Zde zasilam druhy.Dekuji.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 31-10-2013
Ran by Lucinka (administrator) on LUCINKA-PC on 03-11-2013 20:17:11
Running from C:\Users\Lucinka\Downloads
Microsoft Windows 7 Ultimate (X86) OS Language: Czech
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
() C:\ProgramData\BitGuard\2.7.1769.27\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe
(Microsoft Corporation) C:\Windows\system32\schtasks.exe
() C:\ProgramData\BitGuard\2.7.1769.27\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
(Microsoft) C:\Program Files\Yontoo\Y2Desktop.Updater.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
(Sun Microsystems, Inc.) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Yontoo LLC) C:\Users\Lucinka\AppData\Roaming\Yontoo\YontooDesktop.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [248040 2010-02-18] (Sun Microsystems, Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [477600 2013-01-24] (Adobe Systems Incorporated)
HKLM\...\Run: [SwitchBoard] - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeCS6ServiceManager] - C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073352 2012-06-25] (Adobe Systems Incorporated)
HKLM\...\Run: [etMonitor] - C:\Windows\etMon.exe
HKCU\...\Run: [AdobeBridge] - [x]
HKCU\...\Run: [Zoner Photo Studio Autoupdate] - C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe [773728 2012-12-04] (ZONER software)
HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [18705664 2013-01-08] (Skype Technologies S.A.)
HKCU\...\Run: [Yontoo Desktop] - C:\Users\Lucinka\AppData\Roaming\Yontoo\YontooDesktop.exe [42784 2013-03-13] (Yontoo LLC)
HKCU\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [4763008 2012-11-01] (SUPERAntiSpyware.com)
MountPoints2: {fefc6e74-5053-11e2-bc55-485b3906d89b} - F:\PMCsetup.exe
AppInit_DLLs: c:\progra~2\bitguard\271769~1.27\{c16c1~1\bitguard.dll [ 2013-10-22] ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.google.com/ie
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.google.com/ie
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://websearch.just-browse.info/
URLSearchHook: HKLM - BS Player ControlBar Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll (Conduit Ltd.)
URLSearchHook: ATTENTION ==> Default URLSearchHook is missing.
URLSearchHook: HKCU - BS Player ControlBar Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll (Conduit Ltd.)
SearchScopes: HKLM - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL =
http://search.conduit.com/ResultsExt.as ... =CT1750559
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL =
http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKLM - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL =
http://search.conduit.com/ResultsExt.as ... =CT1750559
SearchScopes: HKLM - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL =
http://websearch.just-browse.info/?l=1&q={searchTerms}
SearchScopes: HKLM - {EEE6C360-6118-11DC-9C72-001320C79847} URL =
http://search.sweetim.com/search.asp?sr ... 5B3906D89B}
SearchScopes: HKCU - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL =
http://search.conduit.com/ResultsExt.as ... =CT1750559
SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL =
http://search.babylon.com/?q={searchTer ... 5B3906D89B
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
http://www.google.com/search?q={sear
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL =
http://dts.search-results.com/sr?src=ie ... earchTerms}
SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL =
http://search.conduit.com/ResultsExt.as ... =CT1750559
SearchScopes: HKCU - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL =
http://websearch.just-browse.info/?l=1&q={searchTerms}
SearchScopes: HKCU - {EEE6C360-6118-11DC-9C72-001320C79847} URL =
http://search.sweetim.com/search.asp?sr ... 5B3906D89B}
BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO: Yontoo - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo\YontooIEClient.dll (Yontoo LLC)
BHO: BS Player ControlBar Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll (Conduit Ltd.)
Toolbar: HKLM - BS Player ControlBar Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll (Conduit Ltd.)
