ComboFix 15-05-13.01 - Scrufik 15.05.2015 19:33:46.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.4078.1963 [GMT 2:00] Spuštěný z: c:\users\Scrufik\Downloads\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B} SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((((((((((((((((( Ostatní výmazy ))))))))))))))))))))))))))))))))))))))))))))))))) . . C:\install.exe c:\users\Scrufik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe c:\users\Scrufik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe . . ((((((((((((((((((((((((( Soubory vytvořené od 2015-04-15 do 2015-05-15 ))))))))))))))))))))))))))))))) . . 2015-05-15 18:09 . 2015-05-15 18:09 -------- d-----w- c:\users\Default\AppData\Local\temp 2015-05-15 15:42 . 2015-05-15 15:42 136408 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys 2015-05-15 15:41 . 2015-04-14 07:37 107736 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys 2015-05-15 15:41 . 2015-05-15 15:41 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware 2015-05-15 15:41 . 2015-05-15 15:41 -------- d-----w- c:\programdata\Malwarebytes 2015-05-15 15:41 . 2015-04-14 07:37 63704 ----a-w- c:\windows\system32\drivers\mwac.sys 2015-05-15 15:41 . 2015-04-14 07:37 25816 ----a-w- c:\windows\system32\drivers\mbam.sys 2015-05-15 15:26 . 2015-05-15 15:26 963232 ----a-w- c:\users\Scrufik\AppData\Roaming\Microsoft\Networking\msvcr120.dll 2015-05-15 15:26 . 2015-05-15 15:26 626176 ----a-w- c:\users\Scrufik\AppData\Roaming\Microsoft\Networking\libcurl.dll 2015-05-15 15:26 . 2015-05-15 15:26 494606 ----a-w- c:\users\Scrufik\AppData\Roaming\Microsoft\Networking\inet32upd.exe 2015-05-15 15:26 . 2015-05-15 15:26 364544 ----a-w- c:\users\Scrufik\AppData\Roaming\Microsoft\Networking\ssleay32.dll 2015-05-15 15:26 . 2015-05-15 15:26 279955 ----a-w- c:\users\Scrufik\AppData\Roaming\Microsoft\Networking\libidn-11.dll 2015-05-15 15:26 . 2015-05-15 15:26 2418688 ----a-w- c:\users\Scrufik\AppData\Roaming\Microsoft\Networking\winnet32b.exe 2015-05-15 15:26 . 2015-05-15 15:26 1704448 ----a-w- c:\users\Scrufik\AppData\Roaming\Microsoft\Networking\libeay32.dll 2015-05-15 15:26 . 2015-05-15 15:26 148760 ----a-w- c:\users\Scrufik\AppData\Roaming\Microsoft\Networking\libpdcurses.dll 2015-05-15 15:26 . 2015-05-15 15:26 131598 ----a-w- c:\users\Scrufik\AppData\Roaming\Microsoft\Networking\zlib1.dll 2015-05-15 15:26 . 2015-05-15 15:26 119704 ----a-w- c:\users\Scrufik\AppData\Roaming\Microsoft\Networking\pthreadGC2.dll 2015-05-15 15:26 . 2015-05-15 15:26 112142 ----a-w- c:\users\Scrufik\AppData\Roaming\Microsoft\Networking\libgcc_s_dw2-1.dll 2015-05-15 11:52 . 2015-04-04 06:25 12032440 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{CB7770E9-AD4A-4351-9476-334F1EE39D54}\mpengine.dll 2015-05-13 19:04 . 2015-05-01 13:17 124112 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-05-13 19:04 . 2015-05-01 13:16 102608 ----a-w- c:\windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll 2015-05-13 17:19 . 2015-04-21 16:25 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb 2015-05-13 17:18 . 2015-04-27 19:18 60416 ----a-w- c:\windows\system32\msobjs.dll 2015-05-10 16:11 . 2015-05-10 16:12 -------- d-----w- c:\program files (x86)\Crash Bandicoot 2015-05-10 11:46 . 2015-05-10 11:47 -------- d-----w- c:\users\Scrufik\AppData\Roaming\skyz 2015-05-09 18:46 . 2015-05-09 18:47 -------- d-----w- c:\users\Scrufik\AppData\Roaming\Opera Software 2015-05-09 18:46 . 2015-05-09 18:47 -------- d-----w- c:\users\Scrufik\AppData\Local\Opera Software 2015-05-09 18:45 . 2015-05-09 18:47 -------- d-----w- c:\program files (x86)\Opera 2015-05-02 22:36 . 2015-05-02 22:37 -------- d-----w- c:\programdata\BlueStacks 2015-05-02 22:36 . 