Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu - zamrzá internet

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
petr_xxx
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 02 črc 2014 16:01

Prosím o kontrolu - zamrzá internet

#1 Příspěvek od petr_xxx »

Zdravím,

prosím o kontrolu počítače. V pondělí na něm byl otevřen podvodný email, který vyzývá k úhradě pohledávky. Od té doby nefunguje internet přes Internet explorer ani přes Google chrome. Načte se pouze homepage a pak jakoby internet zamrzne. Nedá se kliknout na žádný odkaz, ani přihlásit do emailu.

Pro urychlení přikládám logy z RSIT a Adwcleaneru.


Logfile of random's system information tool 1.08 (written by random/random)
Run by ivana.novakova at 2014-07-03 08:35:48
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 218 GB (76%) free of 288 GB
Total RAM: 1967 MB (25% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:36:03, on 3.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\AVG\AVG10\avgtray.exe
C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
C:\windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe
C:\windows\SysWOW64\taskmgr.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
C:\Program Files\trend micro\ivana.novakova.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O3 - Toolbar: PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [DTRun] c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [HPPQVideo] "C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe" -r SOFTWARE\Hewlett-Packard\ScheduledLaunch\CLJ_CM2320_MFP_Series -f PQOptimizerVideo.xml -o remindLater
O4 - HKLM\..\Run: [ToolBoxFX] "C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Firebird] C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe -a
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [AdobeChk] C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com//activex/ractrl.cab?lmi=1058
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = stakoplast.local
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = stakoplast.local
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = stakoplast.local
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Crypkey License - Unknown owner - crypserv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HASP License Manager (hasplms) - Unknown owner - C:\windows\system32\hasplms.exe (file missing)
O23 - Service: HP Health Check Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP DayStarter Service (HPDayStarterService) - Hewlett-Packard Company - c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Hotkey Monitor (hpHotkeyMonitor) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Architect Helper Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\system\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 15335 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG10\avgchsva.exe /boot
C:\PROGRA~2\AVG\AVG10\avgrsa.exe /restart /boot
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
winlogon.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
C:\windows\system32\svchost.exe -k GPSvcGroup
atieclxx
C:\windows\system32\Hpservice.exe
C:\windows\system32\vcsFPService.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 28845504
\??\C:\windows\system32\conhost.exe "-304170760-10344127741679342038-9341443961651766819750051381264220625-2092765746
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
"C:\Program Files\LSI SoftModem\agr64svc.exe"
"C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
crypserv.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\hasplms.exe -run
"C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe"
"c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe"
C:\windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Program Files (x86)\AVG\AVG10\avgam.exe"
"C:\Program Files (x86)\AVG\AVG10\avgnsa.exe"
C:\Program Files (x86)\AVG\AVG10\avgcsrvx.exe /pipeName=91f1e479-b88a-4812-82fb-1f3c1c047a18 /coreSdkOptions=0 /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
C:\windows\system\uArcCapture.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
WLIDSvcM.exe 3500
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
"taskhost.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe" "HP Color LaserJet CM2320 MFP Series Fax"
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\AVG\AVG10\avgtray.exe"
"C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe" -a
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
taskmgr
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe" /hidden
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe" "<hpNotification><Toast><Title>HP Wireless Assistant</Title><Text>Combo: On</Text><IconPath>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WA_tray_32_on.ico</IconPath><ID>1515118733</ID><Path>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe</Path><Parameters></Parameters></Toast></hpNotification>"
C:\Program Files (x86)\AVG\AVG10\avgcsrva.exe /pipeName=93e36248-3262-4f2a-89cf-a23085e77e2f /coreSdkOptions=30 /logConfFile="C:\ProgramData\AVG10\temp\a034aa13-3151-4a20-babc-227016c0ea32-f74-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10" /tempPath="C:\ProgramData\AVG10\temp\"
{E6C3D38D-5F09-4CAD-AADA-A6A89EB06294}
{F53C613B-D8BB-418F-AF9D-AB85FB1482D5}
{054F3744-6876-4AB0-A4F4-DCC7071A2B70}
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:3412 CREDAT:734214 /prefetch:2
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe"
"C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
"C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version9\TeamViewer9_Logfile.log
C:\windows\system32\sppsvc.exe
C:\windows\servicing\TrustedInstaller.exe
"C:\windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\ivana.novakova\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\avgssiea.dll [2011-09-09 3561824]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-04-08 92208]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\avgssie.dll [2011-09-09 2276704]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{25A3A431-30BB-47C8-AD6A-E1063801134F} - PDF Architect Toolbar - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll [2013-04-08 654384]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HPPowerAssistant"=C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2010-06-19 1691192]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 2174760]
"HPWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe [2010-04-05 8192]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-03-17 487424]
"HP Color LaserJet CM2320 MFP Series Fax"=C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe [2009-09-22 3700736]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2012-06-26 1516632]
"AdobeChk"=C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe [2014-07-03 111104]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2010-03-01 256056]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-04 284696]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2009-10-23 563736]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-08-05 98304]
"DTRun"=c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2009-11-19 518656]
"AVG_TRAY"=C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2012-08-01 2345592]
"HPPQVideo"=C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe [2007-05-07 106496]
"ToolBoxFX"=C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe [2009-10-22 53248]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"Firebird"=C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe [2008-06-13 2723840]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe

C:\Users\ivana.novakova\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"disablecad"=1
"dontdisplaylockeduserid"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2014-07-03 08:35:50 ----D---- C:\Program Files\trend micro
2014-07-03 08:35:48 ----D---- C:\rsit
2014-06-30 14:34:02 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AdobeChk
2014-06-11 08:29:05 ----A---- C:\windows\SYSWOW64\usp10.dll
2014-06-11 08:29:05 ----A---- C:\windows\system32\usp10.dll
2014-06-11 08:29:05 ----A---- C:\windows\system32\drivers\tcpip.sys
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml6r.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml6.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml3r.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml3.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml6r.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml6.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml3r.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml3.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\drivers\FWPKCLNT.SYS
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\urlmon.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\mshtml.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2014-06-11 08:29:01 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 08:29:01 ----A---- C:\windows\system32\ieetwproxystub.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iesetup.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iertutil.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iernonce.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\urlmon.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\ieetwcollectorres.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\ieetwcollector.exe
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\ieui.dll
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\ieframe.dll
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2014-06-11 08:28:59 ----A---- C:\windows\system32\msfeeds.dll
2014-06-11 08:28:59 ----A---- C:\windows\system32\dxtmsft.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\iesetup.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\iertutil.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\ie4uinit.exe
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\wininet.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\vbscript.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\msrating.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\jscript9.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2014-06-11 08:28:57 ----A---- C:\windows\system32\jsproxy.dll
2014-06-11 08:28:57 ----A---- C:\windows\system32\iernonce.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\mshtmled.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\ieui.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\ieframe.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\dxtrans.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\vbscript.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\mshtmlmedia.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\jscript9diag.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\jscript9.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\ieUnatt.exe
2014-06-11 08:28:55 ----A---- C:\windows\system32\ieapfltr.dll
2014-06-11 08:28:54 ----A---- C:\windows\system32\wininet.dll
2014-06-11 08:28:54 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2014-06-11 08:28:54 ----A---- C:\windows\system32\msrating.dll
2014-06-11 08:28:53 ----A---- C:\windows\system32\mshtml.dll
2014-06-11 08:27:45 ----A---- C:\windows\system32\aepdu.dll
2014-06-11 08:27:45 ----A---- C:\windows\system32\aeinv.dll