Toolbar: HKCU - BS Player ControlBar Toolbar - {FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} - C:\Program Files\BS_Player\prxtbBS_0.dll (Conduit Ltd.)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Users\Lucinka\AppData\Roaming\Mozilla\Firefox\Profiles\vqn8kqov.default
FF user.js: detected! => C:\Users\Lucinka\AppData\Roaming\Mozilla\Firefox\Profiles\vqn8kqov.default\user.js
FF DefaultSearchEngine: user_pref("browser.search.defaultenginename", "");
FF SearchEngineOrder.user_pref("browser.search.order.1", "");: user_pref("browser.search.order.1", "");
FF SearchEngineOrder.user_pref("browser.search.order.1,S", "");: user_pref("browser.search.order.1,S", "");
FF SelectedSearchEngine: user_pref("browser.search.selectedEngine", "");
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Users\Lucinka\Desktop\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF SearchPlugin: C:\Users\Lucinka\AppData\Roaming\Mozilla\Firefox\Profiles\vqn8kqov.default\searchplugins\MyStart Search.xml
FF SearchPlugin: C:\Users\Lucinka\AppData\Roaming\Mozilla\Firefox\Profiles\vqn8kqov.default\searchplugins\MyStart.xml
FF SearchPlugin: C:\Users\Lucinka\AppData\Roaming\Mozilla\Firefox\Profiles\vqn8kqov.default\searchplugins\Search_Results.xml
FF SearchPlugin: C:\Users\Lucinka\AppData\Roaming\Mozilla\Firefox\Profiles\vqn8kqov.default\searchplugins\Sweetpacks Search.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\Search_Results.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: plugin - C:\Users\Lucinka\AppData\Roaming\Mozilla\Firefox\Profiles\vqn8kqov.default\Extensions\
plugin@yontoo.com.xpi
FF Extension: No Name - C:\Program Files\Mozilla Firefox\extensions\{1FD91A9C-410C-4090-BBCC-55D3450EF433}
Chrome:
=======
CHR DefaultSearchURL: (Babylon) -
http://search.babylon.com/?q={searchTer ... 5B3906D89B
CHR DefaultSuggestURL: (Babylon) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}
CHR Extension: (Browse2save) - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcdaccfllabancomhekjpdnkjdoohala\3.8_1
CHR Extension: (Browse2save) - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\fihphomdjaoeldcjpbnppnppachhceni\3.8_1
CHR Extension: (SweetIM for Facebook) - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.1.0.1_0
CHR Extension: (Browse2save) - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdjdapancnhefnejlakigbholbnagnci\3.8_1
CHR Extension: (Torch Share) - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.2504_1
CHR Extension: (Browse2save) - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\labccibafabgoooppbgnafbmgngkblbi\3.8_1
CHR Extension: (Browse2save) - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhmpciemliaeabocdebdjiflfmjmiijm\3.8_1
CHR Extension: (Yontoo) - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.3_1
CHR Extension: (Browse2save) - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmkndglcpjkihgjeahmkendncbijodnc\3.8_1
CHR Extension: (Google Wallet) - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Browse2save) - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnjinjlnkfcbomkjfohakpkeddebipag\3.8_1
CHR Extension: (Browse2save) - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\oanafibnappbgigghnpgebpgidjibkbp\3.8_1