2015-05-02 22:36 -------- d-----w- c:\users\Scrufik\AppData\Local\Bluestacks 2015-05-01 05:51 . 2015-05-01 05:51 -------- d-----w- c:\users\Scrufik\AppData\Roaming\StunlockStudios 2015-05-01 05:29 . 2015-05-01 05:49 -------- d-----w- c:\users\Scrufik\AppData\Local\CSO 2015-05-01 05:29 . 2015-05-01 05:29 -------- d-----w- c:\programdata\Nexon 2015-04-26 00:06 . 2015-04-26 00:06 -------- d-----w- c:\windows\Uninstall 2015-04-25 17:22 . 2015-04-25 20:52 -------- d-----w- c:\users\Scrufik\AppData\Roaming\uTorrent 2015-04-24 15:23 . 2015-04-24 15:23 -------- d-----w- c:\users\Scrufik\AppData\Local\Apple Computer 2015-04-24 15:22 . 2015-04-25 09:05 -------- d-----w- c:\users\Scrufik\AppData\Roaming\Apple Computer 2015-04-24 14:58 . 2015-04-24 14:58 -------- d-----w- c:\windows\SysWow64\C2MP 2015-04-24 14:57 . 2015-04-24 14:57 -------- d-sh--w- c:\users\Scrufik\AppData\Local\EmieUserList 2015-04-24 14:57 . 2015-04-24 14:57 -------- d-sh--w- c:\users\Scrufik\AppData\Local\EmieSiteList 2015-04-24 14:57 . 2015-04-24 14:57 -------- d-sh--w- c:\users\Scrufik\AppData\Local\EmieBrowserModeList 2015-04-24 14:55 . 2015-04-24 14:55 -------- d-----w- c:\users\Scrufik\AppData\Roaming\Nero 2015-04-24 14:54 . 2015-04-24 14:55 -------- d-----w- c:\users\Scrufik\AppData\Local\Nero 2015-04-24 14:53 . 2015-04-24 14:53 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin5.dll 2015-04-24 14:53 . 2015-04-24 14:53 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin4.dll 2015-04-24 14:53 . 2015-04-24 14:53 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin3.dll 2015-04-24 14:53 . 2015-04-24 14:52 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin2.dll 2015-04-24 14:53 . 2015-04-24 14:52 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin.dll 2015-04-24 14:52 . 2015-04-24 14:52 -------- d-----w- c:\program files (x86)\QuickTime 2015-04-24 14:52 . 2015-04-24 14:52 -------- d-----w- c:\programdata\Apple Computer 2015-04-24 14:51 . 2015-04-24 14:51 -------- d-----w- c:\program files (x86)\Common Files\Apple 2015-04-24 14:51 . 2015-04-24 14:51 -------- d-----w- c:\users\Scrufik\AppData\Local\Apple 2015-04-24 14:51 . 2015-04-24 14:51 -------- d-----w- c:\programdata\Apple 2015-04-24 14:51 . 2015-04-24 14:51 -------- d-----w- c:\program files (x86)\Apple Software Update 2015-04-18 22:45 . 2015-04-18 22:45 -------- d-----w- c:\users\Scrufik\AppData\Roaming\LolClient 2015-04-18 21:18 . 2015-04-18 21:18 -------- d-----w- c:\programdata\Riot Games 2015-04-18 21:17 . 2008-07-12 06:18 467984 ----a-w- c:\windows\SysWow64\d3dx10_39.dll 2015-04-18 21:17 . 2008-07-12 06:18 1493528 ----a-w- c:\windows\SysWow64\D3DCompiler_39.dll 2015-04-18 21:17 . 2008-07-12 06:18 3851784 ----a-w- c:\windows\SysWow64\D3DX9_39.dll 2015-04-18 21:14 . 2015-04-18 21:17 -------- d-----w- c:\users\Scrufik\AppData\Roaming\Riot Games 2015-04-18 20:13 . 2015-04-18 20:13 -------- d-----w- c:\users\Scrufik\AppData\Roaming\Unity 2015-04-17 19:36 . 2015-04-17 19:36 -------- d-----w- c:\users\Scrufik\AppData\Roaming\puush 2015-04-17 19:35 . 2015-04-17 19:36 -------- d-----w- c:\program files (x86)\puush 2015-04-16 18:58 . 2015-04-16 18:58 -------- d-----w- c:\users\Scrufik\AppData\Roaming\Sony Creative Software Inc 2015-04-16 04:54 . 2015-04-16 04:54 -------- d-s---w- c:\windows\system32\CompatTel 2015-04-16 04:54 . 2015-04-16 04:54 -------- d-----w- c:\windows\system32\appraiser . . . (((((((((((((((((((((((((((((((((((((((( Find3M výpis )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2015-05-05 01:29 . 2015-05-13 17:20 342016 ----a-w- c:\windows\system32\schannel.dll 2015-05-05 01:12 . 2015-05-13 17:20 248832 ----a-w- c:\windows\SysWow64\schannel.dll 2015-04-27 19:23 . 