
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Pokus o připojení k IP adrese
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokus o připojení k IP adrese
Zdravím,
Malwarebytes anti-malware mi začal ukazovat:
Byl zakázán přístup na podezřelou webovou stránku:
213.152.181.87
Typ odchozí
Port 51709, proces: Chrome.exe
Nevíte někdo co to znamená?
Děkuji
Malwarebytes anti-malware mi začal ukazovat:
Byl zakázán přístup na podezřelou webovou stránku:
213.152.181.87
Typ odchozí
Port 51709, proces: Chrome.exe
Nevíte někdo co to znamená?
Děkuji
- Rudy
- Site Admin
- Příspěvky: 119534
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Pokus o připojení k IP adrese
Zdravím!
Znamená to, že antivir zablokoval přístup ne web tohoto providera: http://whois.domaintools.com/213.152.181.87 . Zřejmě ho má v databázi podezřelých, nebo útočných stránek. Šlo o informaci, do PC se nic nedostalo.
Znamená to, že antivir zablokoval přístup ne web tohoto providera: http://whois.domaintools.com/213.152.181.87 . Zřejmě ho má v databázi podezřelých, nebo útočných stránek. Šlo o informaci, do PC se nic nedostalo.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Pokus o připojení k IP adrese
Pak by mě ještě zajímalo, co a proč? V těchto věcech se moc neorientuji...
Dnes pokus o jinou adresu 31.31.72.182
Děkuji
Dnes pokus o jinou adresu 31.31.72.182
Děkuji
Naposledy upravil(a) czerwis dne 01 úno 2014 11:46, celkem upraveno 1 x.
Re: Pokus o připojení k IP adrese
Mohu poprosit o kontrolu logu?
Děkuji
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-02-2014 03
Ran by Cerwis (administrator) on CERWIS-PC on 01-02-2014 11:00:37
Running from C:\Users\Cerwis\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Check Point Software Technologies LTD) D:\Programy\CheckPoint\ZoneAlarm\vsmon.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
(Malwarebytes Corporation) D:\Programy\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) D:\Programy\Malwarebytes' Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) D:\Programy\Malwarebytes' Anti-Malware\mbamgui.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe
(VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
(Check Point Software Technologies, Ltd.) D:\Programy\CheckPoint\ZoneAlarm\ZAPrivacyService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgtray.exe
() C:\Program Files (x86)\AVG Secure Search\vprot.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\loggingserver.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Java\jre6\bin\jusched.exe
(Check Point Software Technologies LTD) D:\Programy\CheckPoint\ZoneAlarm\zatray.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgnsa.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\ScriptHelperInstaller\17.3.0\ScriptHelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
(forum.viry.cz) C:\Users\Cerwis\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Start WingMan Profiler] - C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.)
HKLM-x32\...\Run: [HDAudDeck] - C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5263504 2012-08-09] (VIA)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642656 2013-03-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AVG_TRAY] - C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2345592 2012-08-01] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [vProt] - C:\Program Files (x86)\AVG Secure Search\vprot.exe [2471448 2014-02-01] ()
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-26] (Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Java\jre6\bin\jusched.exe [148888 2014-01-27] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [ZoneAlarm] - D:\Programy\CheckPoint\ZoneAlarm\zatray.exe [73832 2013-12-16] (Check Point Software Technologies LTD)
HKLM-x32\...\Run: [Avira Systray] - C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [174648 2014-01-24] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-09] (Avira Operations GmbH & Co. KG)
==================== Internet (Whitelisted) ====================
BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssiea.dll (AVG Technologies CZ, s.r.o.)
BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices)
BHO-x32: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
BHO-x32: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} - No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
Toolbar: HKLM-x32 - No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} - No File
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgppa.dll (AVG Technologies CZ, s.r.o.)
Handler-x32: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\17.3.0\ViProtocol.dll (AVG Secure Search)
Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File
CHR Extension: (Dokumenty Google) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-08-28]
CHR Extension: (Disk Google) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-08-28]
CHR Extension: (YouTube) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-08-28]
CHR Extension: (Vyhledvn Google) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-08-28]
CHR Extension: (AVG Safe Search) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla [2013-08-29]
CHR Extension: (AVG Security Toolbar) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof [2013-08-29]
CHR Extension: (Penenka Google) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-28]
CHR Extension: (Gmail) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-08-28]
CHR HKCU\...\Chrome\Extension: [ojpijjmpahflnipadmlpgbjmagmjchkk] - C:\Users\Cerwis\AppData\Local\CRE\ojpijjmpahflnipadmlpgbjmagmjchkk.crx [2014-01-22]
CHR HKLM-x32\...\Chrome\Extension: [jmfkcklnlgedgbglfkkgedjfmejoahla] - C:\Program Files (x86)\AVG\AVG10\Chrome\safesearch.crx [2011-09-09]
CHR HKLM-x32\...\Chrome\Extension: [kgdcapepedmpopjkmdbjnmmmfgllnfek] - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.28.13\zonealarm.crx [2013-11-19]
CHR HKLM-x32\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\ProgramData\AVG Secure Search\ChromeExt\17.2.0.38\avg.crx [2014-02-01]
CHR HKLM-x32\...\Chrome\Extension: [ojpijjmpahflnipadmlpgbjmagmjchkk] - C:\Users\Cerwis\AppData\Local\CRE\ojpijjmpahflnipadmlpgbjmagmjchkk.crx [2014-01-22]
==================== Services (Whitelisted) =================
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2013-03-28] (Advanced Micro Devices, Inc.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1011768 2013-12-09] (Avira Operations GmbH & Co. KG)
R2 avgwd; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [269520 2011-02-08] (AVG Technologies CZ, s.r.o.)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [104504 2014-01-24] (Avira Operations GmbH & Co. KG)
R2 MBAMScheduler; D:\Programy\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; D:\Programy\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27792 2012-08-03] (VIA Technologies, Inc.)
R2 vsmon; D:\Programy\CheckPoint\ZoneAlarm\vsmon.exe [2445816 2013-12-16] (Check Point Software Technologies LTD)
R2 vToolbarUpdater17.3.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe [1771544 2014-01-23] (AVG Secure Search)
R2 ZAPrivacyService; D:\Programy\CheckPoint\ZoneAlarm\ZAPrivacyService.exe [50704 2013-10-15] (Check Point Software Technologies, Ltd.)
==================== Drivers (Whitelisted) ====================
R0 AVGIDSEH; C:\Windows\System32\DRIVERS\AVGIDSEH.Sys [26704 2011-02-22] (AVG Technologies CZ, s.r.o. )
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-09] (Avira Operations GmbH & Co. KG)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [377936 2011-04-04] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [46368 2013-11-11] (AVG Technologies)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-09] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-09] (Avira Operations GmbH & Co. KG)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S0 sptd; C:\Windows\System32\Drivers\sptd.sys [867064 2013-09-07] (Duplex Secure Ltd.)