======List of files/folders modified in the last 1 months======

2014-07-03 08:35:50 ----RD---- C:\Program Files
2014-07-03 08:33:07 ----D---- C:\windows\system32\config
2014-07-03 08:27:14 ----HD---- C:\windows\Temp
2014-07-03 08:26:58 ----D---- C:\windows\system32\drivers\AVG
2014-07-03 08:22:57 ----D---- C:\windows\inf
2014-07-01 16:45:49 ----D---- C:\windows\system32\Tasks
2014-07-01 16:42:33 ----D---- C:\windows\System32
2014-07-01 16:42:33 ----A---- C:\windows\system32\PerfStringBackup.INI
2014-07-01 16:37:09 ----A---- C:\windows\SYSWOW64\log.txt
2014-07-01 16:37:06 ----D---- C:\Windows
2014-07-01 16:31:53 ----D---- C:\ProgramData\LogMeIn
2014-07-01 16:31:53 ----D---- C:\Program Files (x86)\PDFCreator
2014-07-01 16:31:34 ----D---- C:\windows\Panther
2014-07-01 16:31:31 ----D---- C:\windows\Logs
2014-07-01 16:31:31 ----D---- C:\windows\debug
2014-07-01 11:24:50 ----D---- C:\windows\Tasks
2014-07-01 11:24:50 ----D---- C:\windows\SysWOW64
2014-07-01 11:24:50 ----D---- C:\windows\system32\wfp
2014-07-01 11:24:50 ----D---- C:\windows\system32\wbem
2014-07-01 11:24:50 ----D---- C:\windows\system32\DriverStore
2014-07-01 11:24:50 ----D---- C:\windows\system32\drivers
2014-07-01 11:24:50 ----D---- C:\windows\system32\catroot2
2014-07-01 11:24:48 ----SHD---- C:\windows\Installer
2014-07-01 11:24:48 ----D---- C:\windows\system32\CodeIntegrity
2014-07-01 11:24:48 ----D---- C:\windows\security
2014-07-01 11:24:48 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AVG10
2014-07-01 11:24:48 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AADServer
2014-07-01 11:24:47 ----D---- C:\ProgramData\AVG10
2014-07-01 11:24:44 ----D---- C:\windows\registration
2014-07-01 09:36:57 ----SHD---- C:\System Volume Information
2014-07-01 09:12:55 ----D---- C:\windows\Prefetch
2014-07-01 09:08:41 ----HD---- C:\Config.Msi
2014-07-01 08:46:32 ----D---- C:\ProgramData\MFAData
2014-06-30 15:10:40 ----D---- C:\amd64
2014-06-30 08:39:46 ----D---- C:\ProgramData\PDFC
2014-06-20 14:42:14 ----D---- C:\tt
2014-06-17 14:04:52 ----RD---- C:\Program Files (x86)
2014-06-13 09:11:58 ----D---- C:\windows\rescache
2014-06-13 08:27:08 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2014-06-13 08:24:42 ----D---- C:\windows\winsxs
2014-06-13 08:20:49 ----D---- C:\windows\SYSWOW64\en-US
2014-06-13 08:20:49 ----D---- C:\windows\system32\en-US
2014-06-13 08:20:49 ----D---- C:\Program Files\Internet Explorer
2014-06-13 08:20:49 ----D---- C:\Program Files (x86)\Internet Explorer
2014-06-12 08:25:49 ----D---- C:\windows\system32\MRT
2014-06-12 08:22:32 ----A---- C:\windows\system32\MRT.exe
2014-06-12 08:21:28 ----D---- C:\ProgramData\Microsoft Help
2014-06-12 08:19:19 ----SD---- C:\windows\system32\CompatTel
2014-06-11 08:27:42 ----D---- C:\windows\system32\catroot
2014-06-09 11:48:32 ----D---- C:\windows\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVGIDSEH;AVGIDSEH; C:\windows\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 26704]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\windows\system32\DRIVERS\avgrkx64.sys [2011-03-16 37456]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2009-07-08 30008]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-03-04 540696]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 Avgldx64;AVG AVI Loader Driver; C:\windows\system32\DRIVERS\avgldx64.sys [2012-11-12 312160]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\windows\system32\DRIVERS\avgmfx64.sys [2011-03-01 41552]
R1 Avgtdia;AVG TDI Driver; C:\windows\system32\DRIVERS\avgtdia.sys [2011-04-05 377936]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 NetworkX;NetworkX; C:\windows\syswow64\ckldrv.sys []
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\windows\system32\DRIVERS\vpcnfltr.sys [2010-11-20 59392]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\windows\system32\drivers\vpcvmm.sys [2010-11-20 360832]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aksdf;aksdf; \??\C:\windows\system32\drivers\aksdf.sys [2011-11-24 78208]
R2 aksfridge;Sentinel Fridge; C:\windows\system32\DRIVERS\aksfridge.sys [2011-11-24 139592]
R2 hardlock;hardlock; \??\C:\windows\system32\drivers\hardlock.sys [2011-10-07 321536]
R3 Accelerometer;HP Accelerometer; C:\windows\system32\DRIVERS\Accelerometer.sys [2009-07-08 41272]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2009-11-02 1209856]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2010-08-05 6859776]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2010-08-05 264192]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2009-12-04 32640]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\windows\system32\drivers\AtiHdmi.sys [2010-05-06 125456]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\windows\system32\DRIVERS\bcmwl664.sys [2011-01-21 3063360]
R3 HECIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-02-16 25912]
R3 Impcd;Impcd; C:\windows\system32\DRIVERS\Impcd.sys [2010-02-10 158720]
R3 rtsuvc;HP Webcam [2 MP Fixed]; C:\windows\system32\DRIVERS\rtsuvc.sys [2009-12-22 89216]
R3 STHDA;IDT High Definition Audio CODEC; C:\windows\system32\DRIVERS\stwrt64.sys [2010-03-17 505856]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\windows\system32\drivers\serscan.sys [2009-07-14 12288]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-06-04 1379376]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\windows\system32\DRIVERS\vpchbus.sys [2010-11-20 194944]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\windows\system32\DRIVERS\vpcusb.sys [2010-11-20 95232]
S3 akshasp;SafeNet Inc. HASP Key; C:\windows\system32\DRIVERS\akshasp.sys [2011-02-09 53760]
S3 akshhl;SafeNet Inc. Sentinel HL Key; C:\windows\system32\DRIVERS\akshhl.sys [2011-09-08 57088]
S3 aksusb;SafeNet Inc. USB Key; C:\windows\system32\DRIVERS\aksusb.sys [2011-08-09 21120]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwampfl;Bluetooth AMP USB Filter; C:\windows\system32\drivers\btwampfl.sys [2010-06-10 342056]
S3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-06-10 102952]
S3 btwavdt;Bluetooth AVDT Service; C:\windows\system32\DRIVERS\btwavdt.sys [2010-06-10 135720]
S3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-06-10 39464]
S3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-06-10 21544]
S3 lmimirr;lmimirr; C:\windows\system32\DRIVERS\lmimirr.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\windows\system32\DRIVERS\pccsmcfdx64.sys [2012-06-11 26112]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2009-11-11 232480]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2010-01-13 325152]
S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 VMBusHID;VMBusHID; C:\windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AESTFilters;Andrea ST Filters Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [2009-03-03 89600]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agr64svc.exe [2009-11-02 16896]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2010-08-05 203264]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [2011-02-08 269520]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-06-09 952096]
R2 Crypkey License;Crypkey License; C:\windows\system32\crypserv.exe [2008-05-08 122880]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 hasplms;HASP License Manager; C:\windows\system32\hasplms.exe [2011-12-02 4913608]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [2010-07-01 121344]
R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [2009-06-01 136192]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2010-06-19 103992]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-04-05 103992]
R2 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe [2010-05-10 90112]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2010-06-25 92216]
R2 hpHotkeyMonitor;HP Hotkey Monitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2010-03-01 264248]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\windows\system32\svchost.exe [2009-07-14 27136]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2009-07-08 30520]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-11-04 268824]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-04-08 1320496]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-04-08 799280]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2009-10-23 635416]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 STacSV;Audio Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [2010-03-17 244736]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-06-16 5037888]
R2 uArcCapture;ArcCapture; C:\windows\system\uArcCapture.exe [2009-12-04 506472]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-11-04 2320920]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2009-12-14 2019120]
R3 hpqcxs08;hpqcxs08; C:\windows\system32\svchost.exe [2009-07-14 27136]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2010-06-25 665656]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-11-20 136176]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 27136]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 27136]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-13 262320]
S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-11-20 136176]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2014-05-30 111616]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-02-15 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------


====================================================
====================================================
====================================================


# AdwCleaner v3.214 - Report created 03/07/2014 at 08:45:59
# Updated 29/06/2014 by Xplode
# Operating System : Windows 7 Professional Service Pack 1 (64 bits)
# Username : ivana.novakova - NOVAKOVA-HP
# Running from : C:\Users\ivana.novakova\Desktop\adwcleaner_3.214.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Users\ivana.novakova\AppData\Roaming\pdfforge
Folder Deleted : C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKLM\Software\DeviceVM
Key Deleted : [x64] HKLM\SOFTWARE\DeviceVM

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17126


-\\ Google Chrome v35.0.1916.153

[ File : C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Extension] : jmfkcklnlgedgbglfkkgedjfmejoahla

*************************

AdwCleaner[R0].txt - [2273 octets] - [03/07/2014 08:43:55]
AdwCleaner[S0].txt - [2214 octets] - [03/07/2014 08:45:59]

########## EOF - J:\AdwCleaner\AdwCleaner[S0].txt - [2274 octets] ##########

petr_xxx
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 02 črc 2014 16:01

Re: Prosím o kontrolu - zamrzá internet

#2 Příspěvek od petr_xxx »

Tak po vyčištění Adwcleanerem začal internet opět fungovat. I tak prosím o kontrolu, pro jistotu. Přikládám nový log z RSIT.

Děkuji.

=====================================================
=====================================================


Logfile of random's system information tool 1.08 (written by random/random)
Run by ivana.novakova at 2014-07-03 10:26:40
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 218 GB (76%) free of 288 GB
Total RAM: 1967 MB (51% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:26:50, on 3.7.2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\AVG\AVG10\avgtray.exe
C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe
C:\windows\SysWOW64\RunDll32.exe
C:\windows\SysWOW64\taskmgr.exe
C:\Program Files\trend micro\ivana.novakova.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [DTRun] c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [HPPQVideo] "C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe" -r SOFTWARE\Hewlett-Packard\ScheduledLaunch\CLJ_CM2320_MFP_Series -f PQOptimizerVideo.xml -o remindLater
O4 - HKLM\..\Run: [ToolBoxFX] "C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Firebird] C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe -a
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [AdobeChk] C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com//activex/ractrl.cab?lmi=1058
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = stakoplast.local
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = stakoplast.local
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = stakoplast.local
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Crypkey License - Unknown owner - crypserv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HASP License Manager (hasplms) - Unknown owner - C:\windows\system32\hasplms.exe (file missing)
O23 - Service: HP Health Check Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: HP LaserJet Service - HP - C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP DayStarter Service (HPDayStarterService) - Hewlett-Packard Company - c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Hotkey Monitor (hpHotkeyMonitor) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Architect Helper Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\system\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14952 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG10\avgchsva.exe /boot
C:\PROGRA~2\AVG\AVG10\avgrsa.exe /restart /boot
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\system32\atiesrxx.exe
winlogon.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\Hpservice.exe
atieclxx
C:\windows\system32\vcsFPService.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe 28476112
\??\C:\windows\system32\conhost.exe "-1808136080-1478274443364838401-74952986-2056775667-16826244611245098826-1567789729
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
"C:\Program Files\LSI SoftModem\agr64svc.exe"
"C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe"
"C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe"
crypserv.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\system32\hasplms.exe -run
"C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe"
"C:\Program Files (x86)\AVG\AVG10\avgam.exe"
"C:\Program Files (x86)\AVG\AVG10\avgnsa.exe"
"c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe"
C:\windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\windows\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
C:\windows\System32\svchost.exe -k HPZ12
"c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe"
C:\Program Files (x86)\AVG\AVG10\avgcsrvx.exe /pipeName=c65f4065-ee4a-4c5b-af32-02728abc7749 /coreSdkOptions=0 /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10"
C:\windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
C:\windows\system\uArcCapture.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
WLIDSvcM.exe 3396
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"taskhost.exe"
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe" "HP Color LaserJet CM2320 MFP Series Fax"
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
"C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe"
{6BAE1CED-373E-44BE-9462-19455F54096F}
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe"
{03509640-1858-4559-A7D4-5051ABD2DE76}
"C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe"
{D812E55C-AF64-4977-9C91-29B1C788A0D4}
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\AVG\AVG10\avgtray.exe"
"C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
"C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe" -a
C:\windows\SysWOW64\RunDll32.exe "C:\Program Files\WIDCOMM\Bluetooth Software\SysWOW64\BtMmHook.dll",SetAndWaitBtMmHook
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
taskmgr
"C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe" /hidden
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe" "<hpNotification><Toast><Title>HP Wireless Assistant</Title><Text>Combo: On</Text><IconPath>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WA_tray_32_on.ico</IconPath><ID>801318269</ID><Path>C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe</Path><Parameters></Parameters></Toast></hpNotification>"
C:\Program Files (x86)\AVG\AVG10\avgcsrva.exe /pipeName=a1f40462-2039-4137-8ec8-5f5a1ed19818 /coreSdkOptions=30 /logConfFile="C:\ProgramData\AVG10\temp\bb8c335e-dde8-441c-9203-00697ceb240d-1744-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10" /tempPath="C:\ProgramData\AVG10\temp\"
"C:\windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1216150944-3253024930-2114404105-112210_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1216150944-3253024930-2114404105-112210 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\ivana.novakova\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\windows\tasks\Adobe Flash Player Updater.job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-04-08 92208]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HPPowerAssistant"=C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [2010-06-19 1691192]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-06-04 2174760]
"HPWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe [2010-04-05 8192]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-03-17 487424]
"HP Color LaserJet CM2320 MFP Series Fax"=C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe [2009-09-22 3700736]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2009-06-17 2363392]
"PC Suite Tray"=C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2012-06-26 1516632]
"AdobeChk"=C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe [2014-07-03 111104]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2010-03-01 256056]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-03-04 284696]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2009-10-23 563736]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-08-05 98304]
"DTRun"=c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [2009-11-19 518656]
"AVG_TRAY"=C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2012-08-01 2345592]
"HPPQVideo"=C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe [2007-05-07 106496]
"ToolBoxFX"=C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe [2009-10-22 53248]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"Firebird"=C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe [2008-06-13 2723840]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe

C:\Users\ivana.novakova\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"disablecad"=1
"dontdisplaylockeduserid"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2014-07-03 08:45:37 ----A---- C:\windows\SYSWOW64\sqlite3.dll
2014-07-03 08:35:50 ----D---- C:\Program Files\trend micro
2014-07-03 08:35:48 ----D---- C:\rsit
2014-06-30 14:34:02 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AdobeChk
2014-06-11 08:29:05 ----A---- C:\windows\SYSWOW64\usp10.dll
2014-06-11 08:29:05 ----A---- C:\windows\system32\usp10.dll
2014-06-11 08:29:05 ----A---- C:\windows\system32\drivers\tcpip.sys
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml6r.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml6.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml3r.dll
2014-06-11 08:29:04 ----A---- C:\windows\SYSWOW64\msxml3.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml6r.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml6.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml3r.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\msxml3.dll
2014-06-11 08:29:04 ----A---- C:\windows\system32\drivers\FWPKCLNT.SYS
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\urlmon.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\jscript9diag.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-06-11 08:29:02 ----A---- C:\windows\SYSWOW64\ieetwproxystub.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\mshtml.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2014-06-11 08:29:01 ----A---- C:\windows\SYSWOW64\dxtmsft.dll
2014-06-11 08:29:01 ----A---- C:\windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 08:29:01 ----A---- C:\windows\system32\ieetwproxystub.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iesetup.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iertutil.dll
2014-06-11 08:29:00 ----A---- C:\windows\SYSWOW64\iernonce.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\urlmon.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\ieetwcollectorres.dll
2014-06-11 08:29:00 ----A---- C:\windows\system32\ieetwcollector.exe
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\ieui.dll
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\ieframe.dll
2014-06-11 08:28:59 ----A---- C:\windows\SYSWOW64\dxtrans.dll
2014-06-11 08:28:59 ----A---- C:\windows\system32\msfeeds.dll
2014-06-11 08:28:59 ----A---- C:\windows\system32\dxtmsft.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\iesetup.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\iertutil.dll
2014-06-11 08:28:58 ----A---- C:\windows\system32\ie4uinit.exe
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\wininet.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\vbscript.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\msrating.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\mshtmlmedia.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\jscript9.dll
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2014-06-11 08:28:57 ----A---- C:\windows\SYSWOW64\ieapfltr.dll
2014-06-11 08:28:57 ----A---- C:\windows\system32\jsproxy.dll
2014-06-11 08:28:57 ----A---- C:\windows\system32\iernonce.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\mshtmled.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\ieui.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\ieframe.dll
2014-06-11 08:28:56 ----A---- C:\windows\system32\dxtrans.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\vbscript.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\mshtmlmedia.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\jscript9diag.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\jscript9.dll
2014-06-11 08:28:55 ----A---- C:\windows\system32\ieUnatt.exe
2014-06-11 08:28:55 ----A---- C:\windows\system32\ieapfltr.dll
2014-06-11 08:28:54 ----A---- C:\windows\system32\wininet.dll
2014-06-11 08:28:54 ----A---- C:\windows\system32\MsSpellCheckingFacility.exe
2014-06-11 08:28:54 ----A---- C:\windows\system32\msrating.dll
2014-06-11 08:28:53 ----A---- C:\windows\system32\mshtml.dll
2014-06-11 08:27:45 ----A---- C:\windows\system32\aepdu.dll
2014-06-11 08:27:45 ----A---- C:\windows\system32\aeinv.dll

======List of files/folders modified in the last 1 months======

2014-07-03 09:03:46 ----D---- C:\windows\system32\config
2014-07-03 08:55:43 ----D---- C:\windows\System32
2014-07-03 08:55:43 ----D---- C:\windows\inf
2014-07-03 08:55:43 ----A---- C:\windows\system32\PerfStringBackup.INI
2014-07-03 08:49:55 ----HD---- C:\windows\Temp
2014-07-03 08:48:21 ----A---- C:\windows\SYSWOW64\log.txt
2014-07-03 08:45:37 ----D---- C:\windows\SysWOW64
2014-07-03 08:35:50 ----RD---- C:\Program Files
2014-07-03 08:26:58 ----D---- C:\windows\system32\drivers\AVG
2014-07-01 16:45:49 ----D---- C:\windows\system32\Tasks
2014-07-01 16:37:06 ----D---- C:\Windows
2014-07-01 16:31:53 ----D---- C:\ProgramData\LogMeIn
2014-07-01 16:31:53 ----D---- C:\Program Files (x86)\PDFCreator
2014-07-01 16:31:34 ----D---- C:\windows\Panther
2014-07-01 16:31:31 ----D---- C:\windows\Logs
2014-07-01 16:31:31 ----D---- C:\windows\debug
2014-07-01 11:24:50 ----D---- C:\windows\Tasks
2014-07-01 11:24:50 ----D---- C:\windows\system32\wfp
2014-07-01 11:24:50 ----D---- C:\windows\system32\wbem
2014-07-01 11:24:50 ----D---- C:\windows\system32\DriverStore
2014-07-01 11:24:50 ----D---- C:\windows\system32\drivers
2014-07-01 11:24:50 ----D---- C:\windows\system32\catroot2
2014-07-01 11:24:48 ----SHD---- C:\windows\Installer
2014-07-01 11:24:48 ----D---- C:\windows\system32\CodeIntegrity
2014-07-01 11:24:48 ----D---- C:\windows\security
2014-07-01 11:24:48 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AVG10
2014-07-01 11:24:48 ----D---- C:\Users\ivana.novakova\AppData\Roaming\AADServer
2014-07-01 11:24:47 ----D---- C:\ProgramData\AVG10
2014-07-01 11:24:44 ----D---- C:\windows\registration
2014-07-01 09:36:57 ----SHD---- C:\System Volume Information
2014-07-01 09:12:55 ----D---- C:\windows\Prefetch
2014-07-01 09:08:41 ----HD---- C:\Config.Msi
2014-07-01 08:46:32 ----D---- C:\ProgramData\MFAData
2014-06-30 15:10:40 ----D---- C:\amd64
2014-06-30 08:39:46 ----D---- C:\ProgramData\PDFC
2014-06-20 14:42:14 ----D---- C:\tt
2014-06-17 14:04:52 ----RD---- C:\Program Files (x86)
2014-06-13 09:11:58 ----D---- C:\windows\rescache
2014-06-13 08:27:08 ----A---- C:\windows\SYSWOW64\FlashPlayerApp.exe
2014-06-13 08:24:42 ----D---- C:\windows\winsxs
2014-06-13 08:20:49 ----D---- C:\windows\SYSWOW64\en-US
2014-06-13 08:20:49 ----D---- C:\windows\system32\en-US
2014-06-13 08:20:49 ----D---- C:\Program Files\Internet Explorer
2014-06-13 08:20:49 ----D---- C:\Program Files (x86)\Internet Explorer
2014-06-12 08:25:49 ----D---- C:\windows\system32\MRT
2014-06-12 08:22:32 ----A---- C:\windows\system32\MRT.exe
2014-06-12 08:21:28 ----D---- C:\ProgramData\Microsoft Help
2014-06-12 08:19:19 ----SD---- C:\windows\system32\CompatTel
2014-06-11 08:27:42 ----D---- C:\windows\system32\catroot
2014-06-09 11:48:32 ----D---- C:\windows\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVGIDSEH;AVGIDSEH; C:\windows\system32\DRIVERS\AVGIDSEH.Sys [2011-02-22 26704]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\windows\system32\DRIVERS\avgrkx64.sys [2011-03-16 37456]
R0 hpdskflt;HP Filter; C:\windows\system32\DRIVERS\hpdskflt.sys [2009-07-08 30008]
R0 iaStor;Intel AHCI Controller; C:\windows\system32\DRIVERS\iaStor.sys [2010-03-04 540696]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 Avgldx64;AVG AVI Loader Driver; C:\windows\system32\DRIVERS\avgldx64.sys [2012-11-12 312160]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\windows\system32\DRIVERS\avgmfx64.sys [2011-03-01 41552]
R1 Avgtdia;AVG TDI Driver; C:\windows\system32\DRIVERS\avgtdia.sys [2011-04-05 377936]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 NetworkX;NetworkX; C:\windows\syswow64\ckldrv.sys []
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\windows\system32\DRIVERS\vpcnfltr.sys [2010-11-20 59392]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\windows\system32\drivers\vpcvmm.sys [2010-11-20 360832]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 aksdf;aksdf; \??\C:\windows\system32\drivers\aksdf.sys [2011-11-24 78208]
R2 aksfridge;Sentinel Fridge; C:\windows\system32\DRIVERS\aksfridge.sys [2011-11-24 139592]
R2 hardlock;hardlock; \??\C:\windows\system32\drivers\hardlock.sys [2011-10-07 321536]
R3 Accelerometer;HP Accelerometer; C:\windows\system32\DRIVERS\Accelerometer.sys [2009-07-08 41272]
R3 Afc;PPdus ASPI Shell; C:\windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\windows\system32\DRIVERS\agrsm64.sys [2009-11-02 1209856]
R3 amdkmdag;amdkmdag; C:\windows\system32\DRIVERS\atikmdag.sys [2010-08-05 6859776]
R3 amdkmdap;amdkmdap; C:\windows\system32\DRIVERS\atikmpag.sys [2010-08-05 264192]
R3 ARCVCAM;ARCVCAM, ArcSoft Webcam Sharing Manager Driver; C:\windows\system32\DRIVERS\ArcSoftVCapture.sys [2009-12-04 32640]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\windows\system32\drivers\AtiHdmi.sys [2010-05-06 125456]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\windows\system32\DRIVERS\bcmwl664.sys [2011-01-21 3063360]
R3 HECIx64;Intel(R) Management Engine Interface; C:\windows\system32\DRIVERS\HECIx64.sys [2009-09-17 56344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\windows\system32\DRIVERS\HpqKbFiltr.sys [2010-02-16 25912]
R3 Impcd;Impcd; C:\windows\system32\DRIVERS\Impcd.sys [2010-02-10 158720]
R3 rtsuvc;HP Webcam [2 MP Fixed]; C:\windows\system32\DRIVERS\rtsuvc.sys [2009-12-22 89216]
R3 STHDA;IDT High Definition Audio CODEC; C:\windows\system32\DRIVERS\stwrt64.sys [2010-03-17 505856]
R3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\windows\system32\drivers\serscan.sys [2009-07-14 12288]
R3 SynTP;Synaptics TouchPad Driver; C:\windows\system32\DRIVERS\SynTP.sys [2010-06-04 1379376]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\windows\system32\DRIVERS\vpchbus.sys [2010-11-20 194944]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\windows\system32\DRIVERS\vpcusb.sys [2010-11-20 95232]
S3 akshasp;SafeNet Inc. HASP Key; C:\windows\system32\DRIVERS\akshasp.sys [2011-02-09 53760]
S3 akshhl;SafeNet Inc. Sentinel HL Key; C:\windows\system32\DRIVERS\akshhl.sys [2011-09-08 57088]
S3 aksusb;SafeNet Inc. USB Key; C:\windows\system32\DRIVERS\aksusb.sys [2011-08-09 21120]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
S3 btwampfl;Bluetooth AMP USB Filter; C:\windows\system32\drivers\btwampfl.sys [2010-06-10 342056]
S3 btwaudio;Bluetooth Audio Device Service; C:\windows\system32\drivers\btwaudio.sys [2010-06-10 102952]
S3 btwavdt;Bluetooth AVDT Service; C:\windows\system32\DRIVERS\btwavdt.sys [2010-06-10 135720]
S3 btwl2cap;Bluetooth L2CAP Service; C:\windows\system32\DRIVERS\btwl2cap.sys [2010-06-10 39464]
S3 btwrchid;btwrchid; C:\windows\system32\DRIVERS\btwrchid.sys [2010-06-10 21544]
S3 lmimirr;lmimirr; C:\windows\system32\DRIVERS\lmimirr.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\windows\system32\DRIVERS\pccsmcfdx64.sys [2012-06-11 26112]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\windows\System32\Drivers\RtsUStor.sys [2009-11-11 232480]
S3 RTL8167;Realtek 8167 NT Driver; C:\windows\system32\DRIVERS\Rt64win7.sys [2010-01-13 325152]
S3 s3cap;s3cap; C:\windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 storvsc;storvsc; C:\windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TPM;TPM; C:\windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 TsUsbFlt;TsUsbFlt; C:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 VMBusHID;VMBusHID; C:\windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-18 65432]
R2 AESTFilters;Andrea ST Filters Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [2009-03-03 89600]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Program Files\LSI SoftModem\agr64svc.exe [2009-11-02 16896]
R2 AMD External Events Utility;AMD External Events Utility; C:\windows\system32\atiesrxx.exe [2010-08-05 203264]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [2011-02-08 269520]
R2 btwdins;Bluetooth Service; C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [2010-06-09 952096]
R2 Crypkey License;Crypkey License; C:\windows\system32\crypserv.exe [2008-05-08 122880]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 hasplms;HASP License Manager; C:\windows\system32\hasplms.exe [2011-12-02 4913608]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [2010-07-01 121344]
R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [2009-06-01 136192]
R2 HP Power Assistant Service;HP Power Assistant Service; C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe [2010-06-19 103992]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-04-05 103992]
R2 HPDayStarterService;HP DayStarter Service; c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe [2010-05-10 90112]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2010-06-25 92216]
R2 hpHotkeyMonitor;HP Hotkey Monitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [2010-03-01 264248]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\windows\system32\svchost.exe [2009-07-14 27136]
R2 hpsrv;HP Service; C:\windows\system32\Hpservice.exe [2009-07-08 30520]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2009-06-17 73728]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2009-11-04 268824]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-04-08 1320496]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-04-08 799280]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2009-10-23 635416]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\windows\System32\svchost.exe [2009-07-14 27136]
R2 PSI_SVC_2;Protexis Licensing V2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
R2 STacSV;Audio Service; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [2010-03-17 244736]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-06-16 5037888]
R2 uArcCapture;ArcCapture; C:\windows\system\uArcCapture.exe [2009-12-04 506472]
R2 UNS;Intel(R) Management & Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-11-04 2320920]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2009-12-14 2019120]
R3 hpqcxs08;hpqcxs08; C:\windows\system32\svchost.exe [2009-07-14 27136]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2010-06-25 665656]
R3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-11-20 136176]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-13 262320]
S3 AppMgmt;@appmgmts.dll,-3250; C:\windows\system32\svchost.exe [2009-07-14 27136]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-11-20 136176]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\windows\system32\IEEtwCollector.exe [2014-05-30 111616]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\windows\system32\Wat\WatAdminSvc.exe [2011-02-15 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - zamrzá internet

