
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Problémy s podsložkou Temp
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Problémy s podsložkou Temp
Zdravím, pokaždé když přeinstaluji windows tak po nějakém čase se nejměnováná věc hrabe ve složce Temp. Vím dobře že temp je součástáí programů, který si tak na nějaký čas uloží svoje soubory a pak je smaže. Jenže co dělat když se smažou a program je potřebuje. Nejspíš to má potom za vinu chybový hlášky a tím i zadám můj problém. Nestává se to u každých programů, ale některé jsou těmito události opravdu znetvořeny. Proto bych poprosil o nějakou pomoc či radu jak se toho vyvarovat.
chybové hlášky:
Windows systém nemůže najít položku user..../Temp/3582-490/soubor
nebo dokonce
Změní bitovou frekvenci programů na 32bit i když jsou programy určený pro 64bitovej systém (programy mě potom vyhazují hlášky typu: není kompatibilní s verzí 64xBit)
díky.
Logfile of random's system information tool 1.10 (written by random/random)
Run by KryštofČuřík at 2014-06-13 11:45:11
Microsoft Windows 7 Home Premium
System drive C: has 131 GB (55%) free of 238 GB
Total RAM: 3996 MB (46% free)
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Users\KRYTOF~1\AppData\Local\Temp\3582-490\msdcsc.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
notepad
C:\PROGRA~1\Zoner\PHOTOS~1\PROGRA~1\ZPSTray.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\svchost.exe -k SDRSVC
"taskhost.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\RIOTGA~1\LEAGUE~1\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
LoLLauncher.exe
C:/RIOTGA~1/LEAGUE~1/RADS/projects/lol_air_client/releases/0.0.1.94/deploy/LolClient.exe -runtime .\ -nodebug META-INF\AIR\application.xml .\ -- 8393
C:\Users\KRYTOF~1\AppData\Local\Temp\3582-490\Launcher.exe
C:\PROGRA~2\MOZILL~1\firefox.exe
cmd /c ""C:\Users\KryštofČuřík\AppData\Local\Temp\3582-490\startmetin2.bat""
\??\C:\Windows\system32\conhost.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe41_ Global\UsGthrCtrlFltPipeMssGthrPipe41 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 504 508 516 65536 512
C:\Users\KRYTOF~1\DOWNLO~1\RSITx64.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\PROGRA~1\TRENDM~1\KRYTOF~1.EXE /silentautolog
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\KryštofČuřík\AppData\Roaming\Mozilla\Firefox\Profiles\16qs64pn.default
prefs.js - "browser.startup.homepage" - "http://google.cz/"
prefs.js - "keyword.URL" - "http://websearch.eazytosearch.info/?pid ... =CZ&l=1&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.5.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre8\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.5.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre8\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll
C:\Users\KryštofČuřík\AppData\Roaming\Mozilla\Firefox\Profiles\16qs64pn.default\searchplugins\
WebSearch.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4129AD7-78D6-FC6B-3652-75C34D8088CD}]
save On - C:\Program Files (x86)\save On\ceWgnIZ_Sm.x64.dll [2014-06-12 472064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files (x86)\Java\jre8\bin\ssv.dll [2014-06-07 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C9C42510-9B41-42c1-9DCD-7282A2D07C61}C]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4129AD7-78D6-FC6B-3652-75C34D8088CD}]
save On - C:\Program Files (x86)\save On\ceWgnIZ_Sm.dll [2014-06-12 423936]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre8\bin\jp2ssv.dll [2014-06-07 171944]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"iLivid"=C:\Users\KryštofČuřík\AppData\Local\iLivid\iLivid.exe -autorun []
"MicroUpdate"=C:\Users\KryštofČuřík\Documents\MSDCSC\D0voaetUiV3f\msdcsc.exe [2014-06-13 1533460]
"DAEMON Tools Lite"=C:\PROGRA~2\DAEMON~1\DTLite.exe [2014-06-13 3738384]
"Zoner Photo Studio Autoupdate"=C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE [2012-10-18 752736]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"mobilegeni daemon"=C:\Program Files (x86)\Mobogenie\DaemonProcess.exe []
"Mirosoft Services"=C:\Users\KryštofČuřík\AppData\Roaming\Microsoft\Windows\Templates\Microsoft Services\services.exe []
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate []
"SunJavaUpdateSched"=C:\Program Files (x86)\Java\jre8\bin\jusched.exe []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
======File associations======
.exe - open - C:\Windows\svchost.com "%1" %*
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-06-13 11:45:12 ----D---- C:\Program Files\trend micro
2014-06-13 11:45:11 ----D---- C:\rsit
2014-06-12 13:23:03 ----D---- C:\Program Files (x86)\Bound By Flame
2014-06-12 09:17:19 ----D---- C:\Program Files (x86)\QuadCoreM2
2014-06-12 06:37:12 ----D---- C:\ProgramData\Supersoftware App
2014-06-12 06:37:12 ----D---- C:\ProgramData\Seearch-NewTaB
2014-06-12 06:37:12 ----D---- C:\Program Files (x86)\Seearch-NewTaB
2014-06-12 06:36:48 ----D---- C:\ProgramData\Supersoftware
2014-06-12 06:36:08 ----D---- C:\ProgramData\save On
2014-06-12 06:36:08 ----D---- C:\Program Files (x86)\save On
2014-06-11 10:33:39 ----D---- C:\Program Files\Electronic Arts
2014-06-11 04:03:41 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-06-11 04:03:41 ----D---- C:\Program Files (x86)\AGEIA Technologies
2014-06-11 03:38:04 ----D---- C:\ProgramData\Steam
2014-06-11 03:18:24 ----D---- C:\Program Files (x86)\Kaos Studios
2014-06-10 09:14:37 ----D---- C:\Python27