R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [454168 2013-10-23] (Check Point Software Technologies LTD)
S3 gdrv; \??\C:\Windows\gdrv.sys [x]
S3 NPF; system32\drivers\NPF.sys [x]
S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-01 11:00 - 2014-02-01 11:00 - 00013645 _____ () C:\Users\Cerwis\Desktop\FRST.txt
2014-02-01 10:59 - 2014-02-01 11:00 - 00000000 ____D () C:\FRST
2014-02-01 10:57 - 2014-02-01 10:56 - 00112640 _____ (forum.viry.cz) C:\Users\Cerwis\Desktop\FRSTLauncher.exe
2014-02-01 10:51 - 2014-02-01 10:27 - 02080256 _____ (Farbar) C:\Users\Cerwis\Desktop\FRST64.exe
2014-02-01 09:46 - 2014-02-01 09:46 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Avira
2014-02-01 09:43 - 2013-12-09 11:37 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-02-01 09:43 - 2013-12-09 11:37 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-02-01 09:43 - 2013-12-09 11:37 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-02-01 09:32 - 2014-02-01 09:32 - 00001139 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-02-01 09:32 - 2014-02-01 09:32 - 00000000 ____D () C:\ProgramData\Package Cache
2014-02-01 09:27 - 2014-02-01 09:27 - 00000000 ____D () C:\Program Files (x86)\AVG Secure Search
2014-02-01 09:24 - 2014-02-01 09:24 - 00003150 _____ () C:\Windows\System32\Tasks\{5FCE7D7F-B5DA-4B0B-8583-DC08418A4273}
2014-01-30 20:06 - 2014-01-30 20:07 - 00417513 _____ () C:\Windows\system32\Drivers\vsconfig.xml
2014-01-30 20:06 - 2014-01-30 20:06 - 00000527 _____ () C:\Users\Public\Desktop\ZoneAlarm Security.lnk
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Check Point Software Technologies LTD
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Program Files (x86)\CheckPoint
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Program Files (x86)\Check Point Software Technologies LTD
2014-01-30 19:56 - 2014-01-30 19:56 - 00000000 ____D () C:\ProgramData\CheckPoint
2014-01-30 19:37 - 2014-02-01 09:43 - 00000000 ____D () C:\ProgramData\Avira
2014-01-30 19:37 - 2014-02-01 09:43 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-01-29 19:27 - 2014-01-29 19:27 - 00000687 _____ () C:\Users\Public\Desktop\jetAudio.lnk
2014-01-27 17:27 - 2014-01-27 17:27 - 00410984 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\deploytk.dll
2014-01-27 17:27 - 2014-01-27 17:27 - 00148888 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaws.exe
2014-01-27 17:27 - 2014-01-27 17:27 - 00144792 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaw.exe
2014-01-27 17:27 - 2014-01-27 17:27 - 00144792 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\java.exe
2014-01-27 17:27 - 2014-01-27 17:27 - 00000000 ____D () C:\Program Files (x86)\Java
2014-01-27 17:22 - 2014-01-27 17:22 - 00000680 _____ () C:\Users\Public\Desktop\PS3 Media Server.lnk
2014-01-27 14:19 - 2014-01-27 14:19 - 00000000 ____D () C:\Users\Cerwis\.swt
2014-01-27 13:14 - 2014-01-27 13:14 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\TuneUp Software
2014-01-26 20:18 - 2014-01-27 05:32 - 00000000 ____D () C:\Program Files\stinger
2014-01-26 20:04 - 2014-01-26 20:04 - 00000000 ___HD () C:\$AVG
2014-01-26 19:53 - 2014-01-26 21:14 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-01-26 19:53 - 2014-01-26 19:53 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Malwarebytes
2014-01-26 19:53 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-01-26 13:47 - 2014-01-26 13:47 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\streamripper
2014-01-26 13:31 - 2014-01-26 13:31 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\NativeMessaging
2014-01-26 13:31 - 2014-01-26 13:31 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\CRE
2014-01-26 13:31 - 2014-01-26 13:31 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\Conduit
2014-01-26 13:30 - 2014-01-27 17:08 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Azureus
2014-01-26 13:29 - 2014-01-26 13:31 - 00000009 _____ () C:\END
2014-01-26 11:43 - 2014-01-26 11:43 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2014-01-26 10:26 - 2014-01-29 19:20 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\COWON
2014-01-25 08:42 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2014-01-25 08:42 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-01-25 08:42 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-01-25 08:42 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2014-01-25 08:42 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-01-25 08:39 - 2014-01-25 08:39 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-01-25 08:39 - 2014-01-25 08:39 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-01-25 08:39 - 2014-01-25 08:39 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-01-25 08:39 - 2014-01-25 08:39 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-01-25 08:39 - 2014-01-25 08:39 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-01-25 08:38 - 2014-01-25 08:38 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-01-25 08:38 - 2014-01-25 08:38 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-01-25 08:38 - 2014-01-25 08:38 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-01-25 08:38 - 2014-01-25 08:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-01-25 08:38 - 2014-01-25 08:38 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-01-25 08:37 - 2014-01-25 08:42 - 00010277 _____ () C:\Windows\IE11_main.log
2014-01-25 08:30 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-25 08:30 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-25 08:30 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-01-25 08:30 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-01-25 08:30 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-01-25 08:30 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-01-25 08:30 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2014-01-25 08:30 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-01-25 08:30 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-01-25 08:30 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-01-25 08:30 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2014-01-25 08:30 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2014-01-25 01:13 - 2014-02-01 09:29 - 00096414 _____ () C:\Windows\PFRO.log
2014-01-25 00:43 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll
2014-01-25 00:43 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll
2014-01-24 23:28 - 2014-01-24 23:28 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Macromedia
2014-01-19 10:50 - 2014-01-19 10:50 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\Wandoujia2
2014-01-19 10:03 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-19 10:03 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-19 10:03 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-19 10:03 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-19 10:03 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-19 10:03 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-19 10:03 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-19 10:03 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-01-19 10:03 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-01-19 10:03 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2014-01-19 10:03 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2014-01-19 10:03 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-01-19 10:03 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-01-19 10:03 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-01-19 10:03 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-01-05 12:11 - 2014-01-05 12:11 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\NVIDIA
==================== One Month Modified Files and Folders =======
2014-02-01 11:00 - 2014-02-01 11:00 - 00013645 _____ () C:\Users\Cerwis\Desktop\FRST.txt
2014-02-01 11:00 - 2014-02-01 10:59 - 00000000 ____D () C:\FRST
2014-02-01 10:56 - 2014-02-01 10:57 - 00112640 _____ (forum.viry.cz) C:\Users\Cerwis\Desktop\FRSTLauncher.exe
2014-02-01 10:50 - 2013-09-10 20:39 - 00000000 ____D () C:\Users\Cerwis\Downloads\Nová složka
2014-02-01 10:27 - 2014-02-01 10:51 - 02080256 _____ (Farbar) C:\Users\Cerwis\Desktop\FRST64.exe
2014-02-01 10:04 - 2013-08-28 18:50 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-01 10:04 - 2013-08-28 18:50 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-01 09:46 - 2014-02-01 09:46 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Avira
2014-02-01 09:43 - 2014-01-30 19:37 - 00000000 ____D () C:\ProgramData\Avira
2014-02-01 09:43 - 2014-01-30 19:37 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-02-01 09:38 - 2009-07-14 05:45 - 00021888 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-01 09:38 - 2009-07-14 05:45 - 00021888 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-01 09:32 - 2014-02-01 09:32 - 00001139 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-02-01 09:32 - 2014-02-01 09:32 - 00000000 ____D () C:\ProgramData\Package Cache
2014-02-01 09:32 - 2013-08-28 18:12 - 01116348 _____ () C:\Windows\WindowsUpdate.log
2014-02-01 09:30 - 2013-12-15 11:10 - 00003351 _____ () C:\Windows\setupact.log
2014-02-01 09:30 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-01 09:29 - 2014-01-25 01:13 - 00096414 _____ () C:\Windows\PFRO.log
2014-02-01 09:27 - 2014-02-01 09:27 - 00000000 ____D () C:\Program Files (x86)\AVG Secure Search
2014-02-01 09:24 - 2014-02-01 09:24 - 00003150 _____ () C:\Windows\System32\Tasks\{5FCE7D7F-B5DA-4B0B-8583-DC08418A4273}