CHR Extension: (SweetPacks Chrome Extension) - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.4.0.4_0
CHR HKLM\...\Chrome\Extension: [dcdaccfllabancomhekjpdnkjdoohala] - C:\ProgramData\Browse2save\dcdaccfllabancomhekjpdnkjdoohala.crx
CHR HKLM\...\Chrome\Extension: [fihphomdjaoeldcjpbnppnppachhceni] - C:\ProgramData\Browse2save\fihphomdjaoeldcjpbnppnppachhceni.crx
CHR HKLM\...\Chrome\Extension: [jcdgjdiieiljkfkdcloehkohchhpekkn] - C:\Users\Lucinka\AppData\Local\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetFB.crx
CHR HKLM\...\Chrome\Extension: [kdjdapancnhefnejlakigbholbnagnci] - C:\ProgramData\Browse2save\kdjdapancnhefnejlakigbholbnagnci.crx
CHR HKLM\...\Chrome\Extension: [kiplfnciaokpcennlkldkdaeaaomamof] - C:\Users\Lucinka\AppData\Local\Torch\Plugins\TorchPlugin.crx
CHR HKLM\...\Chrome\Extension: [labccibafabgoooppbgnafbmgngkblbi] - C:\ProgramData\Browse2save\labccibafabgoooppbgnafbmgngkblbi.crx
CHR HKLM\...\Chrome\Extension: [mhmpciemliaeabocdebdjiflfmjmiijm] - C:\ProgramData\Browse2save\mhmpciemliaeabocdebdjiflfmjmiijm.crx
CHR HKLM\...\Chrome\Extension: [niapdbllcanepiiimjjndipklodoedlc] - C:\Program Files\Yontoo\YontooLayers.crx
CHR HKLM\...\Chrome\Extension: [nmkndglcpjkihgjeahmkendncbijodnc] - C:\ProgramData\Browse2save\nmkndglcpjkihgjeahmkendncbijodnc.crx
CHR HKLM\...\Chrome\Extension: [nnjinjlnkfcbomkjfohakpkeddebipag] - C:\ProgramData\Browse2save\nnjinjlnkfcbomkjfohakpkeddebipag.crx
CHR HKLM\...\Chrome\Extension: [oanafibnappbgigghnpgebpgidjibkbp] - C:\ProgramData\Browse2save\oanafibnappbgigghnpgebpgidjibkbp.crx
CHR HKLM\...\Chrome\Extension: [ogccgbmabaphcakpiclgcnmcnimhokcj] - C:\Windows\System32\jmdp\SweetNT.crx
========================== Services (Whitelisted) =================
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [116608 2012-07-11] (SUPERAntiSpyware.com)
R2 BitGuard; C:\ProgramData\BitGuard\2.7.1769.27\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe [2864096 2013-10-22] ()
R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S3 McAfee ScanAndRepair Svc; C:\Program Files\McAfeeScanAndRepair\McAfeeScanRepairSvc.exe [695640 2012-01-12] (McAfee, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [235216 2013-09-06] (McAfee, Inc.)
R2 Yontoo Desktop Updater; C:\Users\Lucinka\AppData\Roaming\Yontoo\YontooDesktop.exe [42784 2013-03-13] (Yontoo LLC)
==================== Drivers (Whitelisted) ====================
R3 L1E; C:\Windows\System32\DRIVERS\L1E62x86.sys [47104 2009-07-13] (Atheros Communications, Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [7680 2007-07-31] (ATK0100)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 ss_bbus; C:\Windows\System32\DRIVERS\ss_bbus.sys [98432 2009-09-19] (MCCI)
S3 ss_bmdfl; C:\Windows\System32\DRIVERS\ss_bmdfl.sys [14848 2009-09-19] (MCCI Corporation)
S3 ss_bmdm; C:\Windows\System32\DRIVERS\ss_bmdm.sys [123648 2009-09-19] (MCCI Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-03 19:33 - 2013-11-03 19:33 - 00017687 _____ C:\Users\Lucinka\Downloads\Addition.txt
2013-11-03 19:31 - 2013-11-03 19:31 - 00000000 ____D C:\FRST
2013-11-03 19:30 - 2013-11-03 19:31 - 00029696 _____ C:\Users\Lucinka\AppData\Local\MSGBOX.EXE
