-01-09 22:37:58 ----HD---- C:\WINDOWS\inf
2015-01-09 22:37:07 ----RD---- C:\Program Files
2015-01-09 22:01:23 ----D---- C:\WINDOWS\system32
2015-01-09 22:01:00 ----D---- C:\Program Files\Common Files
2015-01-09 21:30:53 ----SHD---- C:\System Volume Information
2015-01-09 21:28:08 ----D---- C:\WINDOWS\Registration
2015-01-09 21:02:51 ----D---- C:\Program Files\WinRAR
2015-01-09 20:55:19 ----SHD---- C:\WINDOWS\Installer
2015-01-09 20:33:20 ----D---- C:\Program Files\Google
2015-01-09 20:29:05 ----D---- C:\WINDOWS\Prefetch
2015-01-04 12:32:47 ----RSD---- C:\WINDOWS\Fonts
2014-12-25 22:46:26 ----D---- C:\Program Files\The KMPlayer
2014-12-22 15:13:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\UDL
2014-12-20 19:26:01 ----D---- C:\Documents and Settings\Admin\Data aplikací\.minecraft
2014-12-15 15:15:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\Package Cache
2014-12-13 18:50:05 ----D---- C:\WINDOWS\Debug
2014-12-13 18:42:02 ----D---- C:\Program Files\CCleaner
2014-12-12 18:54:05 ----D---- C:\Documents and Settings\Admin\Data aplikací\Adobe
2014-12-12 18:30:16 ----D---- C:\Program Files\Adobe
2014-12-12 18:26:09 ----D---- C:\Program Files\Common Files\Adobe
2014-12-12 18:20:55 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2014-12-11 18:31:43 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2014-12-11 16:51:41 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2014-12-11 16:29:55 ----D---- C:\WINDOWS\system32\MRT
2014-12-11 16:18:08 ----A---- C:\WINDOWS\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2014-10-15 136216]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2014-07-23 37352]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2014-07-23 28520]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2008-04-14 12032]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2014-10-15 98160]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-11-17 2297664]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2005-06-28 1241088]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2013-12-21 243128]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]
R3 RTL8023;Realtek RTL8139/810x/8169/8110 all in one NDIS NT Driver; C:\WINDOWS\system32\DRIVERS\Rtlnic51.sys [2003-12-31 69504]
S1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt []
S3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-14 12160]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
S3 taphss;Anchorfree HSS Adapter; C:\WINDOWS\system32\DRIVERS\taphss.sys []
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2012-12-13 45056]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2014-07-23 142648]
R2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [2009-05-14 759048]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2014-12-16 431920]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2014-12-16 431920]
R2 AnviCsbSvc;Anvi Cloud System Booster Speed Service; C:/Program Files/Anvisoft/Cloud System Booster/CSBSvc.exe []
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-12-21 57008]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2005-06-28 376832]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [2014-11-20 166192]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2014-10-18 182696]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2014-12-12 72704]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-11 267440]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /medsvc []
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2013-08-16 553288]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-12-09 114800]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2005-06-28 516096]
S4 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
-----------------EOF-----------------
chtěla bych požádat o kontrolu logu. PC se občas seká a pracuje pomalu. Předem děkuju.