2014-06-10 06:32:34 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-06-10 06:32:34 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-06-10 06:32:34 ----A---- C:\Windows\SYSWOW64\java.exe
2014-06-10 06:31:02 ----A---- C:\Windows\SYSWOW64\msxml4.dll
2014-06-10 06:31:01 ----A---- C:\Windows\SYSWOW64\msxml4r.dll
2014-06-10 06:31:01 ----A---- C:\Windows\SYSWOW64\msxml4a.dll
2014-06-10 06:30:57 ----D---- C:\Program Files (x86)\SourceTec
2014-06-08 21:06:52 ----D---- C:\Program Files (x86)\Scirra
2014-06-08 04:27:11 ----D---- C:\Program Files (x86)\GameSpy Arcade
2014-06-08 04:24:24 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-06-08 01:03:11 ----A---- C:\Windows\SYSWOW64\FODBCLib.dll
2014-06-08 01:03:08 ----D---- C:\ProgramData\SendMails
2014-06-08 01:03:08 ----D---- C:\ProgramData\Microsoft NT Ident
2014-06-07 22:19:56 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Scirra
2014-06-07 20:26:19 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\OBS
2014-06-07 20:11:10 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2014-06-07 20:11:10 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2014-06-07 20:11:10 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2014-06-07 20:11:10 ----A---- C:\Windows\system32\xactengine3_7.dll
2014-06-07 20:11:10 ----A---- C:\Windows\system32\d3dx10_43.dll
2014-06-07 20:11:10 ----A---- C:\Windows\system32\d3dcsx_43.dll
2014-06-07 20:11:09 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2014-06-07 20:11:09 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2014-06-07 20:11:09 ----A---- C:\Windows\system32\XAudio2_6.dll
2014-06-07 20:11:09 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2014-06-07 20:11:07 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2014-06-07 20:11:07 ----A---- C:\Windows\system32\xactengine3_6.dll
2014-06-07 20:11:04 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2014-06-07 20:11:04 ----A---- C:\Windows\system32\XAudio2_5.dll
2014-06-07 20:11:02 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2014-06-07 20:11:02 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2014-06-07 20:11:02 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-06-07 20:11:02 ----A---- C:\Windows\system32\xactengine3_5.dll
2014-06-07 20:11:02 ----A---- C:\Windows\system32\d3dcsx_42.dll
2014-06-07 20:11:02 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2014-06-07 20:11:01 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2014-06-07 20:11:01 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2014-06-07 20:11:01 ----A---- C:\Windows\system32\d3dx11_42.dll
2014-06-07 20:11:01 ----A---- C:\Windows\system32\d3dx10_42.dll
2014-06-07 20:11:00 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-06-07 20:11:00 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2014-06-07 20:11:00 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2014-06-07 20:11:00 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2014-06-07 20:11:00 ----A---- C:\Windows\system32\D3DX9_42.dll
2014-06-07 20:11:00 ----A---- C:\Windows\system32\D3DX9_41.dll
2014-06-07 20:11:00 ----A---- C:\Windows\system32\d3dx10_41.dll
2014-06-07 20:11:00 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2014-06-07 20:10:58 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2014-06-07 20:10:58 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2014-06-07 20:10:58 ----A---- C:\Windows\system32\XAudio2_4.dll
2014-06-07 20:10:58 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2014-06-07 20:10:57 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2014-06-07 20:10:57 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2014-06-07 20:10:57 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2014-06-07 20:10:57 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2014-06-07 20:10:57 ----A---- C:\Windows\system32\xactengine3_4.dll
2014-06-07 20:10:57 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2014-06-07 20:10:57 ----A---- C:\Windows\system32\d3dx10_40.dll
2014-06-07 20:10:57 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2014-06-07 20:10:56 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2014-06-07 20:10:56 ----A---- C:\Windows\system32\D3DX9_40.dll
2014-06-07 20:10:54 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2014-06-07 20:10:54 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2014-06-07 20:10:54 ----A---- C:\Windows\system32\XAudio2_3.dll
2014-06-07 20:10:54 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2014-06-07 20:10:52 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2014-06-07 20:10:52 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2014-06-07 20:10:52 ----A---- C:\Windows\system32\xactengine3_3.dll
2014-06-07 20:10:52 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2014-06-07 20:10:50 ----A---- C:\Windows\system32\XAudio2_2.dll
2014-06-07 20:10:50 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2014-06-07 20:10:49 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2014-06-07 20:10:49 ----A---- C:\Windows\system32\xactengine3_2.dll
2014-06-07 20:10:49 ----A---- C:\Windows\system32\D3DX9_39.dll
2014-06-07 20:10:49 ----A---- C:\Windows\system32\d3dx10_39.dll
2014-06-07 20:10:49 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2014-06-07 20:10:46 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2014-06-07 20:10:46 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2014-06-07 20:10:46 ----A---- C:\Windows\system32\XAudio2_1.dll