2013-11-03 19:29 - 2013-11-03 19:29 - 00112128 _____ (forum.viry.cz) C:\Users\Lucinka\Downloads\FRSTLauncher.exe
2013-11-03 19:28 - 2013-11-03 19:29 - 01089445 _____ (Farbar) C:\Users\Lucinka\Downloads\FRST.exe
2013-10-31 19:54 - 2013-10-31 19:54 - 00001067 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-10-31 19:54 - 2013-10-31 19:54 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-10-31 19:54 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-10-31 19:52 - 2013-10-31 19:53 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Lucinka\Downloads\mbam-setup-1.75.0.1300.exe
2013-10-31 19:39 - 2013-10-31 19:39 - 00001105 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-10-31 19:38 - 2013-10-31 19:38 - 00283000 _____ (Mozilla) C:\Users\Lucinka\Downloads\Firefox Setup Stub 25.0.exe
2013-10-31 19:37 - 2013-10-31 19:37 - 03270504 _____ (McAfee, Inc.) C:\Users\Lucinka\Downloads\McAfeeScanAndRepair1_Release(3).exe
2013-10-31 19:16 - 2013-10-31 19:16 - 00000000 ____D C:\Program Files\McAfeeScanAndRepair
2013-10-31 19:03 - 2013-10-31 19:05 - 03270504 _____ (McAfee, Inc.) C:\Users\Lucinka\Downloads\McAfeeScanAndRepair1_Release(2).exe
2013-10-31 18:59 - 2013-10-31 19:00 - 03270504 _____ (McAfee, Inc.) C:\Users\Lucinka\Downloads\McAfeeScanAndRepair1_Release(1).exe
2013-10-31 18:58 - 2013-10-31 18:58 - 03270504 _____ (McAfee, Inc.) C:\Users\Lucinka\Downloads\McAfeeScanAndRepair1_Release.exe
2013-10-28 10:48 - 2013-10-28 10:48 - 00000000 ____D C:\Users\Lucinka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard
2013-10-23 07:47 - 2013-11-03 20:12 - 00000000 ____D C:\Windows\system32\jmdp
2013-10-16 16:10 - 2013-10-16 16:10 - 370133492 _____ C:\Users\Lucinka\Desktop\Interview-s-upirem-cz-.mp4
2013-10-15 09:04 - 2013-10-15 09:04 - 00000000 ____D C:\Users\Default\AppData\Local\Google
2013-10-15 09:04 - 2013-10-15 09:04 - 00000000 ____D C:\Users\Default User\AppData\Local\Google
2013-10-11 07:44 - 2013-10-11 07:44 - 00000000 ____D C:\Windows\system32\BitGuard
2013-10-09 19:21 - 2013-10-09 19:21 - 00000000 ____D C:\Users\Lucinka\AppData\Local\avgchrome
2013-10-08 17:46 - 2013-10-08 17:47 - 00146144 _____ C:\Windows\Minidump\100813-12636-01.dmp
2013-10-07 14:11 - 2013-10-07 14:11 - 00002697 _____ C:\Users\Lucinka\Desktop\Deaf+Havana+-+Nicotine+and+Alcohol+Saved+My+Life – zástupce.lnk
2013-10-07 14:11 - 2013-10-07 14:11 - 00002616 _____ C:\Users\Lucinka\Desktop\02 02 - Killing In The Name – zástupce (2).lnk
2013-10-07 14:11 - 2013-10-07 14:11 - 00002607 _____ C:\Users\Lucinka\Desktop\05 05 - Bullet In The Head – zástupce.lnk
2013-10-07 14:11 - 2013-10-07 14:11 - 00002484 _____ C:\Users\Lucinka\Desktop\07 07 - Wake Up – zástupce.lnk
2013-10-07 14:10 - 2013-10-07 14:10 - 00002616 _____ C:\Users\Lucinka\Desktop\03 03 - Take The Power Back – zástupce.lnk
2013-10-07 14:10 - 2013-10-07 14:10 - 00002616 _____ C:\Users\Lucinka\Desktop\02 02 - Killing In The Name – zástupce.lnk
==================== One Month Modified Files and Folders =======
2013-11-03 20:13 - 2013-03-23 17:35 - 00000938 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-11-03 20:13 - 2013-03-17 20:04 - 00000000 ____D C:\Users\Lucinka\AppData\Roaming\Yontoo
2013-11-03 20:13 - 2012-10-28 19:17 - 00145802 _____ C:\Windows\PFRO.log