2014-01-31 18:47 - 2013-08-28 18:17 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\VirtualStore
2014-01-31 18:36 - 2013-08-29 08:37 - 00000000 ____D () C:\Windows\system32\Drivers\AVG
2014-01-31 12:17 - 2011-04-12 09:34 - 00666194 _____ () C:\Windows\system32\perfh005.dat
2014-01-31 12:17 - 2011-04-12 09:34 - 00139890 _____ () C:\Windows\system32\perfc005.dat
2014-01-31 12:17 - 2009-07-14 06:13 - 01576554 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-01-30 20:07 - 2014-01-30 20:06 - 00417513 _____ () C:\Windows\system32\Drivers\vsconfig.xml
2014-01-30 20:06 - 2014-01-30 20:06 - 00000527 _____ () C:\Users\Public\Desktop\ZoneAlarm Security.lnk
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Check Point Software Technologies LTD
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Program Files (x86)\CheckPoint
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Program Files (x86)\Check Point Software Technologies LTD
2014-01-30 19:56 - 2014-01-30 19:56 - 00000000 ____D () C:\ProgramData\CheckPoint
2014-01-29 19:27 - 2014-01-29 19:27 - 00000687 _____ () C:\Users\Public\Desktop\jetAudio.lnk
2014-01-29 19:27 - 2013-08-28 18:23 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-01-29 19:20 - 2014-01-26 10:26 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\COWON
2014-01-28 16:46 - 2013-08-28 18:17 - 00000000 ____D () C:\Users\Cerwis
2014-01-27 17:27 - 2014-01-27 17:27 - 00410984 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\deploytk.dll
2014-01-27 17:27 - 2014-01-27 17:27 - 00148888 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaws.exe
2014-01-27 17:27 - 2014-01-27 17:27 - 00144792 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaw.exe
2014-01-27 17:27 - 2014-01-27 17:27 - 00144792 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\java.exe
2014-01-27 17:27 - 2014-01-27 17:27 - 00000000 ____D () C:\Program Files (x86)\Java
2014-01-27 17:22 - 2014-01-27 17:22 - 00000680 _____ () C:\Users\Public\Desktop\PS3 Media Server.lnk
2014-01-27 17:08 - 2014-01-26 13:30 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Azureus
2014-01-27 14:19 - 2014-01-27 14:19 - 00000000 ____D () C:\Users\Cerwis\.swt
2014-01-27 13:14 - 2014-01-27 13:14 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\TuneUp Software
2014-01-27 05:32 - 2014-01-26 20:18 - 00000000 ____D () C:\Program Files\stinger
2014-01-26 21:14 - 2014-01-26 19:53 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-01-26 20:04 - 2014-01-26 20:04 - 00000000 ___HD () C:\$AVG
2014-01-26 19:53 - 2014-01-26 19:53 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Malwarebytes
2014-01-26 13:47 - 2014-01-26 13:47 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\streamripper
2014-01-26 13:31 - 2014-01-26 13:31 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\NativeMessaging
2014-01-26 13:31 - 2014-01-26 13:31 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\CRE
2014-01-26 13:31 - 2014-01-26 13:31 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\Conduit
2014-01-26 13:31 - 2014-01-26 13:29 - 00000009 _____ () C:\END
2014-01-26 11:43 - 2014-01-26 11:43 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2014-01-26 08:39 - 2013-08-29 10:33 - 00000763 _____ () C:\Users\Cerwis\AppData\Roaming\Microsoft\Windows\Start Menu\GOM Player.lnk
2014-01-25 08:51 - 2013-08-28 18:18 - 00001389 _____ () C:\Users\Cerwis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-01-25 08:50 - 2013-12-15 11:09 - 00418464 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-01-25 08:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-01-25 08:42 - 2014-01-25 08:37 - 00010277 _____ () C:\Windows\IE11_main.log
2014-01-25 08:39 - 2014-01-25 08:39 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-01-25 08:39 - 2014-01-25 08:39 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-01-25 08:39 - 2014-01-25 08:39 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-01-25 08:39 - 2014-01-25 08:39 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-01-25 08:39 - 2014-01-25 08:39 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-01-25 08:39 - 2014-01-25 08:39 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-01-25 08:38 - 2014-01-25 08:38 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-01-25 08:38 - 2014-01-25 08:38 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-01-25 08:38 - 2014-01-25 08:38 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-01-25 08:38 - 2014-01-25 08:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-01-25 08:38 - 2014-01-25 08:38 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-01-25 08:22 - 2013-08-29 09:15 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-01-25 01:09 - 2013-08-29 09:15 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-01-25 01:09 - 2013-08-29 09:13 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-01-25 01:09 - 2013-08-29 09:13 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-01-25 00:09 - 2013-08-28 19:09 - 00000000 ____D () C:\Windows\Panther
2014-01-25 00:01 - 2013-08-29 10:56 - 00000000 ____D () C:\Windows\system32\MRT
2014-01-24 23:28 - 2014-01-24 23:28 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Macromedia
2014-01-24 23:27 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-01-23 08:16 - 2013-08-29 08:39 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\AVG Secure Search
2014-01-23 07:16 - 2013-08-29 08:38 - 00000000 ____D () C:\ProgramData\AVG Secure Search
2014-01-19 10:59 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-01-19 10:51 - 2013-08-28 18:18 - 00000000 ___RD () C:\Users\Cerwis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-19 10:50 - 2014-01-19 10:50 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\Wandoujia2
2014-01-19 09:59 - 2013-08-28 18:50 - 00003948 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-01-19 09:59 - 2013-08-28 18:50 - 00003696 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-01-06 16:20 - 2013-08-29 10:56 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-05 12:11 - 2014-01-05 12:11 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\NVIDIA
Some content of TEMP:
====================
C:\Users\Cerwis\AppData\Local\Temp\avgnt.exe
C:\Users\Cerwis\AppData\Local\Temp\avguidx.dll
C:\Users\Cerwis\AppData\Local\Temp\ExPromo.exe
C:\Users\Cerwis\AppData\Local\Temp\MachineIdCreator.exe
C:\Users\Cerwis\AppData\Local\Temp\oi_{7F692FD4-69A7-4775-80DD-786251D1D13B}.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-30 12:22
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (System) (Fixed) (Total:37.03 GB) (Free:0.98 GB) NTFS
Drive d: (Disk) (Fixed) (Total:153.26 GB) (Free:58.28 GB) NTFS
Drive e: (Media) (Fixed) (Total:312.5 GB) (Free:143.31 GB) NTFS
Drive h: () (Removable) (Total:14.92 GB) (Free:7.27 GB) FAT32
Available physical RAM: 5682.18 MB
Total physical RAM: 8152.76 MB
Percentage of memory in use: 30%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 37 GB) (Disk ID: 00000080)
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 0A370A36)
Partition 1: (Not Active) - (Size=153 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=313 GB) - (Type=07 NTFS)
Disk: 2 (Size: 15 GB) (Disk ID: 00000000)
Partition 1: (Active) - (Size=15 GB) - (Type=0C)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG Anti-Virus Free Edition 2011 (Disabled - Up to date) {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
AV: Avira Desktop (Disabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Disabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: AVG Anti-Virus Free Edition 2011 (Disabled - Up to date) {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ZoneAlarm Free Firewall Firewall (Enabled) {E6380B7E-D4B2-19F1-083E-56486607704B}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Cerwis\Desktop" je 2 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Cerwis^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^wandoujia_helper.lnk
D:\Programy\Snappea\WANDOU~2.EXE [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Děkuji
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-02-2014 03
Ran by Cerwis (administrator) on CERWIS-PC on 01-02-2014 11:00:37
Running from C:\Users\Cerwis\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Check Point Software Technologies LTD) D:\Programy\CheckPoint\ZoneAlarm\vsmon.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
(Malwarebytes Corporation) D:\Programy\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) D:\Programy\Malwarebytes' Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) D:\Programy\Malwarebytes' Anti-Malware\mbamgui.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe
(VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
(Check Point Software Technologies, Ltd.) D:\Programy\CheckPoint\ZoneAlarm\ZAPrivacyService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgtray.exe
() C:\Program Files (x86)\AVG Secure Search\vprot.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\loggingserver.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Java\jre6\bin\jusched.exe
(Check Point Software Technologies LTD) D:\Programy\CheckPoint\ZoneAlarm\zatray.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG10\avgnsa.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\ScriptHelperInstaller\17.3.0\ScriptHelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
(forum.viry.cz) C:\Users\Cerwis\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Start WingMan Profiler] - C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.)