2014-06-07 20:10:46 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2014-06-07 20:10:44 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2014-06-07 20:10:44 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2014-06-07 20:10:44 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2014-06-07 20:10:44 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2014-06-07 20:10:44 ----A---- C:\Windows\system32\xactengine3_1.dll
2014-06-07 20:10:44 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2014-06-07 20:10:44 ----A---- C:\Windows\system32\d3dx10_38.dll
2014-06-07 20:10:44 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2014-06-07 20:10:43 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2014-06-07 20:10:43 ----A---- C:\Windows\system32\D3DX9_38.dll
2014-06-07 20:10:41 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2014-06-07 20:10:41 ----A---- C:\Windows\system32\XAudio2_0.dll
2014-06-07 20:10:38 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2014-06-07 20:10:38 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2014-06-07 20:10:38 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2014-06-07 20:10:38 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2014-06-07 20:10:38 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2014-06-07 20:10:38 ----A---- C:\Windows\system32\xactengine3_0.dll
2014-06-07 20:10:38 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2014-06-07 20:10:38 ----A---- C:\Windows\system32\D3DX9_37.dll
2014-06-07 20:10:38 ----A---- C:\Windows\system32\d3dx10_37.dll
2014-06-07 20:10:38 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2014-06-07 20:10:35 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2014-06-07 20:10:35 ----A---- C:\Windows\system32\xactengine2_10.dll
2014-06-07 20:10:34 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2014-06-07 20:10:34 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2014-06-07 20:10:34 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2014-06-07 20:10:34 ----A---- C:\Windows\system32\d3dx9_36.dll
2014-06-07 20:10:34 ----A---- C:\Windows\system32\d3dx10_36.dll
2014-06-07 20:10:34 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2014-06-07 20:10:33 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2014-06-07 20:10:33 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2014-06-07 20:10:33 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2014-06-07 20:10:33 ----A---- C:\Windows\system32\xactengine2_9.dll
2014-06-07 20:10:33 ----A---- C:\Windows\system32\d3dx10_35.dll
2014-06-07 20:10:33 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2014-06-07 20:10:32 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2014-06-07 20:10:32 ----A---- C:\Windows\system32\d3dx9_35.dll
2014-06-07 20:10:30 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2014-06-07 20:10:30 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2014-06-07 20:10:30 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2014-06-07 20:10:30 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2014-06-07 20:10:30 ----A---- C:\Windows\system32\xactengine2_8.dll
2014-06-07 20:10:30 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2014-06-07 20:10:30 ----A---- C:\Windows\system32\d3dx10_34.dll
2014-06-07 20:10:30 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2014-06-07 20:10:29 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2014-06-07 20:10:29 ----A---- C:\Windows\system32\d3dx9_34.dll
2014-06-07 20:10:26 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2014-06-07 20:10:26 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2014-06-07 20:10:26 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2014-06-07 20:10:26 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2014-06-07 20:10:26 ----A---- C:\Windows\system32\xactengine2_7.dll
2014-06-07 20:10:26 ----A---- C:\Windows\system32\d3dx9_33.dll
2014-06-07 20:10:26 ----A---- C:\Windows\system32\d3dx10_33.dll
2014-06-07 20:10:26 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2014-06-07 20:10:25 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2014-06-07 20:10:25 ----A---- C:\Windows\system32\xactengine2_6.dll
2014-06-07 20:10:23 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2014-06-07 20:10:23 ----A---- C:\Windows\system32\xactengine2_5.dll
2014-06-07 20:10:22 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2014-06-07 20:10:22 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2014-06-07 20:10:22 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2014-06-07 20:10:22 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2014-06-07 20:10:22 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2014-06-07 20:10:22 ----A---- C:\Windows\system32\xactengine2_4.dll
2014-06-07 20:10:22 ----A---- C:\Windows\system32\x3daudio1_1.dll
2014-06-07 20:10:22 ----A---- C:\Windows\system32\d3dx9_32.dll
2014-06-07 20:10:22 ----A---- C:\Windows\system32\d3dx9_31.dll
2014-06-07 20:10:22 ----A---- C:\Windows\system32\d3dx10.dll
2014-06-07 20:10:19 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2014-06-07 20:10:19 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2014-06-07 20:10:19 ----A---- C:\Windows\system32\xinput1_2.dll
2014-06-07 20:10:19 ----A---- C:\Windows\system32\xactengine2_3.dll
2014-06-07 20:10:16 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2014-06-07 20:10:16 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2014-06-07 20:10:16 ----A---- C:\Windows\system32\xinput1_1.dll
2014-06-07 20:10:16 ----A---- C:\Windows\system32\xactengine2_2.dll
2014-06-07 20:10:14 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2014-06-07 20:10:14 ----A---- C:\Windows\system32\xactengine2_1.dll
2014-06-07 20:10:10 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2014-06-07 20:10:10 ----A---- C:\Windows\system32\d3dx9_30.dll
2014-06-07 20:10:08 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2014-06-07 20:10:08 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2014-06-07 20:10:08 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2014-06-07 20:10:08 ----A---- C:\Windows\system32\xactengine2_0.dll
2014-06-07 20:10:08 ----A---- C:\Windows\system32\x3daudio1_0.dll
2014-06-07 20:10:08 ----A---- C:\Windows\system32\d3dx9_29.dll
2014-06-07 20:10:07 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2014-06-07 20:10:07 ----A---- C:\Windows\system32\d3dx9_28.dll
2014-06-07 20:10:06 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2014-06-07 20:10:06 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2014-06-07 20:10:06 ----A---- C:\Windows\system32\d3dx9_27.dll
2014-06-07 20:10:06 ----A---- C:\Windows\system32\d3dx9_26.dll
2014-06-07 20:01:56 ----D---- C:\Windows\SYSWOW64\directx
2014-06-07 08:40:37 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\.technic
2014-06-07 08:40:32 ----D---- C:\ProgramData\Sun
2014-06-07 08:40:23 ----D---- C:\ProgramData\Oracle
2014-06-07 08:40:09 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-06-07 08:40:02 ----D---- C:\Program Files (x86)\Java
2014-06-07 07:50:50 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Skype
2014-06-07 07:50:31 ----RD---- C:\Program Files (x86)\Skype
2014-06-07 07:50:14 ----D---- C:\ProgramData\Skype
2014-06-06 02:23:35 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2014-06-06 02:23:35 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2014-06-06 02:23:35 ----A---- C:\Windows\system32\d3dx9_25.dll
2014-06-06 02:23:35 ----A---- C:\Windows\system32\d3dx9_24.dll
2014-06-06 02:20:28 ----D---- C:\Program Files (x86)\EA GAMES
2014-06-06 02:17:22 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2014-06-06 02:17:18 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\DAEMON Tools Lite
2014-06-06 02:17:17 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2014-06-06 02:16:51 ----D---- C:\ProgramData\DAEMON Tools Lite
2014-06-03 07:39:22 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\PSpad
2014-06-03 07:39:18 ----D---- C:\Program Files (x86)\PSPad editor
2014-06-03 06:21:49 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\GHISLER
2014-06-03 06:21:49 ----D---- C:\totalcmd
2014-06-03 03:21:25 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-06-03 03:21:24 ----D---- C:\Windows\SYSWOW64\Macromed
2014-06-03 03:21:23 ----D---- C:\Windows\system32\Macromed
2014-06-02 22:25:23 ----D---- C:\Riot Games
2014-06-02 22:18:38 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Mozilla
2014-06-02 22:18:27 ----D---- C:\ProgramData\Mozilla
2014-06-02 22:18:27 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-06-02 22:18:25 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-06-02 21:53:34 ----A---- C:\Windows\svchost.com
2014-06-02 21:48:37 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\dclogs
2014-06-02 21:43:49 ----D---- C:\ProgramData\Malwarebytes
2014-06-02 21:42:48 ----D---- C:\Program Files (x86)\AVG
2014-06-02 21:33:10 ----HD---- C:\ProgramData\Common Files
2014-06-02 21:33:10 ----D---- C:\ProgramData\MFAData
2014-06-02 15:48:53 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Unity
2014-06-02 15:45:21 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Apple Computer
2014-06-02 15:45:17 ----D---- C:\ProgramData\Unity
2014-06-02 15:37:12 ----D---- C:\Program Files (x86)\Unity
2014-06-02 06:25:11 ----A---- C:\Windows\system32\drivers\{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64.sys
2014-06-01 23:39:45 ----D---- C:\ProgramData\Caphyon
2014-06-01 23:36:20 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Quadcore Games
2014-05-31 02:57:47 ----D---- C:\ProgramData\Adobe
2014-05-31 02:57:44 ----D---- C:\Program Files (x86)\Adobe
2014-05-27 14:52:51 ----D---- C:\Windows\Injector by .United
2014-05-26 14:31:45 ----A---- C:\Windows\SYSWOW64\EasyAntiCheat.exe
2014-05-25 12:22:57 ----D---- C:\ProgramData\LumaEmu_SteamCloud
2014-05-25 11:52:19 ----D---- C:\ProgramData\Package Cache
2014-05-25 11:45:57 ----D---- C:\Rust 14.03 pro rusted.cz
2014-05-25 02:38:59 ----D---- C:\ProgramData\RELOADED
2014-05-24 19:24:23 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\uTorrent
2014-05-23 10:38:52 ----A---- C:\Windows\SYSWOW64\drivers\stflt.sys
2014-05-22 14:56:19 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\MAXON
2014-05-22 14:54:04 ----D---- C:\Cinema 4d studio r12
2014-05-22 11:15:53 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\NVIDIA
2014-05-22 11:13:14 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\LolClient
2014-05-22 11:13:12 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Macromedia
2014-05-22 11:13:11 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Adobe
2014-05-22 01:30:41 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\BANDISOFT
2014-05-22 01:30:15 ----D---- C:\Program Files (x86)\Bandicam
2014-05-22 01:30:10 ----D---- C:\Program Files (x86)\BandiMPEG1
2014-05-22 01:22:24 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\wi_upd
2014-05-22 01:20:56 ----D---- C:\ProgramData\YoutubeAdblocker
2014-05-22 01:20:34 ----D---- C:\ProgramData\savEi Net
2014-05-22 01:20:10 ----D---- C:\ProgramData\7f73049dbbb3cb15
2014-05-22 01:19:37 ----D---- C:\ProgramData\InstallMate
2014-05-22 01:13:37 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2014-05-22 01:13:37 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2014-05-22 01:13:37 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2014-05-22 01:13:37 ----A---- C:\Windows\system32\XAudio2_7.dll
2014-05-22 01:13:37 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2014-05-22 01:13:37 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2014-05-22 01:13:36 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2014-05-22 01:13:36 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2014-05-22 01:13:36 ----A---- C:\Windows\system32\D3DX9_43.dll
2014-05-22 01:13:36 ----A---- C:\Windows\system32\d3dx11_43.dll
2014-05-22 01:13:35 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2014-05-22 01:13:35 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2014-05-22 01:13:35 ----A---- C:\Windows\system32\xinput1_3.dll
2014-05-22 01:13:35 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2014-05-22 01:10:46 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\WinRAR
2014-05-22 01:10:29 ----D---- C:\Program Files\WinRAR
2014-05-22 01:01:45 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-05-22 00:59:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-05-22 00:58:06 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2014-05-22 00:58:06 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2014-05-22 00:58:06 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2014-05-22 00:58:06 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2014-05-22 00:58:06 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2014-05-22 00:58:06 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2014-05-22 00:58:06 ----A---- C:\Windows\system32\PresentationHost.exe
2014-05-22 00:58:06 ----A---- C:\Windows\system32\netfxperf.dll
2014-05-22 00:58:06 ----A---- C:\Windows\system32\mscoree.dll
2014-05-22 00:58:06 ----A---- C:\Windows\system32\dfshim.dll
2014-05-22 00:55:02 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2014-05-22 00:55:02 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2014-05-22 00:55:02 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2014-05-22 00:55:02 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2014-05-22 00:55:02 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2014-05-22 00:54:47 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2014-05-22 00:41:26 ----D---- C:\ProgramData\PMB Files
2014-05-22 00:41:22 ----D---- C:\Program Files (x86)\Pando Networks
2014-05-22 00:40:58 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Riot Games
2014-05-22 00:22:26 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Zoner
2014-05-22 00:22:17 ----D---- C:\ProgramData\Zoner
2014-05-22 00:22:01 ----D---- C:\Program Files\Zoner
2014-05-21 23:41:25 ----D---- C:\ProgramData\NVIDIA
2014-05-21 23:30:00 ----A---- C:\Windows\system32\nvvsvc.exe
2014-05-21 23:30:00 ----A---- C:\Windows\system32\nvsvcr.dll
2014-05-21 23:30:00 ----A---- C:\Windows\system32\nvsvc64.dll
2014-05-21 23:30:00 ----A---- C:\Windows\system32\nvshext.dll
2014-05-21 23:30:00 ----A---- C:\Windows\system32\nvmctray.dll
2014-05-21 23:30:00 ----A---- C:\Windows\system32\nvcpl.dll
2014-05-21 23:29:38 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-05-21 23:29:38 ----A---- C:\Windows\system32\OpenCL.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvwgf2umx.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvopencl.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvoglv64.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\NvIFR64.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\NvFBC64.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvdispgenco6433495.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvdispco6433495.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvd3dumx.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvcuvid.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvcuvenc.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvcuda.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvcompiler.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvapi64.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2014-05-21 23:27:00 ----D---- C:\Program Files\NVIDIA Corporation
2014-05-21 23:15:14 ----D---- C:\Program Files (x86)\Steam
2014-05-21 22:47:00 ----A---- C:\Windows\system32\drivers\Cat.DB
2014-05-21 22:46:59 ----A---- C:\Windows\system32\drivers\pctEFA64.sys
2014-05-21 22:46:59 ----A---- C:\Windows\system32\drivers\pctDS64.sys
2014-05-21 22:46:58 ----A---- C:\Windows\system32\drivers\PCTCore64.sys
2014-05-21 22:46:55 ----A---- C:\Windows\system32\drivers\PCTSD64.sys
2014-05-21 22:46:04 ----D---- C:\ProgramData\TEMP
2014-05-21 22:46:03 ----D---- C:\ProgramData\PC Tools
2014-05-21 22:37:59 ----D---- C:\Windows\Minidump
2014-05-21 21:42:22 ----D---- C:\Windows\Panther
2014-05-21 21:32:38 ----N---- C:\Windows\system32\MpSigStub.exe
2014-05-21 21:28:59 ----D---- C:\Temp
2014-05-21 21:28:27 ----D---- C:\ProgramData\NVIDIA Corporation
2014-05-21 21:24:43 ----A---- C:\Windows\directx.sys
2014-05-21 21:22:00 ----SHD---- C:\Windows\Installer