Logfile of random's system information tool 1.10 (written by random/random)
Run by Admin at 2015-01-10 10:44:59
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 74 GB (31%) free of 238 GB
Total RAM: 894 MB (4% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:45:30, on 10.1.2015
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\DllHost.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\system32\DllHost.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Epson Software\Event Manager\EEventManager.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Anvisoft\Cloud System Booster\CSBSvc.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre7\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Admin\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Admin.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hppp ... 2041520415
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.mystartsearch.com/web/?type= ... earchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.mystartsearch.com/web/?type= ... earchTerms}
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: SMTTB2009 - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - C:\Program Files\HyperCam Toolbar\tbcore3.dll
O3 - Toolbar: HyperCam Toolbar - {338B4DFE-2E2C-4338-9E41-E176D497299E} - C:\Program Files\HyperCam Toolbar\tbcore3.dll
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Avira Systray] C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIHKE.EXE /EPT "EPLTarget\P0000000000000000" /M "Epson Stylus SX230"
O4 - HKCU\..\Run: [NextLive] C:\WINDOWS\system32\rundll32.exe "C:\Documents and Settings\Admin\Data aplikací\newnext.me\nengine.dll",EntryPoint -m l
O4 - HKCU\..\Run: [Facebook Update] "C:\Documents and Settings\Admin\Local Settings\Data aplikací\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Documents and Settings\Admin\Data aplikací\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Documents and Settings\Admin\Data aplikací\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) - ABBYY - C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Anvi Cloud System Booster Speed Service (AnviCsbSvc) - Anvisoft - C:/Program Files/Anvisoft/Cloud System Booster/CSBSvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - Unknown owner - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe (file missing)
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
--
End of file - 8465 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\1e4b86f6-2752-4a22-afa3-8ff12b092ef1-5.job - C:\Program Files\Apps Hat\1e4b86f6-2752-4a22-afa3-8ff12b092ef1-5.exe /fHWwcDXWg /SYfMbI='Apps Hat' /NohsVWmxN=48559 /UxaAlFO='000820' /GujUvcQe='0' /vnzcpc='appshatmadness' /NmFjKSLUm=3B84C03DB13F41A19462D57AE258EF6EIE /jbGrTMhzE=884d72fd814ef5d1b3acd7f02fd7dfe8 /JEkDO=1_34_05_29 /EBSDAN=1402760164 /ISdvQe=http://stats.datademoserv.com /SgkQVKu=http://errors.datademoserv.com /XjiDXoVQ=http://ipgeoapi.com/ /QhQsyN=http://update.datademoserv.com /scbAM=2 /VADKF=http://logs.datademoserv.com /nBHHepT='http://update.datademoserv.com/updater_ ... pdate.json' /JAwXldUm='task' /JgaTfl=''
C:\WINDOWS\tasks\5deb6b58-83bc-41ff-ba79-201a1a2d606a-4.job - C:\Program Files\HDQ-1.2cV09.01\5deb6b58-83bc-41ff-ba79-201a1a2d606a-4.exe /rawdata=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
C:\WINDOWS\tasks\80384460-b08a-415d-8639-86143ac146c2-1.job - C:\Program Files\SavePass 1.1\SavePass 1.1-codedownloader.exe /rawdata=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
C:\WINDOWS\tasks\80384460-b08a-415d-8639-86143ac146c2-2.job - C:\Program Files\SavePass 1.1\80384460-b08a-415d-8639-86143ac146c2-2.exe /rawdata=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
C:\WINDOWS\tasks\80384460-b08a-415d-8639-86143ac146c2-4.job - C:\Program Files\SavePass 1.1\80384460-b08a-415d-8639-86143ac146c2-4.exe /rawdata=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
C:\WINDOWS\tasks\80384460-b08a-415d-8639-86143ac146c2-5.job - C:\Program Files\SavePass 1.1\80384460-b08a-415d-8639-86143ac146c2-5.exe /rawdata=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
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\AmiUpdXp.job - C:\Documents and Settings\Admin\Data aplikací\26096\Updater.exe
C:\WINDOWS\tasks\AutoKMS.job - C:\WINDOWS\AutoKMS\AutoKMS.exe
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-1417001333-2146877963-1801674531-1004Core.job - C:\Documents and Settings\Admin\Local Settings\Data aplikací\Facebook\Update\FacebookUpdate.exe /c /nocrashserver