2015-05-13 17:19 113664 ----a-w- c:\windows\system32\sechost.dll 2015-04-27 19:05 . 2015-05-13 17:19 92160 ----a-w- c:\windows\SysWow64\sechost.dll 2015-04-27 19:04 . 2015-05-13 17:19 44032 ----a-w- c:\windows\apppatch\acwow64.dll 2015-04-14 01:38 . 2015-04-14 01:38 1217192 ----a-w- c:\windows\SysWow64\FM20.DLL 2015-04-06 13:11 . 2015-04-06 13:11 30352 ----a-w- c:\windows\system32\drivers\dtlitescsibus.sys 2015-04-04 13:51 . 2015-04-04 13:52 98216 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2015-04-02 03:05 . 2015-04-02 03:05 194048 ----a-w- c:\windows\SysWow64\elshyph.dll 2015-04-02 03:05 . 2015-04-02 03:05 942592 ----a-w- c:\windows\system32\jsIntl.dll 2015-04-02 03:05 . 2015-04-02 03:05 90112 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2015-04-02 03:05 . 2015-04-02 03:05 86016 ----a-w- c:\windows\SysWow64\iesysprep.dll 2015-04-02 03:05 . 2015-04-02 03:05 86016 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe 2015-04-02 03:05 . 2015-04-02 03:05 81408 ----a-w- c:\windows\system32\icardie.dll 2015-04-02 03:05 . 2015-04-02 03:05 77312 ----a-w- c:\windows\system32\tdc.ocx 2015-04-02 03:05 . 2015-04-02 03:05 74240 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe 2015-04-02 03:05 . 2015-04-02 03:05 71680 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe 2015-04-02 03:05 . 2015-04-02 03:05 645120 ----a-w- c:\windows\SysWow64\jsIntl.dll 2015-04-02 03:05 . 2015-04-02 03:05 62464 ----a-w- c:\windows\SysWow64\tdc.ocx 2015-04-02 03:05 . 2015-04-02 03:05 616104 ----a-w- c:\windows\system32\ieapfltr.dat 2015-04-02 03:05 . 2015-04-02 03:05 52224 ----a-w- c:\windows\system32\msfeedsbs.dll 2015-04-02 03:05 . 2015-04-02 03:05 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll 2015-04-02 03:05 . 2015-04-02 03:05 48640 ----a-w- c:\windows\system32\mshtmler.dll 2015-04-02 03:05 . 2015-04-02 03:05 36352 ----a-w- c:\windows\SysWow64\imgutil.dll 2015-04-02 03:05 . 2015-04-02 03:05 247808 ----a-w- c:\windows\system32\msls31.dll 2015-04-02 03:05 . 2015-04-02 03:05 24576 ----a-w- c:\windows\SysWow64\licmgr10.dll 2015-04-02 03:05 . 2015-04-02 03:05 235008 ----a-w- c:\windows\system32\elshyph.dll 2015-04-02 03:05 . 2015-04-02 03:05 182272 ----a-w- c:\windows\SysWow64\msls31.dll 2015-04-02 03:05 . 2015-04-02 03:05 151552 ----a-w- c:\windows\SysWow64\iexpress.exe 2015-04-02 03:05 . 2015-04-02 03:05 139264 ----a-w- c:\windows\SysWow64\wextract.exe 2015-04-02 03:05 . 2015-04-02 03:05 13312 ----a-w- c:\windows\SysWow64\mshta.exe 2015-04-02 03:05 . 2015-04-02 03:05 13312 ----a-w- c:\windows\system32\msfeedssync.exe 2015-04-02 03:05 . 2015-04-02 03:05 131072 ----a-w- c:\windows\system32\IEAdvpack.dll 2015-04-02 03:05 . 2015-04-02 03:05 111616 ----a-w- c:\windows\SysWow64\IEAdvpack.dll 2015-04-02 03:05 . 2015-04-02 03:05 105984 ----a-w- c:\windows\system32\iesysprep.dll 2015-04-02 03:05 . 2015-04-02 03:05 62464 ----a-w- c:\windows\system32\pngfilt.dll 2015-04-02 03:05 . 2015-04-02 03:05 48128 ----a-w- c:\windows\system32\imgutil.dll 2015-04-02 03:05 . 2015-04-02 03:05 30208 ----a-w- c:\windows\system32\licmgr10.dll 2015-04-02 03:05 . 2015-04-02 03:05 243200 ----a-w- c:\windows\system32\webcheck.dll 2015-04-02 03:05 . 2015-04-02 03:05 235520 ----a-w- c:\windows\system32\url.dll 2015-04-02 03:05 . 2015-04-02 03:05 167424 ----a-w- c:\windows\system32\iexpress.exe 2015-04-02 03:05 . 2015-04-02 03:05 147968 ----a-w- c:\windows\system32\occache.dll 2015-04-02 03:05 . 2015-04-02 03:05 143872 ----a-w- c:\windows\system32\wextract.exe 2015-04-02 03:05 . 2015-04-02 03:05 13824 ----a-w- c:\windows\system32\mshta.exe 2015-04-02 03:05 . 2015-04-02 03:05 135680 ----a-w- c:\windows\system32\iepeers.dll 2015-04-02 03:05 . 