Stránka 1 z 2

problem s NT bookem posílám LOG, děkuji

Napsal: 06 úno 2015 22:51
od gabrin
Dobrý den,
casto mi zamrzá nt book, občas se sam restartuje a poslední dny se mi někdo navrtal do šablony wordpresu, kterou připravuji..
Můžete se podívat na log vygenerovaný vašim návodem.
Děkuji.
----------------------------------

Kód: Vybrat vše

Logfile of random's system information tool 1.10 (written by random/random)
Run by coolbox at 2015-02-06 22:28:51
Microsoft Windows 8.1 Pro 
System drive C: has 281 GB (30%) free of 938 GB
Total RAM: 3948 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:29:02, on 6.2.2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe
C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe
C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe
C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Spyware Terminator\SpywareTerminator.exe
C:\Program Files\trend micro\coolbox.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=sp-006&q={searchTerms}
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=sp-006&q={searchTerms}
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 77.78.104.90 www.coolbox.cz coolbox.cz
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPlugin_Protection.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [ArcadeMovieService] "C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe"
O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k
O4 - HKLM\..\Run: [Dolby Advanced Audio v2] "C:\Dolby PCEE4\pcee4.exe" -autostart
O4 - HKLM\..\Run: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
O4 - HKLM\..\Run: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
O4 - HKLM\..\Run: [StartW8Button] C:\Program Files (x86)\StartW8\bin\StartW8Button.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"
O4 - HKCU\..\Run: [FLV Player] C:\Users\Coolbox\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe
O4 - HKCU\..\Run: [EEDSpeedLauncher] rundll32.exe C:\WINDOWS\system32\eed_ec.dll,SpeedLauncher
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [icq] C:\Users\Coolbox\AppData\Roaming\ICQM\icq.exe -CU
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Coolbox\AppData\Roaming\ICQM\icq.exe (HKCU)
O9 - Extra 'Tools' menuitem: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Coolbox\AppData\Roaming\ICQM\icq.exe (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\Skype4COM.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10849 bytes

======Listing Processes======






wininit.exe
winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files (x86)\StartW8\bin\StartW8Service.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 598943194736
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
dashost.exe {c2babcf3-8040-4207-925550ca127a3f8b}
"C:\Program Files (x86)\Launch Manager\dsiwmis.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe"
"C:\Program Files (x86)\Launch Manager\LMutilps32.exe" --system-level-mutex="Local\{B904A927-FE6B-48fd-8C83-6B807BED1F9C}" --enable-wmi-window
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe"
"C:\Program Files (x86)\Acer\Registration\GREGsvc.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files\Acer\Acer Updater\UpdaterService.exe"
"C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe"
C:\WINDOWS\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe"
C:\WINDOWS\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 5bd29be5-4737-41f9-8ae3-69d769aabfc4 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
ngservice.exe pipeserver
"C:\Program Files (x86)\StartW8\bin\StartW8Button.exe"
C:\WINDOWS\Explorer.EXE
taskhostex.exe 
C:\Program Files (x86)\StartW8\bin\StartW8Menu.exe
"C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe" /startup
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
\??\C:\WINDOWS\system32\conhost.exe 0x4
taskeng.exe {3A29C7A3-C097-4104-B4E5-EE2CA46A9B67}
"C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe" 
"C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe" 
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe" 
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" 
"C:\WINDOWS\system32\igfxext.exe" -Embedding
"C:\Windows\System32\igfxtray.exe" 
"C:\Windows\System32\hkcmd.exe" 
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\System32\igfxpers.exe" 
"C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe"
"C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /FORPCEE4
"C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe" 
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" 
"C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k
"C:\DOLBY PCEE4\pcee4.exe" -autostart
"C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe" 
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" 
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
"C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" 
"C:\Program Files (x86)\Launch Manager\LManager.exe" 
"C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe" 
"C:\Program Files (x86)\Launch Manager\LMworker.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR /uac
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding

"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" 
"C:\Program Files (x86)\Spyware Terminator\SpywareTerminator.exe"   /ELEVATED
C:\WINDOWS\System32\svchost.exe -k WerSvcGroup
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe5_ Global\UsGthrCtrlFltPipeMssGthrPipe5 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" 
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 584 588 596 65536 592 
"C:\Users\Coolbox\Downloads\RSITx64.exe" 

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe  
C:\WINDOWS\tasks\ASC8_SkipUac_coolbox.job - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe  /SkipUac 
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /c 
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe  /ua /installsource scheduler 
C:\WINDOWS\tasks\Uninstaller_SkipUac_Administrator.job - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe  /UninstallExplorer 
C:\WINDOWS\tasks\Uninstaller_SkipUac_coolbox.job - C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe  /UninstallExplorer 

=========Mozilla firefox=========

ProfilePath - C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default

prefs.js - "browser.search.suggest.enabled" -  false
prefs.js - "browser.startup.homepage" -  "http://www.seznam.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1216156.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.72.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.72.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Acrobat]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.305 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.72.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.72.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll


C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\searchplugins\
google-avast.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
ExplorerWnd Helper - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2014-12-06 2471744]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-12-06 553896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-12-12 705448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-12-06 211880]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-12-06 462760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-12 586968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2014-12-03 343456]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
Advanced SystemCare Surfing Protection - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPlugin_Protection.dll [2014-10-17 669984]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-12-06 171944]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2014-12-03 343456]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2010-11-12 2588968]
"Power Management"=C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [2011-05-10 1831528]
"KONICA MINOLTA PagePro 1350WStatusDisplay"=C:\WINDOWS\system32\MSTM64_Q.EXE [2013-05-02 247736]
"SpywareTerminatorShield"=C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [2012-09-07 2777296]
"SpywareTerminatorUpdater"=C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [2013-10-22 3684488]
"NvBackend"=C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2014-12-13 2531472]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2014-04-09 172016]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2014-04-09 399856]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2014-04-09 442352]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap64.dll [2014-12-13 2824504]
"AutoKMS"=C:\WINDOWS\AutoKMS.exe [2014-12-13 615936]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-01-29 12673128]
"RtHDVBg_Dolby"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-01-29 2277480]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"FLV Player"=C:\Users\Coolbox\AppData\Local\WebPlayer\FLV Player\WebPlayer.exe [2012-10-26 202752]
"EEDSpeedLauncher"=C:\WINDOWS\system32\eed_ec.dll [2014-04-11 3112960]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-12-12 7394584]
"AdobeBridge"= []
"icq"=C:\Users\Coolbox\AppData\Roaming\ICQM\icq.exe [2014-12-03 35239432]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-12-11 30877280]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-11-20 1021128]
"ArcadeMovieService"=C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [2011-05-09 177448]
"BackupManagerTray"=C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [2011-04-24 297280]
"Dolby Advanced Audio v2"=C:\Dolby PCEE4\pcee4.exe [2011-02-03 506712]
"EgisTecPMMUpdate"=C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [2010-09-18 407920]
"EgisUpdate"=C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [2010-09-18 201584]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-07-16 56128]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"SuiteTray"=C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [2010-09-28 340336]
"StartW8Button"=C:\Program Files (x86)\StartW8\bin\StartW8Button.exe [2014-12-15 59752]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2012-11-05 89184]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2015-01-27 5227112]
"LManager"=C:\Program Files (x86)\Launch Manager\LManager.exe [2014-08-05 1131632]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
""= []
"Adobe Acrobat Speed Launcher"=C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [2014-12-03 41360]
"Acrobat Assistant 8.0"=C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2014-12-03 840592]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll,C:\WINDOWS\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\SYSTEM32\igfxdev.dll [2014-03-20 442880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2013-12-19 6671064]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~4\Office14\GROOVEEX.DLL [2013-12-19 4171480]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SafeModeBlockNonAdmins"=1
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"MSVideo8"=VfWWDM32.dll
"msacm.l3codecp"=l3codecp.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - "C:\Program Files (x86)\Adobe\Adobe Dreamweaver CS6\Dreamweaver.exe","%1"

======List of files/folders created in the last 1 month======

2015-02-06 22:28:51 ----D---- C:\rsit
2015-02-06 22:28:51 ----D---- C:\Program Files\trend micro
2015-02-06 21:17:08 ----ASH---- C:\pagefile.sys
2015-02-06 19:46:58 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-02-04 21:04:31 ----SHD---- C:\found.000
2015-02-04 20:36:17 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerInstaller.exe
2015-02-04 20:30:02 ----A---- C:\WINDOWS\system32\IObitSmartDefragExtension.dll
2015-02-04 19:58:09 ----A---- C:\WINDOWS\system32\aswBoot.exe
2015-02-02 22:29:32 ----D---- C:\WINDOWS\pss
2015-02-02 19:50:21 ----D---- C:\Program Files (x86)\NuGet
2015-02-02 19:13:29 ----D---- C:\Program Files (x86)\Windows Kits
2015-02-02 19:08:44 ----D---- C:\Program Files (x86)\Microsoft Help Viewer
2015-02-02 19:08:28 ----D---- C:\Program Files (x86)\Microsoft SDKs
2015-02-02 19:00:44 ----D---- C:\WINDOWS\SYSWOW64\1033
2015-02-02 19:00:44 ----D---- C:\WINDOWS\system32\1033
2015-02-02 18:56:04 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2015-02-02 18:56:03 ----D---- C:\Program Files\Microsoft SQL Server
2015-02-02 18:50:48 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2015-02-02 18:49:25 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 11.0
2015-02-02 18:47:09 ----D---- C:\ProgramData\Package Cache
2015-01-29 23:09:19 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RtPCEE4.DAT
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RtPCEE3.DAT
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RtHdatEx.dat
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RTHDAEQ1.dat
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RTEQEX3.dat
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RTEQEX2.dat
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RTEQEX1.dat
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RTEQEX0.dat
2015-01-29 23:08:52 ----N---- C:\WINDOWS\system32\drivers\RTConvEQ.dat
2015-01-29 23:08:52 ----A---- C:\WINDOWS\system32\drivers\rtkhdaud.dat
2015-01-29 23:08:16 ----A---- C:\WINDOWS\system32\WavesGUILib.dll
2015-01-29 23:08:11 ----A---- C:\WINDOWS\system32\SRSWOW64.dll
2015-01-29 23:08:11 ----A---- C:\WINDOWS\system32\SRSTSX64.dll
2015-01-29 23:08:11 ----A---- C:\WINDOWS\system32\SRSTSH64.dll
2015-01-29 23:08:11 ----A---- C:\WINDOWS\system32\SRSHP64.dll
2015-01-29 23:08:07 ----A---- C:\WINDOWS\system32\SFSS_APO.dll
2015-01-29 23:08:06 ----A---- C:\WINDOWS\system32\SFNHK64.dll
2015-01-29 23:08:05 ----A---- C:\WINDOWS\system32\SFCOM64.dll
2015-01-29 23:08:04 ----A---- C:\WINDOWS\SYSWOW64\SFCOM.dll
2015-01-29 23:08:04 ----A---- C:\WINDOWS\system32\SFAPO64.dll
2015-01-29 23:07:58 ----A---- C:\WINDOWS\system32\RtPgEx64.dll
2015-01-29 23:07:56 ----A---- C:\WINDOWS\system32\RtlCPAPI64.dll
2015-01-29 23:07:53 ----A---- C:\WINDOWS\system32\drivers\RTKVHD64.sys
2015-01-29 23:07:46 ----A---- C:\WINDOWS\system32\RtkCfg64.dll
2015-01-29 23:07:41 ----A---- C:\WINDOWS\system32\RtkAPO64.dll
2015-01-29 23:07:39 ----A---- C:\WINDOWS\system32\RtkApi64.dll
2015-01-29 23:07:38 ----A---- C:\WINDOWS\system32\RTEEP64A.dll
2015-01-29 23:07:38 ----A---- C:\WINDOWS\system32\RTEEL64A.dll
2015-01-29 23:07:37 ----A---- C:\WINDOWS\system32\RTEEG64A.dll
2015-01-29 23:07:37 ----A---- C:\WINDOWS\system32\RTEED64A.dll
2015-01-29 23:07:34 ----A---- C:\WINDOWS\system32\RTCOM64.dll
2015-01-29 23:07:33 ----A---- C:\WINDOWS\system32\RP3DHT64.dll
2015-01-29 23:07:33 ----A---- C:\WINDOWS\system32\RP3DAA64.dll
2015-01-29 23:07:31 ----A---- C:\WINDOWS\system32\RCoRes64.dat
2015-01-29 23:07:30 ----A---- C:\WINDOWS\system32\RCoInst64.dll
2015-01-29 23:07:11 ----A---- C:\WINDOWS\system32\R4EEP64A.dll
2015-01-29 23:07:11 ----A---- C:\WINDOWS\system32\R4EEL64A.dll
2015-01-29 23:07:10 ----A---- C:\WINDOWS\system32\R4EEG64A.dll
2015-01-29 23:07:10 ----A---- C:\WINDOWS\system32\R4EED64A.dll
2015-01-29 23:07:09 ----A---- C:\WINDOWS\system32\R4EEA64A.dll
2015-01-29 23:07:03 ----A---- C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2015-01-29 23:07:00 ----A---- C:\WINDOWS\system32\MaxxAudioRealtek.dll
2015-01-29 23:06:58 ----A---- C:\WINDOWS\system32\MaxxAudioEQ.dll
2015-01-29 23:06:58 ----A---- C:\WINDOWS\system32\MaxxAudioAPO30.dll
2015-01-29 23:06:58 ----A---- C:\WINDOWS\system32\MaxxAudioAPO20.dll
2015-01-29 23:06:15 ----A---- C:\WINDOWS\system32\FMAPO64.dll
2015-01-29 23:06:14 ----A---- C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2015-01-29 23:06:11 ----A---- C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2015-01-29 23:06:11 ----A---- C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2015-01-29 23:06:10 ----A---- C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2015-01-29 23:06:09 ----A---- C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2015-01-29 23:06:09 ----A---- C:\WINDOWS\system32\DTSLimiterDLL64.dll
2015-01-29 23:06:09 ----A---- C:\WINDOWS\system32\DTSLFXAPO64.dll
2015-01-29 23:06:08 ----A---- C:\WINDOWS\system32\DTSGFXAPONS64.dll
2015-01-29 23:06:07 ----A---- C:\WINDOWS\system32\DTSGFXAPO64.dll
2015-01-29 23:06:07 ----A---- C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2015-01-29 23:06:06 ----A---- C:\WINDOWS\system32\DTSBoostDLL64.dll
2015-01-29 23:06:05 ----A---- C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2015-01-29 23:05:57 ----A---- C:\WINDOWS\system32\AERTAR64.dll
2015-01-29 23:05:56 ----A---- C:\WINDOWS\system32\AERTAC64.dll
2015-01-29 23:05:45 ----A---- C:\WINDOWS\RtlExUpd.dll
2015-01-29 22:43:02 ----A---- C:\WINDOWS\system32\drivers\iaStorA.sys
2015-01-29 22:42:38 ----D---- C:\Users\Coolbox\AppData\Roaming\InstallShield
2015-01-26 22:20:59 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-01-24 09:50:34 ----A---- C:\WINDOWS\system32\drivers\k57nd60a.sys
2015-01-14 10:32:15 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-01-14 10:32:15 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-01-14 10:32:14 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-01-14 10:32:13 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-01-14 10:32:13 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-01-14 10:32:11 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-01-14 10:32:09 ----A---- C:\WINDOWS\system32\wer.dll
2015-01-14 10:32:09 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-01-14 10:32:08 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-01-14 10:32:07 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-01-14 10:32:07 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-01-14 10:32:07 ----A---- C:\WINDOWS\system32\ci.dll
2015-01-14 10:32:06 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-01-14 10:32:06 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-01-14 10:32:05 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-01-09 17:54:56 ----A---- C:\WINDOWS\system32\drivers\BCMWL63a.SYS
2015-01-09 17:54:56 ----A---- C:\WINDOWS\system32\bcmihvui64.dll
2015-01-09 17:54:55 ----A---- C:\WINDOWS\system32\bcmihvsrv64.dll
2015-01-08 15:05:06 ----D---- C:\WINDOWS\system32\Logs

======List of files/folders modified in the last 1 month======

2015-02-06 22:28:58 ----D---- C:\WINDOWS\Prefetch
2015-02-06 22:28:51 ----D---- C:\Program Files
2015-02-06 22:21:28 ----D---- C:\Users\Coolbox\AppData\Roaming\Skype
2015-02-06 22:00:01 ----D---- C:\WINDOWS\system32\sru
2015-02-06 21:36:54 ----D---- C:\WINDOWS\Temp
2015-02-06 21:28:35 ----D---- C:\WINDOWS\system32\catroot2
2015-02-06 21:28:35 ----D---- C:\WINDOWS\Minidump
2015-02-06 21:28:35 ----D---- C:\WINDOWS\Inf
2015-02-06 21:28:35 ----D---- C:\Windows
2015-02-06 21:24:51 ----D---- C:\ProgramData\clear.fi
2015-02-06 21:22:04 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-02-06 20:54:57 ----D---- C:\Program Files\NVIDIA Corporation
2015-02-06 20:54:57 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-02-06 20:54:56 ----RD---- C:\WINDOWS\System32
2015-02-06 20:54:56 ----D---- C:\WINDOWS\SysWOW64
2015-02-06 20:54:56 ----D---- C:\WINDOWS\system32\drivers
2015-02-06 20:54:50 ----D---- C:\WINDOWS\system32\DriverStore
2015-02-06 20:54:44 ----D---- C:\ProgramData\NVIDIA Corporation
2015-02-06 20:54:32 ----D---- C:\ProgramData\NVIDIA
2015-02-06 20:50:07 ----D---- C:\WINDOWS\Help
2015-02-06 20:36:57 ----D---- C:\Program Files (x86)\IObit
2015-02-06 20:05:59 ----D---- C:\WINDOWS\system32\config
2015-02-06 19:46:58 ----D---- C:\WINDOWS\WinSxS
2015-02-06 19:46:51 ----D---- C:\WINDOWS\CbsTemp
2015-02-06 19:36:37 ----D---- C:\ProgramData\StartW8
2015-02-06 19:35:13 ----D---- C:\WINDOWS\SoftwareDistribution
2015-02-06 13:28:48 ----D---- C:\WINDOWS\debug
2015-02-05 10:49:13 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-02-05 10:14:03 ----SHD---- C:\WINDOWS\Installer
2015-02-05 10:14:03 ----SHD---- C:\Config.Msi
2015-02-05 10:09:36 ----RD---- C:\Program Files (x86)
2015-02-05 10:09:34 ----D---- C:\WINDOWS\Tasks
2015-02-05 05:25:06 ----D---- C:\WINDOWS\system32\Tasks
2015-02-05 05:22:39 ----HD---- C:\ProgramData
2015-02-04 21:03:34 ----SHD---- C:\System Volume Information
2015-02-04 20:29:37 ----D---- C:\Users\Coolbox\AppData\Roaming\IObit
2015-02-04 19:45:50 ----D---- C:\Program Files (x86)\SamsungPrinterLiveUpdateInstaller
2015-02-04 19:42:27 ----D---- C:\WINDOWS\system32\wbem
2015-02-04 19:40:19 ----D---- C:\WINDOWS\MediaViewer
2015-02-04 19:40:19 ----D---- C:\WINDOWS\FileManager
2015-02-04 19:40:19 ----D---- C:\WINDOWS\Camera
2015-02-04 19:40:19 ----D---- C:\WINDOWS\AppReadiness
2015-02-04 19:40:15 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata
2015-02-04 19:40:15 ----D---- C:\Program Files (x86)\BlueStacks
2015-02-04 19:40:14 ----D---- C:\WINDOWS\system32\WinMetadata
2015-02-04 19:40:14 ----D---- C:\WINDOWS\rescache
2015-02-04 19:39:50 ----D---- C:\WINDOWS\system32\Sysprep
2015-02-04 19:39:48 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-02-04 19:39:30 ----D---- C:\Users\Coolbox\AppData\Roaming\ProductData
2015-02-04 19:39:00 ----D---- C:\ProgramData\BlueStacks
2015-02-04 19:33:26 ----HD---- C:\Program Files\WindowsApps
2015-02-04 19:25:36 ----D---- C:\WINDOWS\registration
2015-02-04 19:24:15 ----D---- C:\WINDOWS\Microsoft.NET
2015-02-04 19:22:41 ----RSD---- C:\WINDOWS\assembly
2015-02-04 19:21:05 ----SD---- C:\Users\Coolbox\AppData\Roaming\Microsoft
2015-02-04 19:20:14 ----SD---- C:\ProgramData\Microsoft
2015-02-04 19:20:14 ----D---- C:\ProgramData\Samsung
2015-02-04 19:19:41 ----D---- C:\Program Files (x86)\MSBuild
2015-02-04 19:19:39 ----D---- C:\Program Files (x86)\Common Files
2015-01-29 23:09:58 ----HD---- C:\Program Files (x86)\Temp
2015-01-29 23:09:21 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-01-29 22:43:34 ----D---- C:\WINDOWS\system32\catroot
2015-01-29 22:42:41 ----D---- C:\Program Files (x86)\Intel
2015-01-27 19:05:22 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-26 22:08:00 ----D---- C:\ProgramData\ProductData
2015-01-23 17:43:21 ----D---- C:\Program Files (x86)\7-Zip
2015-01-21 16:36:34 ----D---- C:\WINDOWS\system32\NDF
2015-01-17 00:43:57 ----D---- C:\Users\Coolbox\AppData\Roaming\GHISLER
2015-01-14 18:33:27 ----D---- C:\WINDOWS\system32\MRT
2015-01-14 18:23:16 ----A---- C:\WINDOWS\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-11-27 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-11-27 267632]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-07-09 645952]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-11-27 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-11-27 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-11-27 436624]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [2015-01-02 26528]
R1 mwlPSDFilter;mwlPSDFilter; C:\WINDOWS\system32\DRIVERS\mwlPSDFilter.sys [2011-05-28 22912]
R1 mwlPSDNServ;mwlPSDNServ; C:\WINDOWS\system32\DRIVERS\mwlPSDNServ.sys [2011-05-28 20328]
R1 mwlPSDVDisk;mwlPSDVDisk; C:\WINDOWS\system32\DRIVERS\mwlPSDVDisk.sys [2011-05-28 62584]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-11-27 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-11-27 83280]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-11-27 116728]
R2 sp_rsdrv2;Spyware Terminator Driver Filter; C:\WINDOWS\system32\DRIVERS\stflt.sys [2014-04-24 51496]
R2 SSPORT;SSPORT; \??\C:\WINDOWS\system32\Drivers\SSPORT.sys [2013-04-18 11576]
R3 b57xdbd;@oem21.inf,%bcmxd_16bf_svcd%;Broadcom xD Picture Bus Driver Service; C:\WINDOWS\System32\drivers\b57xdbd.sys [2011-01-21 67624]
R3 b57xdmp;@oem21.inf,%BXD_SVCDESC%;Broadcom xD Picture vstorp client drv; C:\WINDOWS\System32\drivers\b57xdmp.sys [2011-01-21 19496]
R3 BCM43XX;@oem107.inf,%BCM43XX_Service_DispName%;Ovladač síťového adaptéru Broadcom 802.11; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [2015-01-09 7549616]
R3 bScsiMSa;bScsiMSa; C:\WINDOWS\System32\drivers\bScsiMSa.sys [2011-05-16 51240]
R3 bScsiSDa;bScsiSDa; C:\WINDOWS\System32\drivers\bScsiSDa.sys [2011-05-06 86056]
R3 ETD;@oem2.inf,%PS2.DeviceDesc%;ELAN PS/2 Port Input Device; C:\WINDOWS\system32\DRIVERS\ETD.sys [2010-11-12 138024]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-03-20 5363520]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2015-01-29 3056360]
R3 IntcDAud;@oem22.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2014-08-05 342528]
R3 k57nd60a;@oem104.inf,%SvcDispName%;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\WINDOWS\system32\DRIVERS\k57nd60a.sys [2015-01-24 458960]
R3 MEIx64;@oem24.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2011-03-10 18432]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-12-13 19600]
R3 nvvad_WaveExtensible;@oem111.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2014-11-22 38032]
R3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2011-03-10 17408]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2014-11-18 212736]
S0 iaStor;@oem4.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2010-09-14 437272]
S2 MLPTDR_Q;MLPTDR_Q; \??\C:\WINDOWS\system32\ []
S3 cpuz137;cpuz137; \??\C:\Users\Coolbox\AppData\Local\Temp\cpuz137\cpuz137_x64.sys []
S3 HTCAND64;@oem90.inf,%HTCAND64.SvcDesc%;HTC Device Driver; C:\WINDOWS\System32\Drivers\ANDROIDUSB.sys [2009-11-02 33736]
S3 htcnprot;HTC NDIS Protocol Driver; C:\WINDOWS\system32\DRIVERS\htcnprot.sys [2012-12-07 36928]
S3 SensorsSimulatorDriver;@oem112.inf,%WudfSensorsSimulatorDriverDisplayName%;UMDF Reflector service for SensorsSimulatorDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [2014-11-18 226304]
S3 UrlFilter;UrlFilter; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [2014-11-10 23016]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;Ovladač skeneru USB; C:\WINDOWS\System32\drivers\usbscan.sys [2014-11-18 44544]
S4 FileMonitor;FileMonitor; \??\C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [2014-11-10 23048]
S4 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys []
S4 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys []
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [2014-12-12 271752]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-12-12 50344]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2014-11-18 38792]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2014-11-18 38792]
R3 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [2014-12-12 4012248]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R4 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-03 81088]
R4 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2014-08-05 365680]
R4 ePowerSvc;Acer ePower Service; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2011-05-10 872552]
R4 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2014-12-13 1148560]
R4 GREGService;GREGService; C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [2011-01-18 39528]
R4 IAStorDataMgrSvc;Úložná technologie Intel® Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-07-09 7168]
R4 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
R4 IMFservice;IMF Service; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [2014-12-12 344896]
R4 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R4 Live Updater Service;Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2011-04-22 244624]
R4 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2014-12-12 2633024]
R4 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R4 NTI IScheduleSvc;NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [2011-04-24 256832]
R4 NvNetworkService;NVIDIA Network Service; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-12-13 1701520]
R4 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-12-13 19823248]
R4 PassThru Service;Internet Pass-Through Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [2012-12-07 167424]
R4 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [2012-09-07 1148664]
R4 StartW8Service;StartW8Service; C:\Program Files (x86)\StartW8\bin\StartW8Service.exe [2014-12-15 620392]
R4 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-18 38792]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2013-12-19 30814400]
S3 ose;Office  Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-04 267440]
S4 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-04-09 279024]
S4 EgisTec Ticket Service;EgisTec Ticket Service; C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [2010-09-28 172912]
S4 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2013-02-03 655624]
S4 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-03 107912]
S4 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-03 107912]
S4 gusvc;Google Updater Service; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2014-03-11 136120]
S4 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-01-26 114800]
S4 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S4 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