#3 Příspěvek od vyosek »

Zdravim :)

:arrow: Spustte MBAM dle tohoto navodu http://forum.viry.cz/viewtopic.php?f=29&t=137928
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

petr_xxx
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 02 črc 2014 16:01

Re: Prosím o kontrolu - zamrzá internet

#4 Příspěvek od petr_xxx »

Log z MBAM:


Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 7.7.2014
Čas skenování: 10:11:19
Protokol: MBAM.txt
Správce: Ano

Verze: 2.00.2.1012
Databáze malwaru: v2014.07.07.01
Databáze rootkitů: v2014.07.03.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Self-protection: Vypnuto

OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: ivana.novakova

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 572963
Uplynulý čas: 2 hod, 8 min, 18 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristics: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(No malicious items detected)

Moduly: 0
(No malicious items detected)

Klíče registru: 2
Trojan.BHO, HKU\S-1-5-21-1216150944-3253024930-2114404105-1122-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MiSoft, , [109db7e50972ae8811d00a47ec174bb5],
Trojan.BHO, HKU\S-1-5-21-2164320783-1463944741-161528255-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MiSoft, , [08a5aeee3744d0663ca585cc679cfd03],

Hodnoty registru: 1
Spyware.Zbot.VXGen, HKU\S-1-5-21-1216150944-3253024930-2114404105-1122-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|AdobeChk, C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe, , [f1bc237924573303df56df91e9186b95]

Data registru: 0
(No malicious items detected)

Složky: 0
(No malicious items detected)