HKLM-x32\...\Run: [HDAudDeck] - C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5263504 2012-08-09] (VIA)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642656 2013-03-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AVG_TRAY] - C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2345592 2012-08-01] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [vProt] - C:\Program Files (x86)\AVG Secure Search\vprot.exe [2471448 2014-02-01] ()
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-26] (Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Java\jre6\bin\jusched.exe [148888 2014-01-27] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [ZoneAlarm] - D:\Programy\CheckPoint\ZoneAlarm\zatray.exe [73832 2013-12-16] (Check Point Software Technologies LTD)
HKLM-x32\...\Run: [Avira Systray] - C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [174648 2014-01-24] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-09] (Avira Operations GmbH & Co. KG)
==================== Internet (Whitelisted) ====================
BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssiea.dll (AVG Technologies CZ, s.r.o.)
BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices)
BHO-x32: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
BHO-x32: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} - No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
Toolbar: HKLM-x32 - No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} - No File
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgppa.dll (AVG Technologies CZ, s.r.o.)
Handler-x32: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\17.3.0\ViProtocol.dll (AVG Secure Search)
Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\pdf.dll ()
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File
CHR Extension: (Dokumenty Google) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-08-28]
CHR Extension: (Disk Google) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-08-28]
CHR Extension: (YouTube) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-08-28]
CHR Extension: (Vyhledvn Google) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-08-28]
CHR Extension: (AVG Safe Search) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla [2013-08-29]
CHR Extension: (AVG Security Toolbar) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof [2013-08-29]
CHR Extension: (Penenka Google) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-28]
CHR Extension: (Gmail) - C:\Users\Cerwis\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-08-28]
CHR HKCU\...\Chrome\Extension: [ojpijjmpahflnipadmlpgbjmagmjchkk] - C:\Users\Cerwis\AppData\Local\CRE\ojpijjmpahflnipadmlpgbjmagmjchkk.crx [2014-01-22]
CHR HKLM-x32\...\Chrome\Extension: [jmfkcklnlgedgbglfkkgedjfmejoahla] - C:\Program Files (x86)\AVG\AVG10\Chrome\safesearch.crx [2011-09-09]
CHR HKLM-x32\...\Chrome\Extension: [kgdcapepedmpopjkmdbjnmmmfgllnfek] - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.28.13\zonealarm.crx [2013-11-19]
CHR HKLM-x32\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\ProgramData\AVG Secure Search\ChromeExt\17.2.0.38\avg.crx [2014-02-01]
CHR HKLM-x32\...\Chrome\Extension: [ojpijjmpahflnipadmlpgbjmagmjchkk] - C:\Users\Cerwis\AppData\Local\CRE\ojpijjmpahflnipadmlpgbjmagmjchkk.crx [2014-01-22]
==================== Services (Whitelisted) =================
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2013-03-28] (Advanced Micro Devices, Inc.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1011768 2013-12-09] (Avira Operations GmbH & Co. KG)
R2 avgwd; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [269520 2011-02-08] (AVG Technologies CZ, s.r.o.)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [104504 2014-01-24] (Avira Operations GmbH & Co. KG)
R2 MBAMScheduler; D:\Programy\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; D:\Programy\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27792 2012-08-03] (VIA Technologies, Inc.)
R2 vsmon; D:\Programy\CheckPoint\ZoneAlarm\vsmon.exe [2445816 2013-12-16] (Check Point Software Technologies LTD)
R2 vToolbarUpdater17.3.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe [1771544 2014-01-23] (AVG Secure Search)
R2 ZAPrivacyService; D:\Programy\CheckPoint\ZoneAlarm\ZAPrivacyService.exe [50704 2013-10-15] (Check Point Software Technologies, Ltd.)
==================== Drivers (Whitelisted) ====================
R0 AVGIDSEH; C:\Windows\System32\DRIVERS\AVGIDSEH.Sys [26704 2011-02-22] (AVG Technologies CZ, s.r.o. )
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-09] (Avira Operations GmbH & Co. KG)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [377936 2011-04-04] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [46368 2013-11-11] (AVG Technologies)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-09] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-09] (Avira Operations GmbH & Co. KG)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S0 sptd; C:\Windows\System32\Drivers\sptd.sys [867064 2013-09-07] (Duplex Secure Ltd.)
R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [454168 2013-10-23] (Check Point Software Technologies LTD)
S3 gdrv; \??\C:\Windows\gdrv.sys [x]
S3 NPF; system32\drivers\NPF.sys [x]
S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-01 11:00 - 2014-02-01 11:00 - 00013645 _____ () C:\Users\Cerwis\Desktop\FRST.txt
2014-02-01 10:59 - 2014-02-01 11:00 - 00000000 ____D () C:\FRST
2014-02-01 10:57 - 2014-02-01 10:56 - 00112640 _____ (forum.viry.cz) C:\Users\Cerwis\Desktop\FRSTLauncher.exe
2014-02-01 10:51 - 2014-02-01 10:27 - 02080256 _____ (Farbar) C:\Users\Cerwis\Desktop\FRST64.exe
2014-02-01 09:46 - 2014-02-01 09:46 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Avira
2014-02-01 09:43 - 2013-12-09 11:37 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-02-01 09:43 - 2013-12-09 11:37 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-02-01 09:43 - 2013-12-09 11:37 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-02-01 09:32 - 2014-02-01 09:32 - 00001139 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-02-01 09:32 - 2014-02-01 09:32 - 00000000 ____D () C:\ProgramData\Package Cache
2014-02-01 09:27 - 2014-02-01 09:27 - 00000000 ____D () C:\Program Files (x86)\AVG Secure Search
2014-02-01 09:24 - 2014-02-01 09:24 - 00003150 _____ () C:\Windows\System32\Tasks\{5FCE7D7F-B5DA-4B0B-8583-DC08418A4273}
2014-01-30 20:06 - 2014-01-30 20:07 - 00417513 _____ () C:\Windows\system32\Drivers\vsconfig.xml
2014-01-30 20:06 - 2014-01-30 20:06 - 00000527 _____ () C:\Users\Public\Desktop\ZoneAlarm Security.lnk
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Check Point Software Technologies LTD
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Program Files (x86)\CheckPoint
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Program Files (x86)\Check Point Software Technologies LTD
2014-01-30 19:56 - 2014-01-30 19:56 - 00000000 ____D () C:\ProgramData\CheckPoint
2014-01-30 19:37 - 2014-02-01 09:43 - 00000000 ____D () C:\ProgramData\Avira
2014-01-30 19:37 - 2014-02-01 09:43 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-01-29 19:27 - 2014-01-29 19:27 - 00000687 _____ () C:\Users\Public\Desktop\jetAudio.lnk
2014-01-27 17:27 - 2014-01-27 17:27 - 00410984 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\deploytk.dll
2014-01-27 17:27 - 2014-01-27 17:27 - 00148888 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaws.exe
2014-01-27 17:27 - 2014-01-27 17:27 - 00144792 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaw.exe
2014-01-27 17:27 - 2014-01-27 17:27 - 00144792 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\java.exe
2014-01-27 17:27 - 2014-01-27 17:27 - 00000000 ____D () C:\Program Files (x86)\Java
2014-01-27 17:22 - 2014-01-27 17:22 - 00000680 _____ () C:\Users\Public\Desktop\PS3 Media Server.lnk
2014-01-27 14:19 - 2014-01-27 14:19 - 00000000 ____D () C:\Users\Cerwis\.swt
2014-01-27 13:14 - 2014-01-27 13:14 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\TuneUp Software
2014-01-26 20:18 - 2014-01-27 05:32 - 00000000 ____D () C:\Program Files\stinger
2014-01-26 20:04 - 2014-01-26 20:04 - 00000000 ___HD () C:\$AVG
2014-01-26 19:53 - 2014-01-26 21:14 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-01-26 19:53 - 2014-01-26 19:53 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Malwarebytes
2014-01-26 19:53 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-01-26 13:47 - 2014-01-26 13:47 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\streamripper
2014-01-26 13:31 - 2014-01-26 13:31 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\NativeMessaging
2014-01-26 13:31 - 2014-01-26 13:31 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\CRE
2014-01-26 13:31 - 2014-01-26 13:31 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\Conduit
2014-01-26 13:30 - 2014-01-27 17:08 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Azureus
2014-01-26 13:29 - 2014-01-26 13:31 - 00000009 _____ () C:\END
2014-01-26 11:43 - 2014-01-26 11:43 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2014-01-26 10:26 - 2014-01-29 19:20 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\COWON
2014-01-25 08:42 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2014-01-25 08:42 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-01-25 08:42 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-01-25 08:42 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2014-01-25 08:42 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-01-25 08:39 - 2014-01-25 08:39 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-01-25 08:39 - 2014-01-25 08:39 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-01-25 08:39 - 2014-01-25 08:39 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-01-25 08:39 - 2014-01-25 08:39 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-01-25 08:39 - 2014-01-25 08:39 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-01-25 08:38 - 2014-01-25 08:38 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-01-25 08:38 - 2014-01-25 08:38 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-01-25 08:38 - 2014-01-25 08:38 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-01-25 08:38 - 2014-01-25 08:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-01-25 08:38 - 2014-01-25 08:38 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-01-25 08:37 - 2014-01-25 08:42 - 00010277 _____ () C:\Windows\IE11_main.log
2014-01-25 08:30 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-25 08:30 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-25 08:30 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-01-25 08:30 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-01-25 08:30 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-01-25 08:30 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-01-25 08:30 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2014-01-25 08:30 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-01-25 08:30 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-01-25 08:30 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-01-25 08:30 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2014-01-25 08:30 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2014-01-25 01:13 - 2014-02-01 09:29 - 00096414 _____ () C:\Windows\PFRO.log
2014-01-25 00:43 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll
2014-01-25 00:43 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll
2014-01-24 23:28 - 2014-01-24 23:28 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Macromedia
2014-01-19 10:50 - 2014-01-19 10:50 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\Wandoujia2
2014-01-19 10:03 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-19 10:03 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-19 10:03 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-19 10:03 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-19 10:03 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-19 10:03 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-19 10:03 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-19 10:03 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-01-19 10:03 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-01-19 10:03 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2014-01-19 10:03 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2014-01-19 10:03 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-01-19 10:03 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-01-19 10:03 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-01-19 10:03 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-01-05 12:11 - 2014-01-05 12:11 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\NVIDIA
==================== One Month Modified Files and Folders =======
2014-02-01 11:00 - 2014-02-01 11:00 - 00013645 _____ () C:\Users\Cerwis\Desktop\FRST.txt
2014-02-01 11:00 - 2014-02-01 10:59 - 00000000 ____D () C:\FRST
2014-02-01 10:56 - 2014-02-01 10:57 - 00112640 _____ (forum.viry.cz) C:\Users\Cerwis\Desktop\FRSTLauncher.exe
2014-02-01 10:50 - 2013-09-10 20:39 - 00000000 ____D () C:\Users\Cerwis\Downloads\Nová složka
2014-02-01 10:27 - 2014-02-01 10:51 - 02080256 _____ (Farbar) C:\Users\Cerwis\Desktop\FRST64.exe
2014-02-01 10:04 - 2013-08-28 18:50 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-01 10:04 - 2013-08-28 18:50 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-01 09:46 - 2014-02-01 09:46 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Avira
2014-02-01 09:43 - 2014-01-30 19:37 - 00000000 ____D () C:\ProgramData\Avira
2014-02-01 09:43 - 2014-01-30 19:37 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-02-01 09:38 - 2009-07-14 05:45 - 00021888 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-01 09:38 - 2009-07-14 05:45 - 00021888 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-01 09:32 - 2014-02-01 09:32 - 00001139 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-02-01 09:32 - 2014-02-01 09:32 - 00000000 ____D () C:\ProgramData\Package Cache
2014-02-01 09:32 - 2013-08-28 18:12 - 01116348 _____ () C:\Windows\WindowsUpdate.log
2014-02-01 09:30 - 2013-12-15 11:10 - 00003351 _____ () C:\Windows\setupact.log
2014-02-01 09:30 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-01 09:29 - 2014-01-25 01:13 - 00096414 _____ () C:\Windows\PFRO.log
2014-02-01 09:27 - 2014-02-01 09:27 - 00000000 ____D () C:\Program Files (x86)\AVG Secure Search
2014-02-01 09:24 - 2014-02-01 09:24 - 00003150 _____ () C:\Windows\System32\Tasks\{5FCE7D7F-B5DA-4B0B-8583-DC08418A4273}
2014-01-31 18:47 - 2013-08-28 18:17 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\VirtualStore
2014-01-31 18:36 - 2013-08-29 08:37 - 00000000 ____D () C:\Windows\system32\Drivers\AVG
2014-01-31 12:17 - 2011-04-12 09:34 - 00666194 _____ () C:\Windows\system32\perfh005.dat
2014-01-31 12:17 - 2011-04-12 09:34 - 00139890 _____ () C:\Windows\system32\perfc005.dat
2014-01-31 12:17 - 2009-07-14 06:13 - 01576554 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-01-30 20:07 - 2014-01-30 20:06 - 00417513 _____ () C:\Windows\system32\Drivers\vsconfig.xml
2014-01-30 20:06 - 2014-01-30 20:06 - 00000527 _____ () C:\Users\Public\Desktop\ZoneAlarm Security.lnk
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Check Point Software Technologies LTD
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Program Files (x86)\CheckPoint
2014-01-30 20:02 - 2014-01-30 20:02 - 00000000 ____D () C:\Program Files (x86)\Check Point Software Technologies LTD
2014-01-30 19:56 - 2014-01-30 19:56 - 00000000 ____D () C:\ProgramData\CheckPoint
2014-01-29 19:27 - 2014-01-29 19:27 - 00000687 _____ () C:\Users\Public\Desktop\jetAudio.lnk
2014-01-29 19:27 - 2013-08-28 18:23 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-01-29 19:20 - 2014-01-26 10:26 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\COWON
2014-01-28 16:46 - 2013-08-28 18:17 - 00000000 ____D () C:\Users\Cerwis
2014-01-27 17:27 - 2014-01-27 17:27 - 00410984 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\deploytk.dll
2014-01-27 17:27 - 2014-01-27 17:27 - 00148888 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaws.exe
2014-01-27 17:27 - 2014-01-27 17:27 - 00144792 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaw.exe
2014-01-27 17:27 - 2014-01-27 17:27 - 00144792 _____ (Sun Microsystems, Inc.) C:\Windows\SysWOW64\java.exe
2014-01-27 17:27 - 2014-01-27 17:27 - 00000000 ____D () C:\Program Files (x86)\Java
2014-01-27 17:22 - 2014-01-27 17:22 - 00000680 _____ () C:\Users\Public\Desktop\PS3 Media Server.lnk
2014-01-27 17:08 - 2014-01-26 13:30 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Azureus
2014-01-27 14:19 - 2014-01-27 14:19 - 00000000 ____D () C:\Users\Cerwis\.swt
2014-01-27 13:14 - 2014-01-27 13:14 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\TuneUp Software
2014-01-27 05:32 - 2014-01-26 20:18 - 00000000 ____D () C:\Program Files\stinger