-----------------EOF-----------------

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 07 úno 2015 00:05
od gabrin
2. část
-----------------
info.txt logfile of random's system information tool 1.10 2015-02-06 22:29:12

======MBR======

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

======Uninstall list======

-->"C:\Program Files (x86)\InstallShield Installation Information\{14C4C3B6-F1F4-401F-8C86-03E8E19AAC8C}\Setup.exe" /z-uninstall
-->"C:\Program Files (x86)\InstallShield Installation Information\{39F15B50-A977-4CA6-B1C3-6A8724CDA025}\setup.exe" -runfromtemp -l0x0405 -removeonly
-->"C:\Program Files (x86)\InstallShield Installation Information\{B906C11A-D193-4143-9FA7-E2EE8A5A8F21}\Setup.exe" /z-uninstall
-->"C:\Program Files (x86)\InstallShield Installation Information\{C2695E83-CF1D-43D1-84FE-B3BEC561012A}\setup.exe" -runfromtemp -l0x0409 -removeonly
-->MsiExec /X{B455E95A-B804-439F-B533-336B1635AE97}
3D RealityMaps Viewer 1.6.8.0-->"C:\Program Files (x86)\3D-RealityMaps\Online-Viewer\unins000.exe"
64 Bit HP CIO Components Installer-->MsiExec.exe /I{F8F948EA-5AEA-4158-8821-A2F788ECE936}
7-Zip 4.65-->"C:\Program Files (x86)\7-Zip\Uninstall.exe"
Acer Backup Manager-->C:\Program Files (x86)\InstallShield Installation Information\{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}\setup.exe -runfromtemp -l0x0405
Acer Crystal Eye Webcam-->"C:\Program Files (x86)\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
Acer Crystal Eye Webcam-->"C:\Program Files (x86)\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
Acer ePower Management-->"C:\Program Files (x86)\InstallShield Installation Information\{3DB0448D-AD82-4923-B305-D001E521A964}\setup.exe" -runfromtemp -l0x405 -removeonly
Acer eRecovery Management-->"C:\Program Files (x86)\InstallShield Installation Information\{7F811A54-5A09-4579-90E1-C93498E230D9}\setup.exe" -runfromtemp -l0x405 -removeonly
Acer GameZone Console-->"C:\Program Files (x86)\Acer GameZone\GameConsole\unins000.exe"
Acer Registration-->C:\Program Files (x86)\Acer\Registration\Uninstall.exe
Acer ScreenSaver-->C:\Program Files (x86)\Acer\Screensaver\Uninstall.exe
Acer System Information-->MsiExec.exe /I{72199E33-4F2A-4B7F-8E25-95DDDD50A678}
Acer Updater-->"C:\Program Files (x86)\InstallShield Installation Information\{EE171732-BEB4-4576-887D-CB62727F01CA}\setup.exe" -runfromtemp -l0x405 -removeonly
Acrobat.com-->MsiExec.exe /X{287ECFA4-719A-2143-A09B-D6A12DE54E40}
Adobe Acrobat X Pro - Eastern European (Group 1)-->MsiExec.exe /I{AC76BA86-1029-4770-7760-000000000005}
Adobe AIR-->c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{7B77622E-DE90-48EA-B2C7-227B1DE58A01}
Adobe Creative Suite 6 Master Collection-->C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exe --appletID="DWA_UI" --appletVersion="2.0" --mode="Uninstall" --mediaSignature="{E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0}"
Adobe Flash Player 16 NPAPI-->C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_305_Plugin.exe -maintain plugin
Adobe Help Manager-->msiexec /qb /x {AF37176A-78CA-545B-34EF-8B6A21514DD1}
Adobe Help Manager-->MsiExec.exe /I{AF37176A-78CA-545B-34EF-8B6A21514DD1}
Adobe Reader XI (11.0.10) - Czech-->MsiExec.exe /I{AC76BA86-7AD7-1029-7B44-AB0000000001}
Adobe Shockwave Player 12.1-->"C:\WINDOWS\SysWOW64\Adobe\Shockwave 12\uninstaller.exe"
Adobe Widget Browser-->msiexec /qb /x {EFBE6DD5-B224-96E5-72B9-68D328CB12A6}
Adobe Widget Browser-->MsiExec.exe /I{EFBE6DD5-B224-96E5-72B9-68D328CB12A6}
Argazki Galeria-->MsiExec.exe /X{3C68859B-213C-4D91-881C-8EA422C6ACBD}
Avast Free Antivirus-->C:\Program Files\AVAST Software\Avast\Setup\Instup.exe /control_panel /instop:uninstall
Backup Manager V3-->C:\Program Files (x86)\InstallShield Installation Information\{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}\setup.exe -runfromtemp -l0x0409
Banner Effect Trial-->"C:\Program Files (x86)\Banner Effect Trial\unins000.exe"
bl-->MsiExec.exe /I{2A075BB4-E976-4278-BF3F-E5C6945D84C0}
Broadcom Card Reader Driver Installer-->MsiExec.exe /I{4710662C-8204-4334-A977-B1AC9E547819}
Broadcom NetLink Controller-->MsiExec.exe /X{C91DCB72-F5BB-410D-A91A-314F5D1B4284}
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
clear.fi Client-->"C:\Program Files (x86)\InstallShield Installation Information\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}\setup.exe" -runfromtemp -l0x0005 -removeonly
clear.fi-->"C:\Program Files (x86)\InstallShield Installation Information\{14C4C3B6-F1F4-401F-8C86-03E8E19AAC8C}\Setup.exe" /z-uninstall
clear.fi-->"C:\Program Files (x86)\InstallShield Installation Information\{2637C347-9DAD-11D6-9EA2-00055D0CA761}\Setup.exe" /z-uninstall
clear.fi-->"C:\Program Files (x86)\InstallShield Installation Information\{2637C347-9DAD-11D6-9EA2-00055D0CA761}\Setup.exe" /z-uninstall
clear.fi-->"C:\Program Files (x86)\InstallShield Installation Information\{B906C11A-D193-4143-9FA7-E2EE8A5A8F21}\Setup.exe" /z-uninstall
D3DX10-->MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF}
Definition Update for Microsoft Office 2010 (KB2910899) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{C8358E8D-6C89-41B3-8439-FEFBC0353D81}" "1029" "0"
Dolby Advanced Audio v2-->MsiExec.exe /X{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}
Driver Booster 2.1-->"C:\Program Files (x86)\IObit\Driver Booster\unins000.exe"
Entity Framework Designer for Visual Studio 2012 - enu-->MsiExec.exe /X{32136776-FE3F-453D-80DA-CDD993BDB2A3}
ETDWare PS/2-X64 8.0.6.0_WHQL-->%ProgramFiles%\Elantech\ETDUn_inst.exe
FormatFactory 3.2.1.0-->C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
Fotogaléria-->MsiExec.exe /X{9093B0D5-EA59-4C9E-A2E3-CC130138DFCD}
Fotogalerie-->MsiExec.exe /X{3CBD94C1-BA15-488C-888B-D8DD296CC6DC}
Fotogalerie-->MsiExec.exe /X{A1FBD2B3-6768-472D-BA46-C00EACBCE16C}
Fotogalerija-->MsiExec.exe /X{1F0C818D-4A41-4E40-BAFB-BB940C82A518}
Fotogalleri-->MsiExec.exe /X{E354D495-5DA4-4CCF-AB39-080F6A4141BE}
Fotogalleriet-->MsiExec.exe /X{9F470E17-4FC3-4091-A508-D5347A16A2B9}
Fotoğraf Galerisi-->MsiExec.exe /X{DB7B6508-2AAB-4F26-99D4-74559A2F5E42}
Fotótár-->MsiExec.exe /X{E50E3DBC-46AA-4827-B2A6-F995D81DF526}
Galería de fotos-->MsiExec.exe /X{8F7FECEC-088F-431D-A5FB-2B59E1E69943}
Galeria fotogràfica-->MsiExec.exe /X{BC50DD4C-2A32-4863-B454-ECEA4EDC594D}
Galeria fotografii-->MsiExec.exe /X{7595CAD2-87D0-4D01-AC02-3FDD3A891BB8}
Galerie de photos-->MsiExec.exe /X{446CC8CE-0E90-44F7-ADD0-774B243EF090}
Galerie foto-->MsiExec.exe /X{C2F1EBBF-9AC4-4E0B-A7F4-74C9C7AD4813}
Galerija fotografija-->MsiExec.exe /X{C5B383EB-B85B-481C-9946-34FBF021678B}
Google AdWords Editor-->MsiExec.exe /X{6145B982-ACC5-46A3-9166-9ADADE6D17E2}
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Identity Card-->C:\Program Files (x86)\Acer\Identity Card\Uninstall.exe
Intel(R) Management Engine Components-->C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\Uninstall\setup.exe -uninstall
Intel(R) Rapid Storage Technology-->C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\Uninstall\setup.exe -uninstall
Intel® Trusted Connect Service Client-->MsiExec.exe /I{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}
IObit Malware Fighter 3 Beta-->"C:\Program Files (x86)\IObit\IObit Malware Fighter\unins001.exe"
IObit Uninstaller-->"C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallDisplay.exe" uninstall_start
IPTInstaller-->MsiExec.exe /I{08208143-777D-4A06-BB54-71BF0AD1BB70}
Java 7 Update 51-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83217051F0}
Java 7 Update 72 (64-bit)-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F06417072FF}
Java 7 Update 72-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F03217072FF}
Junk Mail filter update-->MsiExec.exe /I{400C31E4-796F-4E86-8FDC-C3C4FACC6847}
K-Lite Codec Pack 10.9.0 Full-->"C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe"
KONICA MINOLTA PagePro 1350W-->MUNT64_Q.EXE /PRN:"KONICA MINOLTA PagePro 1350W"
Launch Manager-->C:\WINDOWS\UNINSTLMv4.EXE LMv4.UNI
Microsoft .NET Framework 4 Multi-Targeting Pack-->MsiExec.exe /I{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}
Microsoft .NET Framework 4.5 Multi-Targeting Pack-->MsiExec.exe /X{5CBFF3F3-2D40-34EE-BCA5-A95BC19E400D}
Microsoft .NET Framework 4.5 SDK-->MsiExec.exe /X{1948E039-EC79-4591-951D-9867A8C14C90}
Microsoft ASP.NET MVC 4 Runtime-->MsiExec.exe /X{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}
Microsoft Help Viewer 2.0-->msiexec.exe /X{FEB375AB-6EEC-3929-8FAF-188ED81DD8B5}
Microsoft NuGet - Visual Studio Express 2012 for Windows Desktop-->MsiExec.exe /I{49402ED1-A795-4435-A745-1B781BE621A6}
Microsoft Office 2010-->MsiExec.exe /X{95140000-0070-0000-0000-0000000FF1CE}
Microsoft Office Access MUI (Czech) 2010-->MsiExec.exe /X{90140000-0015-0405-0000-0000000FF1CE}
Microsoft Office Excel MUI (Czech) 2010-->MsiExec.exe /X{90140000-0016-0405-0000-0000000FF1CE}
Microsoft Office Groove MUI (Czech) 2010-->MsiExec.exe /X{90140000-00BA-0405-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (Czech) 2010-->MsiExec.exe /X{90140000-0044-0405-0000-0000000FF1CE}
Microsoft Office Office 64-bit Components 2010-->MsiExec.exe /X{90140000-002A-0000-1000-0000000FF1CE}
Microsoft Office OneNote MUI (Czech) 2010-->MsiExec.exe /X{90140000-00A1-0405-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Czech) 2010-->MsiExec.exe /X{90140000-001A-0405-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Czech) 2010-->MsiExec.exe /X{90140000-0018-0405-0000-0000000FF1CE}
Microsoft Office Professional Plus 2010-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe" /uninstall PROPLUSR /dll OSETUP.DLL
Microsoft Office Professional Plus 2010-->MsiExec.exe /X{91140000-0011-0000-0000-0000000FF1CE}
Microsoft Office Proof (Czech) 2010-->MsiExec.exe /X{90140000-001F-0405-0000-0000000FF1CE}
Microsoft Office Proof (English) 2010-->MsiExec.exe /X{90140000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2010-->MsiExec.exe /X{90140000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Slovak) 2010-->MsiExec.exe /X{90140000-001F-041B-0000-0000000FF1CE}
Microsoft Office Proofing (Czech) 2010-->MsiExec.exe /X{90140000-002C-0405-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Czech) 2010-->MsiExec.exe /X{90140000-0019-0405-0000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Czech) 2010-->MsiExec.exe /X{90140000-002A-0405-1000-0000000FF1CE}
Microsoft Office Shared MUI (Czech) 2010-->MsiExec.exe /X{90140000-006E-0405-0000-0000000FF1CE}
Microsoft Office Word MUI (Czech) 2010-->MsiExec.exe /X{90140000-001B-0405-0000-0000000FF1CE}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft SQL Server 2012 Data-Tier App Framework -->MsiExec.exe /I{36E619BC-A234-4EC3-849B-779A7C865A45}
Microsoft SQL Server 2012 Express LocalDB -->MsiExec.exe /I{13D558FE-A863-402C-B115-160007277033}
Microsoft SQL Server 2012 Management Objects (x64)-->MsiExec.exe /I{FA0A244E-F3C2-4589-B42A-3D522DE79A42}
Microsoft SQL Server 2012 Management Objects -->MsiExec.exe /I{DA1C1761-5F4F-4332-AB9D-29EDF3F8EA0A}
Microsoft SQL Server 2012 Native Client -->MsiExec.exe /I{49D665A2-4C2A-476E-9AB8-FCC425F526FC}
Microsoft SQL Server 2012 Transact-SQL Compiler Service -->MsiExec.exe /I{BEB0F91E-F2EA-48A1-B938-7857ABF2A93D}
Microsoft SQL Server 2012 Transact-SQL ScriptDom -->MsiExec.exe /I{0E8670B8-3965-4930-ADA6-570348B67153}
Microsoft SQL Server 2012 T-SQL Language Service -->MsiExec.exe /I{6D6D43E5-218C-4B05-92D3-2240810F4760}
Microsoft SQL Server Compact 4.0 SP1 x64 ENU-->MsiExec.exe /X{78909610-D229-459C-A936-25D92283D3FD}
Microsoft SQL Server Data Tools - enu (11.1.20828.01)-->MsiExec.exe /X{4F2B8233-35EE-4197-8C3B-EACCBF712029}
Microsoft System CLR Types for SQL Server 2012 (x64)-->MsiExec.exe /I{F1949145-EB64-4DE7-9D81-E6D27937146C}
Microsoft System CLR Types for SQL Server 2012-->MsiExec.exe /I{E2082604-4BA5-44BB-BBFB-AF0F3CB8C6AB}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17-->MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148-->MsiExec.exe /X{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 32bit Compilers - ENU Resources-->MsiExec.exe /X{0F3C9093-6C13-484D-8385-93AA21BEC025}
Microsoft Visual C++ 2012 Core Libraries-->MsiExec.exe /X{B362A397-B38A-3A23-A190-611F9C7EB4F9}
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727-->MsiExec.exe /X{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}
Microsoft Visual C++ 2012 x64 Debug Runtime - 11.0.50727-->MsiExec.exe /X{2B997E80-3BEC-3222-9114-98DBE1182B2E}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}
Microsoft Visual C++ 2012 x86 Debug Runtime - 11.0.50727-->MsiExec.exe /X{1C163D33-33B3-33EB-A617-0D4D852BE8E1}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727-->MsiExec.exe /X{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}
Microsoft Visual C++ 2012 x86-x64 Compilers-->MsiExec.exe /X{A1785BD4-3486-4E7E-8074-E3FC61B8F315}
Microsoft Visual J# 2.0 Redistributable Package-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft Visual J# 2.0 Redistributable Package\install.exe
Microsoft Visual Studio 2012 Express Prerequisites x64 - ENU-->MsiExec.exe /I{30B7A7A6-D519-3332-BEB3-D105EFC7389A}
Microsoft Visual Studio 2012 Preparation-->MsiExec.exe /I{09412B73-6159-40D6-B0B9-C11B30A7531E}
Microsoft Visual Studio 2012 Shell (Minimum) Interop Assemblies-->MsiExec.exe /I{820C677A-41B2-48C3-8136-FEE35A052E73}
Microsoft Visual Studio 2012 Shell (Minimum) Resources-->MsiExec.exe /I{38FC6E9A-F719-431A-A83D-4C86D5FD6555}
Microsoft Visual Studio 2012 Shell (Minimum)-->MsiExec.exe /I{800F484E-9D69-492D-B656-7BAA32586142}
Microsoft Visual Studio 2012 Tools for SQL Server Compact 4.0 SP1 ENU-->MsiExec.exe /I{E818AE7C-244B-4A50-9C86-C0E4A8B69159}
Microsoft Visual Studio Express 2012 for Windows Desktop - ENU-->MsiExec.exe /X{222C5507-AC43-388F-808E-2266EC57E043}
Microsoft Visual Studio Express 2012 for Windows Desktop-->MsiExec.exe /X{1BE2AFE6-209E-3862-AE45-DA9D3D21BD65}
Microsoft Visual Studio Team Foundation Server 2012 Object Model Language Pack - ENU-->MsiExec.exe /I{68A48EF1-DF03-394F-AF40-1E4FE42BB8DD}
Microsoft Visual Studio Team Foundation Server 2012 Object Model-->MsiExec.exe /I{6F07A6C2-9068-3673-A120-DC10012468C6}
Microsoft Visual Studio Team Foundation Server 2012 Team Explorer Language Pack - ENU-->MsiExec.exe /I{1B9BBB23-65CB-3AEE-BFC6-633E7CA299FD}
Microsoft Visual Studio Team Foundation Server 2012 Team Explorer-->MsiExec.exe /I{6DAB46E3-D017-3E2B-85D8-F57A230384C0}
Microsoft_VC80_CRT_x86-->MsiExec.exe /I{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
Microsoft_VC90_CRT_x86-->MsiExec.exe /I{08D2E121-7F6A-43EB-97FD-629B44903403}
Microsoft_VC90_MFC_x86-->MsiExec.exe /I{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}
Microsoft_VC90_MFCLOC_x86-->MsiExec.exe /I{B6D38690-755E-4F40-A35A-23F8BC2B86AC}
Movie Maker-->MsiExec.exe /X{000AD938-EEBB-46F5-BD33-23CB34A57C54}
Movie Maker-->MsiExec.exe /X{03CC9D58-B132-4CC0-A521-4F3660AA43C7}
Movie Maker-->MsiExec.exe /X{058EDEC8-1873-4B49-9A08-54ADE9CC129B}
Movie Maker-->MsiExec.exe /X{13F3CEA5-9E2C-4C4E-9F0F-D0DB389CF4A9}
Movie Maker-->MsiExec.exe /X{2A078A2B-E2C8-43A3-862C-DC57090AB7C2}
Movie Maker-->MsiExec.exe /X{2AC4C6D7-512D-4B78-A85B-2C16E748AB8E}
Movie Maker-->MsiExec.exe /X{306C7AEF-16C7-428D-93AA-99D4A4090243}
Movie Maker-->MsiExec.exe /X{36BEC461-B58A-414D-993E-E2BDD1F1A14B}
Movie Maker-->MsiExec.exe /X{46A648D2-C097-41A3-A517-E709F045B6CD}
Movie Maker-->MsiExec.exe /X{525E7EA7-481F-499D-A7F7-4682AC46A454}
Movie Maker-->MsiExec.exe /X{5BABDA39-61CF-41EE-992D-4054B6649A9B}
Movie Maker-->MsiExec.exe /X{62BBCDDC-4979-4E59-9D97-5B8E874C3191}
Movie Maker-->MsiExec.exe /X{701FE1BC-834A-4857-AF62-6EBA50CFBC78}
Movie Maker-->MsiExec.exe /X{719E4DA1-A17B-4B46-9D5D-925D4FBE4D69}
Movie Maker-->MsiExec.exe /X{751EB657-3F22-4150-8CE4-D79A262F1D92}
Movie Maker-->MsiExec.exe /X{7B5AB3AE-AAF7-4E9C-86A0-356C66A04BF9}
Movie Maker-->MsiExec.exe /X{7E63F102-A9E9-4F4C-8004-BC62974736BF}
Movie Maker-->MsiExec.exe /X{8176B9CA-F037-49C0-BD77-661B1DDCA6F3}
Movie Maker-->MsiExec.exe /X{9EDF46F0-2D4E-4C00-B2B6-0660666E9F60}
Movie Maker-->MsiExec.exe /X{A035950F-15BA-41C0-9D8F-165FC0536012}
Movie Maker-->MsiExec.exe /X{A17946CA-18E5-4CF0-8D55-A56D804718F8}
Movie Maker-->MsiExec.exe /X{A47EA9D4-BB87-415E-9239-28860434E5A0}
Movie Maker-->MsiExec.exe /X{AE8044B5-FCA3-4EBE-AC78-0FB3A6E8DC76}
Movie Maker-->MsiExec.exe /X{BAD4B8FA-4BDA-4A59-BE64-9741031680C7}
Movie Maker-->MsiExec.exe /X{BFA6D5AD-25EA-475F-AD80-ECD408C674AB}
Movie Maker-->MsiExec.exe /X{C32D87E1-6310-4CD5-8D6D-865AFE0E9B4E}
Movie Maker-->MsiExec.exe /X{D592A061-3069-4696-B180-ED0B11C98241}
Movie Maker-->MsiExec.exe /X{E0B5FDF0-6940-44B2-8204-CFA746A6B4AF}
Movie Maker-->MsiExec.exe /X{ED6C77F9-4D7E-447C-9EC0-9A212D075535}
Mozilla Firefox 35.0.1 (x86 cs)-->"C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe"
Mozilla Maintenance Service-->"C:\Program Files (x86)\Mozilla Maintenance Service\uninstall.exe"
MSVCRT_amd64-->MsiExec.exe /I{D0B44725-3666-492D-BEF6-587A14BD9BD9}
MSVCRT-->MsiExec.exe /I{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
MSVCRT110_amd64-->MsiExec.exe /I{E9FA781F-3E80-4399-825A-AD3E11C28C77}
MSVCRT110-->MsiExec.exe /I{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
MyWinLocker 4-->MsiExec.exe /X{39F15B50-A977-4CA6-B1C3-6A8724CDA025}
MyWinLocker Suite-->"C:\Program Files (x86)\InstallShield Installation Information\{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}\setup.exe" -runfromtemp -l0x0405 -removeonly
MyWinLocker Suite-->MsiExec.exe /X{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}
MyWinLocker-->MsiExec.exe /I{0B78ECB0-1A6B-4E6D-89D7-0E7CE77F0427}
NTI Media Maker 9-->C:\Program Files (x86)\InstallShield Installation Information\{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}\setup.exe -runfromtemp -l0x0409
NVIDIA GeForce Experience 2.1.5-->"C:\WINDOWS\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.GFExperience
NVIDIA PhysX-->MsiExec.exe /I{B455E95A-B804-439F-B533-336B1635AE97}
OpenOffice.org 3.4.1-->MsiExec.exe /I{1E0AF527-0B8E-4F8A-BA27-CB3C359998C6}
PDF Settings CS6-->MsiExec.exe /I{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}
ph-->MsiExec.exe /I{185F9795-9663-4F13-9EF9-307A282ADB5A}
Photo Common-->MsiExec.exe /X{048C8498-C20B-4AF7-9978-7A79E567D74C}
Photo Common-->MsiExec.exe /X{061FF8F3-5226-4278-8AAB-282C1B024F58}
Photo Common-->MsiExec.exe /X{0BFF2188-2D8E-4BE2-95D0-B3CCD4C6A0C9}
Photo Common-->MsiExec.exe /X{0DF95460-2887-4011-9344-1959CDF18ADC}
Photo Common-->MsiExec.exe /X{187A0FCA-2FE2-4827-83CA-D4887E965047}
Photo Common-->MsiExec.exe /X{4AF53C99-315D-4536-873F-029D2D274AE2}
Photo Common-->MsiExec.exe /X{5078CEC3-A56F-4080-8CD4-ED7BCBE5686B}
Photo Common-->MsiExec.exe /X{69D48C91-CCC2-4305-89DE-D1F8122EDBF4}
Photo Common-->MsiExec.exe /X{6B8F13E2-F02B-445C-9A31-3C0E5D547CBA}
Photo Common-->MsiExec.exe /X{743FD554-A73F-4FE8-BE7B-C283D16297F9}
Photo Common-->MsiExec.exe /X{8063EB67-E777-4A56-9C1E-FAD75C2F5EC2}
Photo Common-->MsiExec.exe /X{8DA8A340-E915-45E9-B91C-DEEBA3824A26}
Photo Common-->MsiExec.exe /X{8E6AB06E-FE46-433B-85D5-BC27ABE06570}
Photo Common-->MsiExec.exe /X{989889A7-D13D-4DA4-B059-B250784DFABC}
Photo Common-->MsiExec.exe /X{A132CE8A-79EA-4BB5-9A24-4348B4DDD48A}
Photo Common-->MsiExec.exe /X{AA82E5EF-70C2-41CB-8432-309078304CBB}
Photo Common-->MsiExec.exe /X{C67BC332-A59A-4D40-977F-664F60AB21D8}
Photo Common-->MsiExec.exe /X{C7929038-EDFB-416D-A2C9-CC65416DA0DF}
Photo Common-->MsiExec.exe /X{C8BBA220-8549-462A-B411-1AF44DE098B5}
Photo Common-->MsiExec.exe /X{D1F5A388-09C9-4998-A793-B15DCDEB3B42}
Photo Common-->MsiExec.exe /X{D5082B89-2E86-447E-A02C-922534592FA8}
Photo Common-->MsiExec.exe /X{D824AFCC-3408-4FB2-A6C9-28C660700DD4}
Photo Common-->MsiExec.exe /X{D888F114-7537-4D48-AF03-5DA9C82D7540}
Photo Common-->MsiExec.exe /X{DF84859F-B6B1-44B1-953C-D88383B59D3E}
Photo Common-->MsiExec.exe /X{E1203F8C-FF34-4968-A4A5-B4F1F8533DAB}
Photo Common-->MsiExec.exe /X{EB91007A-0110-42A6-B869-2709955A9B2A}
Photo Common-->MsiExec.exe /X{EC33D375-5164-4374-9061-43F5C6073219}
Photo Gallery-->MsiExec.exe /X{30F99474-EBE3-4134-A02B-F6CD38CFE243}
Photo Gallery-->MsiExec.exe /X{E0E0FB88-D570-463E-A98E-733B7B656867}
Picasa 3-->"C:\Program Files (x86)\Google\Picasa3\Uninstall.exe"
Poczta usługi Windows Live-->MsiExec.exe /I{4E55905B-849D-4633-9267-3EC77E24221A}
Podstawowe programy Windows Live-->MsiExec.exe /I{A7E73DE5-E5FD-4923-9D88-E09ECD1F3545}
Pošta Windows Live-->MsiExec.exe /I{E6A3F960-E593-4DDE-B9F2-66885D973A26}
Prerequisites for SSDT -->MsiExec.exe /I{9169C939-ED01-446A-BD0C-29873BAF4E48}
ProFact 4.0-->"C:\Program Files (x86)\ProFact 4.0\unins000.exe"
Raccolta foto-->MsiExec.exe /X{D04EBB49-C985-4A38-8695-62000861293A}
Recuva-->"C:\Program Files\Recuva\uninst.exe"
Renesas Electronics USB 3.0 Host Controller Driver-->"C:\Program Files (x86)\InstallShield Installation Information\{5442DAB8-7177-49E1-8B22-09A049EA5996}\setup.exe" -runfromtemp -l0x0405 -removeonly
Renesas Electronics USB 3.0 Host Controller Driver-->MsiExec.exe /X{5442DAB8-7177-49E1-8B22-09A049EA5996}
Samsung Printer Live Update-->C:\Program Files (x86)\SamsungPrinterLiveUpdateInstaller\uninstall.exe
Security Update for Microsoft Excel 2010 (KB2910902) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{6A1E6C95-CDE5-4E8C-A712-79C0985DAFE6}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2553154) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{D0D69BA5-4BD9-439E-804F-07DC80CF5408}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2553284) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0405-0000-0000000FF1CE}" "{0665F3BA-FCE2-4CB1-ACDD-19544B0E4C14}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2687423) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{4D6FE7B6-559F-4DAC-92CF-A01C24046AEB}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2760781) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0405-0000-0000000FF1CE}" "{A5B39813-17B0-4481-B19E-9C57C0BF1EE0}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2810073) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{1EE5FA17-F624-438C-B7AC-7C5A41E90FA2}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2850016) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{7AC3F78E-ECA0-45F4-A9CC-3E885DA23662}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2880971) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{5EE42B42-1159-435C-898A-2A3298453B20}" "1029" "0"
Security Update for Microsoft Office 2010 (KB2881071) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{0BC570F0-7352-4A3A-B2A2-CA56ADA7375F}" "1029" "0"
Security Update for Microsoft Word 2010 (KB2899519) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{3D0C726C-AA67-4078-9046-24F95B738B6A}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0015-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0016-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0018-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0019-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001B-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0405-0000-0000000FF1CE}" "{A71E3AD4-5545-4D59-9F11-75F363563C6A}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0407-0000-0000000FF1CE}" "{8925227F-C7B5-4C95-AB58-4FCF2433DAEE}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0409-0000-0000000FF1CE}" "{09A9DF49-DA06-4093-A2FD-F339211E39EA}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-041B-0000-0000000FF1CE}" "{0C337AF5-E6A7-4B6B-8F8E-08F9C6F956B4}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{E4D76E88-C65F-4003-9C71-EC4306679D17}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0405-1000-0000000FF1CE}" "{7F5CE17A-23B9-4EED-B017-A7EF4547476C}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002C-0405-0000-0000000FF1CE}" "{EA82267F-4AAB-46BA-AD6A-9EBB544D0EF7}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0044-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0405-0000-0000000FF1CE}" "{2C911571-C8B6-400B-B323-417C1806E866}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00A1-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00BA-0405-0000-0000000FF1CE}" "{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}" "1029" "0"
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}" "1029" "0"
SGP Baltie 3.0.71.76-->"C:\Program Files (x86)\SGP Systems\SGP Baltie 3\unins000.exe"
SGP Baltík 3-->"C:\Program Files (x86)\SGP Systems\unins000.exe"
Shredder-->MsiExec.exe /I{C2695E83-CF1D-43D1-84FE-B3BEC561012A}
Skype™ 7.0-->MsiExec.exe /X{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
Smart Defrag 4-->"C:\Program Files (x86)\IObit\Smart Defrag 4\unins000.exe"
Spyware Terminator 2012-->"C:\Program Files (x86)\Spyware Terminator\unins000.exe"
StartW8 1.2.111.0-->MsiExec.exe /I{2FA895E0-C8CF-4216-90AB-C2E21A62BCB1}
Surfing Protection-->"C:\Program Files (x86)\IObit\Surfing Protection\unins000.exe"
swMSM-->MsiExec.exe /I{612C34C7-5E90-47D8-9B5C-0F717DD82726}
System Requirements Lab for Intel-->MsiExec.exe /I{04C4B49D-45D9-4A28-9ED1-B45CBD99B8C7}
Total Commander 64-bit (Remove or Repair)-->c:\totalcmd\tcunin64.exe
Update for (KB2504637)-->C:\WINDOWS\SysWOW64\msiexec.exe /package {CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE} /uninstall {815F0BC1-7E54-300C-9ACA-C9460FDF6F78} /qb+ REBOOTPROMPT=""
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}" "1029" "0"
Update for Microsoft en-us Dictionary-->MsiExec.exe /X{FB623CD6-A0BF-4613-A518-84EAF9A898F3}
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0016-0405-0000-0000000FF1CE}" "{24C87C37-90DB-4DEB-AE8B-7F533CF0D7D9}" "1029" "0"
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0018-0405-0000-0000000FF1CE}" "{24C87C37-90DB-4DEB-AE8B-7F533CF0D7D9}" "1029" "0"
Update for Microsoft Excel 2010 (KB2589348) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001B-0405-0000-0000000FF1CE}" "{24C87C37-90DB-4DEB-AE8B-7F533CF0D7D9}" "1029" "0"
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{302A8FE3-EBF5-486C-A431-16A1CD914443}" "1029" "0"
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{302A8FE3-EBF5-486C-A431-16A1CD914443}" "1029" "0"
Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}" "1029" "0"
Update for Microsoft InfoPath 2010 (KB2817396) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{39767ECA-1731-45DB-AB5B-6BF40E151D66}" "1029" "0"
Update for Microsoft Office 2010 (KB2553140) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0405-0000-0000000FF1CE}" "{8BEEA2FC-D416-428A-B52A-A3ED45921151}" "1029" "0"
Update for Microsoft Office 2010 (KB2553140) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{8BEEA2FC-D416-428A-B52A-A3ED45921151}" "1029" "0"
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}" "1029" "0"
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}" "1029" "0"
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}" "1029" "0"
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{287A1E92-9E41-4BC1-8920-B3D0E9220800}" "1029" "0"
Update for Microsoft Office 2010 (KB2589386) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{A4F91D60-654C-4892-BFD3-0D41ADA649B6}" "1029" "0"
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{9D69691D-823D-4C3E-9B12-563A3F520366}" "1029" "0"
Update for Microsoft Office 2010 (KB2597089) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-006E-0405-0000-0000000FF1CE}" "{B0D1579E-E814-4779-A1EE-CFF95D68E265}" "1029" "0"
Update for Microsoft Office 2010 (KB2687275) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{0B7744D2-1FDD-4843-9987-7CE11B79F370}" "1029" "0"
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{35698CB7-AAA2-4577-B505-DBFF504AEF23}" "1029" "0"
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{5AA578BB-759C-40FD-9661-A737C0884541}" "1029" "0"
Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}" "1029" "0"
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{BA610006-2C39-4419-9834-CF61AB24810A}" "1029" "0"
Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{334FB202-28D7-4BA4-8BC9-4FE4AB233EA0}" "1029" "0"
Update for Microsoft Office 2010 (KB2837602) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{8158D96B-083A-4FE4-8587-B5D0F49FE4B8}" "1029" "0"
Update for Microsoft Office 2010 (KB2837602) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{8158D96B-083A-4FE4-8587-B5D0F49FE4B8}" "1029" "0"
Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{B0D672F7-883E-4279-8E75-D97A5445AB46}" "1029" "0"
Update for Microsoft Office 2010 (KB2883019) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{D1C4AD0B-CC79-41D2-8D6A-571E7B30658C}" "1029" "0"
Update for Microsoft Office 2010 (KB2889818) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{CFB80344-FCBA-4C03-AD77-D49E82F14C3E}" "1029" "0"
Update for Microsoft Office 2010 (KB2889828) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0407-0000-0000000FF1CE}" "{60C9499F-B532-4206-AB19-F88C3A7684D5}" "1029" "0"
Update for Microsoft Office 2010 (KB2910896) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001F-0409-0000-0000000FF1CE}" "{E762A933-274B-4860-B066-A39FAB0838FD}" "1029" "0"
Update for Microsoft OneNote 2010 (KB2597088) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{A87EDEA3-4861-4D99-9B36-F442740F1287}" "1029" "0"
Update for Microsoft OneNote 2010 (KB2597088) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-00A1-0405-0000-0000000FF1CE}" "{A6CAC541-0269-4BCB-B759-31D7FBB02227}" "1029" "0"
Update for Microsoft OneNote 2010 (KB2597088) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{A87EDEA3-4861-4D99-9B36-F442740F1287}" "1029" "0"
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-001A-0405-0000-0000000FF1CE}" "{D02AE7ED-5B00-4251-B7D5-F9590899EEEA}" "1029" "0"
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{2AB483F1-C86E-427A-83B4-23889B03512D}" "1029" "0"
Update for Microsoft PowerPoint 2010 (KB2880517) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-0018-0405-0000-0000000FF1CE}" "{EFF9CBEC-AC1C-4F64-BF8B-FAF088911BAF}" "1029" "0"
Update for Microsoft PowerPoint 2010 (KB2880517) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{6C727BC2-B2B9-4B03-BD7E-682EA6FA1C04}" "1029" "0"
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{90140000-002A-0000-1000-0000000FF1CE}" "{F9F5A080-AF38-4966-9A6B-C43DCA465035}" "1029" "0"
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{F9F5A080-AF38-4966-9A6B-C43DCA465035}" "1029" "0"
Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{7B29D8B8-6A87-496C-A65E-B935E740448A}" "1029" "0"
Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Oarpmany.exe" /removereleaseinpatch "{91140000-0011-0000-0000-0000000FF1CE}" "{38CF30E4-3348-4BD1-A859-B630C355A56F}" "1029" "0"
Valokuvavalikoima-->MsiExec.exe /X{C32F4F5A-C9FB-427C-9F6F-9DB157611FFF}
VLC media player-->C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe
VLC media player-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Welcome Center-->C:\Program Files (x86)\Acer\Welcome Center\Uninstall.exe
Windows Live Communications Platform-->MsiExec.exe /I{0454BB9A-2A7A-4214-BDFF-937F7A711A44}
Windows Live Essentials-->C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{1FEE19BC-6F0C-42E4-82FF-FB597F6141DF}
Windows Live Essentials-->MsiExec.exe /I{262E7632-72F9-4CBE-9461-937F24106EF2}
Windows Live Essentials-->MsiExec.exe /I{476C5E21-9418-4A76-80A3-0C6A470AC637}
Windows Live Essentials-->MsiExec.exe /I{49F068F2-4323-417B-AFC8-1E43F479D46C}
Windows Live Essentials-->MsiExec.exe /I{690F5BA3-5DEB-42CD-962B-F687EE59FAA7}
Windows Live Essentials-->MsiExec.exe /I{715F9B21-2817-402A-9BF0-BDA764D21F09}
Windows Live Essentials-->MsiExec.exe /I{797DC296-ADC5-4A08-8CBC-AEB0D6F4B249}
Windows Live Essentials-->MsiExec.exe /I{80382254-4568-4E7E-BB9A-376846800E8F}
Windows Live Essentials-->MsiExec.exe /I{81CF4226-47C1-418C-8718-1B3ED2C37878}
Windows Live Essentials-->MsiExec.exe /I{857BC375-BCFB-474E-9BD9-7EBB18EC55E0}
Windows Live Essentials-->MsiExec.exe /I{9B4D3AFE-8679-4704-AA4C-BAB0E41870EF}
Windows Live Essentials-->MsiExec.exe /I{9C60D080-84E7-43A5-8ECA-28253D253BD7}
Windows Live Essentials-->MsiExec.exe /I{A37F2060-813A-4325-9456-272B10EE75EF}
Windows Live Essentials-->MsiExec.exe /I{B096A0E4-26A1-4E9F-8548-577964B9434B}
Windows Live Essentials-->MsiExec.exe /I{B7F31B9C-8775-4500-8E9D-6ABE9AE17CF4}
Windows Live Essentials-->MsiExec.exe /I{BEA0C361-4CEF-4132-AA16-86E95AE9293E}
Windows Live Essentials-->MsiExec.exe /I{C034A6F9-6569-491B-B3BF-F5D15221A708}
Windows Live Essentials-->MsiExec.exe /I{C4D82144-B2D5-4A0E-A470-16F13EBC5BCB}
Windows Live Essentials-->MsiExec.exe /I{D1952E4A-9F67-4693-A06D-DA8E0FB2B00D}
Windows Live Essentials-->MsiExec.exe /I{D9D4D271-609F-440D-A9EC-A66B0815CFE2}
Windows Live Essentials-->MsiExec.exe /I{DCA5D0DE-F6AC-4E24-A924-03561D26BE97}
Windows Live Essentials-->MsiExec.exe /I{E9031A69-043D-4C8B-B7D9-043713F05717}
Windows Live Fotogalleri-->MsiExec.exe /X{5C2F5C1B-9732-4F81-8FBF-6711627DC508}
Windows Live ID Sign-in Assistant-->MsiExec.exe /I{1B8ABA62-74F0-47ED-B18C-A43128E591B8}
Windows Live Installer-->MsiExec.exe /I{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}
Windows Live Mail-->MsiExec.exe /I{00476F3E-3C4D-4E02-B8BB-125350157EB9}
Windows Live Mail-->MsiExec.exe /I{03426ED9-9D9C-4F71-B293-BBE6493367A2}
Windows Live Mail-->MsiExec.exe /I{0AD576A7-EDCE-469E-ADD7-1AC9DB200C6B}
Windows Live Mail-->MsiExec.exe /I{15F3A6F5-06AE-4332-AE3E-21CD0416827A}
Windows Live Mail-->MsiExec.exe /I{207E9B4C-48A9-47CE-BBC8-ACF0B2006351}
Windows Live Mail-->MsiExec.exe /I{50849B2C-097E-47A5-A076-6F11A939E093}
Windows Live Mail-->MsiExec.exe /I{51EF51B6-0D9F-4977-8F9D-A1E15017D2B7}
Windows Live Mail-->MsiExec.exe /I{5B441979-C897-4B5B-907D-649B866F8104}
Windows Live Mail-->MsiExec.exe /I{68BA8FC3-9784-4EDB-9344-9F25A419E6ED}
Windows Live Mail-->MsiExec.exe /I{69FCA957-224F-4623-8BE0-6295CFB2C3E4}
Windows Live Mail-->MsiExec.exe /I{6DA675F3-B549-4BDE-90FA-BEF8C3B87F00}
Windows Live Mail-->MsiExec.exe /I{70854FE6-3BF1-4C69-94D0-BEB821102E34}
Windows Live Mail-->MsiExec.exe /I{87425773-10F4-4858-8CBF-465093FA43DE}
Windows Live Mail-->MsiExec.exe /I{8E241C05-52BF-4862-AD1F-AAE465C0075B}
Windows Live Mail-->MsiExec.exe /I{924B4D82-1B97-48EB-8F1E-55C4353C22DB}
Windows Live Mail-->MsiExec.exe /I{9341E0BE-ADA3-4590-BB51-5D916D8FAE65}
Windows Live Mail-->MsiExec.exe /I{96914829-DF65-40AE-8A31-6F3E96BAEBBD}
Windows Live Mail-->MsiExec.exe /I{9939B8FF-7D2D-4258-B5B9-B6BA8DD59905}
Windows Live Mail-->MsiExec.exe /I{ABAF6F07-0D84-4700-948E-EC5042B9D978}
Windows Live Mail-->MsiExec.exe /I{B328282C-DCE9-49B7-8B98-C08D9AA28C46}
Windows Live Mail-->MsiExec.exe /I{B80D3EA9-A252-4AE5-AC51-81729F5C586F}
Windows Live Mail-->MsiExec.exe /I{D201E6C1-1A5C-4816-B2C1-89CB6E6C7B3B}
Windows Live Mail-->MsiExec.exe /I{DAD85607-2C8E-43D5-B068-4B218F1A7DB8}
Windows Live Mail-->MsiExec.exe /I{DDFF51C0-A729-49E2-B777-8432C0F74FD9}
Windows Live Mail-->MsiExec.exe /I{E570053D-8ABC-4938-9E23-C634E08E7490}
Windows Live Messenger-->MsiExec.exe /X{0125DB4D-98A0-4DBF-B68A-23BF08FFA6A3}
Windows Live Messenger-->MsiExec.exe /X{03E2EED4-368D-49EA-B1AC-8B615E37E16D}
Windows Live Messenger-->MsiExec.exe /X{0C5F1F2A-319F-4117-AA9B-69214C27D2F1}
Windows Live Messenger-->MsiExec.exe /X{0E3A4650-A873-4D53-A9DE-E84D57F6A085}
Windows Live Messenger-->MsiExec.exe /X{184A0D4F-4BCF-40EF-A73C-F0313FDB5CCD}
Windows Live Messenger-->MsiExec.exe /X{19AFD9A4-B584-41C8-91EA-38EB2FC1BD50}
Windows Live Messenger-->MsiExec.exe /X{1EA7C505-E6DA-4B85-9432-EBD3C70D510D}
Windows Live Messenger-->MsiExec.exe /X{31846283-C955-4CE1-9297-8670BD0C9A7E}
Windows Live Messenger-->MsiExec.exe /X{373EF285-A2DC-44EB-8D79-18918F33CB3A}
Windows Live Messenger-->MsiExec.exe /X{37FDD121-C443-4FD3-A213-2449B397C068}
Windows Live Messenger-->MsiExec.exe /X{43CCAC37-4E31-495F-9077-471E4E92DCEA}
Windows Live Messenger-->MsiExec.exe /X{62CC9AF4-EDD9-43C8-9856-FFD60362CFA9}
Windows Live Messenger-->MsiExec.exe /X{66DB6D91-BF91-480B-933D-7CB8B1E64D74}
Windows Live Messenger-->MsiExec.exe /X{8146445E-B14D-4CBA-AB9A-728CF166DAC9}
Windows Live Messenger-->MsiExec.exe /X{83C9377F-5ED1-4AD8-B113-7C876AEAF3AB}
Windows Live Messenger-->MsiExec.exe /X{8AAEB5A5-A397-46B6-8AF3-B6DC790C4E48}
Windows Live Messenger-->MsiExec.exe /X{A412D7BD-FD86-461D-B385-CD8062F34131}
Windows Live Messenger-->MsiExec.exe /X{AE364ACC-B9DF-466B-B4EA-AEECD0CD581E}
Windows Live Messenger-->MsiExec.exe /X{B27EDD14-869E-4A44-905A-5DE652F7278F}
Windows Live Messenger-->MsiExec.exe /X{B306F739-A414-4698-BFAD-0AB23F73D14F}
Windows Live Messenger-->MsiExec.exe /X{B625668D-34AA-462D-AA32-44BFA70F08E7}
Windows Live Messenger-->MsiExec.exe /X{B67B2671-2981-466B-BA14-25538AA871DC}
Windows Live Messenger-->MsiExec.exe /X{BE5650DD-D298-421B-B7A7-3A18DC55565B}
Windows Live Messenger-->MsiExec.exe /X{CA5C4498-C7E7-4808-AB41-A2B534A476AF}
Windows Live Messenger-->MsiExec.exe /X{CE44687E-BC21-4B69-B0AE-6BDFD6B5C327}
Windows Live Messenger-->MsiExec.exe /X{D0F03C35-6196-4992-8621-6F390DFA9073}
Windows Live Messenger-->MsiExec.exe /X{DB169E8F-5332-4DBF-B085-84AA2C373304}
Windows Live Messenger-->MsiExec.exe /X{DFB0E1FE-B5DE-42D7-97A9-2A69FB530A73}
Windows Live Messenger-->MsiExec.exe /X{E22E95E7-0A26-4AEC-A907-390C568C5BC1}
Windows Live MIME IFilter-->MsiExec.exe /I{F6822EFD-3F7D-4B35-8845-757A26AEC8E2}
Windows Live Movie Maker-->MsiExec.exe /X{CD442136-9115-4236-9C14-278F6A9DCB3F}
Windows Live Photo Common-->MsiExec.exe /X{7ADFA72D-2A9F-4DEC-80A5-2FAA27E23F0F}
Windows Live Photo Common-->MsiExec.exe /X{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}
Windows Live PIMT Platform-->MsiExec.exe /I{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}
Windows Live SOXE Definitions-->MsiExec.exe /I{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}
Windows Live Temel Parçalar-->MsiExec.exe /I{5A30E103-9FA6-4A23-A107-E1F5F174BB62}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{0E1BB4B4-00FF-45B1-914B-AB8D8B9862B3}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{0F6A576E-C6E3-437E-B389-262EBC86B09A}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{18272881-CFC0-434D-A975-E5BE44206AA0}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{22C0182F-3588-41B7-A5C5-4D2FD8054C02}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{24DF33E0-F924-4D0D-9B96-11F28F0D602D}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{3C63F944-803E-49A7-B3A2-B8AB3313E883}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{3D4F3F4C-E364-4E46-BFB1-A00BF9777422}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{3FD0036E-236A-4EDD-894D-4374BEE64464}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{4AA2A466-8031-403A-8236-5301B4E391FB}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{537B16E0-A39F-47CB-9C1E-50978862B108}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{56232E3D-7EA9-45E0-A371-26CD80510AF7}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{5917D694-AFC3-46BF-8CAB-0DABAF9D6FCB}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{7E9A63B3-8572-4A4B-9F87-3C2A873BBC55}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{88809C3E-8C92-4454-AEB7-B26166E3D6CD}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{90993BD9-C7D9-4C2F-B56C-2F7AFEBD4CD0}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{99AA6730-54CD-4B9E-B05B-0A5196743923}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{A3D995FA-C9A0-4E7D-B430-3F7A6731B4D5}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{A96A855B-89F7-40D4-A57E-580DFD4235B3}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{ADE1F206-1365-4B14-9A24-4B1A7DD58BAC}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{B693A4C3-B708-4F25-978E-56CA2517914C}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{B727564C-47D3-473A-AC9E-F4BE7B1BD5D3}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{BA068968-594F-40BE-8EE8-99119123C991}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{C40D110E-0718-4E11-A69B-D4EC7BF2EB04}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{C9D08433-5FDD-43C6-8482-7AFA7D891D98}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{CE542E0D-E056-4426-9F98-084C13E18641}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{E18F981B-401C-4D90-BC57-D8903564D558}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{E7AE39C6-B669-433F-A351-CA132C611310}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{EA348D4B-FB4D-4449-8749-654CA51F56A6}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{F09DD76B-D3D3-4558-B5BC-F1EEA6E00162}
Windows Live UX Platform-->MsiExec.exe /I{4CCBD1F4-CEEC-452A-9CB8-46564B501315}
Windows Live Writer Resources-->MsiExec.exe /X{01ABAEC3-8F96-4D00-9672-E49AAFDC0685}
Windows Live Writer Resources-->MsiExec.exe /X{0618FAAA-E236-4F74-924F-837A5592E506}
Windows Live Writer Resources-->MsiExec.exe /X{0B783100-6F04-4E2F-B83D-0A9B4EEDE47A}
Windows Live Writer Resources-->MsiExec.exe /X{182D3167-FE80-4DF6-96C2-84AC0ABA20D8}
Windows Live Writer Resources-->MsiExec.exe /X{2177152C-83DD-4540-B2F0-970F7303B7BA}
Windows Live Writer Resources-->MsiExec.exe /X{23A3E560-069F-4CFC-8F6C-1B526EC735FC}
Windows Live Writer Resources-->MsiExec.exe /X{2E50E321-4747-4EB5-9ECB-BBC6C3AC0F31}
Windows Live Writer Resources-->MsiExec.exe /X{330BBA5F-4A63-4545-900F-8446F205BA52}
Windows Live Writer Resources-->MsiExec.exe /X{35CB7C2D-B421-46FC-89CF-3B630628876F}
Windows Live Writer Resources-->MsiExec.exe /X{3A9ECD64-DE00-4779-A89E-C878513B2B37}
Windows Live Writer Resources-->MsiExec.exe /X{6209125A-46C5-4099-96DC-72FD55B07C1C}
Windows Live Writer Resources-->MsiExec.exe /X{7211F448-F865-4D37-B905-24D84E6C3E5E}
Windows Live Writer Resources-->MsiExec.exe /X{7607440C-FDCA-4210-9CD9-13D8F0DDAD0C}
Windows Live Writer Resources-->MsiExec.exe /X{7E41F42B-7ED8-4E15-A492-B93B287C027F}
Windows Live Writer Resources-->MsiExec.exe /X{8030AE22-7FA0-4880-A538-8906EDBF49F4}
Windows Live Writer Resources-->MsiExec.exe /X{854A24E3-A0EF-472A-B1D6-A2E9D43D5D8B}
Windows Live Writer Resources-->MsiExec.exe /X{8913AC02-67B8-4B52-91B2-BBA7B9C265B5}
Windows Live Writer Resources-->MsiExec.exe /X{96361BC7-B7C8-4594-AD89-813C371F4246}
Windows Live Writer Resources-->MsiExec.exe /X{998A42A3-D307-41C5-AB28-4C66F8E06303}
Windows Live Writer Resources-->MsiExec.exe /X{A0E4C4A6-1CC7-4442-8CAE-2D825B7BC1C1}
Windows Live Writer Resources-->MsiExec.exe /X{A58FCEF4-3191-466C-8949-0FFFFFB7631D}
Windows Live Writer Resources-->MsiExec.exe /X{B77D2795-23C0-4DBD-B7B5-CFB542D1FA3F}
Windows Live Writer Resources-->MsiExec.exe /X{C3F20956-66D6-4834-9427-DABFDF123D70}
Windows Live Writer Resources-->MsiExec.exe /X{C4E8BC59-BD60-4B73-999B-758890DF4E62}
Windows Live Writer Resources-->MsiExec.exe /X{D4EA8070-20E0-4BAF-BC44-D166C292FEBE}
Windows Live Writer Resources-->MsiExec.exe /X{E800ADC4-F459-42F5-89A2-E754634B010A}
Windows Live Writer-->MsiExec.exe /X{01944037-D136-45EE-A007-403EAD929FC7}
Windows Live Writer-->MsiExec.exe /X{06EED60F-7FFC-43A7-936E-AA4A8BD948B4}
Windows Live Writer-->MsiExec.exe /X{0BC39E89-506A-4ADA-8924-27AEE2C97618}
Windows Live Writer-->MsiExec.exe /X{1026DF85-1C0F-4839-888E-EB9D5B73CF46}
Windows Live Writer-->MsiExec.exe /X{1A79A578-4277-48AF-98A6-F9E48CF1B6D8}
Windows Live Writer-->MsiExec.exe /X{254F7574-53A7-43D1-BC4D-B1E894AEE175}
Windows Live Writer-->MsiExec.exe /X{25CD4B12-8CC5-433E-B723-C9CB41FA8C5A}
Windows Live Writer-->MsiExec.exe /X{2B919309-7052-45A4-B1C8-5B4894E8648B}
Windows Live Writer-->MsiExec.exe /X{3C3DCD2B-6FC7-41BF-BB80-40A936E1A785}
Windows Live Writer-->MsiExec.exe /X{3C41298B-A3F5-40C8-8BE3-A9A3F0644B0A}
Windows Live Writer-->MsiExec.exe /X{42B6C7E0-0DAE-488D-8DAF-838898102F19}
Windows Live Writer-->MsiExec.exe /X{51449A7F-4820-4757-9236-87A3BE7B6F27}
Windows Live Writer-->MsiExec.exe /X{55268806-FC27-4CA2-9CCA-1269FD4831FE}
Windows Live Writer-->MsiExec.exe /X{70BF63A5-DE6A-417C-AB93-5E31D0DA994E}
Windows Live Writer-->MsiExec.exe /X{73669388-1011-4B57-A90F-8B0415093AB2}
Windows Live Writer-->MsiExec.exe /X{76D7098A-B27C-44E9-8DB5-E6EE1A1EB385}
Windows Live Writer-->MsiExec.exe /X{794D971F-7EC1-4F71-A51C-773074CAB8DA}
Windows Live Writer-->MsiExec.exe /X{79A1AF43-BD17-4A81-B38A-6D6535D3F377}
Windows Live Writer-->MsiExec.exe /X{7A83618D-879A-4258-8B5E-5AD8B5F3EDD0}
Windows Live Writer-->MsiExec.exe /X{8658C355-896C-465F-86C6-F4B344517E7D}
Windows Live Writer-->MsiExec.exe /X{86C40513-B5A4-476E-9EAB-EC118DCF4502}
Windows Live Writer-->MsiExec.exe /X{8E31695A-4694-4DC4-8BEF-F8F22520D38D}
Windows Live Writer-->MsiExec.exe /X{902C4E0E-89CE-43B9-BCC0-F3A91E987F99}
Windows Live Writer-->MsiExec.exe /X{97C79BEC-43F7-4BD8-A6A7-85C0257E488A}
Windows Live Writer-->MsiExec.exe /X{B20502AB-2A3F-48F9-AD09-9FB61689A6D4}
Windows Live Writer-->MsiExec.exe /X{C41A3B9E-A238-4E83-AD37-D1EDD1105F5A}
Windows Live Writer-->MsiExec.exe /X{C595F480-788A-4F8F-8277-1A91F32CA879}
Windows Live Writer-->MsiExec.exe /X{D16E0F0C-5D10-45CF-A585-CE3689B5A913}
Windows Live Writer-->MsiExec.exe /X{D2C146B1-948D-47EF-8387-5D1C6B980F7C}
Windows Live Writer-->MsiExec.exe /X{DF2B3089-8B7A-4CBC-87D0-8AD60CAED564}
Windows Live Writer-->MsiExec.exe /X{E0AEFDEF-9BC4-4D6F-BE11-B4BD7E3B8816}
Windows Live 程式集-->MsiExec.exe /I{EA2BE047-FF29-4336-BB70-6AF201085BAF}
Windows Live-->MsiExec.exe /I{8D813AFF-D91D-4EE0-821F-B901FC2E89FA}
Windows Liven peruspaketti-->MsiExec.exe /I{28B2947F-FC0B-4450-80E3-6DF698E824A6}
Windows Liven sähköposti-->MsiExec.exe /I{1D6F9A9A-DCF3-45A7-9B14-46DDA778313F}
Windows Software Development Kit DirectX x64 Remote-->MsiExec.exe /I{5FB4C443-6BD6-1514-2717-3827D65AE6FB}
Windows Software Development Kit DirectX x86 Remote-->MsiExec.exe /I{23176E97-26CB-C72A-19EB-BFB21AC1D15A}
Windows Software Development Kit for Windows Store Apps DirectX x64 Remote-->MsiExec.exe /I{27EF252D-800C-ED42-9904-459FE0046225}
Windows Software Development Kit for Windows Store Apps DirectX x86 Remote-->MsiExec.exe /I{42F61556-29ED-8122-F39E-6F04EA5FF279}
Windows Software Development Kit for Windows Store Apps-->MsiExec.exe /I{D11F66FF-82B3-DDB8-1146-525370552BE1}
Windows Software Development Kit-->MsiExec.exe /I{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}
Συλλογή φωτογραφιών-->MsiExec.exe /X{A19A8C25-272A-4CD6-8BA8-3772321A021B}
Почта Windows Live-->MsiExec.exe /I{5FE3BC4E-2BD5-4D6B-8BC4-640A42626AAD}
Фотоальбом-->MsiExec.exe /X{087D261B-73AE-4B8A-8F18-2EE80DD2ED8B}
Фотогалерия-->MsiExec.exe /X{32AA7594-09A9-437F-9541-5F760509B752}
Фотографии (общедоступная версия)-->MsiExec.exe /X{2B068A64-F867-44E9-8827-A795647C8730}
גלריית התמונות-->MsiExec.exe /X{E37CD6E8-BC51-4D48-9840-803EC3B418D3}
بريد Windows Live-->MsiExec.exe /I{5681FEA2-1CF8-461E-B611-55D2C50FC4EF}
معرض الصور-->MsiExec.exe /X{5006FD66-7E9B-4F92-BD36-275AD7712348}
影像中心-->MsiExec.exe /X{631C4E4F-6FDC-4CC0-A067-E9876A9BA7FD}

======Hosts File======

127.0.0.1 192.150.14.69
127.0.0.1 192.150.18.101
127.0.0.1 192.150.18.108
127.0.0.1 192.150.22.40
127.0.0.1 192.150.8.100
127.0.0.1 192.150.8.118
127.0.0.1 209-34-83-73.ood.opsource.net
127.0.0.1 3dns-1.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 3dns-2.adobe.com

======System event log======

Computer Name: Coolbox-PC
Event Code: 42
Message: Systém přechází do režimu spánku.

Důvod spánku: Aplikační rozhraní API
Record Number: 41182
Source Name: Microsoft-Windows-Kernel-Power
Time Written: 20140313135306.719785-000
Event Type: Informace
User:

Computer Name: Coolbox-PC
Event Code: 12
Message: Schéma zásad resetování procesu C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (ID procesu: 1468) od {381B4222-F694-41F0-9685-FF5BB260DF2E} do {381B4222-F694-41F0-9685-FF5BB260DF2E}
Record Number: 41181
Source Name: Microsoft-Windows-UserModePowerService
Time Written: 20140313135305.907101-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Coolbox-PC
Event Code: 12
Message: Schéma zásad resetování procesu C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (ID procesu: 1468) od {381B4222-F694-41F0-9685-FF5BB260DF2E} do {381B4222-F694-41F0-9685-FF5BB260DF2E}
Record Number: 41180
Source Name: Microsoft-Windows-UserModePowerService
Time Written: 20140313135252.695056-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Coolbox-PC
Event Code: 12
Message: Schéma zásad resetování procesu C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (ID procesu: 1468) od {381B4222-F694-41F0-9685-FF5BB260DF2E} do {381B4222-F694-41F0-9685-FF5BB260DF2E}
Record Number: 41179
Source Name: Microsoft-Windows-UserModePowerService
Time Written: 20140313134440.413702-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: Coolbox-PC
Event Code: 12
Message: Schéma zásad resetování procesu C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (ID procesu: 1468) od {381B4222-F694-41F0-9685-FF5BB260DF2E} do {381B4222-F694-41F0-9685-FF5BB260DF2E}
Record Number: 41178
Source Name: Microsoft-Windows-UserModePowerService
Time Written: 20140313133941.121971-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

=====Application event log=====

Computer Name: Coolbox-PC
Event Code: 105
Message: svchost (7016) Instance: Databázový stroj spustil novou instanci (0). (Čas=0 s)

Sekvence interního načasování: [1] 0.000, [2] 0.000, [3] 0.000, [4] 0.016, [5] 0.000, [6] 0.000, [7] 0.000, [8] 0.000, [9] 0.000, [10] 0.000.
Record Number: 62147
Source Name: ESENT
Time Written: 20140930111040.000000-000
Event Type: Informace
User:

Computer Name: Coolbox-PC
Event Code: 102
Message: svchost (7016) Instance: Databázový stroj (6.03.9600.0000) spouští novou instanci (0).
Record Number: 62146
Source Name: ESENT
Time Written: 20140930111040.000000-000
Event Type: Informace
User:

Computer Name: Coolbox-PC
Event Code: 903
Message: Služba Ochrana softwaru byla ukončena.

Record Number: 62145
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20140930111025.000000-000
Event Type: Informace
User:

Computer Name: Coolbox-PC
Event Code: 16384
Message: Restartování služby Ochrana softwaru bylo úspěšně naplánováno na 2114-09-06T11:10:25Z. Důvod: RulesEngine
Record Number: 62144
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20140930111025.000000-000
Event Type: Informace
User:

Computer Name: Coolbox-PC
Event Code: 1001
Message: Chybný blok -746254382, typ 5
Název události: WPNConnectionFailure
Reakce: Není k dispozici.
ID souboru CAB: 0

Podpis problému:
P1: Test Connect
P2: 880403fa
P3: WNP
P4: Unknown
P5: Unknown
P6: Unknown
P7: 2
P8: 75
P9:
P10:

Připojené soubory:
C:\Users\Coolbox\AppData\Local\Temp\wpn_15001471472628211130.evtx

Tyto soubory mohou být k dispozici zde:
C:\Users\Coolbox\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_Test Connect_9b26a8ef55c176b147526e63175e4b9df4c66e12_00000000_cab_0988e20e

Symbol analýzy:
Opětovné hledání řešení: 0
ID hlášení: 463b3d77-47d7-11e4-bfb1-b870f4b13fec
Stav hlášení: 0
Zakódovaný interval: ea4299296860cbcc626b4180a46aac0b
Record Number: 62143
Source Name: Windows Error Reporting
Time Written: 20140930111015.000000-000
Event Type: Informace
User:

=====Security event log=====

Computer Name: Coolbox-PC
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-3442833130-3731506892-1951788502-1001
Název účtu: coolbox
Doména účtu: Coolbox-PC
ID přihlášení: 0x3470D

Další informace:
Pracovní stanice volajícího: COOLBOX-PC
Název cílového účtu: Guest
Doména cílového účtu: Coolbox-PC
Record Number: 212332
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141127122520.442067-000
Event Type: Úspěšný audit
User:

Computer Name: Coolbox-PC
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-3442833130-3731506892-1951788502-1001
Název účtu: coolbox
Doména účtu: Coolbox-PC
ID přihlášení: 0x3470D

Další informace:
Pracovní stanice volajícího: COOLBOX-PC
Název cílového účtu: Administrator
Doména cílového účtu: Coolbox-PC
Record Number: 212331
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141127122520.442067-000
Event Type: Úspěšný audit
User:

Computer Name: Coolbox-PC
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-3442833130-3731506892-1951788502-1001
Název účtu: coolbox
Doména účtu: Coolbox-PC
ID přihlášení: 0x3470D

Další informace:
Pracovní stanice volajícího: COOLBOX-PC
Název cílového účtu: SimonAndrej
Doména cílového účtu: Coolbox-PC
Record Number: 212330
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141127122520.426441-000
Event Type: Úspěšný audit
User:

Computer Name: Coolbox-PC
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-3442833130-3731506892-1951788502-1001
Název účtu: coolbox
Doména účtu: Coolbox-PC
ID přihlášení: 0x3470D

Další informace:
Pracovní stanice volajícího: COOLBOX-PC
Název cílového účtu: HomeGroupUser$
Doména cílového účtu: Coolbox-PC
Record Number: 212329
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141127122520.426441-000
Event Type: Úspěšný audit
User:

Computer Name: Coolbox-PC
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-3442833130-3731506892-1951788502-1001
Název účtu: coolbox
Doména účtu: Coolbox-PC
ID přihlášení: 0x3470D

Další informace:
Pracovní stanice volajícího: COOLBOX-PC
Název cílového účtu: Guest
Doména cílového účtu: Coolbox-PC
Record Number: 212328
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141127122520.426441-000
Event Type: Úspěšný audit
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"NUMBER_OF_PROCESSORS"=4
"OS"=Windows_NT
"Path"=C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE;C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\WINDOWS LIVE;%SYSTEMROOT%\SYSTEM32;%SYSTEMROOT%;%SYSTEMROOT%\SYSTEM32\WBEM;%SYSTEMROOT%\SYSTEM32\WINDOWSPOWERSHELL\V1.0\;C:\PROGRAM FILES (X86)\WINDOWS LIVE\SHARED;C:\PROGRAM FILES (X86)\EGISTEC MYWINLOCKER\X64;C:\PROGRAM FILES (X86)\EGISTEC MYWINLOCKER\;;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64;C:\Program Files\Microsoft SQL Server\110\Tools\Binn\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
"PROCESSOR_LEVEL"=6
"PROCESSOR_REVISION"=2a07
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"windows_tracing_flags"=3
"windows_tracing_logfile"=C:\BVTBin\Tests\installpackage\csilogfile.log
"VS110COMNTOOLS"=C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\Tools\

-----------------EOF-----------------

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 07 úno 2015 01:58
od altrok
Zdravim :bye:

:arrow: Nedavejte logy do code/citaci... hure se to cte, dekuji.

:arrow: Upraveny hosts mate schvalne?

:arrow: Odinstalujte vsechno od IObitu nez to stihne napachat nanavratne skody.

:arrow: V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne Kose).

:arrow: Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/ (nebo http://www.bleepingcomputer.com/download/adwcleaner/ )
  • ukoncete vsechny programy
  • kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
  • kliknete na Scan, pote na Clean
  • po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner [Sx].txt), jehoz obsah mi zkopirujte do pristi odpovedi

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 07 úno 2015 17:04
od gabrin
Dle instrukci jsem provedl nejdříve před:
---------------


# AdwCleaner v4.110 - Logfile created 07/02/2015 at 16:56:52
# Updated 05/02/2015 by Xplode
# Database : 2015-02-05.2 [Server]
# Operating system : Windows 8.1 Pro (x64)
# Username : coolbox - COOLBOX-PC
# Running from : C:\Users\Coolbox\Downloads\adwcleaner_4.110.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\mystarttb.xml
File Found : C:\Users\Coolbox\daemonprocess.txt
Folder Found : C:\Program Files (x86)\Mobogenie
Folder Found : C:\Program Files (x86)\MyPC Backup
Folder Found : C:\Program Files (x86)\YouTube Accelerator
Folder Found : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Accelerator
Folder Found : C:\Users\Coolbox\AppData\Local\CrashRpt
Folder Found : C:\Users\Coolbox\AppData\Local\FileViewPro
Folder Found : C:\Users\Coolbox\AppData\Local\genienext
Folder Found : C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Folder Found : C:\Users\Coolbox\AppData\Local\Mobogenie
Folder Found : C:\Users\Coolbox\AppData\Local\PackageAware
Folder Found : C:\Users\Coolbox\AppData\Local\webplayer
Folder Found : C:\Users\Coolbox\AppData\LocalLow\Goobzo
Folder Found : C:\Users\Coolbox\AppData\Roaming\newnext.me
Folder Found : C:\Users\Coolbox\AppData\Roaming\OpenCandy
Folder Found : C:\Users\Coolbox\Documents\Mobogenie

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\BI
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\FLV Player
Key Found : HKCU\Software\Webplayer
Key Found : [x64] HKCU\Software\BI
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Found : [x64] HKCU\Software\Webplayer
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CCB24E92-62C4-4C53-95D2-65F9EED476BC}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EE171732-BEB4-4576-887D-CB62727F01CA}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [FLV Player]

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v35.0.1 (x86 cs)

[ba46fptn.default] - Line Found : user_pref("browser.search.hiddenOneOffs", "Google (avast),Seznam,DuckDuckGo,Heuréka,Mapy.cz,Search The Web,Slunečnice,Wikipedie (cs)");

-\\ Google Chrome v40.0.2214.111

*************************

AdwCleaner[R0].txt - [3669 bytes] - [07/02/2015 16:56:52]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [3728 bytes] ##########

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 07 úno 2015 17:12
od gabrin
... ted po:
-----------------------
# AdwCleaner v4.110 - Logfile created 07/02/2015 at 17:05:54
# Updated 05/02/2015 by Xplode
# Database : 2015-02-05.2 [Server]
# Operating system : Windows 8.1 Pro (x64)
# Username : coolbox - COOLBOX-PC
# Running from : C:\Users\Coolbox\Downloads\adwcleaner_4.110.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Accelerator
Folder Deleted : C:\Program Files (x86)\Mobogenie
Folder Deleted : C:\Program Files (x86)\MyPC Backup
Folder Deleted : C:\Program Files (x86)\YouTube Accelerator
Folder Deleted : C:\Users\Coolbox\AppData\Local\genienext
Folder Deleted : C:\Users\Coolbox\AppData\Local\Mobogenie
Folder Deleted : C:\Users\Coolbox\AppData\Local\PackageAware
Folder Deleted : C:\Users\Coolbox\AppData\Local\webplayer
Folder Deleted : C:\Users\Coolbox\AppData\Local\CrashRpt
Folder Deleted : C:\Users\Coolbox\AppData\Local\FileViewPro
Folder Deleted : C:\Users\Coolbox\AppData\LocalLow\Goobzo
Folder Deleted : C:\Users\Coolbox\AppData\Roaming\newnext.me
Folder Deleted : C:\Users\Coolbox\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\Coolbox\Documents\Mobogenie
Folder Deleted : C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
File Deleted : C:\Users\Coolbox\daemonprocess.txt
File Deleted : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\mystarttb.xml

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [FLV Player]
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CCB24E92-62C4-4C53-95D2-65F9EED476BC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Key Deleted : HKCU\Software\BI
Key Deleted : HKCU\Software\Webplayer
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\FLV Player
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EE171732-BEB4-4576-887D-CB62727F01CA}

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v35.0.1 (x86 cs)

[ba46fptn.default\prefs.js] - Line Deleted : user_pref("browser.search.hiddenOneOffs", "Google (avast),Seznam,DuckDuckGo,Heuréka,Mapy.cz,Search The Web,Slunečnice,Wikipedie (cs)");

-\\ Google Chrome v40.0.2214.111


*************************

AdwCleaner[R0].txt - [3827 bytes] - [07/02/2015 17:00:37]
AdwCleaner[S0].txt - [3524 bytes] - [07/02/2015 17:05:54]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3583 bytes] ##########

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 07 úno 2015 17:25
od altrok
:arrow: Upraveny hosts mate schvalne?

:arrow: Dejte log FRST.txt, prilozte i Addition.txt - http://forum.viry.cz/viewtopic.php?f=30&t=133101

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 07 úno 2015 21:46
od gabrin
dobrý den,
hosts byl upraven schválně...řešíme nový eshop, webmaster to tak nastavil...

je v tom problém?

co se týče
Dejte log FRST.txt, prilozte i Addition.txt - viewtopic.php?f=30&t=133101
tak i přes velkou snahu a dodržení postupi nelze program spustit... píše to, že to není na ploše.. i když tam je uložen
:-(

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 07 úno 2015 22:33
od altrok
gabrin píše:hosts byl upraven schválně...řešíme nový eshop, webmaster to tak nastavil...

je v tom problém?
Neni. Jen se ujistuju, ze o teto uprave vite.


gabrin píše:Dejte log FRST.txt, prilozte i Addition.txt - viewtopic.php?f=30&t=133101
tak i přes velkou snahu a dodržení postupi nelze program spustit... píše to, že to není na ploše.. i když tam je uložen
:-(
Spustte tedy jen samotny FRST.exe/FRST64.exe (bez FRSTLauncheru)

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 09 úno 2015 20:56
od gabrin
FIRST
----------------------------
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-02-2015
Ran by coolbox (administrator) on COOLBOX-PC on 09-02-2015 20:45:42
Running from C:\Users\Coolbox\Desktop
Loaded Profiles: coolbox (Available profiles: coolbox & SimonAndrej)
Platform: Windows 8.1 Pro (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe
(IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenu_Hook.exe
(CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(IObit) C:\Program Files (x86)\IObit\Start Menu 8\InstallServices.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
(Dolby Laboratories Inc.) C:\DOLBY PCEE4\pcee4.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2588968 2010-11-12] (ELAN Microelectronics Corp.)
HKLM\...\Run: [Power Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [1831528 2011-05-10] (Acer Incorporated)
HKLM\...\Run: [KONICA MINOLTA PagePro 1350WStatusDisplay] => C:\WINDOWS\system32\MSTM64_Q.EXE [247736 2013-05-02] (KONICA MINOLTA BUSINESS TECHNOLOGIES, INC.)
HKLM\...\Run: [SpywareTerminatorShield] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorShield.exe [2777296 2012-09-07] (Crawler.com)
HKLM\...\Run: [SpywareTerminatorUpdater] => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe [3684488 2013-10-22] (Crawler.com)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AutoKMS] => C:\WINDOWS\AutoKMS.exe [615936 2014-12-13] ()
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12673128 2015-01-29] (Realtek Semiconductor)
HKLM-x32\...\Run: [ArcadeMovieService] => C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [177448 2011-05-09] (CyberLink Corp.)
HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [297280 2011-04-24] (NTI Corporation)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Dolby PCEE4\pcee4.exe [506712 2011-02-03] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [EgisTecPMMUpdate] => C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [407920 2010-09-18] (Egis Technology Inc.)
HKLM-x32\...\Run: [EgisUpdate] => C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [201584 2010-09-18] (Egis Technology Inc.)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [277504 2012-07-09] (Intel Corporation)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [SuiteTray] => C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [340336 2010-09-28] (Egis Technology Inc.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-27] (AVAST Software)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1131632 2014-08-05] (Dritek System Inc.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41360 2014-12-03] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\WINDOWS\SYSTEM32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [EEDSpeedLauncher] => rundll32.exe C:\WINDOWS\system32\eed_ec.dll,SpeedLauncher
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [icq] => C:\Users\Coolbox\AppData\Roaming\ICQM\icq.exe [35239432 2014-12-03] (ICQ)
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30877280 2014-12-11] (Skype Technologies S.A.)
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {1867392d-805b-11e4-bff9-b870f4b13fec} - "F:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {2695d6dd-e571-11e3-bf76-b870f4b13fec} - "E:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {be70bbf9-ddb9-11e3-bf70-b870f4b13fec} - "E:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {e0934027-51e7-11e4-bfbe-b870f4b13fec} - "E:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {e0a597f3-2c6c-11e4-bfa2-b870f4b13fec} - "E:\setup.exe"
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [178632 2015-02-07] (NVIDIA Corporation)
AppInit_DLLs: , C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [178632 2015-02-07] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [165760 2015-02-07] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://acer.msn.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
BHO: No Name -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> No File
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 217.195.165.131 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default
FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.seznam.cz/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1216156.dll (Adobe Systems, Inc.)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3442833130-3731506892-1951788502-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Coolbox\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Users\Coolbox\AppData\Roaming\mozilla\plugins\np-mswmp.dll (Microsoft Corporation)
FF SearchPlugin: C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\searchplugins\google-avast.xml
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\Extensions\iobitascsurfingprotection@iobit.com [2015-02-07]
FF Extension: Simple White - C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\Extensions\Simple@White.Theme.xpi [2015-01-08]
FF Extension: QuickJava - C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\Extensions\{E6C1199F-E687-42da-8C24-E7770CC3AE66}.xpi [2014-12-12]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-10-20]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2014-11-30]

Chrome:
=======
CHR Profile: C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-02-03]
CHR Extension: (Disk Google) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-02-03]
CHR Extension: (YouTube) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-02-03]
CHR Extension: (Vyhledávání Google) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-02-03]
CHR Extension: (Avast Online Security) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-10-07]
CHR Extension: (Pixlr Editor) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmaknaampgiegkcjlimdiidlhopknpk [2014-05-27]
CHR Extension: (VratnePenize.cz) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiekfaemafmplemocgimeccahephhdgf [2014-01-28]
CHR Extension: (ActiveX for Chrome) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\lgllffgicojgllpmdbemgglaponefajn [2014-05-07]
CHR Extension: (Peněženka Google) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-02]
CHR Extension: (Google Chrome to Phone Extension) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco [2014-12-18]
CHR Extension: (Gmail) - C:\Users\Coolbox\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-02-03]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-27]
CHR HKLM-x32\...\Chrome\Extension: [iphahelpmejkbidhiecfeicblienleon] - No Path

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-12] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2014-12-12] (Avast Software)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-11-18] (Microsoft Corporation)
S4 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2014-12-13] (NVIDIA Corporation)
S4 IAStorDataMgrSvc; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [7168 2012-07-09] (Intel Corporation) [File not signed]
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2724128 2015-01-16] (IObit)
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2013-11-14] (Hewlett-Packard) [File not signed]
S4 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832 2011-04-24] (NTI Corporation)
S4 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2014-12-13] (NVIDIA Corporation)
S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19823248 2014-12-13] (NVIDIA Corporation)
S4 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () [File not signed]
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2013-11-14] (Hewlett-Packard) [File not signed]
S4 ST2012_Svc; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [1148664 2012-09-07] (Crawler.com)
R2 StartMenuService; C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe [1055008 2015-01-14] (IObit)
S4 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-27] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-27] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-27] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-27] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-27] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-27] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-27] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-27] ()
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7549616 2015-01-09] (Broadcom Corporation)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-01-02] (REALiX(tm))
S2 MLPTDR_Q; \??\C:\WINDOWS\system32\ [0 ] () <==== ATTENTION (zero size file/folder)
S2 MLPTDR_Q; \??\C:\WINDOWS\SysWOW64\ [0 ] () <==== ATTENTION (zero size file/folder)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2014-12-13] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
S3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [226304 2014-11-18] (Microsoft Corporation)
R2 sp_rsdrv2; C:\Windows\System32\DRIVERS\stflt.sys [51496 2014-04-24] (Windows (R) Win 7 DDK provider)
U4 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2014-12-12] (Avast Software)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
S3 cpuz137; \??\C:\Users\Coolbox\AppData\Local\Temp\cpuz137\cpuz137_x64.sys [X]
U3 idsvc; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-09 20:45 - 2015-02-09 20:46 - 00026026 _____ () C:\Users\Coolbox\Desktop\FRST.txt
2015-02-09 20:44 - 2015-02-09 20:45 - 00000000 ____D () C:\FRST
2015-02-09 20:43 - 2015-02-09 20:44 - 02132992 _____ (Farbar) C:\Users\Coolbox\Desktop\FRST64.exe
2015-02-08 19:28 - 2015-02-08 19:28 - 00326150 _____ () C:\Users\Coolbox\Desktop\teaser3.jpeg
2015-02-08 17:38 - 2015-02-08 17:46 - 182762852 _____ () C:\Users\Coolbox\Downloads\wetransfer-e3643c.zip
2015-02-08 13:53 - 2015-02-08 13:53 - 00168453 _____ () C:\Users\Coolbox\Desktop\teaser-pribeh.jpeg
2015-02-07 21:15 - 2015-02-07 21:15 - 05325208 _____ (Piriform Ltd) C:\Users\Coolbox\Downloads\ccsetup502.exe
2015-02-07 20:32 - 2015-02-07 20:32 - 00000161 _____ () C:\WINDOWS\AutoKMS.ini
2015-02-07 20:18 - 2015-02-07 20:18 - 00112640 _____ (forum.viry.cz) C:\Users\Coolbox\Desktop\FRSTLauncher.exe
2015-02-07 19:32 - 2015-02-07 19:32 - 02112512 _____ () C:\Users\Coolbox\Downloads\adwcleaner_4.110 (1).exe
2015-02-07 18:37 - 2015-02-07 20:27 - 00029696 _____ () C:\Users\Coolbox\AppData\Local\MSGBOX.EXE
2015-02-07 16:56 - 2015-02-07 19:57 - 00000000 ____D () C:\AdwCleaner
2015-02-07 16:51 - 2015-02-07 16:51 - 02112512 _____ () C:\Users\Coolbox\Downloads\adwcleaner_4.110.exe
2015-02-07 16:36 - 2015-02-07 18:50 - 00129752 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-02-07 16:36 - 2015-02-07 16:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-02-07 16:36 - 2015-02-07 16:36 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-07 16:36 - 2015-02-07 16:36 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-02-07 16:36 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-02-07 16:36 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-02-07 16:36 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-02-07 16:33 - 2015-02-07 16:34 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Coolbox\Downloads\mbam-setup-2.0.4.1028.exe
2015-02-07 12:23 - 2015-02-09 17:03 - 00000693 _____ () C:\WINDOWS\setupact.log
2015-02-07 12:23 - 2015-02-07 12:23 - 00000000 _____ () C:\WINDOWS\setuperr.log
2015-02-07 12:20 - 2015-02-07 17:07 - 00008032 _____ () C:\WINDOWS\PFRO.log
2015-02-07 11:36 - 2015-02-07 11:25 - 00176552 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaw.exe
2015-02-07 11:36 - 2015-02-07 11:25 - 00176552 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\java.exe
2015-02-07 11:36 - 2015-02-07 11:25 - 00098216 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2015-02-07 11:35 - 2015-02-07 11:35 - 00000000 ____D () C:\WINDOWS\Sun
2015-02-07 11:35 - 2015-02-07 11:35 - 00000000 ____D () C:\Users\Coolbox\AppData\Roaming\Oracle
2015-02-07 11:22 - 2015-02-07 11:42 - 00000304 _____ () C:\WINDOWS\Tasks\Uninstaller_SkipUac_coolbox.job
2015-02-07 11:22 - 2015-02-07 11:22 - 00002408 _____ () C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_coolbox
2015-02-07 11:20 - 2015-02-07 11:20 - 00639400 _____ (Oracle Corporation) C:\Users\Coolbox\Downloads\chromeinstall-8u31.exe
2015-02-07 11:07 - 2015-02-07 11:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Start Menu 8
2015-02-07 11:04 - 2015-02-07 11:05 - 09344920 _____ (IObit ) C:\Users\Coolbox\Downloads\startmenu-setup.exe
2015-02-07 09:27 - 2015-02-07 09:27 - 00000000 ___RH () C:\Users\Public\Documents\NTIMMV9P.dll
2015-02-07 09:07 - 2015-02-07 10:03 - 00000000 ____D () C:\Users\Coolbox\Desktop\gabi SD karta
2015-02-07 01:46 - 2015-02-07 01:46 - 00000000 ____D () C:\WINDOWS\SysWOW64\NV
2015-02-07 01:46 - 2015-02-07 01:46 - 00000000 ____D () C:\WINDOWS\system32\NV
2015-02-07 01:45 - 2015-02-07 01:45 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp
2015-02-07 01:45 - 2014-12-13 09:03 - 06859408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2015-02-07 01:45 - 2014-12-13 09:03 - 03513488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2015-02-07 01:45 - 2014-12-13 09:03 - 02558608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2015-02-07 01:45 - 2014-12-13 09:03 - 01097360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2015-02-07 01:45 - 2014-12-13 09:03 - 00935240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2015-02-07 01:45 - 2014-12-13 09:03 - 00386368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2015-02-07 01:45 - 2014-12-13 09:03 - 00075080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2015-02-07 01:45 - 2014-12-13 09:03 - 00062608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2015-02-07 01:45 - 2014-12-13 00:11 - 04151176 _____ () C:\WINDOWS\system32\nvcoproc.bin
2015-02-07 01:36 - 2015-02-07 01:36 - 32099472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 25460552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 24764232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 20465808 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 18594432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 17264312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 16040184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 14128496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 13288360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 13202520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 10770120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 10710160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 10345280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2015-02-07 01:36 - 2015-02-07 01:36 - 03610440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 03293136 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 03248968 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 02897824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 01895056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6434709.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 01556624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6434709.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00994384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00968336 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00942400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00928072 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00906560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00876976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00353224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00306328 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00178632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00165760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2015-02-07 01:36 - 2015-02-07 01:36 - 00031376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvpciflt.sys
2015-02-07 01:36 - 2015-02-07 01:36 - 00027983 _____ () C:\WINDOWS\system32\nvinfo.pb
2015-02-06 22:28 - 2015-02-06 22:29 - 00000000 ____D () C:\rsit
2015-02-06 22:28 - 2015-02-06 22:29 - 00000000 ____D () C:\Program Files\trend micro
2015-02-06 22:28 - 2015-02-06 22:28 - 01222144 _____ () C:\Users\Coolbox\Downloads\RSITx64.exe
2015-02-06 19:46 - 2015-02-03 20:31 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-02-06 19:46 - 2015-02-03 20:31 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-02-06 19:35 - 2015-02-09 20:41 - 01563039 _____ () C:\WINDOWS\WindowsUpdate.log
2015-02-05 10:09 - 2015-02-09 20:14 - 00000982 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-05 10:09 - 2015-02-09 17:07 - 00000978 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-04 21:04 - 2015-02-04 21:04 - 00000000 __SHD () C:\found.000
2015-02-04 20:36 - 2015-02-04 20:36 - 05070512 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
2015-02-04 20:30 - 2015-01-10 15:32 - 00128288 _____ (IObit) C:\WINDOWS\system32\IObitSmartDefragExtension.dll
2015-02-04 19:59 - 2015-02-04 19:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-02-04 19:58 - 2015-02-07 20:38 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-02-04 19:58 - 2014-11-27 21:37 - 00364512 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2015-02-02 22:29 - 2015-02-02 22:29 - 00000000 ____D () C:\WINDOWS\pss
2015-02-02 22:12 - 2015-02-02 22:12 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2012
2015-02-02 22:12 - 2015-02-02 22:12 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2012
2015-02-02 19:50 - 2015-02-02 19:51 - 00000000 ____D () C:\Users\Coolbox\Documents\Visual Studio 2012
2015-02-02 19:50 - 2015-02-02 19:50 - 00000000 ____D () C:\Program Files (x86)\NuGet
2015-02-02 19:13 - 2015-02-02 19:13 - 00000000 ____D () C:\Program Files (x86)\Windows Kits
2015-02-02 19:10 - 2015-02-04 19:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012 Express
2015-02-02 19:08 - 2015-02-04 19:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012
2015-02-02 19:08 - 2015-02-02 19:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft SDKs
2015-02-02 19:08 - 2015-02-02 19:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft Help Viewer
2015-02-02 19:00 - 2015-02-04 19:37 - 00000000 ____D () C:\WINDOWS\SysWOW64\1033
2015-02-02 19:00 - 2015-02-04 19:37 - 00000000 ____D () C:\WINDOWS\system32\1033
2015-02-02 18:56 - 2015-02-04 19:37 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2015-02-02 18:56 - 2015-02-02 19:47 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2015-02-02 18:50 - 2015-02-02 18:50 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2015-02-02 18:49 - 2015-02-02 19:09 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 11.0
2015-02-02 18:47 - 2015-02-04 19:37 - 00000000 ____D () C:\ProgramData\Package Cache
2015-01-29 23:09 - 2015-01-29 23:09 - 01772950 _____ () C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2015-01-29 23:08 - 2015-01-29 22:50 - 02604376 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 01560168 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2015-01-29 23:08 - 2015-01-29 22:50 - 00518896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00220512 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00211184 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00198896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00155888 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00121744 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00081248 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00078176 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2015-01-29 23:08 - 2015-01-29 22:50 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2015-01-29 23:08 - 2015-01-29 22:49 - 00247560 ____N () C:\WINDOWS\system32\Drivers\RTConvEQ.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00039672 ____N () C:\WINDOWS\system32\Drivers\RtPCEE3.DAT
2015-01-29 23:08 - 2015-01-29 22:49 - 00003206 ____N () C:\WINDOWS\system32\Drivers\RtPCEE4.DAT
2015-01-29 23:08 - 2015-01-29 22:49 - 00001448 ____N () C:\WINDOWS\system32\Drivers\RtHdatEx.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00000520 ____N () C:\WINDOWS\system32\Drivers\RTEQEX3.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00000520 ____N () C:\WINDOWS\system32\Drivers\RTEQEX2.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00000520 ____N () C:\WINDOWS\system32\Drivers\RTEQEX1.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00000520 ____N () C:\WINDOWS\system32\Drivers\RTEQEX0.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00000176 ____N () C:\WINDOWS\system32\Drivers\RTHDAEQ1.dat
2015-01-29 23:08 - 2015-01-29 22:49 - 00000016 _____ () C:\WINDOWS\system32\Drivers\rtkhdaud.dat
2015-01-29 23:07 - 2015-01-29 22:50 - 03200104 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkAPO64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 03056360 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2015-01-29 23:07 - 2015-01-29 22:50 - 02518120 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 01827944 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 01501696 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2015-01-29 23:07 - 2015-01-29 22:50 - 01247848 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00375128 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00334680 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00332392 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00204120 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00149608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00101208 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00093800 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInst64.dll
2015-01-29 23:07 - 2015-01-29 22:50 - 00078680 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2015-01-29 23:07 - 2015-01-29 22:49 - 03768152 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek.dll
2015-01-29 23:07 - 2011-05-02 07:27 - 03308376 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2015-01-29 23:07 - 2011-05-02 07:27 - 00426328 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2015-01-29 23:07 - 2011-05-02 07:27 - 00136024 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2015-01-29 23:07 - 2011-05-02 07:27 - 00118104 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2015-01-29 23:07 - 2011-05-02 07:27 - 00074072 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 02132824 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 02085440 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 01756264 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 01568360 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 01486952 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00728680 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00712296 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00693352 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00491112 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00432744 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00428648 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00341336 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00318808 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2015-01-29 23:06 - 2015-01-29 22:49 - 00241768 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2015-01-29 23:05 - 2015-01-29 22:49 - 01698408 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll
2015-01-29 23:05 - 2015-01-29 22:49 - 00200800 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2015-01-29 23:05 - 2015-01-29 22:49 - 00108960 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2015-01-29 22:55 - 2015-02-04 19:39 - 00000000 ____D () C:\Users\Coolbox\Documents\MgmtEngine_Intel_8.1.0.1263_W8x64UW8x86U_A
2015-01-29 22:49 - 2015-02-04 19:39 - 00000000 ____D () C:\Users\Coolbox\Documents\Audio_Realtek_6.0.1.6438_W8x64UW8x86U_A
2015-01-29 22:43 - 2012-07-09 13:43 - 00645952 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaStorA.sys
2015-01-29 22:42 - 2015-01-29 22:42 - 00000000 ____D () C:\Users\Coolbox\AppData\Roaming\InstallShield
2015-01-29 22:40 - 2015-02-04 19:39 - 00000000 ____D () C:\Users\Coolbox\Documents\AHCI_Intel_11.5.0.1207_W8x64UW8x86U_A
2015-01-26 22:20 - 2015-01-26 22:21 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-01-24 10:30 - 2015-01-24 10:30 - 00000132 _____ () C:\Users\Coolbox\AppData\Roaming\Adobe Formát AIFF CS6 – předvolby
2015-01-24 10:10 - 2015-01-24 10:12 - 03349781 _____ () C:\Users\Coolbox\Downloads\Prislusenstvi 600x400(2).rar
2015-01-24 09:50 - 2015-01-24 09:50 - 00458960 _____ (Broadcom Corporation) C:\WINDOWS\system32\Drivers\k57nd60a.sys
2015-01-23 17:43 - 2015-01-23 17:43 - 00939956 _____ () C:\Users\Coolbox\Downloads\7z465.exe
2015-01-23 16:26 - 2015-01-23 16:26 - 03349781 _____ () C:\Users\Coolbox\Downloads\Prislusenstvi 600x400(1).rar
2015-01-23 16:05 - 2015-01-23 16:05 - 03349781 _____ () C:\Users\Coolbox\Downloads\Prislusenstvi 600x400.rar
2015-01-19 13:24 - 2015-01-19 13:24 - 05558768 _____ () C:\Users\Coolbox\Downloads\wetransfer-96eb25.zip
2015-01-19 12:53 - 2015-01-19 12:53 - 01729240 _____ () C:\Users\Coolbox\Downloads\Hokejové lahve a termoobaly 5.11.2014.xlsx
2015-01-17 19:33 - 2015-01-17 19:35 - 26547281 _____ () C:\Users\Coolbox\Downloads\wetransfer-432164.zip
2015-01-17 19:20 - 2015-01-17 19:21 - 06047233 _____ () C:\Users\Coolbox\Downloads\prilohy_9519.zip
2015-01-16 21:10 - 2015-01-16 21:10 - 00000020 _____ () C:\Users\Coolbox\Downloads\Hlavní filtry.txt
2015-01-16 12:04 - 2015-01-16 12:24 - 157597886 _____ () C:\Users\Coolbox\Downloads\2007.zip
2015-01-16 11:27 - 2015-01-16 11:55 - 221388442 _____ () C:\Users\Coolbox\Downloads\2008.zip
2015-01-16 10:50 - 2015-01-16 11:05 - 115582172 _____ () C:\Users\Coolbox\Downloads\2011.zip
2015-01-16 10:42 - 2015-01-16 10:45 - 22127919 _____ () C:\Users\Coolbox\Downloads\2012.zip
2015-01-16 10:17 - 2015-01-16 10:18 - 06415617 _____ () C:\Users\Coolbox\Downloads\2010.zip
2015-01-16 09:37 - 2015-01-16 09:37 - 224768383 _____ () C:\Users\Coolbox\Downloads\Nepotvrzeno 197512.crdownload
2015-01-14 10:32 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2015-01-14 10:32 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2015-01-14 10:32 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2015-01-14 10:32 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2015-01-14 10:32 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2015-01-14 10:32 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2015-01-14 10:32 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-01-14 10:32 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2015-01-14 10:32 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-01-12 12:49 - 2015-01-12 12:50 - 00002323 _____ () C:\Users\Coolbox\Downloads\faktura.xml
2015-01-11 15:26 - 2015-01-11 21:02 - 00000247 _____ () C:\WINDOWS\system32\2015-01-11-14-26-15.099-aswFe.exe-1480.log
2015-01-11 15:26 - 2015-01-11 15:26 - 00000197 _____ () C:\WINDOWS\system32\2015-01-11-14-26-11.097-AvastVBoxSVC.exe-9212.log
2015-01-11 13:49 - 2015-01-11 13:49 - 00000247 _____ () C:\WINDOWS\system32\2015-01-11-12-49-31.051-aswFe.exe-8880.log
2015-01-11 13:39 - 2015-01-11 13:49 - 00000247 _____ () C:\WINDOWS\system32\2015-01-11-12-39-44.085-aswFe.exe-968.log
2015-01-11 13:39 - 2015-01-11 13:39 - 00000197 _____ () C:\WINDOWS\system32\2015-01-11-12-39-38.014-AvastVBoxSVC.exe-6712.log
2015-01-11 11:19 - 2015-01-11 12:19 - 00000247 _____ () C:\WINDOWS\system32\2015-01-11-10-19-51.079-aswFe.exe-8748.log
2015-01-11 11:19 - 2015-01-11 11:19 - 00000197 _____ () C:\WINDOWS\system32\2015-01-11-10-19-47.032-AvastVBoxSVC.exe-8000.log
2015-01-11 10:45 - 2015-01-11 11:03 - 00000247 _____ () C:\WINDOWS\system32\2015-01-11-09-45-25.037-aswFe.exe-5836.log
2015-01-11 10:45 - 2015-01-11 10:45 - 00000197 _____ () C:\WINDOWS\system32\2015-01-11-09-45-19.073-AvastVBoxSVC.exe-6108.log
2015-01-10 15:55 - 2015-01-10 15:55 - 00000197 _____ () C:\WINDOWS\system32\2015-01-10-14-55-09.098-AvastVBoxSVC.exe-2480.log
2015-01-10 15:26 - 2015-01-10 15:26 - 00000247 _____ () C:\WINDOWS\system32\2015-01-10-14-26-17.067-aswFe.exe-7988.log
2015-01-10 15:14 - 2015-01-10 15:26 - 00000247 _____ () C:\WINDOWS\system32\2015-01-10-14-14-20.052-aswFe.exe-9396.log
2015-01-10 15:14 - 2015-01-10 15:14 - 00000197 _____ () C:\WINDOWS\system32\2015-01-10-14-14-14.004-AvastVBoxSVC.exe-8264.log