Soubory: 141
Spyware.Zbot.VXGen, C:\Users\ivana.novakova\AppData\Roaming\AdobeChk\chk.exe, , [f1bc237924573303df56df91e9186b95],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$R1RFXX4.jpg, , [4865415b34475cda446bbdb53ac6b44c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$R8DJ2J9.jpg, , [dfce3765710ad066c1ee8ae89e62867a],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RDKV9J8.JPG, , [b4f93b619cdf06307b36ee841ce4a45c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RHPNOBW.jpg, , [6c41e9b36219d6602b86f37f1de36a96],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RSVCKGU.jpg, , [34796c3087f474c2bef38de5e9172ad6],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RU0MJ5U.jpg, , [5558029a017ada5c3d7290e202fe7c84],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RY04VEP.jpg, , [c2ebd2cae59673c3327f9cd6b0506c94],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\$Recycle.Bin\S-1-5-21-1216150944-3253024930-2114404105-1122\$RY0ZXFQ.JPG, , [aa03debeaccf270f674a1c56827e738d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Lost folder(s)\Folder 180553\378px-Lloyd's_building_from_Leadenhall_Street.jpg, , [6d405b4180fb73c33f700a68659bf907],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Lost folder(s)\Folder 180553\Vitra002a.jpg, , [4568edaf9cdfb383e5ccf77b4ab68a76],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\020[1].jpg, , [446914888deed660911e363c0df3916f],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\185509[1].jpg, , [dcd17527067549ed664b6012e818c838],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\575505[1].jpg, , [a4095f3d413ab086a00f1c56798746ba],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\7004227_11[1].jpg, , [68459dff54271a1ca50c5f1357a916ea],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\958229_166x124x75x1x0[1].jpg, , [436a108c91ea68cecce393dfdd2351af],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\closelabel[1].gif, , [fab3e7b55a2192a4affe31411fe104fc],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\fimg_seznam_czCA28L8OO.gif, , [07a6267677048babc5e83a38fd036898],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\fimg_seznam_czCANOOISV.gif, , [b1fcdcc0d8a3d95d02ab9ed468982cd4],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\220px-History_Faculty_University_of_Cambridge[1].jpg, , [0ba2e7b5b6c53cfab3fc046e3dc3639d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\6_7c00000_7800000[1].gif, , [1e8fdfbd3645c274327bc0b2a45cc838],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\959557_156x117x75[1].jpg, , [921bf9a3493201357f3099d952aec33d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\f50552e4ea74816d974b5586f33ba162[1].jpg, , [0ba25c40b0cbec4ad1deb4be12eeb14f],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\images[10].jpg, , [406da6f6552637ff2e81a1d11ae6a25e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\M0[1].jpg, , [4667217b314a39fd555c066cda26eb15],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4EF5CDXY\1107152943134040_1[1].jpg, , [139ac0dc77041d19228dbeb4d12f2bd5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\1606272765024040_33[1].jpg, , [812cabf13348280e4669aec479878c74],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\315793-nextstory1-u4i7m[1].jpg, , [baf305977b00171f7b36cea4e51b29d7],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\images[2].jpg, , [06a7514b621983b3e7c80a6806faac54],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\ImgW[2].jpg, , [58559c00b1ca4cea525d1b5728d8d32d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\soft_dreams_by_lieveheersbeestje-d2spjfl[1].jpg, , [307d1f7d49324de9c3ec165cc04060a0],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4PI3883T\52bbbd34b2b4397bf136575913310b1a[1].jpg, , [06a7a2fa68137fb7832ea2d03dc39769],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\2509703787224040_2[1].jpg, , [812c623a9dde1620c1eec5ad8f7158a8],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\316959-nextstory1-ti45g[1].jpg, , [44698616bebd87af6d44caa8847cc53b],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\614651a00b4a295cfb18aced510afa89[1].gif, , [ffaed3c996e539fd436a7bf76d93f010],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\7191423_2[1].jpg, , [ddd0c6d66c0f47ef97187ff332ceb44c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\7333855_2[1].jpg, , [07a6f0ac007be45288273f33669aa25e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\7407075_1[1].jpg, , [7c31fca0fb80b680159ab0c2659b619f],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\Guangzhou-Opera-house-002-475x316[1].jpg, , [2489efad077485b1e7ca660c758b649c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\HLFcc_DSC_7752-kopie_a[1].jpg, , [1e8f5e3e2d4e88ae5b54333f946c946c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\logo[1].gif, , [f8b52c7018638da90ba298da90701ae6],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\54HGIW31\vilatugendhat[1].jpg, , [7d30dcc04c2f1f17a609bbb7c7390000],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8O6ZTIVN\2607824124074040_11[1].jpg, , [a40967358dee7eb87c33d89a1ee20df3],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8O6ZTIVN\DBA44D27-F0C3-1372-D288E728B94C9A3E-114021-tb[1].jpg, , [04a94854c3b872c48728660cc53b7f81],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8O6ZTIVN\imagesCALZ1LZW.jpg, , [cae32c70a0dbb581e3cc7002857b8e72],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8O6ZTIVN\topL_fotogalerie[1].gif, , [119c2d6ff68503337934561c12eec33d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\14_79dc000_8200000[1].gif, , [3a73bae2067555e1b6f79fd3eb156d93],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\2006994683334040_6[1].jpg, , [feaf6a329fdcfb3be7c8c1b1669ad927],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\2806551638844040_12[1].jpg, , [eac30a92d9a251e55c535919f60a21df],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\49292_100001515198252_7461_q[1].jpg, , [505dfba13a4144f2377891e133cdbc44],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\7264870_1[1].jpg, , [911cf0ac8bf03bfb8f20fb771de3d729],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\images[6].jpg, , [dcd1d3c9fb80ec4a2d8292e0cd33936d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\14_7f00000_81b0000[1].gif, , [119c7e1ebdbe86b03c716c06966acc34],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\16_7a2e000_8214000[1].jpg, , [dad31884bac1bc7a496640323cc47a86],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\31GsbHEEyNL._SL190_CR0,0,190,246_[1].jpg, , [e9c4c6d680fbf046dcd32c46a95706fa],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\4F05C0D0-FDB2-2827-FB63DE30D3559454-116625-tb[1].jpg, , [49646e2e384354e2456c0d65956b9a66],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\telefon[2].jpg, , [0da0b1eb55265bdba906294940c02dd3],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\10_7f00000_81c0000[1].gif, , [3677306caccfaa8c1499254dd62ab050],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\1305816396974040_21[1].jpg, , [f6b75c40364589ade5cc3f33f80812ee],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\16_7a29000_821b000[1].jpg, , [b3fa4f4d7b008ea8426d076ba35de818],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\573344_1066431603_502560804_q[1].jpg, , [65484557f28962d456594f23a85821df],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\7018853_2[1].jpg, , [02abdbc1bdbe6fc72689f2802fd16b95],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\creative[1].jpg, , [34797c20106b2d09f5bae2900df3b749],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\f80040fc9a59cc88aa915bef1b063cfe[1].gif, , [5c51a8f4601b80b63b7279f95da31de3],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\20101203_bc60_burgermirror_yourcity_160x600[1].gif, , [5a53168691ea72c4dad3d0a247b90bf5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\2249[1].jpg, , [4667dbc1f8833600e8c7d59d3bc57e82],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\927594_13_0x73x75[1].jpg, , [337abbe13d3ed1659a15c7ab6f91a25e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\fimg_seznam_czCA5AGYOZ.gif, , [317ca6f6c8b30e288627b2c0f30db24e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I3YDI4PP\mapa_new_mala[1].jpg, , [2687405c0972ad898629afc3916f1be5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\16_7ef5000_81b7000[1].gif, , [8a23c2da78034fe76548afc35ea27987],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\222087-free1-z1snf[1].jpg, , [65480d8fdaa160d6773a84eea759f010],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\455104[1].jpg, , [bbf22a72c6b5a1955a55bcb67b85ed13],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\a3c3742164dd0636debb413f871623f8[1].jpg, , [08a5b5e7daa14aec0ba43d3515eb8e72],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\fimg_seznam_czCAK9W1HJ.gif, , [dcd14953502b9b9b4865b3bf5ca47d83],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\fimg_seznam_czCAMELTNE.gif, , [4469396395e688ae674686ec50b0f30d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K0O7W0UI\lehatka3[1].jpg, , [a20bfd9fec8f2313733c353de11faf51],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S7687CZ2\2608128202604040_35[1].jpg, , [3c719c00fc7f89ade3ccdb971ee25ea2],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S7687CZ2\670eefb33e264c71d1a54bc2b5881048[1].jpg, , [a10ccdcfaad14aec753ae48e15ebe41c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S7687CZ2\open-uri20120119-15825-wqnjdf-0[1].jpg, , [86274953ef8c85b1a70895dd2ad6ec14],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T1REULM4\13_7ef0000_81d0000[1].gif, , [1e8f603c2c4f270f3e6f135fbb45dd23],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T1REULM4\fimg_seznam_czCA0YHS9Z.gif, , [3d70f6a66912a294ebc2beb434cc03fd],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T1REULM4\NJ144o3[1].jpg, , [96173b61e49793a3b3fc7ff3916fb14f],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\18_7ef4800_81b9000[1].jpg, , [decfb1ebec8fe6509718e48e7b851ce4],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\221820-nextstory1-273xs[1].jpg, , [515cc0dc700b23135e53086a16ea4fb1],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\250px-AUS_NSW_Opera_House_DSC05118[1].jpg, , [9f0eabf1a8d34bebad023b376997936d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\2607647644354040_12[1].jpg, , [6e3f0894106bdc5aae01482a788810f0],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\4f4c689da016710f64090000[1].jpg, , [6647712b96e574c2f5ba89e9dd239769],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\7297088_2[1].jpg, , [a6075f3d354664d2228de989ae52758b],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\getimageCAXYV9NW.jpg, , [64494557e8936cca19966012e41c728e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\imagesCAJ7WO5O.jpg, , [b6f77c2086f5c96d357aa4ce29d7ac54],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\1b6cf1ea05539d197eceae94e77a84c6[1].gif, , [3e6f8319730803334b62bab8ee12d927],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\225687-nextstory1-w29xh[1].jpg, , [406d009c215ab2846f40acc604fc0df3],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\562336_10150769835581763_7397061762_11399752_804402460_n[1].jpg, , [1f8e4e4e087373c3149be98902fe827e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\936691_166x124x75x1x0[1].jpg, , [3a730d8f6615e452a20d383a7888dc24],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\default[2].jpg, , [4c6193098af1ee48911e79f9f80806fa],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\fimg_seznam_czCAQM7MBX.gif, , [2687b4e80477fd39317cea8816eaeb15],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\fimg_seznam_czCAYT1SHV.gif, , [57566537f487ab8b317c046e768a3ec2],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\dsc00909_th[1].jpg, , [78356b31cbb0290d624d0171ee12926e],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\imagesCABCZUYA.jpg, , [6c41c0dc2e4d54e24e61d49e06fa3bc5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\PC323i[1].jpg, , [d6d75e3e4e2d72c41d92244ec63ae51b],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\135155[1].jpg, , [b6f7a0fc34470a2ca70874fe7a86b947],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\2509667807884040_1[1].jpg, , [1a931e7e82f9ef47c0efef83ab556d93],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\253899-nextstory1-xts7a[1].jpg, , [a10c2c70bcbffd39d8d7363c9b65f808],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\7405106_4[1].jpg, , [9e0f3f5d2259f640f6b98fe312ee0bf5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\957935_166x124x75x1x0[1].jpg, , [8b222a72582331055f50571be31d966a],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\b9b5093237[1].jpg, , [9617297315663006555af57d42befc04],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\crowneplazahotel[1].jpg, , [c6e7940896e586b0f5ba5d15a15f7987],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\fimg_seznam_czCAKFEM6D.gif, , [8726bbe186f51f174b62551d38c855ab],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\fimg_seznam_cz[6].gif, , [4766e5b723584aec7c31363cfb050bf5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\fimg_seznam_czCA0CNWU8.gif, , [d2db9309e99282b4109dd89aaf516898],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\311194-nextstory1-sm1ao[1].jpg, , [703d89133d3ee84ed0dfa7cb44bcca36],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\373036_413001925380768_1851761817_t[1].jpg, , [8e1fa5f7d2a9c175525d5121d12f4cb4],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\7315602_2[1].jpg, , [8429aeeebbc05adc6e4192e058a8bb45],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\streamneutral[1].gif, , [0ba2b0ec4c2fd660208d5d15f50b06fa],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZCVZUQYL\317438-nextstory1-fvmbe[1].jpg, , [4865adef2f4c42f4e2cd02703ec2e818],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Deep scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZCVZUQYL\7[1].jpg, , [bcf1a0fc7605ad89a110c6ac837d9967],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1PRYNYWA\36238[1].jpg, , [0e9f37650576072f515e9ad8e0208a76],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\6_7c00000_7800000[1].gif, , [9914108c196289adb2fb2a48ac5417e9],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3UP6NEBF\f50552e4ea74816d974b5586f33ba162[1].jpg, , [07a6d4c83c3ffd39ab04027035cb0bf5],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4EF5CDXY\1107152943134040_1[1].jpg, , [208d4755a3d8023404ab264cb7494ab6],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\1606272765024040_33[1].jpg, , [1697227a81fa4beb4b644f2324dc37c9],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\315793-nextstory1-u4i7m[1].jpg, , [8c218319394232042f82b3bf817f29d7],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\36287[1].jpg, , [2e7fd3c9bcbf92a4c8e73939a25e22de],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\cd70ad7bc3bd9ee5c2ac60ab01cb3980[1].jpg, , [28851c80f784e155911e472b06faa45c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4OGF1B6F\fimg_seznam_czCAUFAJS0.gif, , [654887153e3d979ff0bd333fbf41ad53],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4PI3883T\fimg_seznam_czCALU76CC.gif, , [812cb1eb0972c67009a46d055ba58a76],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4PI3883T\fimg_seznam_czCAXYWFBO.gif, , [b2fbe4b81e5dac8ab1fc522006fab44c],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4PI3883T\sestava(1)[1].jpg, , [4d600498f18a3ff76a4789e93bc552ae],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AM1I8PN9\35501[1].jpg, , [832a4a522a51a195cde2eb8713ed36ca],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DE4CGPLA\anim[1].gif, , [d5d82a727dfeaf87e2cb234f926e1fe1],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E4IGT7TQ\udrzba[1].jpg, , [f0bdf2aadc9f3ff7f7b8b4be39c7f30d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HVSL3MJH\316329-nextstory1-fbeds[1].jpg, , [505ddebe6d0ece688c236111a858c838],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T1REULM4\rez_01[1].jpg, , [d3da3a622754b2845c5573ffe41cf30d],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\221820-nextstory1-273xs[1].jpg, , [3677c4d86f0c6bcbe4cd1a583cc432ce],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\4f4c689da016710f64090000[1].jpg, , [a20b801c7b001323f5ba98dacd337888],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TD0MX1EZ\fimg_seznam_czCA7RLWB9.gif, , [7538a3f92457ed49a706274b26dafe02],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\36279[1].jpg, , [f8b5f2aaa1daf83ed3dcacc6758bee12],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\THR7E7RS\PC323i[1].jpg, , [8726b0ecccaf8ea83f70b9b920e08878],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\XZNY7LLW\253899-nextstory1-xts7a[1].jpg, , [a607afed0b7090a68a25f47e25dbdf21],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YTF9X894\311194-nextstory1-sm1ao[1].jpg, , [c5e8a2faa0db59ddf6b984ee69977e82],
Extension.Mismatch, C:\Users\ivana.novakova\Desktop\Recovery C\Quick Scan\Users\ivana.novakova\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZCVZUQYL\page_g[1].jpg, , [cae33d5fb8c3d363951cf77bed13f50b],