2014-01-26 21:14 - 2014-01-26 19:53 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-01-26 20:04 - 2014-01-26 20:04 - 00000000 ___HD () C:\$AVG
2014-01-26 19:53 - 2014-01-26 19:53 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Malwarebytes
2014-01-26 13:47 - 2014-01-26 13:47 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\streamripper
2014-01-26 13:31 - 2014-01-26 13:31 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\NativeMessaging
2014-01-26 13:31 - 2014-01-26 13:31 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\CRE
2014-01-26 13:31 - 2014-01-26 13:31 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\Conduit
2014-01-26 13:31 - 2014-01-26 13:29 - 00000009 _____ () C:\END
2014-01-26 11:43 - 2014-01-26 11:43 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2014-01-26 08:39 - 2013-08-29 10:33 - 00000763 _____ () C:\Users\Cerwis\AppData\Roaming\Microsoft\Windows\Start Menu\GOM Player.lnk
2014-01-25 08:51 - 2013-08-28 18:18 - 00001389 _____ () C:\Users\Cerwis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-01-25 08:50 - 2013-12-15 11:09 - 00418464 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-01-25 08:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-01-25 08:42 - 2014-01-25 08:37 - 00010277 _____ () C:\Windows\IE11_main.log
2014-01-25 08:39 - 2014-01-25 08:39 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-01-25 08:39 - 2014-01-25 08:39 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-01-25 08:39 - 2014-01-25 08:39 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-01-25 08:39 - 2014-01-25 08:39 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-01-25 08:39 - 2014-01-25 08:39 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-01-25 08:39 - 2014-01-25 08:39 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-01-25 08:39 - 2014-01-25 08:39 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-01-25 08:39 - 2014-01-25 08:39 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-01-25 08:38 - 2014-01-25 08:38 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-01-25 08:38 - 2014-01-25 08:38 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-01-25 08:38 - 2014-01-25 08:38 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-01-25 08:38 - 2014-01-25 08:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-01-25 08:38 - 2014-01-25 08:38 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-01-25 08:38 - 2014-01-25 08:38 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-01-25 08:38 - 2014-01-25 08:38 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-01-25 08:22 - 2013-08-29 09:15 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-01-25 01:09 - 2013-08-29 09:15 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-01-25 01:09 - 2013-08-29 09:13 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-01-25 01:09 - 2013-08-29 09:13 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-01-25 00:09 - 2013-08-28 19:09 - 00000000 ____D () C:\Windows\Panther
2014-01-25 00:01 - 2013-08-29 10:56 - 00000000 ____D () C:\Windows\system32\MRT
2014-01-24 23:28 - 2014-01-24 23:28 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\Macromedia
2014-01-24 23:27 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-01-23 08:16 - 2013-08-29 08:39 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\AVG Secure Search
2014-01-23 07:16 - 2013-08-29 08:38 - 00000000 ____D () C:\ProgramData\AVG Secure Search
2014-01-19 10:59 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-01-19 10:51 - 2013-08-28 18:18 - 00000000 ___RD () C:\Users\Cerwis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-19 10:50 - 2014-01-19 10:50 - 00000000 ____D () C:\Users\Cerwis\AppData\Local\Wandoujia2
2014-01-19 09:59 - 2013-08-28 18:50 - 00003948 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-01-19 09:59 - 2013-08-28 18:50 - 00003696 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-01-06 16:20 - 2013-08-29 10:56 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-05 12:11 - 2014-01-05 12:11 - 00000000 ____D () C:\Users\Cerwis\AppData\Roaming\NVIDIA
Some content of TEMP:
====================
C:\Users\Cerwis\AppData\Local\Temp\avgnt.exe
C:\Users\Cerwis\AppData\Local\Temp\avguidx.dll
C:\Users\Cerwis\AppData\Local\Temp\ExPromo.exe
C:\Users\Cerwis\AppData\Local\Temp\MachineIdCreator.exe
C:\Users\Cerwis\AppData\Local\Temp\oi_{7F692FD4-69A7-4775-80DD-786251D1D13B}.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-30 12:22
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (System) (Fixed) (Total:37.03 GB) (Free:0.98 GB) NTFS
Drive d: (Disk) (Fixed) (Total:153.26 GB) (Free:58.28 GB) NTFS
Drive e: (Media) (Fixed) (Total:312.5 GB) (Free:143.31 GB) NTFS
Drive h: () (Removable) (Total:14.92 GB) (Free:7.27 GB) FAT32
Available physical RAM: 5682.18 MB
Total physical RAM: 8152.76 MB
Percentage of memory in use: 30%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 37 GB) (Disk ID: 00000080)
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 0A370A36)
Partition 1: (Not Active) - (Size=153 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=313 GB) - (Type=07 NTFS)
Disk: 2 (Size: 15 GB) (Disk ID: 00000000)
Partition 1: (Active) - (Size=15 GB) - (Type=0C)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: AVG Anti-Virus Free Edition 2011 (Disabled - Up to date) {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
AV: Avira Desktop (Disabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Disabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: AVG Anti-Virus Free Edition 2011 (Disabled - Up to date) {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ZoneAlarm Free Firewall Firewall (Enabled) {E6380B7E-D4B2-19F1-083E-56486607704B}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Cerwis\Desktop" je 2 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Cerwis^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^wandoujia_helper.lnk
D:\Programy\Snappea\WANDOU~2.EXE [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
DoNotAllowExceptions REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
- Přílohy
-
- Addition.rar
- (4.89 KiB) Staženo 28 x
- Rudy
- Site Admin
- Příspěvky: 119534
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Pokus o připojení k IP adrese
Je to totéž, jako před tím, je to teď byla česká IP: http://whois.domaintools.com/31.31.72.182 . Tu hlášku vám asi dává ZoneAlarm (firewall). V PC máte také více antivirů. Vyberte si jeden a zbylé odinstalujte. K tomu logu:
Otevřte poznámkový blok a zkopírujte do něj:
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Pak znovu spusťte FRST a klikněte na >Fix<. Zkopírujte sem pak log, který se na závěr vytvoří.Start
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Java\jre6\bin\jusched.exe [148888 2014-01-27] (Sun Microsystems, Inc.)
BHO-x32: No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} - No File
Toolbar: HKLM-x32 - No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} - No File
C:\Users\Cerwis\AppData\Local\Temp
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Pokus o připojení k IP adrese
Hlásí mi to Malwarebytes, to vím, ale zajímá mě, proč? znamená to, že chrome chce otevřít nějaké pro mě neznámé adresy? nebo to je běžné?
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 01-02-2014 03
Ran by Cerwis at 2014-02-01 16:47:29 Run:1
Running from C:\Users\Cerwis\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Java\jre6\bin\jusched.exe [148888 2014-01-27] (Sun Microsystems, Inc.)
BHO-x32: No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} - No File
Toolbar: HKLM-x32 - No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} - No File
C:\Users\Cerwis\AppData\Local\Temp
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{95B7759C-8C7F-4BF1-B163-73684A933233} => Value deleted successfully.
HKCR\Wow6432Node\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => Key not found.
"C:\Users\Cerwis\AppData\Local\Temp" directory move:
C:\Users\Cerwis\AppData\Local\Temp\avguidx.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\Avira_20140201092536.log => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\Avira_20140201092536_0_Id.Avira.OE.Setup.Msi.log => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\Avira_20140201093156.log => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\Avira_20140201093156_2_Id.Avira.OE.Setup.Msi.log => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\DELF8DE.tmp => Moved successfully.
Could not move "C:\Users\Cerwis\AppData\Local\Temp\etilqs_LaTveo5WxIGYoVe" => Scheduled to move on reboot.