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-09 20:45 - 2013-02-03 12:01 - 00000000 ____D () C:\Users\Coolbox\AppData\Roaming\Skype
2015-02-09 20:35 - 2013-02-03 13:44 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-02-09 20:12 - 2013-10-20 17:49 - 00003842 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{13C664F0-4296-4DEB-9073-1ADADDC4AB0B}
2015-02-09 20:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-02-09 17:08 - 2013-02-03 22:23 - 00000000 ____D () C:\ProgramData\clear.fi
2015-02-09 17:04 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-02-09 13:01 - 2013-02-05 20:50 - 02160640 ___SH () C:\Users\Coolbox\Desktop\Thumbs.db
2015-02-09 07:32 - 2013-10-19 20:36 - 00000000 ____D () C:\Users\Coolbox
2015-02-08 22:27 - 2014-12-09 09:12 - 00001480 _____ () C:\Users\Coolbox\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2015-02-08 22:27 - 2013-05-07 13:51 - 00000000 ____D () C:\Users\Coolbox\Desktop\COOLBOX Fotky
2015-02-08 22:19 - 2015-01-07 13:49 - 00000132 _____ () C:\Users\Coolbox\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2015-02-07 20:38 - 2013-02-13 16:41 - 00000000 ____D () C:\Users\Coolbox\Desktop\nepoužívané programy
2015-02-07 19:58 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-02-07 18:17 - 2013-02-04 18:42 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3442833130-3731506892-1951788502-1001
2015-02-07 18:11 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-02-07 13:08 - 2014-11-13 21:49 - 00000000 ____D () C:\Program Files (x86)\IObit
2015-02-07 12:27 - 2015-01-02 23:47 - 00002858 _____ () C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (coolbox)
2015-02-07 11:37 - 2014-10-15 15:22 - 00000000 ____D () C:\Program Files (x86)\Java
2015-02-07 11:25 - 2014-12-06 16:22 - 00272296 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\javaws.exe
2015-02-07 11:24 - 2013-09-14 10:14 - 00000000 ____D () C:\ProgramData\Oracle
2015-02-07 11:07 - 2014-11-13 21:48 - 00000000 ____D () C:\Users\Coolbox\AppData\Roaming\IObit
2015-02-07 09:17 - 2014-01-05 20:19 - 00000000 ____D () C:\Program Files\Recuva
2015-02-07 09:07 - 2012-11-22 20:17 - 00000000 ____D () C:\Users\Coolbox\Desktop\gaba telefon
2015-02-07 08:59 - 2013-10-19 20:49 - 01749406 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-02-07 08:59 - 2013-09-30 04:56 - 00740962 _____ () C:\WINDOWS\system32\perfh005.dat
2015-02-07 08:59 - 2013-09-30 04:56 - 00152146 _____ () C:\WINDOWS\system32\perfc005.dat
2015-02-07 01:46 - 2014-08-05 20:32 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-02-07 01:45 - 2013-10-19 20:30 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-02-07 01:45 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Help
2015-02-07 01:44 - 2014-08-05 21:34 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-02-07 01:43 - 2013-10-19 20:30 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-02-07 01:30 - 2014-06-03 19:44 - 00000000 ____D () C:\WINDOWS\Minidump
2015-02-06 20:38 - 2013-02-03 12:02 - 00001155 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-02-06 19:47 - 2012-07-26 08:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-02-06 19:36 - 2013-10-20 17:47 - 00000000 ____D () C:\ProgramData\StartW8
2015-02-05 22:24 - 2014-01-26 13:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Repair Video Master
2015-02-05 10:37 - 2013-05-28 09:39 - 00000000 ____D () C:\Users\Coolbox\Desktop\Jiřík telefon
2015-02-05 10:09 - 2014-12-03 22:04 - 00003954 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-02-05 10:09 - 2014-12-03 22:04 - 00003718 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-02-05 05:20 - 2013-04-05 08:48 - 02577408 ___SH () C:\Users\Coolbox\Downloads\Thumbs.db
2015-02-04 21:16 - 2014-11-28 15:33 - 108724224 _____ () C:\WINDOWS\system32\config\SOFTWARE.iodefrag
2015-02-04 21:16 - 2014-11-28 15:33 - 02383872 _____ () C:\WINDOWS\system32\config\DEFAULT.iodefrag
2015-02-04 21:16 - 2014-11-28 15:33 - 00114688 _____ () C:\WINDOWS\system32\config\SAM.iodefrag
2015-02-04 21:16 - 2014-11-28 15:33 - 00028672 _____ () C:\WINDOWS\system32\config\SECURITY.iodefrag
2015-02-04 21:16 - 2014-11-13 22:13 - 108724224 _____ () C:\WINDOWS\system32\config\SOFTWARE.iodefrag.bak
2015-02-04 21:16 - 2014-11-13 22:13 - 02383872 _____ () C:\WINDOWS\system32\config\DEFAULT.iodefrag.bak
2015-02-04 21:16 - 2014-11-13 22:13 - 00114688 _____ () C:\WINDOWS\system32\config\SAM.iodefrag.bak
2015-02-04 21:16 - 2014-11-13 22:13 - 00028672 _____ () C:\WINDOWS\system32\config\SECURITY.iodefrag.bak
2015-02-04 20:36 - 2013-02-03 13:44 - 00003826 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-02-04 20:13 - 2014-12-18 21:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
2015-02-04 19:41 - 2014-11-24 18:47 - 00000000 ____D () C:\Users\SimonAndrej
2015-02-04 19:40 - 2014-12-18 21:14 - 00000000 ____D () C:\Program Files (x86)\BlueStacks
2015-02-04 19:40 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\WinMetadata
2015-02-04 19:40 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\WinMetadata
2015-02-04 19:40 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2015-02-04 19:40 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer
2015-02-04 19:40 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager
2015-02-04 19:40 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera
2015-02-04 19:39 - 2014-12-18 21:14 - 00000000 ____D () C:\ProgramData\BlueStacks
2015-02-04 19:39 - 2014-11-13 21:51 - 00000000 ____D () C:\Users\Coolbox\AppData\Roaming\ProductData
2015-02-04 19:39 - 2014-08-05 20:52 - 00000000 ____D () C:\Users\Coolbox\Documents\VGA_NVIDIA_9.18.13.0630_W8x64U_A
2015-02-04 19:39 - 2013-12-02 12:26 - 00000000 ____D () C:\Users\Coolbox\Documents\Cobia300R2_Adriatic_11Q1_MapPatch_R01
2015-02-04 19:39 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2015-02-04 19:39 - 2013-02-03 11:43 - 00000000 ____D () C:\Users\Coolbox\AppData\Local\PowerCinema
2015-02-04 19:25 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\registration
2015-02-04 19:20 - 2014-05-07 13:53 - 00000000 ____D () C:\ProgramData\Samsung
2015-02-04 19:19 - 2013-10-19 21:23 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-02-02 22:45 - 2013-02-26 14:39 - 00007601 _____ () C:\Users\Coolbox\AppData\Local\resmon.resmoncfg
2015-02-02 22:38 - 2013-11-06 14:05 - 00485376 ___SH () C:\Users\Coolbox\Documents\Thumbs.db
2015-01-29 23:09 - 2013-10-19 20:29 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM
2015-01-29 23:09 - 2013-02-03 10:53 - 00000000 ___HD () C:\Program Files (x86)\Temp
2015-01-29 23:02 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI(2854)
2015-01-29 22:44 - 2011-05-28 07:16 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2015-01-29 22:42 - 2011-05-28 07:15 - 00000000 ____D () C:\Program Files (x86)\Intel
2015-01-29 22:11 - 2014-12-13 21:20 - 00030720 _____ () C:\Users\Coolbox\Desktop\orientacní ceny 2015.xls
2015-01-27 19:05 - 2013-02-03 12:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-26 22:08 - 2014-11-13 21:50 - 00000000 ____D () C:\ProgramData\ProductData
2015-01-25 17:34 - 2013-02-03 12:04 - 00000000 ____D () C:\Users\Coolbox\Desktop\FILMY
2015-01-23 17:43 - 2014-08-05 21:59 - 00000000 ____D () C:\Program Files (x86)\7-Zip
2015-01-21 16:36 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-01-17 21:06 - 2013-02-21 11:52 - 00000000 ____D () C:\Users\Coolbox\Desktop\Aqua aerobic
2015-01-17 00:43 - 2013-02-03 13:00 - 00000000 ____D () C:\Users\Coolbox\AppData\Roaming\GHISLER
2015-01-14 22:32 - 2013-02-05 20:22 - 00000000 ____D () C:\Users\Coolbox\AppData\Local\Microsoft Help
2015-01-14 18:33 - 2013-07-18 08:58 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-01-14 18:23 - 2013-02-05 20:09 - 113365784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

==================== Files in the root of some directories =======

2015-01-24 10:30 - 2015-01-24 10:30 - 0000132 _____ () C:\Users\Coolbox\AppData\Roaming\Adobe Formát AIFF CS6 – předvolby
2015-01-07 13:49 - 2015-02-08 22:19 - 0000132 _____ () C:\Users\Coolbox\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2014-12-09 09:12 - 2015-02-08 22:27 - 0001480 _____ () C:\Users\Coolbox\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2015-02-07 18:37 - 2015-02-07 20:27 - 0029696 _____ () C:\Users\Coolbox\AppData\Local\MSGBOX.EXE
2013-02-26 14:39 - 2015-02-02 22:45 - 0007601 _____ () C:\Users\Coolbox\AppData\Local\resmon.resmoncfg
2013-02-03 11:07 - 2013-02-03 11:10 - 0015245 _____ () C:\ProgramData\ArcadeDeluxe5.log
2011-05-28 07:27 - 2010-03-02 22:59 - 0131984 _____ () C:\ProgramData\FullRemove.exe

Some content of TEMP:
====================
C:\Users\Coolbox\AppData\Local\Temp\Quarantine.exe
C:\Users\Coolbox\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-04 14:27

==================== End Of Log ============================

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 09 úno 2015 21:00
od gabrin
Addition
----------------------------------
dditional scan result of Farbar Recovery Scan Tool (x64) Version: 08-02-2015
Ran by coolbox at 2015-02-09 20:48:30
Running from C:\Users\Coolbox\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