2015-04-02 03:05 101376 ----a-w- c:\windows\system32\inseng.dll 2015-04-02 02:56 . 2015-04-02 02:56 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 648192 ----a-w- c:\windows\system32\d3d10level9.dll 2015-04-02 02:56 . 2015-04-02 02:56 604160 ----a-w- c:\windows\SysWow64\d3d10level9.dll 2015-04-02 02:56 . 2015-04-02 02:56 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 522752 ----a-w- c:\windows\system32\XpsGdiConverter.dll 2015-04-02 02:56 . 2015-04-02 02:56 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 364544 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll 2015-04-02 02:56 . 2015-04-02 02:56 363008 ----a-w- c:\windows\system32\dxgi.dll 2015-04-02 02:56 . 2015-04-02 02:56 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 333312 ----a-w- c:\windows\system32\d3d10_1core.dll 2015-04-02 02:56 . 2015-04-02 02:56 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 296960 ----a-w- c:\windows\system32\d3d10core.dll 2015-04-02 02:56 . 2015-04-02 02:56 293376 ----a-w- c:\windows\SysWow64\dxgi.dll 2015-04-02 02:56 . 2015-04-02 02:56 2560 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 249856 ----a-w- c:\windows\SysWow64\d3d10_1core.dll 2015-04-02 02:56 . 2015-04-02 02:56 245248 ----a-w- c:\windows\system32\WindowsCodecsExt.dll 2015-04-02 02:56 . 2015-04-02 02:56 221184 ----a-w- c:\windows\system32\UIAnimation.dll 2015-04-02 02:56 . 2015-04-02 02:56 220160 ----a-w- c:\windows\SysWow64\d3d10core.dll 2015-04-02 02:56 . 2015-04-02 02:56 207872 ----a-w- c:\windows\SysWow64\WindowsCodecsExt.dll 2015-04-02 02:56 . 2015-04-02 02:56 194560 ----a-w- c:\windows\system32\d3d10_1.dll 2015-04-02 02:56 . 2015-04-02 02:56 187392 ----a-w- c:\windows\SysWow64\UIAnimation.dll 2015-04-02 02:56 . 2015-04-02 02:56 1682432 ----a-w- c:\windows\system32\XpsPrint.dll 2015-04-02 02:56 . 2015-04-02 02:56 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll 2015-04-02 02:56 . 2015-04-02 02:56 1238528 ----a-w- c:\windows\system32\d3d10.dll 2015-04-02 02:56 . 2015-04-02 02:56 1158144 ----a-w- c:\windows\SysWow64\XpsPrint.dll 2015-04-02 02:56 . 2015-04-02 02:56 1080832 ----a-w- c:\windows\SysWow64\d3d10.dll 2015-04-02 02:56 . 2015-04-02 02:56 10752 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2015-04-02 02:56 . 2015-04-02 02:56 10752 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2015-03-30 16:00 . 2015-03-30 16:00 88408 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2015-03-30 16:00 . 2015-03-30 16:00 65736 ----a-w- c:\windows\system32\drivers\aswRvrt.sys 2015-03-30 16:00 . 2015-03-30 16:00 442264 ----a-w- c:\windows\system32\drivers\aswSP.sys 2015-03-30 16:00 . 2015-03-30 16:00 29168 ----a-w- c:\windows\system32\drivers\aswHwid.sys 2015-03-30 16:00 . 2015-03-30 16:00 271200 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2015-03-30 16:00 . 2015-03-30 16:00 136752 ----a-w- c:\windows\system32\drivers\aswStm.sys 2015-03-30 16:00 . 2015-03-30 16:00 364472 ----a-w- c:\windows\system32\aswBoot.exe 2015-03-30 16:00 . 2015-03-30 16:00 93528 ----a-w- c:\windows\system32\drivers\aswRdr2.sys 2015-03-30 16:00 . 2015-03-30 16:00 43112 ----a-w- c:\windows\avastSS.scr 2015-03-30 16:00 . 2015-03-30 16:00 1047320 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2015-03-30 13:42 . 2011-03-28 16:36 23256 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2015-03-30 13:25 . 2015-03-30 13:25 33856 ---ha-w- c:\windows\system32\drivers\hamachi.sys 2015-03-28 03:44 . 2015-03-31 14:07 1316000 ----a-w- c:\windows\SysWow64\nvspbridge.dll 2015-03-28 03:44 . 2015-03-31 14:07 1316000 ----a-w- c:\windows\SysWow64\nvspcap.dll 2015-03-28 03:43 . 2015-03-31 14:07 1756424 ----a-w- c:\windows\system32\nvspbridge64.dll 2015-03-28 03:43 . 2015-03-31 14:07 1570672 ----a-w- c:\windows\system32\nvspcap64.dll . . (((((((((((((((((((((((((((((((((( Spouštěcí body v registru ))))))))))))))))))))))))))))))))))))))))))))) . . *Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny. REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}] 2011-08-03 12:01 433648 ----a-w- c:\programdata\Partner\Partner.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="c:\program files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe" [2011-05-16 846936] "Steam"="d:\program files (x86)\Steam\steam.exe" [2015-05-11 2888384] "DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2015-03-31 5585136] "puush"="c:\program files (x86)\puush\puush.exe" [2015-04-17 568904] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920] "NBAgent"="c:\program files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" [2011-06-29 1409424] "ITSecMng"="c:\program files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe" [2009-07-22 83336] "ToshibaServiceStation"="c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" [2010-11-29 1294712] "AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-03-30 5512912] "LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2015-03-30 3978600] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2015-03-07 335232] "BCSSync"="c:\program files (x86)\Microsoft Office\Office14\BCSSync.exe" [2012-11-05 89184] "AdobeCS6ServiceManager"="c:\program files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" [2012-03-09 1073312] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-09-13 59720] "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2014-10-02 421888] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "TOPI.EXE"="c:\program files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe" [2011-05-16 846936] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ CodecPackUpdateChecker.lnk - c:\windows\SysWOW64\C2MP\UpdateChecker.exe [2014-8-13 48720] Toshiba Places Icon Utility.lnk - c:\program files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe [2011-8-3 1470848] . c:\users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ TRDCReminder.lnk - c:\program files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe [2009-9-1 481184] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "EnableLinkedConnections"= 1 (0x1) "SoftwareSASGeneration"= 1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "mixer1"=wdmaud.drv . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . R2 BstHdAndroidSvc;BlueStacks Android Service;c:\program files (x86)\BlueStacks\HD-Service.exe BstHdAndroidSvc Android;c:\program files (x86)\BlueStacks\HD-Service.exe BstHdAndroidSvc Android [x] R2 BstHdDrv;BlueStacks Hypervisor;c:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys;c:\program files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [x] R2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service;c:\program files (x86)\BlueStacks\HD-LogRotatorService.exe;c:\program files (x86)\BlueStacks\HD-LogRotatorService.exe [x] R2 BstHdUpdaterSvc;BlueStacks Updater Service;gadgetDataDir=c:\programdata\BlueStacks\UserData\Gadget;c:\program files (x86)\BlueStacks\HD-UpdaterService.exe;c:\program files (x86)\BlueStacks\HD-UpdaterService.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 BtFilter;Bluetooth LowerFilter Class Filter Driver;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x] R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service;c:\program files\DAEMON Tools Lite\DiscSoftBusService.exe;c:\program files\DAEMON Tools Lite\DiscSoftBusService.exe [x] R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys;c:\windows\SYSNATIVE\drivers\EagleX64.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x] R3 Partner Service;Partner Service;c:\programdata\Partner\Partner.exe;c:\programdata\Partner\Partner.exe [x] R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUStor.sys [x] R3 RSUSBVSTOR;RTSUVSTOR.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RTSUVSTOR.sys;c:\windows\SYSNATIVE\Drivers\RTSUVSTOR.sys [x] R3 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO);c:\program files (x86)\Toshiba TEMPRO\TemproSvc.exe;c:\program files (x86)\Toshiba TEMPRO\TemproSvc.exe [x] R3 TMachInfo;TMachInfo;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [x] R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [x] R3 TPCHSrv;TPCH Service;c:\program files\TOSHIBA\TPHM\TPCHSrv.exe;c:\program files\TOSHIBA\TPHM\TPCHSrv.exe [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x] S0 aswRvrt;avast! Revert; [x] S0 aswVmm;avast! VM Monitor; [x] S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x] S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x] S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x] S2 cfWiMAXService;ConfigFree WiMAX Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe;c:\program files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [x] S2 ConfigFree Service;ConfigFree Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe;c:\program files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [x] S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x] S2 GfExperienceService;NVIDIA GeForce Experience Service;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [x] S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [x] S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe;c:\program files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [x] S2 NAUpdate;Nero Update;c:\program files (x86)\Nero\Update\NASvc.exe;c:\program files (x86)\Nero\Update\NASvc.exe [x] S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x] S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service;c:\program files\TOSHIBA\TECO\TecoService.exe;c:\program files\TOSHIBA\TECO\TecoService.exe [x] S2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver;c:\windows\system32\DRIVERS\TVALZFL.sys;c:\windows\SYSNATIVE\DRIVERS\TVALZFL.sys [x] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S2 VBoxAswDrv;VBoxAsw Support Driver;c:\program files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys;c:\program files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [x] S3 AvastVBoxSvc;AvastVBox COM Service;c:\program files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe;c:\program files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [x] S3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus;c:\windows\system32\DRIVERS\dtlitescsibus.sys;c:\windows\SYSNATIVE\DRIVERS\dtlitescsibus.sys [x] S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys;c:\windows\SYSNATIVE\DRIVERS\L1C62x64.sys [x] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x] S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3hub.sys [x] S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3xhc.sys [x] S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x] S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x] S3 PGEffect;Pangu effect driver;c:\windows\system32\DRIVERS\pgeffect.sys;c:\windows\SYSNATIVE\DRIVERS\pgeffect.sys [x] S3 QIOMem;Generic IO & Memory Access;c:\windows\system32\drivers\QIOMem.sys;c:\windows\SYSNATIVE\drivers\QIOMem.sys [x] . . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2015-05-15 17:03 988488 ----a-w- c:\program files (x86)\Google\Chrome\Application\42.0.2311.152\Installer\chrmstp.exe . Obsah adresáře 'Naplánované úlohy' . 2015-05-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-08-03 13:42] . 2015-05-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-08-03 13:42] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}] 2011-08-03 12:01 750064 ----a-w- c:\programdata\Partner\Partner64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2015-03-30 16:00 722400 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Toshiba TEMPRO"="c:\program files (x86)\Toshiba TEMPRO\TemproTray.exe" [2011-02-10 1546720] "SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2010-12-14 316032] "TosSENotify"="c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe" [2010-12-08 710040] "TosVolRegulator"="c:\program files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe" [2009-11-11 24376] "Toshiba Registration"="c:\program files\TOSHIBA\Registration\ToshibaReminder.exe" [2011-08-03 150992] "NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2015-03-28 2673296] "ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2015-03-28 1570672] "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-04-04 446392] . ------- Doplňkový sken ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www.google.com/ig/redirectdomain?brand=TEUA&bmod=TEUA mLocal Page = c:\windows\SysWOW64\blank.htm IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000 IE: Od&eslat do aplikace OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105 IE: Přidat do aplikace TOSHIBA Bulletin Board - c:\program files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000 . - - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - - . Toolbar-Locked - (no file) Wow6432Node-HKCU-Run-AdobeBridge - (no file) Wow6432Node-HKLM-Run-TSleepSrv - %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start Toolbar-Locked - (no file) HKLM-Run-TosNC - c:\program files (x86)\Toshiba\BulletinBoard\TosNcCore.exe HKLM-Run-TosReelTimeMonitor - c:\program files (x86)\TOSHIBA\ReelTime\TosReelTimeMonitor.exe HKLM-Run-TPwrMain - c:\program files (x86)\TOSHIBA\Power Saver\TPwrMain.EXE HKLM-Run-HSON - c:\program files (x86)\TOSHIBA\TBS\HSON.exe HKLM-Run-TCrdMain - c:\program files (x86)\TOSHIBA\FlashCards\TCrdMain.exe HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe HKLM-Run-Teco - c:\program files (x86)\TOSHIBA\TECO\Teco.exe HKLM-Run-TosWaitSrv - c:\program files (x86)\TOSHIBA\TPHM\TosWaitSrv.exe AddRemove-BlueStacks App Player - c:\program files (x86)\BlueStacks\HD-RuntimeUninstaller.exe . . . --------------------- ZAMKNUTÉ KLÍČE V REGISTRU --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\BlueStacks] "SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,4d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10l.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\McAfee] "SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79, 00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\ . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}] @Denied: (A) (Everyone) "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0] "Key"="ActionsPane3" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Jiné spuštené procesy ------------------------ . c:\program files\AVAST Software\Avast\AvastSvc.exe c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe c:\program files (x86)\TOSHIBA\ConfigFree\NDSTray.exe c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe . ************************************************************************** . Celkový čas: 2015-05-15 20:17:57 - počítač byl restartován ComboFix-quarantined-files.txt 2015-05-15 18:17 . Před spuštěním: Volných bajtů: 199 149 760 512 Po spuštění: Volných bajtů: 199 872 790 528 . - - End Of File - - FA54E63A2C5E38CAF8484C9F13D6B1C7