Fyzické sektory: 0
(No malicious items detected)


(end)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - zamrzá internet

#5 Příspěvek od vyosek »

Nalezy MBAMu smazte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

petr_xxx
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 02 črc 2014 16:01

Re: Prosím o kontrolu - zamrzá internet

#6 Příspěvek od petr_xxx »

Smazáno. Zkusím MBAM spustit pro jistotu ještě jednou.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - zamrzá internet

#7 Příspěvek od vyosek »

Ou Kej, vysledek opet prosim sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

petr_xxx
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 02 črc 2014 16:01

Re: Prosím o kontrolu - zamrzá internet

#8 Příspěvek od petr_xxx »

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 9.7.2014
Čas skenování: 8:33:35
Protokol: log.txt
Správce: Ano

Verze: 2.00.2.1012
Databáze malwaru: v2014.07.09.02
Databáze rootkitů: v2014.07.07.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Self-protection: Vypnuto

OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: ivana.novakova

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 567676
Uplynulý čas: 1 hod, 53 min, 3 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristics: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(No malicious items detected)

Moduly: 0
(No malicious items detected)

Klíče registru: 0
(No malicious items detected)

Hodnoty registru: 0
(No malicious items detected)

Data registru: 0
(No malicious items detected)

Složky: 0
(No malicious items detected)

Soubory: 0
(No malicious items detected)

Fyzické sektory: 0
(No malicious items detected)


(end)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - zamrzá internet

#9 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

petr_xxx
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 02 črc 2014 16:01

Re: Prosím o kontrolu - zamrzá internet

#10 Příspěvek od petr_xxx »

Zde je log z FRST a v příloze Addition.txt zabalený v RARu:


Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-07-2014
Ran by ivana.novakova (administrator) on NOVAKOVA-HP on 11-07-2014 08:34:52
Running from C:\Users\ivana.novakova\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgrsa.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\stacsv64.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Hewlett-Packard) C:\Windows\System32\hpservice.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(CrypKey (Canada) Ltd.) C:\Windows\System32\Crypserv.exe
(SafeNet Inc.) C:\Windows\System32\hasplms.exe
(HP) C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(ArcSoft, Inc.) C:\Windows\system\uArcCapture.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Hewlett-Packard Company) C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Nokia) C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgtray.exe
(HP) C:\Program Files (x86)\HP\ToolboxFX\bin\HPTLBXFX.exe
(Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [HPPowerAssistant] => C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [1691192 2010-06-19] (Hewlett-Packard Company)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2174760 2010-06-04] (Synaptics Incorporated)
HKLM\...\Run: [HPWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-04-05] (Hewlett-Packard)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-03-17] (IDT, Inc.)
HKLM\...\Run: [HP Color LaserJet CM2320 MFP Series Fax] => C:\Program Files (x86)\HP\HP Color LaserJet CM2320 MFP Series\hppfaxprintersrv.exe [3700736 2009-09-22] (Hewlett-Packard Company)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [256056 2010-03-01] (Hewlett-Packard Company)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-03-04] (Intel Corporation)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [563736 2009-10-23] (PDF Complete Inc)
HKLM-x32\...\Run: [File Sanitizer] => C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-08-05] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [DTRun] => c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [518656 2009-11-19] (ArcSoft Inc.)
HKLM-x32\...\Run: [AVG_TRAY] => C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2345592 2012-08-01] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [HPPQVideo] => C:\Program Files (x86)\HP\ScheduledLaunch\HP Color LaserJet CM2320 MFP Series\bin\hppschlnch.exe [106496 2007-05-07] (Hewlett-Packard)
HKLM-x32\...\Run: [ToolBoxFX] => C:\Program Files (x86)\HP\ToolBoxFX\bin\HPTLBXFX.exe [53248 2009-10-22] (HP)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Firebird] => C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe [2723840 2008-06-13] (Firebird Project)
HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\...\Run: [LightScribe Control Panel] => C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-06-17] (Hewlett-Packard Company)
HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\Users\ivana.novakova\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * C:\PROGRA~2\AVG\AVG10\avgchsva.exe /syncC:\PROGRA~2\AVG\AVG10\avgrsa.exe /sync /restart

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {791B9F98-CF13-42D7-AF27-25A7E797D680} URL =
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll No File
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll No File
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
DPF: HKLM-x32 {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logmein.com//activex/ractrl.cab?lmi=1058
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgppa.dll (AVG Technologies CZ, s.r.o.)
Handler-x32: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: 192.168.1.143 NPIAD0BD8
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 127.0.0.1

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll No File
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{1E73965B-8B48-48be-9C8D-68B920ABC1C4}] - C:\Program Files (x86)\AVG\AVG10\Firefox4
FF Extension: AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\Firefox4 [2011-03-30]
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013-09-04]

Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR StartupUrls: "hxxp://www.google.com/"
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll No File
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll ()
CHR Plugin: (AVG Internet Security) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\10.0.0.1409_0\plugins/avgnpss.dll No File
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll No File
CHR Plugin: (Default Plug-in) - default_plugin No File
CHR Extension: (YouTube) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-17]
CHR Extension: (Vyhledávání Google) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-17]
CHR Extension: (Peněženka Google) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-17]
CHR Extension: (Gmail) - C:\Users\ivana.novakova\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-17]

==================== Services (Whitelisted) =================

S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AESTFilters; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\AESTSr64.exe [89600 2009-03-03] (Andrea Electronics Corporation)
R2 avgwd; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [269520 2011-02-08] (AVG Technologies CZ, s.r.o.)
R2 Crypkey License; C:\windows\system32\crypserv.exe [122880 2008-05-08] (CrypKey (Canada) Ltd.) [File not signed]
R2 hasplms; C:\windows\system32\hasplms.exe [4913608 2011-12-02] (SafeNet Inc.)
R2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [136192 2009-06-01] (HP) [File not signed]
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [86528 2012-09-27] (Hewlett-Packard Company) [File not signed]
R2 HPDayStarterService; c:\Program Files\Hewlett-Packard\HP QuickLook\32-bit\HPDayStarterService.exe [90112 2010-05-10] (Hewlett-Packard Company) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [264248 2010-03-01] (Hewlett-Packard Company)
R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [217088 2007-11-06] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [139264 2007-11-06] (Hewlett-Packard Co.) [File not signed]
R2 LightScribeService; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2009-06-17] (Hewlett-Packard Company) [File not signed]
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [File not signed]
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [635416 2009-10-23] (PDF Complete Inc)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [File not signed]
R2 STacSV; C:\windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_b20011ea53a6b83e\STacSV64.exe [244736 2010-03-17] (IDT, Inc.)
R2 uArcCapture; C:\windows\system\uArcCapture.exe [506472 2009-12-04] (ArcSoft, Inc.)