Could not move "C:\Users\Cerwis\AppData\Local\Temp\etilqs_SqPH3rm7TgO3xct" => Scheduled to move on reboot.
Could not move "C:\Users\Cerwis\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => Scheduled to move on reboot.
C:\Users\Cerwis\AppData\Local\Temp\ichcop => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\installer_cfg.ini => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\MachineIdCreator.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\oi_{7F692FD4-69A7-4775-80DD-786251D1D13B}.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\StructuredQuery.log => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\toolbar_log.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\~4164.tmp => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\~AA69.bat => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\~AA69.tmp => Moved successfully.
Could not move "C:\Users\Cerwis\AppData\Local\Temp\~DFEBFA8C7178AF1D7B.TMP" => Scheduled to move on reboot.
C:\Users\Cerwis\AppData\Local\Temp\~DFF3447F90BE222AEE.TMP => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\avg-secure-search-installer.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\Installer.7z => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\{95B7759C-8C7F-4BF1-B163-73684A933233} => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\about.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\active-threats18.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\AVG Secure Search => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\AvgComponents.manifest => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\avgMozXPCOM.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\calc.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\CleanHistory.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\configuration.xml => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\crash.avgdx => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\current.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\currently-safe18.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\data.zip => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\EULA.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\favicon.ico => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\feedback.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\FireFoxSearchXml.tmp => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\help.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\icon18.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\labs.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\lip.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\note.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\PostInstall.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\PostInstaller.ini => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\privacy.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\remote_configuration.xml => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\search.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\setup.bmp => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\surf-with-caution18.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\TBAPI.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Uninstall.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\uninstall.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\updating18.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\vprot.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\weather.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\windows.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\jquery-1.5.1.min.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\jquery-1.8.1.min.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\JQueyExtensions.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\uninstall_cp.css => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Uninstall_cp.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Uninstall_cp_step2.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\cp-bg.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\cp_logo.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\downBtn.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\loader.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\uninstall-bg.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\upBtn.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\PostInstall\_._ => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\CPOL license.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\Encoding_decoding_base64.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\hmac.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\LICENSE-bsdiff.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\LICENSE-bzip.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\LICENSE-JasonCpp.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\LICENSE-MPL-NPAPI.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\LICENSE-sparsehash.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\Log4CPlus.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\PassthruApp.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\EnableHelperRes\EEImageHandler.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\EnableHelperRes\Images\box_ie.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\EnableHelperRes\Images\Thumbs.db => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\all.css => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\btn-ok2.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\downBtn.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\DSPDlg_IE.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\logo2.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\Thumbs.db => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\upBtn.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeRes\nt.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeRes\nt28_2.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeRes\AVG Secure Search\nt28_2.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeRes\AVG SafeGuard toolbar\nt28_2.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeRes\AVG Nation toolbar\nt28_2.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeGuardRes\avg_logo_medium.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeGuardRes\cg.css => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeGuardRes\cg.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeGuardRes\ChromeGuadDsp.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeGuardRes\jquery-1.8.1.min.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\bg_close.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\bg_expand.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\bg_tooltip.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\bg_tracking.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\bull4x4.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\divider.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\innerBG_gradient.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\loader.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\17.2.0.38\AVG Secure Search_toolbar.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\avgMozXPCOM.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\binarylines.manifest => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\FireFoxSearchXml.tmp => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\chrome.manifest => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\icon.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\install.rdf => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\avg-dnt-adapter.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\avg.xml => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\avg.xul => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\avgJsm.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\Bindings.xml => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\configuration.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\configuration_0.css => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\HistoryCleaner.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\IOJsm.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\passwordbox.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\Preferences.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\propertiesJsm.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\about.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\active-threats18.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\ajax-loader.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\calc.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\CleanHistory.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\close.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\current.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\currently-safe18.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\dnt.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\EULA.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\Facebook.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\feedback.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\feedicon.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\help.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\icon18.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\icon_search.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\information-24.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\labs.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\loader.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\note.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\privacy.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\questionmarkIcon.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\search.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\surf-with-caution18.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\uninstall.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\updating18.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\weather.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\window-close.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\windows.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\zh-tw\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\zh-tw\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\zh-cn\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\zh-cn\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\tr\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\tr\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\th\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\th\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\sv\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\sv\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\sr\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\sr\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\sk\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\sk\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ru\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ru\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ro\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ro\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\pt-br\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\pt-br\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\pt\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\pt\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\pl\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\pl\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\nl\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\nl\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\nb\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\nb\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ms\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ms\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ko\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ko\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ja\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ja\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\it\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\it\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\id\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\id\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\hu\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\hu\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\hi\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\hi\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\fr\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\fr\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\fi\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\fi\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\es-es\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\es-es\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\es\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\es\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\en\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\en\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\el\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\el\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\de\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\de\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\da\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\da\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\cs\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\cs\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\af\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\af\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\locale\en-US\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\locale\en-US\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\components\avg-dnt-policy.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\components\toolbarhomeApi.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\chrome\avg.jar => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\ChromeExt\17.2.0.38\avg.crx => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ConfigFiles\avguidx.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ConfigFiles\installer_cfg.ini => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ConfigFiles\MachineIdCreator.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\avgdttbx.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\avgtpx64.sys => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\avgtpx86.sys => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\CommonCfg.ini => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\DriverInstaller.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\DriverInstaller_64.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\helper.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\log4cplusU.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\loggingserver.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\NativeBrowserApi.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\npsitesafety.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\ScriptHelper.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\SiteSafety.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\ToolBand.tlb => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\ToolbarUpdater.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\UpdaterConfig.ini => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\ViProtocol.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avgnt.exe\Avira.OE.NativeCore.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avgnt.exe\Avira.OE.Wincore.dll => Moved successfully.
Could not move "C:\Users\Cerwis\AppData\Local\Temp" directory. => Scheduled to move on reboot.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-02-01 16:51:37)<=
"C:\Users\Cerwis\AppData\Local\Temp\etilqs_LaTveo5WxIGYoVe" => File could not move.
"C:\Users\Cerwis\AppData\Local\Temp\etilqs_SqPH3rm7TgO3xct" => File could not move.
C:\Users\Cerwis\AppData\Local\Temp\FXSAPIDebugLogFile.txt => Is moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\~DFEBFA8C7178AF1D7B.TMP => Is moved successfully.
C:\Users\Cerwis\AppData\Local\Temp => Is moved successfully.
==== End of Fixlog ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 01-02-2014 03
Ran by Cerwis at 2014-02-01 16:47:29 Run:1
Running from C:\Users\Cerwis\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Java\jre6\bin\jusched.exe [148888 2014-01-27] (Sun Microsystems, Inc.)
BHO-x32: No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} - No File
Toolbar: HKLM-x32 - No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} - No File
C:\Users\Cerwis\AppData\Local\Temp
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{95B7759C-8C7F-4BF1-B163-73684A933233} => Value deleted successfully.
HKCR\Wow6432Node\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => Key not found.
"C:\Users\Cerwis\AppData\Local\Temp" directory move:
C:\Users\Cerwis\AppData\Local\Temp\avguidx.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\Avira_20140201092536.log => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\Avira_20140201092536_0_Id.Avira.OE.Setup.Msi.log => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\Avira_20140201093156.log => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\Avira_20140201093156_2_Id.Avira.OE.Setup.Msi.log => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\DELF8DE.tmp => Moved successfully.
Could not move "C:\Users\Cerwis\AppData\Local\Temp\etilqs_LaTveo5WxIGYoVe" => Scheduled to move on reboot.
Could not move "C:\Users\Cerwis\AppData\Local\Temp\etilqs_SqPH3rm7TgO3xct" => Scheduled to move on reboot.