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-1417001333-2146877963-1801674531-1004UA.job - C:\Documents and Settings\Admin\Local Settings\Data aplikací\Facebook\Update\FacebookUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\FCO.job - C:\Documents and Settings\Admin\Data aplikac\FCO.exe /infocmdline=JnwUkNa021TlFu2uN+VIJB9pIYKLMETnIz/WH9GBR4JwFV8lm8BBlE+mkEbYzF8daRdI/QdeJZso8+/uf2nXNyWnnq09MHjFuUKHz3BDLl6yqqKoued+xb0GML4VZ1apky6XWUAIftnMJQWow0bq95nVa0KHFQVUKYYRWNr6P7GqgyYefMIF1FJq4ho5UX3WOM2GTeFSDiTg5gfMiku4fff+3TYgz+oH0tlToBL/PYrgYDOLwh29zJae6kNOoBPAKRVkBfB2YS86YFO5vTYX6L3zoqbxmKyGhvi5eIs4k4CsQt78TDi/OULsK3g7tDAaxmENLqY8A1wjcFaRaeuZO2DcGwzoSXoR7Vjhr/QE6XQpE1lsGM0ea3v82TBaKoQly8wJfYnuLp7OeIDOmb9nlHZggnWEfdgxNEHgCkVYnPgwgM5nHvme3FfbhEZN3XOE4gElQNwZtGN5L8ZPosbCXjDlXSU0IYSKNLpb2xqJZE11/55i1lMnTIFBYanjAApR
C:\WINDOWS\tasks\Měsíční oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe
C:\WINDOWS\tasks\Přihlášení k oznamování konce poskytování služeb pro Microsoft Windows XP.job - C:\WINDOWS\system32\xp_eos.exe -c
C:\WINDOWS\tasks\RFVEAQN.job - C:\Documents and Settings\Admin\Data aplikac\RFVEAQN.exe /infocmdline=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
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\5a8crgut.default-1402080547765
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://google.com/"
prefs.js - "keyword.URL" - "http://www.default-search.net/search?si ... &src=ds&p="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.71.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.71.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4]
"Description"=globalUpdate Update
"Path"=C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeExManDetect]
"Description"=
"Path"=C:\Program Files\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll
C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\5a8crgut.default-1402080547765\extensions\
8ef36653-7dcd-4c5f-81f5-7870fda4b7b7@67e486b0-922d-4a2d-9e3f-77394107f67c.com
abs@avira.com
jid1-4P0kohSJxU1qGg@jetpack
safesearch@avira.com
staged
{75656794-AB59-4712-BFBC-5D816D56F3BC}
{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
{ea614400-e918-4741-9a97-7a972ff7c30b}
C:\Documents and Settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\5a8crgut.default-1402080547765\searchplugins\
avira-safesearch.xml
WebSearch.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-10-18 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-10-18 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}]
SMTTB2009 Class - C:\Program Files\HyperCam Toolbar\tbcore3.dll [2010-02-16 2495488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{338B4DFE-2E2C-4338-9E41-E176D497299E} - HyperCam Toolbar - C:\Program Files\HyperCam Toolbar\tbcore3.dll [2010-02-16 2495488]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2005-06-28 344064]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-11-15 77824]
"EEventManager"=C:\Program Files\Epson Software\Event Manager\EEventManager.exe [2010-10-12 979328]
"APSDaemon"=C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"seznam-listicka-distribuce"=C:\Program Files\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2014-12-16 702768]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2014-09-26 271744]
"Avira Systray"=C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [2014-11-20 126200]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"EPLTarget\P0000000000000000"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIHKE.EXE [2012-02-29 249440]
"NextLive"=C:\Documents and Settings\Admin\Data aplikací\newnext.me\nengine.dll [2013-11-14 1283584]
"Facebook Update"=C:\Documents and Settings\Admin\Local Settings\Data aplikací\Facebook\Update\FacebookUpdate.exe [2014-03-31 138096]
"cz.seznam.software.autoupdate"=C:\Documents and Settings\Admin\Data aplikací\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Documents and Settings\Admin\Data aplikací\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2014-11-21 5282584]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2014-08-14 6688024]
C:\Documents and Settings\Admin\Nabídka Start\Programy\Po spuštění
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2005-06-28 46080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2013-05-07 115440]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\!SASCORE]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=181
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Epson Software\Event Manager\EEventManager.exe"="C:\Program Files\Epson Software\Event Manager\EEventManager.exe:*:Enabled:EEventManager Application"