==================== Drivers (Whitelisted) ====================

S3 akshhl; C:\Windows\System32\DRIVERS\akshhl.sys [57088 2011-09-08] (SafeNet Inc.)
S3 aksusb; C:\Windows\System32\DRIVERS\aksusb.sys [21120 2011-08-09] (SafeNet Inc.)
R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [32640 2009-12-04] (ArcSoft, Inc.)
R0 AVGIDSEH; C:\Windows\System32\DRIVERS\AVGIDSEH.Sys [26704 2011-02-22] (AVG Technologies CZ, s.r.o. )
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [312160 2012-11-12] (AVG Technologies CZ, s.r.o.)
R1 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [41552 2011-03-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [37456 2011-03-16] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [377936 2011-04-05] (AVG Technologies CZ, s.r.o.)
R2 hardlock; C:\windows\system32\drivers\hardlock.sys [321536 2011-10-07] (SafeNet Inc.)
R1 NetworkX; C:\Windows\system32\ckldrv.sys [28664 2008-03-17] ()
R3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [89216 2009-12-22] (Realtek Semiconductor Corp.)
S3 lmimirr; system32\DRIVERS\lmimirr.sys [X]
S3 MBAMSwissArmy; \??\C:\windows\system32\drivers\MBAMSwissArmy.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-07-11 08:34 - 2014-07-11 08:36 - 00019991 _____ () C:\Users\ivana.novakova\Desktop\FRST.txt
2014-07-11 08:33 - 2014-07-11 08:33 - 00112640 _____ (forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe
2014-07-11 08:31 - 2014-07-11 08:34 - 00000000 ____D () C:\FRST
2014-07-11 08:30 - 2014-07-11 08:31 - 02084864 _____ (Farbar) C:\Users\ivana.novakova\Desktop\FRST64.exe
2014-07-10 15:15 - 2014-07-10 15:15 - 00000223 _____ () C:\Users\ivana.novakova\Desktop\Softline 82 - nabídka.txt
2014-07-10 09:22 - 2014-07-10 09:25 - 00000368 _____ () C:\windows\Tasks\HPCeeScheduleForivana.novakova.job
2014-07-10 09:22 - 2014-07-10 09:22 - 00003240 _____ () C:\windows\System32\Tasks\HPCeeScheduleForivana.novakova
2014-07-10 09:17 - 2014-07-10 09:17 - 00002185 _____ () C:\Users\Public\Desktop\HP Support Assistant.lnk
2014-07-10 09:17 - 2014-07-10 09:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2014-07-10 09:15 - 2014-07-10 09:15 - 00000000 ____D () C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF}
2014-07-10 09:10 - 2014-07-10 09:22 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\Hewlett-Packard
2014-07-10 08:40 - 2014-07-10 08:40 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2014-07-09 10:09 - 2014-07-09 10:09 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\gealan
2014-07-09 08:22 - 2014-07-10 09:25 - 00000902 _____ () C:\windows\setupact.log
2014-07-09 08:22 - 2014-07-10 09:25 - 00000248 _____ () C:\windows\error.log
2014-07-09 08:22 - 2014-07-10 09:24 - 00000056 _____ () C:\windows\errord.log
2014-07-09 08:22 - 2014-07-09 08:22 - 00000590 _____ () C:\windows\PFRO.log
2014-07-09 08:22 - 2014-07-09 08:22 - 00000000 _____ () C:\windows\setuperr.log
2014-07-08 13:56 - 2014-07-08 13:56 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-07-07 09:55 - 2014-07-07 09:55 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-07 09:45 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\windows\SysWOW64\sqlite3.dll
2014-07-04 09:25 - 2014-07-04 10:48 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\veverka
2014-07-03 08:35 - 2014-07-07 09:39 - 00000000 ____D () C:\Program Files\trend micro
2014-06-30 14:34 - 2014-07-07 13:02 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\AdobeChk
2014-06-20 09:01 - 2014-06-30 08:41 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\Gealan - soubory
2014-06-20 08:20 - 2014-06-20 08:20 - 02931580 _____ () C:\Users\ivana.novakova\Downloads\Infiniti_Windows7.themepack
2014-06-20 08:18 - 2014-06-20 08:18 - 09098319 _____ () C:\Users\ivana.novakova\Downloads\Ducati2.themepack
2014-06-16 08:59 - 2014-06-16 08:59 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\Adobe
2014-06-11 08:29 - 2014-05-30 12:02 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-06-11 08:29 - 2014-05-30 12:02 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-06-11 08:29 - 2014-05-30 11:38 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-06-11 08:29 - 2014-05-30 11:21 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-06-11 08:29 - 2014-05-30 11:18 - 17271296 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-06-11 08:29 - 2014-05-30 10:55 - 00038400 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-06-11 08:29 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-06-11 08:29 - 2014-05-30 10:42 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-06-11 08:29 - 2014-05-30 10:38 - 02179072 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-06-11 08:29 - 2014-05-30 10:34 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-06-11 08:29 - 2014-05-30 10:33 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-06-11 08:29 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-06-11 08:29 - 2014-05-30 10:16 - 00368128 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-06-11 08:29 - 2014-05-30 10:10 - 00032256 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-06-11 08:29 - 2014-05-30 10:04 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-06-11 08:29 - 2014-05-30 09:54 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-06-11 08:29 - 2014-05-30 09:49 - 01964544 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-06-11 08:29 - 2014-05-30 09:30 - 01398272 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-06-11 08:29 - 2014-05-30 09:15 - 01143296 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-06-11 08:29 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll
2014-06-11 08:29 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll
2014-06-11 08:29 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2014-06-11 08:29 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS
2014-06-11 08:29 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2014-06-11 08:29 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2014-06-11 08:29 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml6r.dll
2014-06-11 08:29 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll
2014-06-11 08:29 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2014-06-11 08:29 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll
2014-06-11 08:29 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6r.dll
2014-06-11 08:29 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3r.dll
2014-06-11 08:28 - 2014-05-30 12:21 - 23414784 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-06-11 08:28 - 2014-05-30 11:45 - 02768384 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-06-11 08:28 - 2014-05-30 11:39 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-06-11 08:28 - 2014-05-30 11:39 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-06-11 08:28 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-06-11 08:28 - 2014-05-30 11:27 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-06-11 08:28 - 2014-05-30 11:24 - 00574976 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-06-11 08:28 - 2014-05-30 11:21 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-06-11 08:28 - 2014-05-30 11:20 - 00752640 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-06-11 08:28 - 2014-05-30 11:11 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-06-11 08:28 - 2014-05-30 11:08 - 05782528 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-06-11 08:28 - 2014-05-30 11:06 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-06-11 08:28 - 2014-05-30 11:02 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-06-11 08:28 - 2014-05-30 10:49 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-06-11 08:28 - 2014-05-30 10:46 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-06-11 08:28 - 2014-05-30 10:44 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-06-11 08:28 - 2014-05-30 10:44 - 00295424 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-06-11 08:28 - 2014-05-30 10:35 - 00608768 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-06-11 08:28 - 2014-05-30 10:30 - 00440832 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-06-11 08:28 - 2014-05-30 10:29 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-06-11 08:28 - 2014-05-30 10:28 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-06-11 08:28 - 2014-05-30 10:24 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-06-11 08:28 - 2014-05-30 10:23 - 02040832 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-06-11 08:28 - 2014-05-30 10:06 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-06-11 08:28 - 2014-05-30 10:02 - 00242688 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-06-11 08:28 - 2014-05-30 09:56 - 04244992 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-06-11 08:28 - 2014-05-30 09:56 - 02266112 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-06-11 08:28 - 2014-05-30 09:50 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-06-11 08:28 - 2014-05-30 09:43 - 13522944 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-06-11 08:28 - 2014-05-30 09:40 - 11725312 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-06-11 08:28 - 2014-05-30 09:21 - 01790976 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-06-11 08:28 - 2014-05-30 09:13 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-06-11 08:28 - 2014-05-30 09:13 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-06-11 08:27 - 2014-06-08 11:13 - 00506368 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-06-11 08:27 - 2014-06-08 11:08 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll

==================== One Month Modified Files and Folders =======

2014-07-11 08:36 - 2014-07-11 08:34 - 00019991 _____ () C:\Users\ivana.novakova\Desktop\FRST.txt
2014-07-11 08:35 - 2011-01-21 19:51 - 01646386 _____ () C:\windows\WindowsUpdate.log
2014-07-11 08:34 - 2014-07-11 08:31 - 00000000 ____D () C:\FRST
2014-07-11 08:33 - 2014-07-11 08:33 - 00112640 _____ (forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe
2014-07-11 08:33 - 2009-07-14 06:45 - 00020944 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-11 08:33 - 2009-07-14 06:45 - 00020944 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-11 08:31 - 2014-07-11 08:30 - 02084864 _____ (Farbar) C:\Users\ivana.novakova\Desktop\FRST64.exe
2014-07-11 08:25 - 2013-07-24 14:24 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-07-11 08:25 - 2011-11-20 19:39 - 00000968 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-11 08:25 - 2011-02-15 11:53 - 00000136 _____ () C:\windows\system32\config\netlogon.ftl
2014-07-10 15:15 - 2014-07-10 15:15 - 00000223 _____ () C:\Users\ivana.novakova\Desktop\Softline 82 - nabídka.txt
2014-07-10 14:09 - 2011-11-20 19:39 - 00000964 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-10 13:03 - 2014-04-16 13:22 - 00000144 _____ () C:\Users\ivana.novakova\Desktop\ukoly.txt
2014-07-10 10:06 - 2014-06-04 10:27 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\upravit do PP
2014-07-10 09:32 - 2010-12-06 01:42 - 00674178 _____ () C:\windows\system32\perfh005.dat
2014-07-10 09:32 - 2010-12-06 01:42 - 00143694 _____ () C:\windows\system32\perfc005.dat
2014-07-10 09:32 - 2009-07-14 07:13 - 01593150 _____ () C:\windows\system32\PerfStringBackup.INI
2014-07-10 09:25 - 2014-07-10 09:22 - 00000368 _____ () C:\windows\Tasks\HPCeeScheduleForivana.novakova.job
2014-07-10 09:25 - 2014-07-09 08:22 - 00000902 _____ () C:\windows\setupact.log
2014-07-10 09:25 - 2014-07-09 08:22 - 00000248 _____ () C:\windows\error.log
2014-07-10 09:25 - 2009-07-14 07:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-07-10 09:24 - 2014-07-09 08:22 - 00000056 _____ () C:\windows\errord.log
2014-07-10 09:22 - 2014-07-10 09:22 - 00003240 _____ () C:\windows\System32\Tasks\HPCeeScheduleForivana.novakova
2014-07-10 09:22 - 2014-07-10 09:10 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\Hewlett-Packard
2014-07-10 09:22 - 2011-02-17 12:56 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\Hewlett-Packard
2014-07-10 09:18 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\Help
2014-07-10 09:17 - 2014-07-10 09:17 - 00002185 _____ () C:\Users\Public\Desktop\HP Support Assistant.lnk
2014-07-10 09:17 - 2014-07-10 09:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2014-07-10 09:17 - 2010-12-06 01:25 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-07-10 09:16 - 2010-12-06 01:19 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2014-07-10 09:15 - 2014-07-10 09:15 - 00000000 ____D () C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF}
2014-07-10 09:15 - 2011-03-26 10:25 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\hpqlog
2014-07-10 09:14 - 2010-12-06 01:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-07-10 09:14 - 2009-07-27 18:14 - 00000000 ____D () C:\swsetup
2014-07-10 09:10 - 2010-12-06 01:36 - 00000000 ____D () C:\windows\System32\Tasks\Hewlett-Packard
2014-07-10 09:10 - 2010-12-06 01:29 - 00000000 ____D () C:\ProgramData\Hewlett-Packard
2014-07-10 08:40 - 2014-07-10 08:40 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2014-07-10 08:25 - 2011-02-10 18:52 - 00000000 ____D () C:\windows\system32\Drivers\AVG
2014-07-09 15:08 - 2011-02-17 13:26 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\CrashDumps
2014-07-09 14:46 - 2014-03-24 12:10 - 00000000 ____D () C:\ProgramData\AADServer
2014-07-09 13:39 - 2011-05-17 13:32 - 00001691 _____ () C:\Users\ivana.novakova\Desktop\Helios Orange.LNK
2014-07-09 10:45 - 2013-07-24 14:24 - 00699056 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-07-09 10:45 - 2013-07-24 14:24 - 00003852 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2014-07-09 10:45 - 2012-01-03 09:44 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-07-09 10:09 - 2014-07-09 10:09 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\gealan
2014-07-09 08:22 - 2014-07-09 08:22 - 00000590 _____ () C:\windows\PFRO.log
2014-07-09 08:22 - 2014-07-09 08:22 - 00000000 _____ () C:\windows\setuperr.log
2014-07-08 21:57 - 2014-02-10 16:33 - 00000000 ____D () C:\Users\ivana.novakova\Documents\Soubory aplikace Outlook
2014-07-08 21:49 - 2011-03-01 17:13 - 00000000 ____D () C:\tt
2014-07-08 21:46 - 2011-02-17 13:07 - 02010057 _____ () C:\Users\ivana.novakova\Documents\Studna splněných přání.wmv
2014-07-08 19:54 - 2014-04-29 14:49 - 00001102 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk
2014-07-08 19:54 - 2014-02-24 11:35 - 00001090 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-07-08 13:56 - 2014-07-08 13:56 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-07-08 08:26 - 2011-02-11 02:04 - 00000000 ____D () C:\windows\rescache
2014-07-07 14:43 - 2010-12-06 01:24 - 00000000 ____D () C:\amd64
2014-07-07 13:02 - 2014-06-30 14:34 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\AdobeChk
2014-07-07 09:55 - 2014-07-07 09:55 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-07 09:48 - 2009-07-14 07:08 - 00032594 _____ () C:\windows\Tasks\SCHEDLGU.TXT
2014-07-07 09:41 - 2011-02-10 17:08 - 00000000 ____D () C:\Users\uzivatel
2014-07-07 09:40 - 2014-03-24 12:11 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\AADServer
2014-07-07 09:40 - 2011-02-17 12:36 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\GHISLER
2014-07-07 09:40 - 2011-02-15 11:59 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\AVG10
2014-07-07 09:40 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\security
2014-07-07 09:39 - 2014-07-03 08:35 - 00000000 ____D () C:\Program Files\trend micro
2014-07-07 09:39 - 2013-09-04 14:01 - 00000000 ____D () C:\Program Files (x86)\PC Connectivity Solution
2014-07-07 09:39 - 2011-02-10 18:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2011
2014-07-07 09:39 - 2011-02-10 18:52 - 00000000 ____D () C:\ProgramData\AVG10
2014-07-07 09:38 - 2012-01-03 09:44 - 00000000 ____D () C:\windows\system32\Macromed
2014-07-07 09:38 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\registration
2014-07-07 09:37 - 2014-05-14 08:19 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-07-07 09:37 - 2012-05-29 08:25 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\Recovery C
2014-07-07 09:37 - 2012-03-07 13:45 - 00000000 ____D () C:\Users\ivana.novakova\Downloads\Sentinel_LDK_Run-time_setup
2014-07-07 09:37 - 2011-10-27 17:36 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Roaming\GRETECH
2014-07-07 09:37 - 2011-02-17 13:06 - 00000000 ____D () C:\Users\ivana.novakova\Documents\DVOJSKLO
2014-07-07 09:37 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\AppCompat
2014-07-07 09:36 - 2014-03-05 18:03 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-07-07 09:36 - 2014-02-24 11:35 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2014-07-07 09:36 - 2013-12-30 14:44 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-07 09:36 - 2013-09-04 14:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
2014-07-07 09:36 - 2013-09-04 14:46 - 00000000 ____D () C:\Program Files (x86)\PDFCreator
2014-07-07 09:36 - 2013-09-04 14:46 - 00000000 ____D () C:\Program Files (x86)\PDF Architect
2014-07-07 09:36 - 2013-09-04 14:01 - 00000000 ____D () C:\Program Files\DIFX
2014-07-07 09:36 - 2013-09-04 14:00 - 00000000 ____D () C:\ProgramData\Installations
2014-07-07 09:36 - 2012-05-28 08:41 - 00000000 ____D () C:\ProgramData\CrypKey
2014-07-07 09:36 - 2012-05-03 09:22 - 00000000 ____D () C:\Program Files\WinRAR
2014-07-07 09:36 - 2011-11-20 19:39 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\Google
2014-07-07 09:36 - 2011-10-30 21:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-07-07 09:36 - 2011-10-30 21:17 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-07-07 09:35 - 2014-03-17 14:43 - 00000000 ____D () C:\Program Files (x86)\Java
2014-07-07 09:35 - 2013-12-30 14:44 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-07 09:35 - 2013-09-04 14:01 - 00000000 ____D () C:\Program Files (x86)\Nokia
2014-07-07 09:35 - 2012-03-07 13:16 - 00000000 ____D () C:\Program Files (x86)\Borland
2014-07-07 09:35 - 2012-03-07 13:16 - 00000000 ____D () C:\PPLAST3
2014-07-07 09:35 - 2012-03-07 11:38 - 00000000 ____D () C:\Program Files (x86)\Firebird
2014-07-07 09:35 - 2012-03-07 10:09 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-07-07 09:35 - 2011-11-20 19:39 - 00000000 ____D () C:\Program Files (x86)\Google
2014-07-07 09:35 - 2011-02-10 18:24 - 00000000 __RHD () C:\MSOCache
2014-07-07 09:28 - 2011-02-15 11:58 - 00000000 ____D () C:\Users\ivana.novakova
2014-07-07 09:28 - 2010-12-06 01:30 - 00000000 ____D () C:\ProgramData\PDFC
2014-07-04 10:48 - 2014-07-04 09:25 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\veverka
2014-07-03 13:01 - 2014-03-24 12:12 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\navod
2014-07-01 16:31 - 2012-03-07 11:29 - 00000000 ____D () C:\ProgramData\LogMeIn
2014-07-01 16:31 - 2009-07-27 17:04 - 00000000 ____D () C:\windows\Panther
2014-07-01 09:08 - 2011-02-10 18:59 - 00003230 _____ () C:\windows\System32\Tasks\SidebarExecute
2014-07-01 09:07 - 2011-03-30 09:50 - 00000965 _____ () C:\Users\Public\Desktop\AVG 2011.lnk
2014-07-01 08:46 - 2011-02-10 18:51 - 00000000 ____D () C:\ProgramData\MFAData
2014-06-30 08:41 - 2014-06-20 09:01 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\Gealan - soubory
2014-06-20 08:20 - 2014-06-20 08:20 - 02931580 _____ () C:\Users\ivana.novakova\Downloads\Infiniti_Windows7.themepack
2014-06-20 08:18 - 2014-06-20 08:18 - 09098319 _____ () C:\Users\ivana.novakova\Downloads\Ducati2.themepack
2014-06-17 14:04 - 2011-11-20 19:39 - 00003964 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-17 14:04 - 2011-11-20 19:39 - 00003712 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-16 08:59 - 2014-06-16 08:59 - 00000000 ____D () C:\Users\ivana.novakova\AppData\Local\Adobe
2014-06-13 11:26 - 2014-06-04 10:57 - 00000000 ____D () C:\Users\ivana.novakova\Desktop\zaloha šablon (číselníky)
2014-06-12 08:35 - 2011-11-20 19:41 - 00002183 _____ () C:\Users\Public\Desktop\google chrome.lnk
2014-06-12 08:25 - 2013-12-30 14:28 - 00000000 ____D () C:\windows\system32\MRT
2014-06-12 08:22 - 2011-02-15 11:30 - 95414520 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-06-12 08:21 - 2011-02-10 18:24 - 00000000 ____D () C:\ProgramData\Microsoft Help