Could not move "C:\Users\Cerwis\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => Scheduled to move on reboot.
C:\Users\Cerwis\AppData\Local\Temp\ichcop => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\installer_cfg.ini => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\MachineIdCreator.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\oi_{7F692FD4-69A7-4775-80DD-786251D1D13B}.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\StructuredQuery.log => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\toolbar_log.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\~4164.tmp => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\~AA69.bat => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\~AA69.tmp => Moved successfully.
Could not move "C:\Users\Cerwis\AppData\Local\Temp\~DFEBFA8C7178AF1D7B.TMP" => Scheduled to move on reboot.
C:\Users\Cerwis\AppData\Local\Temp\~DFF3447F90BE222AEE.TMP => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\avg-secure-search-installer.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\Installer.7z => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\{95B7759C-8C7F-4BF1-B163-73684A933233} => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\about.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\active-threats18.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\AVG Secure Search => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\AvgComponents.manifest => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\avgMozXPCOM.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\calc.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\CleanHistory.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\configuration.xml => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\crash.avgdx => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\current.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\currently-safe18.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\data.zip => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\EULA.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\favicon.ico => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\feedback.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\FireFoxSearchXml.tmp => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\help.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\icon18.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\labs.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\lip.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\note.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\PostInstall.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\PostInstaller.ini => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\privacy.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\remote_configuration.xml => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\search.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\setup.bmp => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\surf-with-caution18.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\TBAPI.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Uninstall.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\uninstall.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\updating18.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\vprot.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\weather.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\windows.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\jquery-1.5.1.min.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\jquery-1.8.1.min.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\JQueyExtensions.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\uninstall_cp.css => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Uninstall_cp.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Uninstall_cp_step2.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\cp-bg.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\cp_logo.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\downBtn.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\loader.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\uninstall-bg.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\UninstallRes\ClientPackage\Images\uninstall\upBtn.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\PostInstall\_._ => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\CPOL license.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\Encoding_decoding_base64.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\hmac.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\LICENSE-bsdiff.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\LICENSE-bzip.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\LICENSE-JasonCpp.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\LICENSE-MPL-NPAPI.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\LICENSE-sparsehash.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\Log4CPlus.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Licenses\PassthruApp.txt => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\EnableHelperRes\EEImageHandler.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\EnableHelperRes\Images\box_ie.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\EnableHelperRes\Images\Thumbs.db => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\all.css => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\btn-ok2.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\downBtn.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\DSPDlg_IE.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\logo2.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\Thumbs.db => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\DSPDlg_IE\upBtn.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeRes\nt.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeRes\nt28_2.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeRes\AVG Secure Search\nt28_2.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeRes\AVG SafeGuard toolbar\nt28_2.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeRes\AVG Nation toolbar\nt28_2.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeGuardRes\avg_logo_medium.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeGuardRes\cg.css => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeGuardRes\cg.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeGuardRes\ChromeGuadDsp.html => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\ChromeGuardRes\jquery-1.8.1.min.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\bg_close.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\bg_expand.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\bg_tooltip.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\bg_tracking.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\bull4x4.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\divider.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\innerBG_gradient.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\Chrome\content\icons\loader.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgFiles\AVG Secure Search\17.2.0.38\AVG Secure Search_toolbar.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\avgMozXPCOM.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\binarylines.manifest => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\FireFoxSearchXml.tmp => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\chrome.manifest => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\icon.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\install.rdf => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\avg-dnt-adapter.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\avg.xml => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\avg.xul => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\avgJsm.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\Bindings.xml => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\configuration.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\configuration_0.css => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\HistoryCleaner.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\IOJsm.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\passwordbox.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\Preferences.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\propertiesJsm.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\about.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\active-threats18.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\ajax-loader.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\calc.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\CleanHistory.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\close.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\current.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\currently-safe18.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\dnt.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\EULA.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\Facebook.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\feedback.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\feedicon.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\help.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\icon18.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\icon_search.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\information-24.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\labs.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\loader.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\note.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\privacy.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\questionmarkIcon.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\search.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\surf-with-caution18.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\uninstall.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\updating18.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\weather.gif => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\window-close.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\skin\windows.png => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\zh-tw\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\zh-tw\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\zh-cn\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\zh-cn\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\tr\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\tr\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\th\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\th\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\sv\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\sv\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\sr\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\sr\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\sk\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\sk\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ru\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ru\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ro\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ro\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\pt-br\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\pt-br\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\pt\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\pt\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\pl\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\pl\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\nl\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\nl\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\nb\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\nb\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ms\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ms\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ko\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ko\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ja\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\ja\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\it\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\it\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\id\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\id\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\hu\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\hu\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\hi\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\hi\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\fr\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\fr\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\fi\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\fi\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\es-es\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\es-es\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\es\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\es\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\en\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\en\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\el\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\el\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\de\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\de\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\da\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\da\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\cs\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\cs\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\af\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\modules\locale\af\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\locale\en-US\global.dtd => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\locale\en-US\global.properties => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\components\avg-dnt-policy.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\components\toolbarhomeApi.js => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\FireFoxExt\17.2.0.38\chrome\avg.jar => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ProgData\AVG Secure Search\ChromeExt\17.2.0.38\avg.crx => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ConfigFiles\avguidx.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ConfigFiles\installer_cfg.ini => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\ConfigFiles\MachineIdCreator.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\avgdttbx.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\avgtpx64.sys => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\avgtpx86.sys => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\CommonCfg.ini => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\DriverInstaller.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\DriverInstaller_64.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\helper.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\log4cplusU.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\loggingserver.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\NativeBrowserApi.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\npsitesafety.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\ScriptHelper.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\SiteSafety.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\ToolBand.tlb => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\ToolbarUpdater.exe => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\UpdaterConfig.ini => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avg_a01256\CommonFiles\AVG Secure Search\ViProtocol.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avgnt.exe\Avira.OE.NativeCore.dll => Moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\avgnt.exe\Avira.OE.Wincore.dll => Moved successfully.
Could not move "C:\Users\Cerwis\AppData\Local\Temp" directory. => Scheduled to move on reboot.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-02-01 16:51:37)<=
"C:\Users\Cerwis\AppData\Local\Temp\etilqs_LaTveo5WxIGYoVe" => File could not move.
"C:\Users\Cerwis\AppData\Local\Temp\etilqs_SqPH3rm7TgO3xct" => File could not move.
C:\Users\Cerwis\AppData\Local\Temp\FXSAPIDebugLogFile.txt => Is moved successfully.
C:\Users\Cerwis\AppData\Local\Temp\~DFEBFA8C7178AF1D7B.TMP => Is moved successfully.
C:\Users\Cerwis\AppData\Local\Temp => Is moved successfully.
==== End of Fixlog ====
- Rudy
- Site Admin
- Příspěvky: 119534
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Pokus o připojení k IP adrese
Smazáno. Já bych doporučil mít nainstalovaný pouze 1 antivir. Takto není jistota, že nedochází k nějaké kolizi. Např. ta česká IP se mi zdá korektní (Wedos Internet).
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Pokus o připojení k IP adrese
Děkuji za pomoc.
Avira, antivirus (nově)
ZoneAlarm, firewall
AVG, linkscanner
a Malwarebytes - trial, který mi ukázal, že něco není o.k.
Avira, antivirus (nově)
ZoneAlarm, firewall
AVG, linkscanner
a Malwarebytes - trial, který mi ukázal, že něco není o.k.
- Rudy
- Site Admin
- Příspěvky: 119534
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Pokus o připojení k IP adrese
Na jednom systému smí fungovat pouze jeden rezdentní program jednoho typu (antivir, antispy, firewall). Jinak dochází k sw kolizi.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.