2014-05-21 21:17:04 ----D---- C:\Program Files (x86)\Google
2014-05-21 21:14:11 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Identities
2014-05-21 21:12:38 ----SD---- C:\Users\KryštofČuřík\AppData\Roaming\Microsoft
2014-05-21 21:12:38 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Media Center Programs
2014-05-21 21:12:01 ----SHD---- C:\Recovery
2014-05-21 21:12:01 ----SHD---- C:\ProgramData\Šablony
2014-05-21 21:12:01 ----SHD---- C:\ProgramData\Plocha
2014-05-21 21:12:01 ----SHD---- C:\ProgramData\Oblíbené položky
2014-05-21 21:12:01 ----SHD---- C:\ProgramData\Nabídka Start
2014-05-21 21:12:01 ----SHD---- C:\ProgramData\Dokumenty
2014-05-21 21:12:01 ----SHD---- C:\ProgramData\Data aplikací
2014-05-21 20:46:25 ----D---- C:\Windows\SoftwareDistribution
2014-05-21 20:43:47 ----D---- C:\Windows\Prefetch
2014-05-21 20:43:36 ----ASH---- C:\pagefile.sys
2014-05-21 20:43:32 ----SHD---- C:\System Volume Information
2014-05-21 20:43:32 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 1 month======
2014-06-13 11:45:12 ----RD---- C:\Program Files
2014-06-13 11:45:12 ----D---- C:\Windows\Temp
2014-06-13 11:35:00 ----RD---- C:\Users
2014-06-13 06:52:10 ----SD---- C:\ProgramData\Microsoft
2014-06-13 03:21:36 ----D---- C:\Windows\System32
2014-06-13 03:21:36 ----D---- C:\Windows\inf
2014-06-13 03:21:36 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-06-13 03:19:01 ----D---- C:\Windows\system32\wdi
2014-06-12 13:23:03 ----RD---- C:\Program Files (x86)
2014-06-12 07:09:51 ----D---- C:\Windows\Tasks
2014-06-12 07:09:51 ----D---- C:\Windows\system32\Tasks
2014-06-12 06:38:11 ----D---- C:\Windows\SysWOW64
2014-06-12 06:37:12 ----HD---- C:\ProgramData
2014-06-12 03:13:51 ----D---- C:\Windows\system32\config
2014-06-11 03:44:03 ----D---- C:\Windows\winsxs
2014-06-11 03:43:54 ----D---- C:\Windows\Logs
2014-06-11 03:38:11 ----D---- C:\Program Files (x86)\Common Files
2014-06-08 04:28:26 ----RSD---- C:\Windows\assembly
2014-06-08 04:25:25 ----D---- C:\Windows
2014-06-08 00:20:07 ----D---- C:\Windows\system32\NDF
2014-06-06 02:23:35 ----D---- C:\Windows\Microsoft.NET
2014-06-06 02:17:45 ----D---- C:\Windows\system32\drivers
2014-06-06 02:17:44 ----D---- C:\Windows\system32\catroot
2014-06-06 02:17:43 ----D---- C:\Windows\system32\DriverStore
2014-06-02 22:04:47 ----D---- C:\Windows\system32\catroot2
2014-06-02 22:04:39 ----SHD---- C:\$Recycle.Bin
2014-06-02 21:40:20 ----D---- C:\Windows\debug
2014-06-02 07:52:16 ----A---- C:\Windows\win.ini
2014-05-25 16:23:11 ----D---- C:\Windows\SYSWOW64\drivers
2014-05-24 04:47:25 ----D---- C:\Windows\system32\LogFiles
2014-05-22 01:22:57 ----HD---- C:\Windows\system32\GroupPolicy
2014-05-22 01:22:57 ----D---- C:\Windows\SYSWOW64\GroupPolicy
2014-05-22 01:02:13 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-05-22 01:02:13 ----D---- C:\Windows\system32\cs-CZ
2014-05-22 00:59:46 ----D---- C:\Windows\SYSWOW64\en-US
2014-05-22 00:59:46 ----D---- C:\Windows\system32\en-US
2014-05-22 00:48:36 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-05-21 23:29:57 ----D---- C:\Windows\Help
2014-05-21 22:36:54 ----D---- C:\Windows\LiveKernelReports
2014-05-21 21:41:53 ----D---- C:\Windows\Setup
2014-05-21 21:32:23 ----D---- C:\Windows\system32\restore
2014-05-21 21:12:42 ----D---- C:\Windows\rescache
2014-05-21 21:12:01 ----D---- C:\Program Files\Windows NT
2014-05-21 20:58:13 ----D---- C:\Windows\system32\CodeIntegrity
2014-05-21 20:46:38 ----D---- C:\Windows\system32\sysprep
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 PCTCore;PCTools KDS; C:\Windows\system32\drivers\PCTCore64.sys [2012-10-22 413448]
R0 pctDS;PC Tools Data Store; C:\Windows\system32\drivers\pctDS64.sys [2012-02-28 453896]
R0 pctEFA;PC Tools Extended File Attributes; C:\Windows\system32\drivers\pctEFA64.sys [2012-02-28 1096176]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 {b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64;{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64; C:\Windows\system32\drivers\{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64.sys [2014-05-22 61112]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-06-06 283064]
R1 PCTSD;PC Tools Spyware Doctor Driver; C:\Windows\System32\Drivers\PCTSD64.sys [2012-11-01 253256]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-14 79360]
R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 64bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-07-14 109056]
R3 TPM;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-07-14 551936]
S3 e1yexpress;Ovladač gigabitových síťových připojení Intel(R); C:\Windows\system32\DRIVERS\e1y60x64.sys [2009-06-10 281088]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-02-14 923936]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc []
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-06-07 356480]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-03 257712]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2014-02-25 93048]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc []
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-06-13 160880]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
chybové hlášky:
Windows systém nemůže najít položku user..../Temp/3582-490/soubor
nebo dokonce
Změní bitovou frekvenci programů na 32bit i když jsou programy určený pro 64bitovej systém (programy mě potom vyhazují hlášky typu: není kompatibilní s verzí 64xBit)
díky.
Logfile of random's system information tool 1.10 (written by random/random)
Run by KryštofČuřík at 2014-06-13 11:45:11
Microsoft Windows 7 Home Premium
System drive C: has 131 GB (55%) free of 238 GB
Total RAM: 3996 MB (46% free)
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
"C:\Windows\system32\Dwm.exe"
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\Explorer.EXE
"taskhost.exe"
"C:\Users\KRYTOF~1\AppData\Local\Temp\3582-490\msdcsc.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
notepad
C:\PROGRA~1\Zoner\PHOTOS~1\PROGRA~1\ZPSTray.exe
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\svchost.exe -k SDRSVC
"taskhost.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\RIOTGA~1\LEAGUE~1\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
LoLLauncher.exe
C:/RIOTGA~1/LEAGUE~1/RADS/projects/lol_air_client/releases/0.0.1.94/deploy/LolClient.exe -runtime .\ -nodebug META-INF\AIR\application.xml .\ -- 8393
C:\Users\KRYTOF~1\AppData\Local\Temp\3582-490\Launcher.exe
C:\PROGRA~2\MOZILL~1\firefox.exe
cmd /c ""C:\Users\KryštofČuřík\AppData\Local\Temp\3582-490\startmetin2.bat""
\??\C:\Windows\system32\conhost.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe41_ Global\UsGthrCtrlFltPipeMssGthrPipe41 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 504 508 516 65536 512
C:\Users\KRYTOF~1\DOWNLO~1\RSITx64.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\PROGRA~1\TRENDM~1\KRYTOF~1.EXE /silentautolog
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\KryštofČuřík\AppData\Roaming\Mozilla\Firefox\Profiles\16qs64pn.default
prefs.js - "browser.startup.homepage" - "http://google.cz/"
prefs.js - "keyword.URL" - "http://websearch.eazytosearch.info/?pid ... =CZ&l=1&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.5.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre8\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.5.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre8\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 13.0.0.214 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll
C:\Users\KryštofČuřík\AppData\Roaming\Mozilla\Firefox\Profiles\16qs64pn.default\searchplugins\
WebSearch.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4129AD7-78D6-FC6B-3652-75C34D8088CD}]
save On - C:\Program Files (x86)\save On\ceWgnIZ_Sm.x64.dll [2014-06-12 472064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files (x86)\Java\jre8\bin\ssv.dll [2014-06-07 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C9C42510-9B41-42c1-9DCD-7282A2D07C61}C]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4129AD7-78D6-FC6B-3652-75C34D8088CD}]
save On - C:\Program Files (x86)\save On\ceWgnIZ_Sm.dll [2014-06-12 423936]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre8\bin\jp2ssv.dll [2014-06-07 171944]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"iLivid"=C:\Users\KryštofČuřík\AppData\Local\iLivid\iLivid.exe -autorun []
"MicroUpdate"=C:\Users\KryštofČuřík\Documents\MSDCSC\D0voaetUiV3f\msdcsc.exe [2014-06-13 1533460]
"DAEMON Tools Lite"=C:\PROGRA~2\DAEMON~1\DTLite.exe [2014-06-13 3738384]
"Zoner Photo Studio Autoupdate"=C:\PROGRAM FILES\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE [2012-10-18 752736]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"mobilegeni daemon"=C:\Program Files (x86)\Mobogenie\DaemonProcess.exe []
"Mirosoft Services"=C:\Users\KryštofČuřík\AppData\Roaming\Microsoft\Windows\Templates\Microsoft Services\services.exe []
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate []
"SunJavaUpdateSched"=C:\Program Files (x86)\Java\jre8\bin\jusched.exe []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.mjpg"=bdmjpeg64.dll
"vidc.mpeg"=bdmpegv64.dll
"msacm.bdmpeg"=bdmpega64.acm
======File associations======
.exe - open - C:\Windows\svchost.com "%1" %*
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-06-13 11:45:12 ----D---- C:\Program Files\trend micro
2014-06-13 11:45:11 ----D---- C:\rsit
2014-06-12 13:23:03 ----D---- C:\Program Files (x86)\Bound By Flame
2014-06-12 09:17:19 ----D---- C:\Program Files (x86)\QuadCoreM2
2014-06-12 06:37:12 ----D---- C:\ProgramData\Supersoftware App
2014-06-12 06:37:12 ----D---- C:\ProgramData\Seearch-NewTaB
2014-06-12 06:37:12 ----D---- C:\Program Files (x86)\Seearch-NewTaB
2014-06-12 06:36:48 ----D---- C:\ProgramData\Supersoftware
2014-06-12 06:36:08 ----D---- C:\ProgramData\save On
2014-06-12 06:36:08 ----D---- C:\Program Files (x86)\save On
2014-06-11 10:33:39 ----D---- C:\Program Files\Electronic Arts
2014-06-11 04:03:41 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-06-11 04:03:41 ----D---- C:\Program Files (x86)\AGEIA Technologies
2014-06-11 03:38:04 ----D---- C:\ProgramData\Steam
2014-06-11 03:18:24 ----D---- C:\Program Files (x86)\Kaos Studios