3D RealityMaps Viewer 1.6.8.0 (HKLM-x32\...\AlpenOnlineViewer_is1) (Version: 1.6.8.0 - 3D RealityMaps GmbH)
64 Bit HP CIO Components Installer (Version: 16.2.1 - Hewlett-Packard) Hidden
7-Zip 4.65 (HKLM-x32\...\7-Zip) (Version: - Somoto Ltd) <==== ATTENTION
Acer Backup Manager (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.99 - NTI Corporation)
Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1626 - CyberLink Corp.)
Acer Crystal Eye Webcam (x32 Version: 1.0.1626 - CyberLink Corp.) Hidden
Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3007 - Acer Incorporated)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3501 - Acer Incorporated)
Acer GameZone Console (HKLM-x32\...\{C97623E2-0614-4845-B199-8E8BEC8E131C}_is1) (Version: 6.1.0.40497 - Oberon Media, Inc.)
Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.04.3502 - Acer Incorporated)
Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0519.2011 - Acer Incorporated)
Acer System Information (HKLM-x32\...\{72199E33-4F2A-4B7F-8E25-95DDDD50A678}) (Version: 1.0.0 - Acer)
Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe Acrobat X Pro - Eastern European (Group 1) (HKLM-x32\...\{AC76BA86-1029-4770-7760-000000000005}) (Version: 10.1.13 - Adobe Systems)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 16.0.0.245 - Adobe Systems Incorporated)
Adobe Creative Suite 6 Master Collection (HKLM-x32\...\{E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0}) (Version: 6 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.6.156 - Adobe Systems, Inc.)
Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.)
Aktualizace NVIDIA 16.18.9 (Version: 16.18.9 - NVIDIA Corporation) Hidden
Argazki Galeria (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software)
Backup Manager V3 (x32 Version: 3.0.0.99 - NTI Corporation) Hidden
Banner Effect Trial (HKLM-x32\...\Banner Effect Trial_is1) (Version: 1.3.15 - Devsoft, Inc.)
bl (x32 Version: 1.0.0 - Your Company Name) Hidden
Broadcom Card Reader Driver Installer (HKLM\...\{4710662C-8204-4334-A977-B1AC9E547819}) (Version: 14.8.2.2 - Broadcom Corporation)
Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 14.8.4.1 - Broadcom Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
clear.fi (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 1.0.1720.00 - CyberLink Corp.)
clear.fi (x32 Version: 1.0.1517_36458 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 1.0.1720.00 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 9.0.7709 - CyberLink Corp.) Hidden
clear.fi Client (HKLM-x32\...\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}) (Version: 1.00.3500 - Acer Incorporated)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.7000.4 - Dolby Laboratories Inc)
Dropbox (HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Dropbox) (Version: 2.6.24 - Dropbox, Inc.)
Entity Framework Designer for Visual Studio 2012 - enu (HKLM-x32\...\{32136776-FE3F-453D-80DA-CDD993BDB2A3}) (Version: 11.1.20810.00 - Microsoft Corporation)
ETDWare PS/2-X64 8.0.6.0_WHQL (HKLM\...\Elantech) (Version: 8.0.6.0 - ELAN Microelectronic Corp.)
FormatFactory 3.2.1.0 (HKLM-x32\...\FormatFactory) (Version: 3.2.1.0 - Free Time)
Fotogaléria (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalerija (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalleri (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotogalleriet (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotoğraf Galerisi (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Fotótár (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria de Fotografias (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria de Fotos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galería de fotos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria fotogràfica (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galeria fotografii (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galerie de photos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galerie foto (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Galerija fotografija (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Google AdWords Editor (HKLM-x32\...\{6145B982-ACC5-46A3-9166-9ADADE6D17E2}) (Version: 10.3.2 - Google)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.111 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
ICQ 8.2 (verze 7138) (HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\ICQ) (Version: 8.2.7138.0 - ICQ)
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3501 - Acer Incorporated)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3517 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.0.1207 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.8 - HTC)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Junk Mail filter update (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
K-Lite Codec Pack 10.9.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.9.0 - )
KONICA MINOLTA PagePro 1350W (HKLM\...\KONICA MINOLTA PagePro 1350W) (Version: - )
Launch Manager (HKLM-x32\...\LManager) (Version: 5.2.1 - Acer Inc.)
Malwarebytes Anti-Malware verze 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{5CBFF3F3-2D40-34EE-BCA5-A95BC19E400D}) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{1948E039-EC79-4591-951D-9867A8C14C90}) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Help Viewer 2.0 (HKLM-x32\...\Microsoft Help Viewer 2.0) (Version: 2.0.50727 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SkyDrive (HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\SkyDriveSetup.exe) (Version: 17.0.2003.1112 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2012 Data-Tier App Framework (HKLM\...\{36E619BC-A234-4EC3-849B-779A7C865A45}) (Version: 11.0.2316.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{FBA6F90E-36EC-4FC9-9B25-3834E3BD46A8}) (Version: 11.0.2316.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{13D558FE-A863-402C-B115-160007277033}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{DA1C1761-5F4F-4332-AB9D-29EDF3F8EA0A}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{FA0A244E-F3C2-4589-B42A-3D522DE79A42}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL Compiler Service (HKLM\...\{BEB0F91E-F2EA-48A1-B938-7857ABF2A93D}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{0E8670B8-3965-4930-ADA6-570348B67153}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 T-SQL Language Service (HKLM-x32\...\{6D6D43E5-218C-4B05-92D3-2240810F4760}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools - enu (11.1.20828.01) (HKLM-x32\...\{4F2B8233-35EE-4197-8C3B-EACCBF712029}) (Version: 11.1.20828.01 - Microsoft Corporation)
Microsoft SQL Server Data Tools Build Utilities - enu (11.1.20828.01) (HKLM-x32\...\{FAE0523E-08A4-4717-8E8E-6EC6F32CBE88}) (Version: 11.1.20828.01 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2012 (HKLM-x32\...\{E2082604-4BA5-44BB-BBFB-AF0F3CB8C6AB}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{F1949145-EB64-4DE7-9D81-E6D27937146C}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual J# 2.0 Redistributable Package (HKLM-x32\...\Microsoft Visual J# 2.0 Redistributable Package) (Version: - Microsoft Corporation)
Microsoft Visual Studio Express 2012 for Windows Desktop - ENU (HKLM-x32\...\{e0efdce9-a486-4676-8aa5-65bb08cbf34c}) (Version: 11.0.50727.42 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Mozilla Firefox 35.0.1 (x86 cs) (HKLM-x32\...\Mozilla Firefox 35.0.1 (x86 cs)) (Version: 35.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla)
MyWinLocker (Version: 4.0.14.11 - Egis Technology Inc.) Hidden
MyWinLocker 4 (x32 Version: 4.0.14.11 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.11 - Egis Technology Inc.)
MyWinLocker Suite (x32 Version: 4.0.14.11 - Egis Technology Inc.) Hidden
NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.8942 - NTI Corporation)
NTI Media Maker 9 (x32 Version: 9.0.2.8942 - NTI Corporation) Hidden
NVIDIA GeForce Experience 2.1.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.5 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
OpenOffice.org 3.4.1 (HKLM-x32\...\{1E0AF527-0B8E-4F8A-BA27-CB3C359998C6}) (Version: 3.41.9593 - Apache Software Foundation)
Ovládací panel NVIDIA 347.09 (Version: 347.09 - NVIDIA Corporation) Hidden
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
ph (x32 Version: 1.0.0 - Your Company Name) Hidden
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Poczta usługi Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Pošta Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Prerequisites for SSDT (HKLM-x32\...\{9169C939-ED01-446A-BD0C-29873BAF4E48}) (Version: 11.0.2100.60 - Microsoft Corporation)
ProFact 4.0 (HKLM-x32\...\ProFact 4.0_is1) (Version: - eXmind)
Raccolta foto (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6438 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.34.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0 - Renesas Electronics Corporation) Hidden
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
SGP Baltie 3.0.71.76 (HKLM-x32\...\SGP Baltík 3_is1) (Version: - SGP Systems, s.r.o.)
SGP Baltík 3 (HKLM-x32\...\SGP Baltík_is1) (Version: - SGP Systems, s.r.o.)
SHIELD Streaming (Version: 3.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 16.18.9 - NVIDIA Corporation) Hidden
Shredder (Version: 2.0.8.7 - Egis Technology Inc.) Hidden
Shredder (x32 Version: 2.0.8.7 - Egis Technology Inc.) Hidden
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Spyware Terminator 2012 (HKLM-x32\...\{56736259-613E-4A3B-B428-6235F2E76F44}_is1) (Version: 3.0.0.80 - Crawler.com)
Start Menu 8 (HKLM-x32\...\IObit_StartMenu8_is1) (Version: 2.0.1 - IObit)
Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab for Intel (HKLM-x32\...\{04C4B49D-45D9-4A28-9ED1-B45CBD99B8C7}) (Version: 4.5.24.0 - Husdawg, LLC)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH)
Unity Web Player (HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\UnityWebPlayer) (Version: 4.6.1f1 - Unity Technologies ApS)
Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Valokuvavalikoima (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3501 - Acer Incorporated)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Συλλογή φωτογραφιών (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 16.4.3505.0912 - Корпорация Майкрософт) Hidden
Фотоальбом (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Фотогалерия (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Фотографии (общедоступная версия) (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
גלריית התמונות (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
بريد Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
معرض الصور (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
影像中心 (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Coolbox\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Coolbox\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Coolbox\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Coolbox\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Coolbox\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64\FileSyncApi64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Coolbox\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)

==================== Restore Points =========================

29-01-2015 13:56:23 Naplánovaný kontrolní bod
02-02-2015 18:38:09 Windows Update
02-02-2015 18:40:03 Microsoft Visual Studio Express 2012 for Windows Desktop - ENU
04-02-2015 18:37:23 Removed Microsoft SQL Server 2012 Command Line Utilities
04-02-2015 19:00:55 Removed Microsoft SQL Server 2012 Data-Tier App Framework
04-02-2015 19:11:26 Operace obnovení
07-02-2015 01:34:25 Driver Booster : Display

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2014-11-28 10:21 - 2015-02-07 00:53 - 00001990 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 192.150.14.69
127.0.0.1 192.150.18.101
127.0.0.1 192.150.18.108
127.0.0.1 192.150.22.40
127.0.0.1 192.150.8.100
127.0.0.1 192.150.8.118
127.0.0.1 209-34-83-73.ood.opsource.net
127.0.0.1 3dns-1.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-4.adobe.com
127.0.0.1 3dns.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 activate-sjc0.adobe.com
127.0.0.1 activate.adobe.com
127.0.0.1 activate.adobe.com
127.0.0.1 activate.wip.adobe.com
127.0.0.1 activate.wip1.adobe.com
127.0.0.1 activate.wip2.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 activate.wip4.adobe.com
127.0.0.1 adobe-dns-1.adobe.com
127.0.0.1 adobe-dns-2.adobe.com
127.0.0.1 adobe-dns-2.adobe.com

There are 35 more lines.


==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0FBAE7B2-680F-4BC6-88EE-57106D995CC4} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-01-14] (Microsoft Corporation)
Task: {1C883209-55B9-453C-B1D0-27B4B0A8D389} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {200AE2A2-C92A-4922-842B-F4C340B998B4} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {2096490B-8E3C-4C20-80BF-0CCD798F16D8} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe
Task: {212F6EC9-8D07-477D-B868-1E77F9E7BB41} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {2A85467A-D6E8-4694-AC6F-A31CE1066EB3} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe
Task: {4931EA79-9D88-4647-8C17-6A8117D3B7B8} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2014-12-12] ()
Task: {544FD324-A4BB-45B5-939D-8F7C4F91397F} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe
Task: {549873FA-1D3D-4EE5-841F-74EC0E10B51D} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {55E7790A-C1AE-4F66-BDE6-28BFFD009BBD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-04] (Adobe Systems Incorporated)
Task: {6F388FB0-19E0-4760-8992-9AE41FCCC123} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe
Task: {6FCB14A9-E2A5-4A25-9562-1B20F55A116A} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe
Task: {707A62B1-89D8-4039-9C9A-439C48A40CB7} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {798AB08A-23FB-4B19-8D32-7FB183177C51} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
Task: {8344A204-7413-449E-942C-6D0DD0A64A13} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {8D1DC646-0130-43E4-8DF8-E1251985BA98} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-03] (Google Inc.)
Task: {8D298CD1-87BD-4CA0-A543-0012E21127F8} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe
Task: {8E6F137A-2287-4BE6-B81C-067C6E0E7DD9} - System32\Tasks\Uninstaller_SkipUac_coolbox => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {8FEF982C-46C6-41C3-9026-368E3DB2C14A} - System32\Tasks\clear.fiAgent => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [2011-05-20] (CyberLink Corp.)
Task: {90294DD6-B288-4A1C-B83E-78528FC843DB} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {9382EA56-F9FB-420E-981A-D822A5709409} - System32\Tasks\{F4464FF3-D57C-4822-BEFA-F002C6C8B835} => pcalua.exe -a D:\MioDVD.exe -d D:\
Task: {93B6B55E-86C7-4910-8140-8EB7F303663F} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe
Task: {97161742-3590-4AB0-8DA2-F6FF3C8E88FB} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe
Task: {98F456B1-924E-494F-895B-868A5F829A5B} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe
Task: {9AE0844D-BCAD-400E-BC8C-2535ADAC28F1} - System32\Tasks\Driver Booster SkipUAC (coolbox) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
Task: {AA15927A-8A6F-4F08-935D-13FC749BD553} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe
Task: {B0D56ED3-3E67-424B-B334-8464D03787EB} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {B841691B-BD90-40BC-B49A-F98DBB8F402C} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe
Task: {BCB2C3E4-91AD-48F3-9135-3D966B547756} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe
Task: {C7FDD02B-DEC3-47DA-9DC8-5CC474A592DD} - System32\Tasks\clear.fi => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [2011-05-20] (Acer Incorporated)
Task: {D0EEC873-F85C-46D1-8B6E-44D263EE477D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-03] (Google Inc.)
Task: {D5AA84D4-CB12-4B0F-A14D-CECFB3709CEA} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe
Task: {DE755320-5EB0-49B5-970A-0C6FE067717D} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe
Task: {E7BA0A43-1D7A-4755-9E50-7B3BF5C95133} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-11-27] (AVAST Software)
Task: {EA6AA7B7-66F4-4FDE-AE2D-E0B6B767FA4C} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe
Task: {EEC5D9B5-0B17-4240-B5A3-D9D07ABDE426} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {F76E9AF7-3926-4C8E-ACCF-3F894B2D24F8} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {F8BE833E-9B9C-47FE-B0E0-F6765C43BF09} - System32\Tasks\DMREngine => C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [2011-05-20] (CyberLink)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_coolbox.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe

==================== Loaded Modules (whitelisted) ==============

2015-02-07 01:45 - 2014-12-13 09:03 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-04-11 12:02 - 2014-04-11 12:02 - 00034304 _____ () C:\WINDOWS\System32\sst9clm.dll
2014-12-12 18:53 - 2014-12-12 18:53 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll
2014-12-12 18:54 - 2014-12-12 18:54 - 05851328 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll
2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2012-12-14 02:42 - 2012-12-14 02:42 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-12-12 23:25 - 2014-12-12 23:25 - 00053248 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2015-02-09 16:43 - 2015-02-09 16:43 - 02912768 _____ () C:\Program Files\AVAST Software\Avast\defs\15020900\algo.dll
2014-12-12 18:54 - 2014-12-12 18:54 - 04495336 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll
2014-11-13 21:50 - 2014-10-16 10:26 - 00622880 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll
2015-02-07 11:07 - 2015-01-14 16:14 - 00348960 _____ () C:\Program Files (x86)\IObit\Start Menu 8\madExcept_.bpl
2015-02-07 11:07 - 2015-01-14 16:14 - 00183584 _____ () C:\Program Files (x86)\IObit\Start Menu 8\madBasic_.bpl
2015-02-07 11:07 - 2015-01-14 16:14 - 00050976 _____ () C:\Program Files (x86)\IObit\Start Menu 8\madDisAsm_.bpl
2015-02-07 11:07 - 2015-01-14 16:15 - 00268920 _____ () C:\Program Files (x86)\IObit\Start Menu 8\sqlite3.dll
2015-02-07 11:07 - 2015-01-14 16:15 - 00053024 _____ () C:\Program Files (x86)\IObit\Start Menu 8\parseAuto.dll
2015-02-07 11:07 - 2015-01-14 16:15 - 00622880 _____ () C:\Program Files (x86)\IObit\Start Menu 8\ProductStatistics.dll
2015-02-07 11:07 - 2015-01-14 16:15 - 00041248 _____ () C:\Program Files (x86)\IObit\Start Menu 8\winkey.dll
2011-05-20 11:13 - 2011-05-20 11:13 - 00206216 _____ () C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLNetMediaDMA.dll
2011-04-24 02:29 - 2011-04-24 02:29 - 00465640 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll
2014-12-12 18:55 - 2014-12-12 18:55 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-02-06 11:16 - 2015-02-04 10:02 - 01117512 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libglesv2.dll
2015-02-06 11:16 - 2015-02-04 10:02 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libegl.dll
2015-02-06 11:16 - 2015-02-04 10:02 - 09170760 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\pdf.dll
2015-02-06 11:16 - 2015-02-04 10:02 - 14965064 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\PepperFlash\pepflashplayer.dll
2015-01-26 22:21 - 2015-01-26 22:21 - 03925104 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:56E2E879
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
AlternateDataStreams: C:\Users\Coolbox\SkyDrive:ms-properties

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\str => ""="service"

==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Registry Areas =====================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Coolbox\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: cphs => 3
MSCONFIG\Services: DsiWMIService => 2
MSCONFIG\Services: EgisTec Ticket Service => 3
MSCONFIG\Services: ePowerSvc => 2
MSCONFIG\Services: FLEXnet Licensing Service => 3
MSCONFIG\Services: GfExperienceService => 2
MSCONFIG\Services: GREGService => 2
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: gusvc => 3
MSCONFIG\Services: IAStorDataMgrSvc => 2
MSCONFIG\Services: ICCS => 3
MSCONFIG\Services: IMFservice => 2
MSCONFIG\Services: Intel(R) Capability Licensing Service Interface => 2
MSCONFIG\Services: Live Updater Service => 2
MSCONFIG\Services: LiveUpdateSvc => 2
MSCONFIG\Services: LMS => 2
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: NTI IScheduleSvc => 2
MSCONFIG\Services: NvNetworkService => 2
MSCONFIG\Services: NvStreamSvc => 2
MSCONFIG\Services: PassThru Service => 2
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\Services: ST2012_Svc => 2
MSCONFIG\Services: StartW8Service => 2
MSCONFIG\Services: SwitchBoard => 3
MSCONFIG\Services: UNS => 2
HKLM\...\StartupApproved\Run: => "KONICA MINOLTA PagePro 1350WStatusDisplay"
HKLM\...\StartupApproved\Run: => "SpywareTerminatorShield"
HKLM\...\StartupApproved\Run: => "SpywareTerminatorUpdater"
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKLM\...\StartupApproved\Run32: => "SuiteTray"
HKLM\...\StartupApproved\Run32: => "ETDCtrl"
HKLM\...\StartupApproved\Run32: => "SpywareTerminatorUpdater"
HKLM\...\StartupApproved\Run32: => "SpywareTerminatorShield"
HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0"
HKLM\...\StartupApproved\Run32: => "BlueStacks Agent"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\StartupApproved\Run: => "FLV Player"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\StartupApproved\Run: => "EEDSpeedLauncher"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\StartupApproved\Run: => "icq"

==================== Accounts: =============================

Administrator (S-1-5-21-3442833130-3731506892-1951788502-500 - Administrator - Disabled)
coolbox (S-1-5-21-3442833130-3731506892-1951788502-1001 - Administrator - Enabled) => C:\Users\Coolbox
Guest (S-1-5-21-3442833130-3731506892-1951788502-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3442833130-3731506892-1951788502-1070 - Limited - Enabled)
SimonAndrej (S-1-5-21-3442833130-3731506892-1951788502-1072 - Limited - Enabled) => C:\Users\SimonAndrej

==================== Faulty Device Manager Devices =============

Name: Microsoft Visual Studio Location Simulator Sensor
Description: Microsoft Visual Studio Location Simulator Sensor
Class Guid: {5175d334-c371-4806-b3ba-71fd53c9258d}
Manufacturer: Microsoft Corporation
Service: SensorsSimulatorDriver
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver


==================== Event log errors: =========================

Application errors:
==================
Error: (02/09/2015 05:08:19 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Oznámení pro svazek C:\ nejsou aktivní.

Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)

Error: (02/09/2015 07:46:21 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (02/09/2015 07:33:43 AM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Oznámení pro svazek C:\ nejsou aktivní.

Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)

Error: (02/08/2015 02:18:44 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Oznámení pro svazek C:\ nejsou aktivní.

Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)

Error: (02/07/2015 10:49:40 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (02/07/2015 08:13:31 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Oznámení pro svazek C:\ nejsou aktivní.

Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)

Error: (02/07/2015 00:13:19 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (02/07/2015 00:13:18 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (02/07/2015 11:42:44 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: plugin-container.exe, verze: 35.0.1.5500, časové razítko: 0x54c1f9f3
Název chybujícího modulu: mozalloc.dll, verze: 35.0.1.5500, časové razítko: 0x54c1f224
Kód výjimky: 0x80000003
Posun chyby: 0x00001425
ID chybujícího procesu: 0x47c
Čas spuštění chybující aplikace: 0xplugin-container.exe0
Cesta k chybující aplikaci: plugin-container.exe1
Cesta k chybujícímu modulu: plugin-container.exe2
ID zprávy: plugin-container.exe3
Úplný název chybujícího balíčku: plugin-container.exe4
ID aplikace související s chybujícím balíčkem: plugin-container.exe5

Error: (02/07/2015 11:42:43 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program firefox.exe verze 35.0.1.5500 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: ec8

Čas spuštění: 01d042aac8a7c451

Čas ukončení: 499

Cesta k aplikaci: C:\Program Files (x86)\Mozilla Firefox\firefox.exe

ID hlášení: cafd06fb-aeb5-11e4-8057-b870f4b13fec

Úplný název chybujícího balíčku:

ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (02/09/2015 06:43:34 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (02/09/2015 06:43:30 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (02/09/2015 06:30:07 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (02/09/2015 06:30:02 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (02/09/2015 06:22:56 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (02/09/2015 06:22:52 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (02/09/2015 05:04:57 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5

Error: (02/09/2015 05:04:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba MLPTDR_Q neuspěla při spuštění v důsledku následující chyby:
%%193

Error: (02/09/2015 05:03:41 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (16:39:26, ‎9. ‎2. ‎2015) bylo neočekávané.

Error: (02/09/2015 02:29:00 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.


Microsoft Office Sessions:
=========================
Error: (02/09/2015 05:08:19 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)
C:\

Error: (02/09/2015 07:46:21 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (02/09/2015 07:33:43 AM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)
C:\

Error: (02/08/2015 02:18:44 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)
C:\

Error: (02/07/2015 10:49:40 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (02/07/2015 08:13:31 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Kontext: aplikace Windows

Podrobnosti:
Deník změn svazku je odstraňován. (HRESULT : 0x8007049a) (0x8007049a)
C:\

Error: (02/07/2015 00:13:19 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (02/07/2015 00:13:18 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (02/07/2015 11:42:44 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe35.0.1.550054c1f9f3mozalloc.dll35.0.1.550054c1f224800000030000142547c01d042af417a12d2C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll0c263937-aeb6-11e4-8057-b870f4b13fec

Error: (02/07/2015 11:42:43 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: firefox.exe35.0.1.5500ec801d042aac8a7c451499C:\Program Files (x86)\Mozilla Firefox\firefox.execafd06fb-aeb5-11e4-8057-b870f4b13fec


CodeIntegrity Errors:
===================================
Date: 2014-11-28 10:58:36.943
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:58:36.583
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:47.774
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:47.389
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:46.882
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:46.507
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:46.085
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:45.663
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:45.061
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2014-11-28 10:39:44.608
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i3-2310M CPU @ 2.10GHz
Percentage of memory in use: 64%
Total physical RAM: 3947.86 MB
Available physical RAM: 1409.1 MB
Total Pagefile: 7915.86 MB
Available Pagefile: 4857.11 MB
Total Virtual: 131072 MB
Available Virtual: 131071.8 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:916.41 GB) (Free:244.88 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: DF339300)
Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=916.4 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 09 úno 2015 21:23
od altrok
:arrow: Minimalne bych zakazal spousteni Spyware Terminatora pri startu a vypnul jeho real-time ochranu - kolize s avastem.