Some content of TEMP:
====================
C:\Users\ivana.novakova\AppData\Local\Temp\SP47594.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50261.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50370.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50877.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP51129.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP51626.exe
C:\Users\ivana.novakova\AppData\Local\Temp\sp58915.exe
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPTCA.exe
C:\Users\uzivatel\AppData\Local\Temp\HPQSi.exe
C:\Users\uzivatel\AppData\Local\Temp\MSNE4E4.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================



==================== MBR and Partition Table ==================


==================== Scheduled Tasks (whitelisted) ==================

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForivana.novakova.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: AVG Internet Security Business Edition 2011 (Disabled - Up to date) {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
AS: AVG Internet Security Business Edition 2011 (Disabled - Up to date) {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\ivana.novakova\Desktop" je 8604 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
Addition.rar
(7 KiB) Staženo 25 x

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - zamrzá internet

#11 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
    HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia)
    
    SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKLM-x32 - DefaultScope value is missing.
    SearchScopes: HKCU - DefaultScope {791B9F98-CF13-42D7-AF27-25A7E797D680} URL = 
    
    2014-07-11 08:33 - 2014-07-11 08:33 - 00112640 _____ (forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe
    C:\Users\ivana.novakova\AppData\Local\Temp\SP47594.exe
    C:\Users\ivana.novakova\AppData\Local\Temp\SP50261.exe
    C:\Users\ivana.novakova\AppData\Local\Temp\SP50370.exe
    C:\Users\ivana.novakova\AppData\Local\Temp\SP50877.exe
    C:\Users\ivana.novakova\AppData\Local\Temp\SP51129.exe
    C:\Users\ivana.novakova\AppData\Local\Temp\SP51626.exe
    C:\Users\ivana.novakova\AppData\Local\Temp\sp58915.exe
    C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPSA.exe
    C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPTCA.exe
    C:\Users\uzivatel\AppData\Local\Temp\HPQSi.exe
    C:\Users\uzivatel\AppData\Local\Temp\MSNE4E4.exe
    
    Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\windows\Tasks\HPCeeScheduleForivana.novakova.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
    
    Hosts:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

petr_xxx
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 02 črc 2014 16:01

Re: Prosím o kontrolu - zamrzá internet

#12 Příspěvek od petr_xxx »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 14-07-2014
Ran by ivana.novakova at 2014-07-14 09:30:13 Run:1
Running from C:\Users\ivana.novakova\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia)

SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {791B9F98-CF13-42D7-AF27-25A7E797D680} URL =

2014-07-11 08:33 - 2014-07-11 08:33 - 00112640 _____ (forum.viry.cz) C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP47594.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50261.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50370.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP50877.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP51129.exe
C:\Users\ivana.novakova\AppData\Local\Temp\SP51626.exe
C:\Users\ivana.novakova\AppData\Local\Temp\sp58915.exe
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPSA.exe
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPTCA.exe
C:\Users\uzivatel\AppData\Local\Temp\HPQSi.exe
C:\Users\uzivatel\AppData\Local\Temp\MSNE4E4.exe

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForivana.novakova.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

Hosts:
Reboot:
End
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKU\S-1-5-21-1216150944-3253024930-2114404105-1122\Software\Microsoft\Windows\CurrentVersion\Run\\PC Suite Tray => value deleted successfully.
'HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}' => Key deleted successfully.
'HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}'=> Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"C:\Users\ivana.novakova\Desktop\FRSTLauncher.exe" => File/Directory not found.
C:\Users\ivana.novakova\AppData\Local\Temp\SP47594.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP50261.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP50370.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP50877.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP51129.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\SP51626.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\sp58915.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPSA.exe => Moved successfully.
C:\Users\ivana.novakova\AppData\Local\Temp\UninstallHPTCA.exe => Moved successfully.
C:\Users\uzivatel\AppData\Local\Temp\HPQSi.exe => Moved successfully.
C:\Users\uzivatel\AppData\Local\Temp\MSNE4E4.exe => Moved successfully.
C:\windows\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\windows\Tasks\HPCeeScheduleForivana.novakova.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.


The system needed a reboot.

==== End of Fixlog ====

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - zamrzá internet

#13 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

petr_xxx
Návštěvník
Návštěvník
Příspěvky: 22
Registrován: 02 črc 2014 16:01

Re: Prosím o kontrolu - zamrzá internet

#14 Příspěvek od petr_xxx »

Projeto všemi programy. Našel jste tam nějaký problém? Má smysl stáhnout si tyto utility z vašeho posledního příspěvku (nebo nějaké jiné?) a pravidelně s nimi projíždět počítač? Ccleaner jsem si už nechal.

Jinak mnohokrát děkuji za pomoc.

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Prosím o kontrolu - zamrzá internet

#15 Příspěvek od vyosek »

:arrow: Nastroje z posledniho prispevku slouzily k uklidu po pouzitych nastrojich behem cisteni - pravidelne pouzivani nema smysl

:arrow: Jediny CCleaner je urcen k pravidelne udrzbe :)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět