ComboFix 13-01-17.04 - Uzivatel 19.01.2013 13:13:10.5.4 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1250.420.1029.18.4007.2159 [GMT 1:00]
Spuštěný z: c:\users\Uzivatel\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\users\Uzivatel\Desktop\CFScript.txt
AV: Microsoft Security Essentials *Disabled/Updated* {B140BF4E-23BB-4198-90AB-A51A4C60A69C}
SP: Microsoft Security Essentials *Disabled/Updated* {0A215EAA-0581-4E16-AA1B-9E6837E7EC21}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Skype\Updater
c:\program files (x86)\Skype\Updater\Updater.dll
c:\program files (x86)\Skype\Updater\Updater.exe
c:\users\Uzivatel\AppData\Local\{C5C9A840-DFF4-42AC-BFA2-E7312137719E}
c:\users\Uzivatel\AppData\Local\Symantec
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_SkypeUpdate
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-12-19 do 2013-01-19 )))))))))))))))))))))))))))))))
.
.
2013-01-18 09:01 . 2013-01-18 09:01 -------- d-----w- c:\users\Uzivatel\AppData\Local\Broadcom
2013-01-18 09:00 . 2013-01-18 09:00 -------- d-----w- c:\users\Uzivatel\AppData\Local\ArcSoft
2013-01-18 08:53 . 2013-01-18 08:53 388096 ----a-r- c:\users\Uzivatel\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2013-01-18 08:53 . 2013-01-18 08:53 -------- d-----w- c:\program files (x86)\Trend Micro
2013-01-16 18:51 . 2013-01-16 18:53 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2013-01-16 18:51 . 2012-12-14 15:49 24176 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-01-16 18:10 . 2013-01-16 18:10 -------- d-----w- c:\program files (x86)\VS Revo Group
2013-01-15 11:25 . 2013-01-15 11:25 -------- d-----w- c:\users\Uzivatel\AppData\Local\Wooky_s.r.o
2013-01-15 10:48 . 2013-01-15 23:55 -------- d-----w- c:\users\Uzivatel\AppData\Local\Mobilbonus
2013-01-14 14:42 . 2013-01-14 14:44 -------- d-----w- c:\program files (x86)\MeeSoft
2013-01-12 11:47 . 2013-01-12 11:48 -------- d-----w- c:\users\Hanka.ADMIN\AppData\Roaming\Nokia
2013-01-11 12:50 . 2013-01-11 12:50 -------- d-----w- c:\program files (x86)\TomTom DesktopSuite
2013-01-10 00:22 . 2013-01-16 19:45 -------- d-----w- C:\antitwined
2013-01-09 19:26 . 2013-01-09 19:26 -------- d-----w- c:\users\Uzivatel\AppData\Local\DigitalVolcano
2013-01-09 05:10 . 2012-11-30 05:41 424448 ----a-w- c:\windows\system32\KernelBase.dll
2013-01-06 15:09 . 2013-01-06 15:09 -------- d-----w- c:\users\Uzivatel\AppData\Roaming\DraftSight
2013-01-06 15:09 . 2013-01-06 15:09 -------- d-----w- c:\programdata\Dassault Systemes
2013-01-06 15:09 . 2013-01-06 15:09 -------- d-----w- c:\program files\Dassault Systemes
2013-01-06 13:14 . 2013-01-06 13:27 -------- d-----w- c:\program files\Paint.NET
2013-01-06 13:14 . 2013-01-16 19:36 -------- d-----w- c:\users\Uzivatel\AppData\Local\Paint.NET
2013-01-06 00:59 . 2013-01-06 00:59 -------- d-----w- c:\users\Uzivatel\AppData\Local\Microsoft_Corporation
2013-01-04 18:13 . 2013-01-04 18:13 -------- d-----w- c:\programdata\YTD Video Downloader
2013-01-04 18:13 . 2013-01-04 18:13 -------- d-----w- c:\program files (x86)\GreenTree Applications
2013-01-01 18:06 . 2013-01-01 18:06 29672 ----a-w- c:\windows\system32\drivers\HWiNFO64A.SYS
2013-01-01 18:06 . 2013-01-01 18:06 -------- d-----w- c:\program files\HWiNFO64
2012-12-27 08:20 . 2013-01-16 18:17 -------- d-----w- c:\program files (x86)\Clean Disk Security
2012-12-27 08:11 . 2012-12-27 08:13 -------- d-----w- c:\program files (x86)\Ss-Tools
2012-12-25 21:20 . 2013-01-18 20:57 -------- d-----w- c:\users\Hanka.ADMIN\AppData\Roaming\Skype
2012-12-25 20:29 . 2012-12-25 20:29 -------- d-----w- c:\users\Hanka.ADMIN\AppData\Roaming\Nikon
2012-12-25 20:29 . 2012-12-25 20:29 -------- d-----w- c:\users\Hanka.ADMIN\AppData\Local\Nikon
2012-12-25 19:41 . 2012-12-25 19:41 -------- d-----w- c:\users\Hanka.ADMIN\AppData\Local\Opera
2012-12-25 19:01 . 2012-12-25 19:01 -------- d-----w- c:\users\Hanka.ADMIN\AppData\Local\Windows Live Writer
2012-12-25 19:01 . 2012-12-25 19:01 -------- d-----w- c:\users\Hanka.ADMIN\AppData\Roaming\Windows Live Writer
2012-12-25 18:51 . 2012-12-25 18:51 -------- d-----w- c:\users\Hanka.ADMIN\AppData\Local\Zoner
2012-12-21 02:00 . 2012-12-16 17:11 46080 ----a-w- c:\windows\system32\atmlib.dll
2012-12-21 02:00 . 2012-12-16 14:13 34304 ----a-w- c:\windows\SysWow64\atmlib.dll
2012-12-21 02:00 . 2012-12-16 14:45 367616 ----a-w- c:\windows\system32\atmfd.dll
2012-12-21 02:00 . 2012-12-16 14:13 295424 ----a-w- c:\windows\SysWow64\atmfd.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-01-10 00:56 . 2012-04-06 21:43 67599240 ----a-w- c:\windows\system32\MRT.exe
2013-01-09 10:58 . 2012-04-06 21:38 74248 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-01-09 10:58 . 2012-04-06 21:38 697864 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2012-12-12 21:37 . 2012-12-12 21:37 4472832 ----a-w- c:\windows\SysWow64\GPhotos.scr
2012-12-05 16:39 . 2012-12-05 16:40 972264 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{AB49CC2B-D0E5-46EA-804E-FA68505BCC69}\gapaengine.dll
2012-11-30 04:45 . 2013-01-09 05:10 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2012-11-22 16:19 . 2012-06-19 11:36 48648 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll
2012-11-14 07:06 . 2012-12-14 02:01 17811968 ----a-w- c:\windows\system32\mshtml.dll
2012-11-14 06:32 . 2012-12-14 02:01 10925568 ----a-w- c:\windows\system32\ieframe.dll
2012-11-14 06:11 . 2012-12-14 02:01 2312704 ----a-w- c:\windows\system32\jscript9.dll
2012-11-14 06:04 . 2012-12-14 02:01 1346048 ----a-w- c:\windows\system32\urlmon.dll
2012-11-14 06:04 . 2012-12-14 02:01 1392128 ----a-w- c:\windows\system32\wininet.dll
2012-11-14 06:02 . 2012-12-14 02:01 1494528 ----a-w- c:\windows\system32\inetcpl.cpl
2012-11-14 06:02 . 2012-12-14 02:01 237056 ----a-w- c:\windows\system32\url.dll
2012-11-14 05:59 . 2012-12-14 02:01 85504 ----a-w- c:\windows\system32\jsproxy.dll
2012-11-14 05:58 . 2012-12-14 02:01 816640 ----a-w- c:\windows\system32\jscript.dll
2012-11-14 05:57 . 2012-12-14 02:01 599040 ----a-w- c:\windows\system32\vbscript.dll
2012-11-14 05:57 . 2012-12-14 02:01 173056 ----a-w- c:\windows\system32\ieUnatt.exe
2012-11-14 05:55 . 2012-12-14 02:01 2144768 ----a-w- c:\windows\system32\iertutil.dll
2012-11-14 05:55 . 2012-12-14 02:01 729088 ----a-w- c:\windows\system32\msfeeds.dll
2012-11-14 05:53 . 2012-12-14 02:01 96768 ----a-w- c:\windows\system32\mshtmled.dll
2012-11-14 05:52 . 2012-12-14 02:01 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-11-14 05:46 . 2012-12-14 02:01 248320 ----a-w- c:\windows\system32\ieui.dll
2012-11-14 02:09 . 2012-12-14 02:01 1800704 ----a-w- c:\windows\SysWow64\jscript9.dll
2012-11-14 01:58 . 2012-12-14 02:01 1427968 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2012-11-14 01:57 . 2012-12-14 02:01 1129472 ----a-w- c:\windows\SysWow64\wininet.dll
2012-11-14 01:49 . 2012-12-14 02:01 142848 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2012-11-14 01:48 . 2012-12-14 02:01 420864 ----a-w- c:\windows\SysWow64\vbscript.dll
2012-11-14 01:44 . 2012-12-14 02:01 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb
2012-11-09 05:45 . 2012-12-13 07:26 2048 ----a-w- c:\windows\system32\tzres.dll
2012-11-09 04:42 . 2012-12-13 07:26 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2012-11-08 10:29 . 2012-11-08 10:29 1402312 ----a-w- c:\windows\SysWow64\msxml4.dll
2012-11-02 10:21 . 2012-11-02 10:21 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll
2012-11-02 10:21 . 2012-11-02 10:21 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2012-11-02 10:21 . 2012-11-02 10:21 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2012-11-02 10:21 . 2012-11-02 10:21 63488 ----a-w- c:\windows\SysWow64\tdc.ocx
2012-11-02 10:21 . 2012-11-02 10:21 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2012-11-02 10:21 . 2012-11-02 10:21 367104 ----a-w- c:\windows\SysWow64\html.iec
2012-11-02 10:21 . 2012-11-02 10:21 161792 ----a-w- c:\windows\SysWow64\msls31.dll
2012-11-02 10:21 . 2012-11-02 10:21 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2012-11-02 10:21 . 2012-11-02 10:21 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2012-11-02 10:21 . 2012-11-02 10:21 74752 ----a-w- c:\windows\SysWow64\iesetup.dll
2012-11-02 10:21 . 2012-11-02 10:21 35840 ----a-w- c:\windows\SysWow64\imgutil.dll
2012-11-02 10:21 . 2012-11-02 10:21 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll
2012-11-02 10:21 . 2012-11-02 10:21 222208 ----a-w- c:\windows\system32\msls31.dll
2012-11-02 10:21 . 2012-11-02 10:21 197120 ----a-w- c:\windows\system32\msrating.dll
2012-11-02 10:21 . 2012-11-02 10:21 152064 ----a-w- c:\windows\SysWow64\wextract.exe
2012-11-02 10:21 . 2012-11-02 10:21 150528 ----a-w- c:\windows\SysWow64\iexpress.exe
2012-11-02 10:21 . 2012-11-02 10:21 11776 ----a-w- c:\windows\SysWow64\mshta.exe
2012-11-02 10:21 . 2012-11-02 10:21 101888 ----a-w- c:\windows\SysWow64\admparse.dll
2012-11-02 10:21 . 2012-11-02 10:21 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2012-11-02 10:21 . 2012-11-02 10:21 89088 ----a-w- c:\windows\system32\ie4uinit.exe
2012-11-02 10:21 . 2012-11-02 10:21 85504 ----a-w- c:\windows\system32\iesetup.dll
2012-11-02 10:21 . 2012-11-02 10:21 82432 ----a-w- c:\windows\system32\icardie.dll
2012-11-02 10:21 . 2012-11-02 10:21 76800 ----a-w- c:\windows\system32\tdc.ocx
2012-11-02 10:21 . 2012-11-02 10:21 65024 ----a-w- c:\windows\system32\pngfilt.dll
2012-11-02 10:21 . 2012-11-02 10:21 55296 ----a-w- c:\windows\system32\msfeedsbs.dll
2012-11-02 10:21 . 2012-11-02 10:21 534528 ----a-w- c:\windows\system32\ieapfltr.dll
2012-11-02 10:21 . 2012-11-02 10:21 49664 ----a-w- c:\windows\system32\imgutil.dll
2012-11-02 10:21 . 2012-11-02 10:21 48640 ----a-w- c:\windows\system32\mshtmler.dll
2012-11-02 10:21 . 2012-11-02 10:21 452608 ----a-w- c:\windows\system32\dxtmsft.dll
2012-11-02 10:21 . 2012-11-02 10:21 448512 ----a-w- c:\windows\system32\html.iec
2012-11-02 10:21 . 2012-11-02 10:21 403248 ----a-w- c:\windows\system32\iedkcs32.dll
2012-11-02 10:21 . 2012-11-02 10:21 39936 ----a-w- c:\windows\system32\iernonce.dll
2012-11-02 10:21 . 2012-11-02 10:21 3695416 ----a-w- c:\windows\system32\ieapfltr.dat
2012-11-02 10:21 . 2012-11-02 10:21 30720 ----a-w- c:\windows\system32\licmgr10.dll
2012-11-02 10:21 . 2012-11-02 10:21 282112 ----a-w- c:\windows\system32\dxtrans.dll
2012-11-02 10:21 . 2012-11-02 10:21 267776 ----a-w- c:\windows\system32\ieaksie.dll
2012-11-02 10:21 . 2012-11-02 10:21 249344 ----a-w- c:\windows\system32\webcheck.dll
2012-11-02 10:21 . 2012-11-02 10:21 165888 ----a-w- c:\windows\system32\iexpress.exe
2012-11-02 10:21 . 2012-11-02 10:21 163840 ----a-w- c:\windows\system32\ieakui.dll
2012-11-02 10:21 . 2012-11-02 10:21 160256 ----a-w- c:\windows\system32\wextract.exe
2012-11-02 10:21 . 2012-11-02 10:21 160256 ----a-w- c:\windows\system32\ieakeng.dll
2012-11-02 10:21 . 2012-11-02 10:21 149504 ----a-w- c:\windows\system32\occache.dll
2012-11-02 10:21 . 2012-11-02 10:21 145920 ----a-w- c:\windows\system32\iepeers.dll
2012-11-02 10:21 . 2012-11-02 10:21 135168 ----a-w- c:\windows\system32\IEAdvpack.dll
2012-11-02 10:21 . 2012-11-02 10:21 12288 ----a-w- c:\windows\system32\mshta.exe
2012-11-02 10:21 . 2012-11-02 10:21 114176 ----a-w- c:\windows\system32\admparse.dll
2012-11-02 10:21 . 2012-11-02 10:21 111616 ----a-w- c:\windows\system32\iesysprep.dll
2012-11-02 10:21 . 2012-11-02 10:21 10752 ----a-w- c:\windows\system32\msfeedssync.exe
2012-11-02 10:21 . 2012-11-02 10:21 103936 ----a-w- c:\windows\system32\inseng.dll
2012-11-02 05:59 . 2012-12-13 07:26 478208 ----a-w- c:\windows\system32\dpnet.dll
2012-11-02 05:11 . 2012-12-13 07:26 376832 ----a-w- c:\windows\SysWow64\dpnet.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"VirtualCloneDrive"="c:\program files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2011-03-07 89456]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-09-17 254896]
"RotateImage"="c:\program files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe" [2008-10-30 55808]
"PWMTRV"="c:\progra~2\ThinkPad\UTILIT~1\PWMTR64V.DLL" [2012-01-23 1631808]
"Lenovo Registration"="c:\program files (x86)\Lenovo Registration\LenovoReg.exe" [2011-07-14 4351712]
"HPUsageTrackingLEDM"="c:\program files (x86)\HP\HP UT LEDM\bin\hppusg.exe" [2009-10-15 30264]
"ArcSoft Connection Service"="c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-27 207424]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma Loader.lnk - c:\program files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2012-12-18 113664]
Bluetooth.lnk - c:\program files\ThinkPad\Bluetooth Software\BTTray.exe [2011-10-17 1213216]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"DisableCAD"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages REG_MULTI_SZ scecli c:\program files\ThinkVantage Fingerprint Software\psqlpwd.dll
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 HyperW7Svc;HyperW7 Service;c:\program files\Lenovo\RapidBoot\HyperW7Svc64.exe [2011-11-18 144448]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys [2012-09-20 102368]
R3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
R3 intaud_WaveExtensible;Intel WiDi Audio Device;c:\windows\system32\drivers\intelaud.sys [2011-06-21 34200]
R3 mvusbews;USB EWS Device;c:\windows\system32\Drivers\mvusbews.sys [2010-04-28 20480]
R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [2011-11-01 340240]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [2012-08-30 128456]
R3 NisSrv;Kontrola sítě Microsoft;c:\program files\Microsoft Security Client\NisSrv.exe [2012-09-12 368896]
R3 nmwcdnsucx64;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsucx64.sys [2012-06-11 12800]
R3 nmwcdnsux64;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsux64.sys [2012-06-11 171008]
R3 Power Manager DBC Service;Power Manager DBC Service;c:\program files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE [2012-01-23 89152]
R3 PwmEWSvc;Cisco EnergyWise Enabler;c:\program files (x86)\ThinkPad\Utilities\PWMEWSVC.EXE [2012-01-23 175168]
R3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys [2012-09-20 203104]
R3 ssudobex;SAMSUNG Mobile USB OBEX Serial Port(DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudobex.sys [2012-09-20 203104]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2012-04-06 1255736]
R4 MSSQLServerADHelper100;SQL Active Directory Helper Service;c:\program files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2010-04-03 59744]
R4 RsFx0150;RsFx0150 Driver;c:\windows\system32\DRIVERS\RsFx0150.sys [2010-04-03 313696]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
S0 TPDIGIMN;TPDIGIMN;c:\windows\System32\DRIVERS\ApsHM64.sys [2011-03-30 23664]
S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\windows\system32\drivers\HWiNFO64A.SYS [2013-01-01 29672]
S1 lenovo.smi;Lenovo System Interface Driver;c:\windows\system32\DRIVERS\smiifx64.sys [2010-09-07 15472]
S1 PHCORE;PHCORE;c:\program files\Lenovo\RapidBoot\PHCORE64.SYS [2011-07-08 32104]
S2 CxAudMsg;Conexant Audio Message Service;c:\windows\system32\CxAudMsg64.exe [2010-12-16 198784]
S2 DraftSight API Service;DraftSight API Service;c:\program files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe [2012-10-03 117760]
S2 HP LaserJet Service;HP LaserJet Service;c:\program files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [2009-10-15 136192]
S2 HPSIService;HP SI Service;c:\windows\system32\HPSIsvc.exe [2010-04-30 127800]
S2 jhi_service;Intel(R) Identity Protection Technology Host Interface Service;c:\program files (x86)\Intel\Services\IPT\jhi_service.exe [2011-02-24 212944]
S2 LENOVO.CAMMUTE;Lenovo Camera Mute;c:\program files\Lenovo\Communications Utility\CAMMUTE.exe [2011-05-31 41320]
S2 LENOVO.MICMUTE;Lenovo Microphone Mute;c:\program files\LENOVO\HOTKEY\MICMUTE.exe [2011-07-12 101736]
S2 LENOVO.TPKNRSVC;Lenovo Keyboard Noise Reduction;c:\program files\Lenovo\Communications Utility\TPKNRSVC.exe [2011-05-31 59240]
S2 Lenovo.VIRTSCRLSVC;Lenovo Auto Scroll;c:\program files\LENOVO\VIRTSCRL\lvvsst.exe [2011-07-12 133992]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-12-14 682344]
S2 risdxc;risdxc;c:\windows\system32\DRIVERS\risdxc64.sys [2011-05-26 101888]
S2 SAService;Conexant SmartAudio service;c:\windows\system32\SAsrv.exe [x]
S2 smihlp2;SMI Helper Driver (smihlp2);c:\program files\ThinkVantage Fingerprint Software\smihlp.sys [2011-05-30 13128]
S2 SROSVC;Screen Reading Optimizer Service Program;c:\program files (x86)\Lenovo\Screen Reading Optimizer\SROSVC.exe [2011-09-01 446800]
S2 TomTomHOMEService;TomTomHOMEService;c:\program files (x86)\TomTom HOME 2\TomTomHOMEService.exe [2012-08-28 92632]
S2 TPHKLOAD;Lenovo Hotkey Client Loader;c:\program files\LENOVO\HOTKEY\TPHKLOAD.exe [2011-07-12 145256]
S2 TPHKSVC;On Screen Display;c:\program files\LENOVO\HOTKEY\TPHKSVC.exe [2011-07-12 142696]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-02-22 2656280]
S2 VIPAppService;VIPAppService;c:\program files (x86)\Symantec\VIP Access Client\VIPAppService.exe [2012-04-18 84080]
S3 5U877;USB Video Device;c:\windows\system32\DRIVERS\5U877.sys [2011-03-05 166016]
S3 BTWAMPFL;BTWAMPFL;c:\windows\system32\DRIVERS\btwampfl.sys [2011-10-17 437288]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [2011-10-17 39976]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2011-08-19 317440]
S3 iwdbus;IWD Bus Enumerator;c:\windows\system32\DRIVERS\iwdbus.sys [2011-06-21 25496]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-12-14 24176]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2010-12-28 412776]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2013-01-19 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-06 10:58]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-09-12 1289704]
"IntelPAN"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2011-11-01 1935120]
"cssauth"="c:\program files\Lenovo\Client Security Solution\cssauth.exe" [2011-06-10 5990200]
"TpShocks"="TpShocks.exe" [2011-03-29 380776]
"SmartAudio"="c:\program files\CONEXANT\SAII\SAIICpl.exe" [2011-04-26 310912]
"PSQLLauncher"="c:\program files\ThinkVantage Fingerprint Software\launcher.exe" [2011-07-14 85832]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-08-19 416024]
"LENOVO.TPKNRRES"="c:\program files\Lenovo\Communications Utility\TPKNRRES.exe" [2011-05-31 40808]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-08-19 167704]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-08-19 392472]
"ForteConfig"="c:\program files\Conexant\ForteConfig\fmapp.exe" [2010-10-26 49056]
"ALCKRESI.EXE"="c:\program files\Lenovo\AutoLock\ALCKRESI.EXE" [2011-05-25 281960]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SYSTEM32\blank.htm
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~3\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Office Excel - c:\progra~2\MICROS~3\OFFICE11\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\ThinkPad\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\ThinkPad\Bluetooth Software\btsendto_ie.htm
IE: Převést cíl vazby do Adobe PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Převést do Adobe PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
IE: Připojit cíl vazby k existujícímu PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Připojit k existujícímu PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
TCP: Interfaces\{614F1BC4-5026-4228-BAA2-028217FD085E}: NameServer = 77.48.254.254,77.48.100.254
FF - ProfilePath - c:\users\Uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\f02gkc6c.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage -
hxxp://www.google.cz/.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
AddRemove-Adobe Photoshop 7.0 CE - c:\windows\ISUN0405.EXE
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.032"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.ani"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.arw\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.bay"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.bw"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.cs1"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.cur"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.dcx"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.dib"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.djv"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.djvu"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.emf"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.eps"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.erf"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.fff"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.fpx"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.hdr\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.hdr"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.icl"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.icn"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ico\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.ico"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.iff"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.ilbm"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.int"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.inta"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.iw4"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.j2c"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.j2k"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