"C:\Documents and Settings\Admin\Data aplikací\uTorrent\utorrent.exe"="C:\Documents and Settings\Admin\Data aplikací\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"C:\WINDOWS\system32\javaw.exe"="C:\WINDOWS\system32\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\Java\jre7\bin\javaw.exe"="C:\Program Files\Java\jre7\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\vbc.exe"="C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\vbc.exe:*:Enabled:Visual Basic Command Line Compiler"
"C:\Documents and Settings\Admin\Local Settings\Data aplikací\Facebook\Video\Skype\FacebookVideoCalling.exe"="C:\Documents and Settings\Admin\Local Settings\Data aplikací\Facebook\Video\Skype\FacebookVideoCalling.exe:*:Enabled:Facebook Video Calling Plugin"
"C:\Documents and Settings\Admin\Plocha\Age-of-Empires-2-Conquerors\Age of Empires 2 Conquerors\empires2.exe"="C:\Documents and Settings\Admin\Plocha\Age-of-Empires-2-Conquerors\Age of Empires 2 Conquerors\empires2.exe:*:Enabled:Age of Empires II"
"C:\Documents and Settings\Admin\Data aplikací\GameRanger\GameRanger\GameRanger.exe"="C:\Documents and Settings\Admin\Data aplikací\GameRanger\GameRanger\GameRanger.exe:*:Enabled:GameRanger"
"C:\WINDOWS\system32\dplaysvr.exe"="C:\WINDOWS\system32\dplaysvr.exe:*:Enabled:Microsoft DirectPlay Helper"
"C:\Documents and Settings\Admin\Plocha\Age-of-Empires-2-Conquerors\Age of Empires 2 Conquerors\age2_x1\age2_x1.exe"="C:\Documents and Settings\Admin\Plocha\Age-of-Empires-2-Conquerors\Age of Empires 2 Conquerors\age2_x1\age2_x1.exe:*:Enabled:Age of Empires II Expansion"
"C:\Documents and Settings\Admin\Local Settings\Data aplikací\Hola\firefox\app\hola_plugin.exe"="C:\Documents and Settings\Admin\Local Settings\Data aplikací\Hola\firefox\app\hola_plugin.exe:*:Enabled:Hola Internet Acceleration. Faster Internet, Anywhere!"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"VIDC.FMVC"=fmcodec.dll
"vidc.VP60"=C:\WINDOWS\system32\vp6vfw.dll
"vidc.VP61"=C:\WINDOWS\system32\vp6vfw.dll
"vidc.dvsd"=pdvcodec.dll
======List of files/folders created in the last 1 month======
2015-01-10 10:42:42 ----D---- C:\rsit
2015-01-09 23:11:51 ----D---- C:\Documents and Settings\Admin\Data aplikací\SUPERAntiSpyware.com
2015-01-09 22:45:31 ----A---- C:\autoexec.bat
2015-01-09 22:37:07 ----D---- C:\Program Files\Enigma Software Group
2015-01-09 22:01:23 ----A---- C:\WINDOWS\system32\subinacl.exe
2015-01-09 22:01:00 ----D---- C:\Program Files\Common Files\Microsoft
2015-01-09 22:01:00 ----D---- C:\Program Files\Adware-Removal-Tool
2015-01-09 20:55:25 ----D---- C:\Documents and Settings\Admin\Data aplikací\26096
2015-01-09 20:55:18 ----D---- C:\Documents and Settings\Admin\Data aplikací\tricomfi
2015-01-09 20:54:56 ----A---- C:\Documents and Settings\Admin\Data aplikací\FCO.exe
2015-01-09 20:54:35 ----A---- C:\Documents and Settings\Admin\Data aplikací\RFVEAQN.exe
2015-01-09 20:39:06 ----D---- C:\Program Files\DeltaFix
2015-01-09 20:38:12 ----D---- C:\Program Files\Flash Save
2015-01-09 20:37:24 ----D---- C:\Program Files\uonisales
2015-01-09 20:36:55 ----D---- C:\Program Files\unnIssaules
2015-01-09 20:36:06 ----D---- C:\Documents and Settings\All Users\Data aplikací\{36e399d5-946d-dea9-36e3-399d59466756}
2015-01-09 20:34:46 ----D---- C:\Program Files\winrar 45.8.7
2015-01-09 20:29:48 ----D---- C:\Documents and Settings\Admin\Data aplikací\21077
2015-01-09 20:27:36 ----D---- C:\Documents and Settings\Admin\Data aplikací\mystartsearch
2015-01-09 20:27:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\MailUpdate
2015-01-09 20:27:10 ----D---- C:\Documents and Settings\Admin\Data aplikací\MailUpdate
2014-12-13 18:28:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\SUPERAntiSpyware.com
2014-12-12 18:25:45 ----D---- C:\Program Files\Common Files\Adobe Systems Shared
2014-12-12 18:20:19 ----A---- C:\WINDOWS\system32\FileOps.exe
2014-12-12 18:20:17 ----D---- C:\WINDOWS\system32\Adobe
2014-12-12 18:11:09 ----D---- C:\AI_CS2_IE_NonRet
2014-12-11 18:31:26 ----A---- C:\WINDOWS\system32\FlashPlayerInstaller.exe
2014-12-11 17:29:33 ----D---- C:\Program Files\SystemRequirementsLab
2014-12-11 17:29:32 ----D---- C:\Documents and Settings\All Users\Data aplikací\SystemRequirementsLab
======List of files/folders modified in the last 1 month======
2015-01-10 10:45:13 ----D---- C:\Program Files\trend micro
2015-01-10 10:45:11 ----D---- C:\WINDOWS\temp
2015-01-10 10:35:12 ----D---- C:\Documents and Settings\Admin\Data aplikací\newnext.me
2015-01-10 10:31:35 ----D---- C:\Documents and Settings\Admin\Data aplikací\Seznam.cz
2015-01-10 10:28:28 ----D---- C:\WINDOWS\system32\CatRoot2
2015-01-10 10:27:58 ----D---- C:\WINDOWS
2015-01-09 23:39:27 ----A---- C:\WINDOWS\SchedLgU.Txt
2015-01-09 23:28:07 ----D---- C:\Program Files\SUPERAntiSpyware
2015-01-09 23:12:11 ----SD---- C:\WINDOWS\Tasks
2015-01-09 23:10:06 ----D---- C:\WINDOWS\system32\drivers
2015-01-09 23:10:06 ----D---- C:\WINDOWS\LastGood
2015-01-09 23:08:53 ----A---- C:\WINDOWS\NeroDigital.ini
2015-01-09 22:37:58 ----HD---- C:\WINDOWS\inf
2015-01-09 22:37:07 ----RD---- C:\Program Files
2015-01-09 22:01:23 ----D---- C:\WINDOWS\system32
2015-01-09 22:01:00 ----D---- C:\Program Files\Common Files
2015-01-09 21:30:53 ----SHD---- C:\System Volume Information
2015-01-09 21:28:08 ----D---- C:\WINDOWS\Registration
2015-01-09 21:02:51 ----D---- C:\Program Files\WinRAR
2015-01-09 20:55:19 ----SHD---- C:\WINDOWS\Installer
2015-01-09 20:33:20 ----D---- C:\Program Files\Google
2015-01-09 20:29:05 ----D---- C:\WINDOWS\Prefetch
2015-01-04 12:32:47 ----RSD---- C:\WINDOWS\Fonts
2014-12-25 22:46:26 ----D---- C:\Program Files\The KMPlayer
2014-12-22 15:13:59 ----D---- C:\Documents and Settings\All Users\Data aplikací\UDL
2014-12-20 19:26:01 ----D---- C:\Documents and Settings\Admin\Data aplikací\.minecraft
2014-12-15 15:15:56 ----D---- C:\Documents and Settings\All Users\Data aplikací\Package Cache
2014-12-13 18:50:05 ----D---- C:\WINDOWS\Debug
2014-12-13 18:42:02 ----D---- C:\Program Files\CCleaner
2014-12-12 18:54:05 ----D---- C:\Documents and Settings\Admin\Data aplikací\Adobe
2014-12-12 18:30:16 ----D---- C:\Program Files\Adobe
2014-12-12 18:26:09 ----D---- C:\Program Files\Common Files\Adobe
2014-12-12 18:20:55 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2014-12-11 18:31:43 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2014-12-11 16:51:41 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2014-12-11 16:29:55 ----D---- C:\WINDOWS\system32\MRT
2014-12-11 16:18:08 ----A---- C:\WINDOWS\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2014-10-15 136216]
R1 avkmgr;avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [2014-07-23 37352]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS []
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2014-07-23 28520]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2008-04-14 12032]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2014-10-15 98160]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-11-17 2297664]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2005-06-28 1241088]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2013-12-21 243128]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 26840]
R3 RTL8023;Realtek RTL8139/810x/8169/8110 all in one NDIS NT Driver; C:\WINDOWS\system32\DRIVERS\Rtlnic51.sys [2003-12-31 69504]
S1 kbdhid;Ovladač klávesnice standardu HID; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
S3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt []
S3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 mouhid;Ovladač myši standardu HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-14 12160]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
S3 taphss;Anchorfree HSS Adapter; C:\WINDOWS\system32\DRIVERS\taphss.sys []
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2012-12-13 45056]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2013-08-09 32384]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2013-07-03 14976]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 !SASCORE;SAS Core Service; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [2014-07-23 142648]
R2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [2009-05-14 759048]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2014-12-16 431920]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2014-12-16 431920]
R2 AnviCsbSvc;Anvi Cloud System Booster Speed Service; C:/Program Files/Anvisoft/Cloud System Booster/CSBSvc.exe []
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2012-12-21 57008]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2005-06-28 376832]
R2 Avira.OE.ServiceHost;Avira Service Host; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [2014-11-20 166192]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2014-10-18 182696]
R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2013-07-20 754856]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2014-12-12 72704]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-11 267440]
S3 aspnet_state;Stavová služba ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 globalUpdatem;globalUpdate Update Service (globalUpdatem); C:\Program Files\globalUpdate\Update\GoogleUpdate.exe /medsvc []
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2013-08-16 553288]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2014-12-09 114800]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2005-06-28 516096]
S4 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
-----------------EOF-----------------