  • Stahnete Crystal Disk Info (CDI) http://sourceforge.jp/frs/redir.php?m=j ... o6_2_2.zip
  • archiv extrahujte a spustte vyextrahovany soubor DiskInfo.exe
  • ve spustenem programu kliknete nahore na Upravy -> Kopirovat (log mate nyni zkopirovany ve schrance)
  • log vlozte do dalsi odpovedi (Ctrl + V)


  • Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
  • ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
  • znovu spustte FRST a kliknete na Fix
  • po restartu na Vas vyskoci fixlog (pripadne bude ulozen na Plose), jehoz obsah mi vlozte do pristi odpovedi

    Kód: Vybrat vše

    Start
    CloseProcesses:
    HKLM\...\Run: [AutoKMS] => C:\WINDOWS\AutoKMS.exe [615936 2014-12-13] ()
    C:\WINDOWS\AutoKMS.exe
    HKLM-x32\...\Run: [ArcadeMovieService] => C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [177448 2011-05-09] (CyberLink Corp.)
    HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
    HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1131632 2014-08-05] (Dritek System Inc.)
    HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [] => [X]
    HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41360 2014-12-03] (Adobe Systems Incorporated)
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [AdobeBridge] => [X]
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {1867392d-805b-11e4-bff9-b870f4b13fec} - "F:\setup.exe"
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {2695d6dd-e571-11e3-bf76-b870f4b13fec} - "E:\setup.exe"
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {be70bbf9-ddb9-11e3-bf70-b870f4b13fec} - "E:\setup.exe"
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {e0934027-51e7-11e4-bfbe-b870f4b13fec} - "E:\setup.exe"
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {e0a597f3-2c6c-11e4-bfa2-b870f4b13fec} - "E:\setup.exe" 
    
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=sp-006&q={searchTerms}
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=sp-006&q={searchTerms}
    HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
    SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=sp-006&q={searchTerms}
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=sp-006&q={searchTerms}
    BHO: No Name -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> No File
    FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
    FF SearchEngineOrder.1: Google (avast)
    FF SelectedSearchEngine: Google
    FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\Extensions\iobitascsurfingprotection@iobit.com [2015-02-07]
    CHR HKLM-x32\...\Chrome\Extension: [iphahelpmejkbidhiecfeicblienleon] - No Path
    
    S3 cpuz137; \??\C:\Users\Coolbox\AppData\Local\Temp\cpuz137\cpuz137_x64.sys [X]
    U3 idsvc; No ImagePath
    
    2015-02-09 20:45 - 2015-02-09 20:46 - 00026026 _____ () C:\Users\Coolbox\Desktop\FRST.txt
    2015-02-07 20:32 - 2015-02-07 20:32 - 00000161 _____ () C:\WINDOWS\AutoKMS.ini
    2015-02-07 20:18 - 2015-02-07 20:18 - 00112640 _____ (forum.viry.cz) C:\Users\Coolbox\Desktop\FRSTLauncher.exe
    2015-02-07 19:32 - 2015-02-07 19:32 - 02112512 _____ () C:\Users\Coolbox\Downloads\adwcleaner_4.110 (1).exe
    2015-02-07 18:37 - 2015-02-07 20:27 - 00029696 _____ () C:\Users\Coolbox\AppData\Local\MSGBOX.EXE
    2015-02-07 16:56 - 2015-02-07 19:57 - 00000000 ____D () C:\AdwCleaner
    2015-02-07 16:51 - 2015-02-07 16:51 - 02112512 _____ () C:\Users\Coolbox\Downloads\adwcleaner_4.110.exe
    2011-05-28 07:27 - 2010-03-02 22:59 - 0131984 _____ () C:\ProgramData\FullRemove.exe
    Task: {212F6EC9-8D07-477D-B868-1E77F9E7BB41} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
    Task: {8E6F137A-2287-4BE6-B81C-067C6E0E7DD9} - System32\Tasks\Uninstaller_SkipUac_coolbox => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
    Task: {9382EA56-F9FB-420E-981A-D822A5709409} - System32\Tasks\{F4464FF3-D57C-4822-BEFA-F002C6C8B835} => pcalua.exe -a D:\MioDVD.exe -d D:\
    Task: {9AE0844D-BCAD-400E-BC8C-2535ADAC28F1} - System32\Tasks\Driver Booster SkipUAC (coolbox) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
    Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_coolbox.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
    AlternateDataStreams: C:\ProgramData\Temp:56E2E879
    AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
    EmptyTemp:
    End
    

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 09 úno 2015 22:27
od gabrin
----------------------------------------------------------------------------
CrystalDiskInfo 6.2.2 (C) 2008-2014 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 8.1 Pro [6.3 Build 9600] (x64)
Date : 2015/02/09 22:27:02

-- Controller Map ----------------------------------------------------------
+ Intel(R) Mobile Express Chipset SATA AHCI Controller [ATA]
- TOSHIBA MK1059GSM
- Slimtype DVD A DS8A5SH
- Řadič prostorů úložišť [SCSI]
- Broadcom Memory Stick [SCSI]

-- Disk List ---------------------------------------------------------------
(1) TOSHIBA MK1059GSM : 1000,2 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) TOSHIBA MK1059GSM
----------------------------------------------------------------------------
Model : TOSHIBA MK1059GSM
Firmware : GL001J
Serial Number : 71CQT0DJT
Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,2)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300 | SATA/300
Power On Hours : 7275 hod.
Power On Count : 2921 krát
Temperature : 41 C (105 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _50 000000000000 Počet chyb čtení
02 100 100 _50 000000000000 Průchodnost disku
03 100 100 __1 000000000CFD Čas na roztočení ploten
04 100 100 __0 000000000C70 Počet spuštění/zastavení
05 100 100 _50 000000000000 Počet přemapovaných sektorů
07 100 100 _50 000000000000 Počet chybných hledání
08 100 100 _50 000000000000 Čas potřebný na vyhledání
09 _82 _82 __0 000000001C6B Hodin v činnosti
0A 163 100 _30 000000000000 Počet opakovaných pokusů o roztočení ploten
0C 100 100 __0 000000000B69 Počet cyklů zapnutí zařízení
BF 100 100 __0 000000002A29 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000064 Počet vypnutí disku
C1 _98 _98 __0 00000000572D Počet cyklů načítání/vymazání
C2 100 100 __0 0036000F0029 Teplota
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 0000000000A0 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
DC 100 100 __0 00000000003E Posunutí disku vůči ose
DE _83 _83 __0 000000001B83 Počet hodin zalažení budoucího mechanismu magnetických hlav
DF 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony
E0 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené napětím mechanických částí
E2 100 100 __0 000000000166 Celkový čas zatížení budiče magnetických hlav
F0 100 100 __1 000000000000 Čas nastavování hlaviček - v hodinách

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2037 3143 5154 3044 4A54
020: 0000 4000 0000 474C 3030 314A 2020 544F 5348 4942
030: 4120 4D4B 3130 3539 4753 4D20 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0000 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0007 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0F06 0004 004C 0048
080: 01F8 0000 746B 7D09 6163 7469 BC09 6163 203F 008E
090: 008E 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 6003 0000 5000 0393
110: 61C8 3867 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0080 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 89A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 0B 00 64 64 00 00 00 00 00 00 00 02 05
010: 00 64 64 00 00 00 00 00 00 00 03 27 00 64 64 FD
020: 0C 00 00 00 00 00 04 32 00 64 64 70 0C 00 00 00
030: 00 00 05 33 00 64 64 00 00 00 00 00 00 00 07 0B
040: 00 64 64 00 00 00 00 00 00 00 08 05 00 64 64 00
050: 00 00 00 00 00 00 09 32 00 52 52 6B 1C 00 00 00
060: 00 00 0A 33 00 A3 64 00 00 00 00 00 00 00 0C 32
070: 00 64 64 69 0B 00 00 00 00 00 BF 32 00 64 64 29
080: 2A 00 00 00 00 00 C0 32 00 64 64 64 00 00 00 00
090: 00 00 C1 32 00 62 62 2D 57 00 00 00 00 00 C2 22
0A0: 00 64 64 29 00 0F 00 36 00 00 C4 32 00 64 64 00
0B0: 00 00 00 00 00 00 C5 32 00 64 64 A0 00 00 00 00
0C0: 00 00 C6 30 00 64 64 00 00 00 00 00 00 00 C7 32
0D0: 00 C8 C8 00 00 00 00 00 00 00 DC 02 00 64 64 3E
0E0: 00 00 00 00 00 00 DE 32 00 53 53 83 1B 00 00 00
0F0: 00 00 DF 32 00 64 64 00 00 00 00 00 00 00 E0 22
100: 00 64 64 00 00 00 00 00 00 00 E2 26 00 64 64 66
110: 01 00 00 00 00 00 F0 01 00 64 64 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 78 00 00 5B
170: 03 00 01 00 02 FF 00 31 01 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4D

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 32 00 00 00 00 00 00 00 00 00 00 02 32
010: 00 00 00 00 00 00 00 00 00 00 03 01 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 32 00 00 00 00 00 00 00 00 00 00 07 32
040: 00 00 00 00 00 00 00 00 00 00 08 32 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 1E 00 00 00 00 00 00 00 00 00 00 0C 00
070: 00 00 00 00 00 00 00 00 00 00 BF 00 00 00 00 00
080: 00 00 00 00 00 00 C0 00 00 00 00 00 00 00 00 00
090: 00 00 C1 00 00 00 00 00 00 00 00 00 00 00 C2 00
0A0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00
0B0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00
0C0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00
0D0: 00 00 00 00 00 00 00 00 00 00 DC 00 00 00 00 00
0E0: 00 00 00 00 00 00 DE 00 00 00 00 00 00 00 00 00
0F0: 00 00 DF 00 00 00 00 00 00 00 00 00 00 00 E0 00
100: 00 00 00 00 00 00 00 00 00 00 E2 00 00 00 00 00
110: 00 00 00 00 00 00 F0 01 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 36

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 09 úno 2015 22:47
od gabrin
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 08-02-2015
Ran by coolbox at 2015-02-09 22:33:53 Run:1
Running from C:\Users\Coolbox\Desktop
Loaded Profiles: coolbox (Available profiles: coolbox & SimonAndrej)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
HKLM\...\Run: [AutoKMS] => C:\WINDOWS\AutoKMS.exe [615936 2014-12-13] ()
C:\WINDOWS\AutoKMS.exe
HKLM-x32\...\Run: [ArcadeMovieService] => C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [177448 2011-05-09] (CyberLink Corp.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1131632 2014-08-05] (Dritek System Inc.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41360 2014-12-03] (Adobe Systems Incorporated)
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {1867392d-805b-11e4-bff9-b870f4b13fec} - "F:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {2695d6dd-e571-11e3-bf76-b870f4b13fec} - "E:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {be70bbf9-ddb9-11e3-bf70-b870f4b13fec} - "E:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {e0934027-51e7-11e4-bfbe-b870f4b13fec} - "E:\setup.exe"
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\...\MountPoints2: {e0a597f3-2c6c-11e4-bfa2-b870f4b13fec} - "E:\setup.exe"

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=s ... earchTerms}
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3442833130-3731506892-1951788502-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=s ... earchTerms}
BHO: No Name -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> No File
FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1: Google (avast)
FF SelectedSearchEngine: Google
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\Extensions\iobitascsurfingprotection@iobit.com [2015-02-07]
CHR HKLM-x32\...\Chrome\Extension: [iphahelpmejkbidhiecfeicblienleon] - No Path

S3 cpuz137; \??\C:\Users\Coolbox\AppData\Local\Temp\cpuz137\cpuz137_x64.sys [X]
U3 idsvc; No ImagePath

2015-02-09 20:45 - 2015-02-09 20:46 - 00026026 _____ () C:\Users\Coolbox\Desktop\FRST.txt
2015-02-07 20:32 - 2015-02-07 20:32 - 00000161 _____ () C:\WINDOWS\AutoKMS.ini
2015-02-07 20:18 - 2015-02-07 20:18 - 00112640 _____ (forum.viry.cz) C:\Users\Coolbox\Desktop\FRSTLauncher.exe
2015-02-07 19:32 - 2015-02-07 19:32 - 02112512 _____ () C:\Users\Coolbox\Downloads\adwcleaner_4.110 (1).exe
2015-02-07 18:37 - 2015-02-07 20:27 - 00029696 _____ () C:\Users\Coolbox\AppData\Local\MSGBOX.EXE
2015-02-07 16:56 - 2015-02-07 19:57 - 00000000 ____D () C:\AdwCleaner
2015-02-07 16:51 - 2015-02-07 16:51 - 02112512 _____ () C:\Users\Coolbox\Downloads\adwcleaner_4.110.exe
2011-05-28 07:27 - 2010-03-02 22:59 - 0131984 _____ () C:\ProgramData\FullRemove.exe
Task: {212F6EC9-8D07-477D-B868-1E77F9E7BB41} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {8E6F137A-2287-4BE6-B81C-067C6E0E7DD9} - System32\Tasks\Uninstaller_SkipUac_coolbox => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {9382EA56-F9FB-420E-981A-D822A5709409} - System32\Tasks\{F4464FF3-D57C-4822-BEFA-F002C6C8B835} => pcalua.exe -a D:\MioDVD.exe -d D:\
Task: {9AE0844D-BCAD-400E-BC8C-2535ADAC28F1} - System32\Tasks\Driver Booster SkipUAC (coolbox) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_coolbox.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
AlternateDataStreams: C:\ProgramData\Temp:56E2E879
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AutoKMS => value deleted successfully.
C:\WINDOWS\AutoKMS.exe => Moved successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ArcadeMovieService => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\BCSSync => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\LManager => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS6ServiceManager => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Acrobat Speed Launcher => value deleted successfully.
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value deleted successfully.
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => value deleted successfully.
"HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1867392d-805b-11e4-bff9-b870f4b13fec}" => Key deleted successfully.
HKCR\CLSID\{1867392d-805b-11e4-bff9-b870f4b13fec} => Key not found.
"HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2695d6dd-e571-11e3-bf76-b870f4b13fec}" => Key deleted successfully.
HKCR\CLSID\{2695d6dd-e571-11e3-bf76-b870f4b13fec} => Key not found.
"HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{be70bbf9-ddb9-11e3-bf70-b870f4b13fec}" => Key deleted successfully.
HKCR\CLSID\{be70bbf9-ddb9-11e3-bf70-b870f4b13fec} => Key not found.
"HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e0934027-51e7-11e4-bfbe-b870f4b13fec}" => Key deleted successfully.
HKCR\CLSID\{e0934027-51e7-11e4-bfbe-b870f4b13fec} => Key not found.
"HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e0a597f3-2c6c-11e4-bfa2-b870f4b13fec}" => Key deleted successfully.
HKCR\CLSID\{e0a597f3-2c6c-11e4-bfa2-b870f4b13fec} => Key not found.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\Software\Microsoft\Internet Explorer\Main\\Search Bar => value deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} => Key not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKU\S-1-5-21-3442833130-3731506892-1951788502-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}" => Key deleted successfully.
HKCR\CLSID\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}" => Key deleted successfully.
HKCR\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814} => Key not found.
Firefox DefaultSearchUrl deleted successfully.
Firefox SearchEngineOrder.1 deleted successfully.
Firefox SelectedSearchEngine deleted successfully.
C:\Users\Coolbox\AppData\Roaming\Mozilla\Firefox\Profiles\ba46fptn.default\Extensions\iobitascsurfingprotection@iobit.com not found.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\iphahelpmejkbidhiecfeicblienleon" => Key deleted successfully.
cpuz137 => Service deleted successfully.
idsvc => Service deleted successfully.
C:\Users\Coolbox\Desktop\FRST.txt => Moved successfully.
C:\WINDOWS\AutoKMS.ini => Moved successfully.
C:\Users\Coolbox\Desktop\FRSTLauncher.exe => Moved successfully.
C:\Users\Coolbox\Downloads\adwcleaner_4.110 (1).exe => Moved successfully.
C:\Users\Coolbox\AppData\Local\MSGBOX.EXE => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Coolbox\Downloads\adwcleaner_4.110.exe => Moved successfully.
C:\ProgramData\FullRemove.exe => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{212F6EC9-8D07-477D-B868-1E77F9E7BB41}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{212F6EC9-8D07-477D-B868-1E77F9E7BB41}" => Key deleted successfully.
C:\Windows\System32\Tasks\Uninstaller_SkipUac_Administrator => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Uninstaller_SkipUac_Administrator" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8E6F137A-2287-4BE6-B81C-067C6E0E7DD9}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8E6F137A-2287-4BE6-B81C-067C6E0E7DD9}" => Key deleted successfully.
C:\Windows\System32\Tasks\Uninstaller_SkipUac_coolbox => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Uninstaller_SkipUac_coolbox" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9382EA56-F9FB-420E-981A-D822A5709409}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9382EA56-F9FB-420E-981A-D822A5709409}" => Key deleted successfully.
C:\Windows\System32\Tasks\{F4464FF3-D57C-4822-BEFA-F002C6C8B835} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F4464FF3-D57C-4822-BEFA-F002C6C8B835}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9AE0844D-BCAD-400E-BC8C-2535ADAC28F1}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9AE0844D-BCAD-400E-BC8C-2535ADAC28F1}" => Key deleted successfully.
C:\Windows\System32\Tasks\Driver Booster SkipUAC (coolbox) => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster SkipUAC (coolbox)" => Key deleted successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job => Moved successfully.
C:\WINDOWS\Tasks\Uninstaller_SkipUac_coolbox.job => Moved successfully.
C:\ProgramData\Temp => ":56E2E879" ADS removed successfully.
C:\ProgramData\Temp => ":D1B5B4F1" ADS removed successfully.
EmptyTemp: => Removed 889.3 MB temporary data.


The system needed a reboot.

==== End of Fixlog 22:35:16 ====

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 09 úno 2015 23:10
od altrok
Doporucuju casteji zalohovat data.
  • Win + X (Win je klavesa mezi levym Ctrl a Altem)
  • vyberte moznost Prikazovy radek (spravce)
  • vepiste
  • chkdsk /r
  • odentrujte a restartujte PC
  • tato kontrola a pripadna oprava probihaji pred nactenim OS a trvaji az nekolik hodin, takze ji pustte napr. pres noc
Pak bych rad videl aktualni stav HDD (novy log z CDI).

Jinak je to z cisteni vsechno... pokud se stav PC zlepsil, uz jen uklidime.

Re: problem s NT bookem posílám LOG, děkuji

Napsal: 10 úno 2015 05:30
od gabrin
----------------------------------------------------------------------------
CrystalDiskInfo 6.2.2 (C) 2008-2014 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 8.1 Pro [6.3 Build 9600] (x64)
Date : 2015/02/10 5:28:44

-- Controller Map ----------------------------------------------------------
+ Intel(R) Mobile Express Chipset SATA AHCI Controller [ATA]
- TOSHIBA MK1059GSM
- Slimtype DVD A DS8A5SH
- Řadič prostorů úložišť [SCSI]
- Broadcom Memory Stick [SCSI]

-- Disk List ---------------------------------------------------------------
(1) TOSHIBA MK1059GSM : 1000,2 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) TOSHIBA MK1059GSM
----------------------------------------------------------------------------
Model : TOSHIBA MK1059GSM
Firmware : GL001J
Serial Number : 71CQT0DJT
Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,2)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300 | SATA/300
Power On Hours : 7282 hod.
Power On Count : 2921 krát
Temperature : 38 C (100 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 _50 000000000000 Počet chyb čtení
02 100 100 _50 000000000000 Průchodnost disku
03 100 100 __1 000000000CFD Čas na roztočení ploten
04 100 100 __0 000000000C70 Počet spuštění/zastavení
05 100 100 _50 000000000000 Počet přemapovaných sektorů
07 100 100 _50 000000000000 Počet chybných hledání
08 100 100 _50 000000000000 Čas potřebný na vyhledání
09 _82 _82 __0 000000001C72 Hodin v činnosti
0A 163 100 _30 000000000000 Počet opakovaných pokusů o roztočení ploten
0C 100 100 __0 000000000B69 Počet cyklů zapnutí zařízení
BF 100 100 __0 000000002A2E Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000064 Počet vypnutí disku
C1 _98 _98 __0 000000005740 Počet cyklů načítání/vymazání
C2 100 100 __0 0036000F0026 Teplota
C4 100 100 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 100 100 __0 000000000138 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
DC 100 100 __0 00000000003E Posunutí disku vůči ose
DE _83 _83 __0 000000001B8A Počet hodin zalažení budoucího mechanismu magnetických hlav
DF 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené opakovanými úkony
E0 100 100 __0 000000000000 Zatížení budiče magnetických hlav způsobené napětím mechanických částí
E2 100 100 __0 0000000001A7 Celkový čas zatížení budiče magnetických hlav
F0 100 100 __1 000000000000 Čas nastavování hlaviček - v hodinách

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2037 3143 5154 3044 4A54
020: 0000 4000 0000 474C 3030 314A 2020 544F 5348 4942
030: 4120 4D4B 3130 3539 4753 4D20 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0200 0000 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0007 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 0F06 0004 004C 0048
080: 01F8 0000 746B 7D09 6163 7469 BC09 6163 203F 008E
090: 008E 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 6003 0000 5000 0393
110: 61C8 3867 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 0000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 101F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0080 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 89A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 0B 00 64 64 00 00 00 00 00 00 00 02 05
010: 00 64 64 00 00 00 00 00 00 00 03 27 00 64 64 FD
020: 0C 00 00 00 00 00 04 32 00 64 64 70 0C 00 00 00
030: 00 00 05 33 00 64 64 00 00 00 00 00 00 00 07 0B
040: 00 64 64 00 00 00 00 00 00 00 08 05 00 64 64 00
050: 00 00 00 00 00 00 09 32 00 52 52 72 1C 00 00 00
060: 00 00 0A 33 00 A3 64 00 00 00 00 00 00 00 0C 32
070: 00 64 64 69 0B 00 00 00 00 00 BF 32 00 64 64 2E
080: 2A 00 00 00 00 00 C0 32 00 64 64 64 00 00 00 00
090: 00 00 C1 32 00 62 62 40 57 00 00 00 00 00 C2 22
0A0: 00 64 64 26 00 0F 00 36 00 00 C4 32 00 64 64 00
0B0: 00 00 00 00 00 00 C5 32 00 64 64 38 01 00 00 00
0C0: 00 00 C6 30 00 64 64 00 00 00 00 00 00 00 C7 32
0D0: 00 C8 C8 00 00 00 00 00 00 00 DC 02 00 64 64 3E
0E0: 00 00 00 00 00 00 DE 32 00 53 53 8A 1B 00 00 00
0F0: 00 00 DF 32 00 64 64 00 00 00 00 00 00 00 E0 22
100: 00 64 64 00 00 00 00 00 00 00 E2 26 00 64 64 A7
110: 01 00 00 00 00 00 F0 01 00 64 64 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 78 00 00 5B
170: 03 00 01 00 02 FF 00 31 01 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 50

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 32 00 00 00 00 00 00 00 00 00 00 02 32
010: 00 00 00 00 00 00 00 00 00 00 03 01 00 00 00 00
020: 00 00 00 00 00 00 04 00 00 00 00 00 00 00 00 00
030: 00 00 05 32 00 00 00 00 00 00 00 00 00 00 07 32
040: 00 00 00 00 00 00 00 00 00 00 08 32 00 00 00 00
050: 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00
060: 00 00 0A 1E 00 00 00 00 00 00 00 00 00 00 0C 00
070: 00 00 00 00 00 00 00 00 00 00 BF 00 00 00 00 00
080: 00 00 00 00 00 00 C0 00 00 00 00 00 00 00 00 00
090: 00 00 C1 00 00 00 00 00 00 00 00 00 00 00 C2 00
0A0: 00 00 00 00 00 00 00 00 00 00 C4 00 00 00 00 00
0B0: 00 00 00 00 00 00 C5 00 00 00 00 00 00 00 00 00
0C0: 00 00 C6 00 00 00 00 00 00 00 00 00 00 00 C7 00
0D0: 00 00 00 00 00 00 00 00 00 00 DC 00 00 00 00 00
0E0: 00 00 00 00 00 00 DE 00 00 00 00 00 00 00 00 00
0F0: 00 00 DF 00 00 00 00 00 00 00 00 00 00 00 E0 00
100: 00 00 00 00 00 00 00 00 00 00 E2 00 00 00 00 00
110: 00 00 00 00 00 00 F0 01 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 36