.jfif"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.jif"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.jp2"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.jpc"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="ZPS140.Document.jpg"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.jpk"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.jpx"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.lbm"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mef\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.mef"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.mos"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.pbm"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.pcd"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.pct"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.pcx"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.pgm"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.pic"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.pict"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.pix"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.ppm"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.psd"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.psp"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pspimage\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.pspimage"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.ras"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.rgb"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.rgba"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.rle"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.rsb"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.sgi"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tga\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.tga"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.thm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.thm"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff\UserChoice]
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
@Denied: (2) (LocalSystem)
"Progid"="Google.PhotoViewer.3.0"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttc\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.ttc"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.ttf"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbm\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.wbm"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbmp\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.wbmp"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmf\UserChoice]
@Denied: (2) (LocalSystem)
@Denied: (2) (S-1-5-21-1491416831-2494565887-1369721341-1000)
"Progid"="ACDSee 10.0.wmf"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xbm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.xbm"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xif\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.xif"
.
[HKEY_USERS\S-1-5-21-1491416831-2494565887-1369721341-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xpm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 10.0.xpm"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
c:\program files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe
c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
c:\program files (x86)\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
c:\windows\SysWOW64\SAsrv.exe
c:\program files (x86)\Lenovo\Access Connections\AcSvc.exe
c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
c:\windows\SysWOW64\rundll32.exe
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
c:\progra~2\ThinkPad\UTILIT~1\SCHTASK.exe
c:\windows\SysWOW64\RunDll32.exe
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\program files (x86)\Lenovo\System Update\SUService.exe
c:\program files (x86)\Lenovo\message center plus\mcplaunch.exe
c:\program files\lenovo\lenovo solution center\lsc.exe
.
**************************************************************************
.
Celkový čas: 2013-01-19 14:08:47 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-01-19 13:08
ComboFix2.txt 2013-01-18 10:24
.
Před spuštěním: Volných bajtů: 356 222 889 984
Po spuštění: Volných bajtů: 356 025 581 568
.
- - End Of File - - AF316F63A72E87B3B2797A4AF61F0AC6