2013-11-03 20:13 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-03 20:13 - 2009-07-14 05:39 - 00071281 _____ C:\Windows\setupact.log
2013-11-03 20:12 - 2013-10-23 07:47 - 00000000 ____D C:\Windows\system32\jmdp
2013-11-03 20:12 - 2012-10-28 19:52 - 02047035 _____ C:\Windows\WindowsUpdate.log
2013-11-03 20:03 - 2013-03-23 17:35 - 00000942 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-11-03 19:33 - 2013-11-03 19:33 - 00017687 _____ C:\Users\Lucinka\Downloads\Addition.txt
2013-11-03 19:31 - 2013-11-03 19:31 - 00000000 ____D C:\FRST
2013-11-03 19:31 - 2013-11-03 19:30 - 00029696 _____ C:\Users\Lucinka\AppData\Local\MSGBOX.EXE
2013-11-03 19:29 - 2013-11-03 19:29 - 00112128 _____ (forum.viry.cz) C:\Users\Lucinka\Downloads\FRSTLauncher.exe
2013-11-03 19:29 - 2013-11-03 19:28 - 01089445 _____ (Farbar) C:\Users\Lucinka\Downloads\FRST.exe
2013-11-03 19:28 - 2013-03-21 17:15 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-11-03 19:07 - 2012-11-23 20:40 - 00000000 ____D C:\Users\Lucinka\AppData\Roaming\Skype
2013-11-03 18:24 - 2009-07-14 05:34 - 00014192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-03 18:24 - 2009-07-14 05:34 - 00014192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-03 18:21 - 2012-10-28 20:03 - 01445734 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-03 09:29 - 2012-12-07 01:43 - 00000000 ____D C:\Users\Lucinka\AppData\Local\Adobe
2013-10-31 22:02 - 2013-03-31 20:57 - 00000000 ____D C:\Program Files\Search Results Toolbar
2013-10-31 22:01 - 2013-06-02 12:15 - 00000000 ____D C:\Windows\system32\WNLT
2013-10-31 22:01 - 2012-12-15 19:17 - 00000000 ____D C:\Program Files\SweetIM
2013-10-31 20:38 - 2013-03-20 17:08 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-10-31 20:38 - 2013-03-20 17:08 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-10-31 20:38 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\Help
2013-10-31 19:54 - 2013-10-31 19:54 - 00001067 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-10-31 19:54 - 2013-10-31 19:54 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-10-31 19:53 - 2013-10-31 19:52 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Lucinka\Downloads\mbam-setup-1.75.0.1300.exe
2013-10-31 19:39 - 2013-10-31 19:39 - 00001105 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-10-31 19:38 - 2013-10-31 19:38 - 00283000 _____ (Mozilla) C:\Users\Lucinka\Downloads\Firefox Setup Stub 25.0.exe
2013-10-31 19:37 - 2013-10-31 19:37 - 03270504 _____ (McAfee, Inc.) C:\Users\Lucinka\Downloads\McAfeeScanAndRepair1_Release(3).exe
2013-10-31 19:16 - 2013-10-31 19:16 - 00000000 ____D C:\Program Files\McAfeeScanAndRepair
2013-10-31 19:05 - 2013-10-31 19:03 - 03270504 _____ (McAfee, Inc.) C:\Users\Lucinka\Downloads\McAfeeScanAndRepair1_Release(2).exe
2013-10-31 19:00 - 2013-10-31 18:59 - 03270504 _____ (McAfee, Inc.) C:\Users\Lucinka\Downloads\McAfeeScanAndRepair1_Release(1).exe
2013-10-31 18:58 - 2013-10-31 18:58 - 03270504 _____ (McAfee, Inc.) C:\Users\Lucinka\Downloads\McAfeeScanAndRepair1_Release.exe
2013-10-29 16:17 - 2013-03-21 17:15 - 00002012 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2013-10-29 16:17 - 2013-03-21 17:15 - 00000000 ____D C:\Program Files\McAfee Security Scan
2013-10-28 14:26 - 2013-09-14 05:34 - 00000000 ____D C:\ProgramData\BitGuard
2013-10-28 10:48 - 2013-10-28 10:48 - 00000000 ____D C:\Users\Lucinka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard
2013-10-27 20:48 - 2013-01-12 00:34 - 00000000 ____D C:\Users\Lucinka\AppData\Local\CrashDumps
2013-10-21 08:16 - 2013-06-02 12:15 - 00000000 ____D C:\Windows\system32\ARFC
2013-10-18 17:08 - 2013-03-23 17:35 - 00002129 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-10-16 16:10 - 2013-10-16 16:10 - 370133492 _____ C:\Users\Lucinka\Desktop\Interview-s-upirem-cz-.mp4
2013-10-16 15:39 - 2013-01-14 21:28 - 00000000 ____D C:\Users\Lucinka\Documents\pics 2013
2013-10-15 09:58 - 2013-06-02 12:15 - 00027136 _____ (IncrediMail, Ltd.) C:\Windows\system32\ImHttpComm.dll
2013-10-15 09:04 - 2013-10-15 09:04 - 00000000 ____D C:\Users\Default\AppData\Local\Google
2013-10-15 09:04 - 2013-10-15 09:04 - 00000000 ____D C:\Users\Default User\AppData\Local\Google
2013-10-13 18:17 - 2012-11-15 08:38 - 00000000 ____D C:\Users\Lucinka\Desktop\BSPlayer
2013-10-11 07:44 - 2013-10-11 07:44 - 00000000 ____D C:\Windows\system32\BitGuard
2013-10-09 19:21 - 2013-10-09 19:21 - 00000000 ____D C:\Users\Lucinka\AppData\Local\avgchrome
2013-10-08 17:47 - 2013-10-08 17:46 - 00146144 _____ C:\Windows\Minidump\100813-12636-01.dmp
2013-10-08 17:46 - 2012-11-13 18:27 - 00000000 ____D C:\Windows\Minidump
2013-10-07 17:34 - 2013-07-23 09:31 - 00000000 ____D C:\Users\Lucinka\Documents\30 Seconds To Mars
2013-10-07 14:19 - 2013-07-23 09:39 - 00000000 ____D C:\Users\Lucinka\Desktop\sunshine mgmt
2013-10-07 14:11 - 2013-10-07 14:11 - 00002697 _____ C:\Users\Lucinka\Desktop\Deaf+Havana+-+Nicotine+and+Alcohol+Saved+My+Life – zástupce.lnk
2013-10-07 14:11 - 2013-10-07 14:11 - 00002616 _____ C:\Users\Lucinka\Desktop\02 02 - Killing In The Name – zástupce (2).lnk
2013-10-07 14:11 - 2013-10-07 14:11 - 00002607 _____ C:\Users\Lucinka\Desktop\05 05 - Bullet In The Head – zástupce.lnk
2013-10-07 14:11 - 2013-10-07 14:11 - 00002484 _____ C:\Users\Lucinka\Desktop\07 07 - Wake Up – zástupce.lnk
2013-10-07 14:10 - 2013-10-07 14:10 - 00002616 _____ C:\Users\Lucinka\Desktop\03 03 - Take The Power Back – zástupce.lnk
2013-10-07 14:10 - 2013-10-07 14:10 - 00002616 _____ C:\Users\Lucinka\Desktop\02 02 - Killing In The Name – zástupce.lnk
Some content of TEMP:
====================
C:\Users\Lucinka\AppData\Local\Temp\conduitinstaller.exe
C:\Users\Lucinka\AppData\Local\Temp\CT1750559_ie.exe
C:\Users\Lucinka\AppData\Local\Temp\GenericUninstall.exe
C:\Users\Lucinka\AppData\Local\Temp\GoogleSetup.exe
C:\Users\Lucinka\AppData\Local\Temp\htmlayout.dll
C:\Users\Lucinka\AppData\Local\Temp\SIMEEIInstaller.exe
C:\Users\Lucinka\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Lucinka\AppData\Local\Temp\TB_2D0C.exe
C:\Users\Lucinka\AppData\Local\Temp\toolbar15436314.exe
C:\Users\Lucinka\AppData\Local\Temp\uninstall13017269.exe
C:\Users\Lucinka\AppData\Local\Temp\uninstall13017300.exe
C:\Users\Lucinka\AppData\Local\Temp\uninstall155798.exe
C:\Users\Lucinka\AppData\Local\Temp\uninstaller.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-10-31 14:01
==================== End Of Log ============================