2014-06-10 09:14:37 ----D---- C:\Python27
2014-06-10 06:32:34 ----A---- C:\Windows\SYSWOW64\javaws.exe
2014-06-10 06:32:34 ----A---- C:\Windows\SYSWOW64\javaw.exe
2014-06-10 06:32:34 ----A---- C:\Windows\SYSWOW64\java.exe
2014-06-10 06:31:02 ----A---- C:\Windows\SYSWOW64\msxml4.dll
2014-06-10 06:31:01 ----A---- C:\Windows\SYSWOW64\msxml4r.dll
2014-06-10 06:31:01 ----A---- C:\Windows\SYSWOW64\msxml4a.dll
2014-06-10 06:30:57 ----D---- C:\Program Files (x86)\SourceTec
2014-06-08 21:06:52 ----D---- C:\Program Files (x86)\Scirra
2014-06-08 04:27:11 ----D---- C:\Program Files (x86)\GameSpy Arcade
2014-06-08 04:24:24 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-06-08 01:03:11 ----A---- C:\Windows\SYSWOW64\FODBCLib.dll
2014-06-08 01:03:08 ----D---- C:\ProgramData\SendMails
2014-06-08 01:03:08 ----D---- C:\ProgramData\Microsoft NT Ident
2014-06-07 22:19:56 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Scirra
2014-06-07 20:26:19 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\OBS
2014-06-07 20:11:10 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2014-06-07 20:11:10 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2014-06-07 20:11:10 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2014-06-07 20:11:10 ----A---- C:\Windows\system32\xactengine3_7.dll
2014-06-07 20:11:10 ----A---- C:\Windows\system32\d3dx10_43.dll
2014-06-07 20:11:10 ----A---- C:\Windows\system32\d3dcsx_43.dll
2014-06-07 20:11:09 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2014-06-07 20:11:09 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2014-06-07 20:11:09 ----A---- C:\Windows\system32\XAudio2_6.dll
2014-06-07 20:11:09 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2014-06-07 20:11:07 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2014-06-07 20:11:07 ----A---- C:\Windows\system32\xactengine3_6.dll
2014-06-07 20:11:04 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2014-06-07 20:11:04 ----A---- C:\Windows\system32\XAudio2_5.dll
2014-06-07 20:11:02 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2014-06-07 20:11:02 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2014-06-07 20:11:02 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2014-06-07 20:11:02 ----A---- C:\Windows\system32\xactengine3_5.dll
2014-06-07 20:11:02 ----A---- C:\Windows\system32\d3dcsx_42.dll
2014-06-07 20:11:02 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2014-06-07 20:11:01 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2014-06-07 20:11:01 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2014-06-07 20:11:01 ----A---- C:\Windows\system32\d3dx11_42.dll
2014-06-07 20:11:01 ----A---- C:\Windows\system32\d3dx10_42.dll
2014-06-07 20:11:00 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2014-06-07 20:11:00 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2014-06-07 20:11:00 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2014-06-07 20:11:00 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2014-06-07 20:11:00 ----A---- C:\Windows\system32\D3DX9_42.dll
2014-06-07 20:11:00 ----A---- C:\Windows\system32\D3DX9_41.dll
2014-06-07 20:11:00 ----A---- C:\Windows\system32\d3dx10_41.dll
2014-06-07 20:11:00 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2014-06-07 20:10:58 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2014-06-07 20:10:58 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2014-06-07 20:10:58 ----A---- C:\Windows\system32\XAudio2_4.dll
2014-06-07 20:10:58 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2014-06-07 20:10:57 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2014-06-07 20:10:57 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2014-06-07 20:10:57 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2014-06-07 20:10:57 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2014-06-07 20:10:57 ----A---- C:\Windows\system32\xactengine3_4.dll
2014-06-07 20:10:57 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2014-06-07 20:10:57 ----A---- C:\Windows\system32\d3dx10_40.dll
2014-06-07 20:10:57 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2014-06-07 20:10:56 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2014-06-07 20:10:56 ----A---- C:\Windows\system32\D3DX9_40.dll
2014-06-07 20:10:54 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2014-06-07 20:10:54 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2014-06-07 20:10:54 ----A---- C:\Windows\system32\XAudio2_3.dll
2014-06-07 20:10:54 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2014-06-07 20:10:52 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2014-06-07 20:10:52 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2014-06-07 20:10:52 ----A---- C:\Windows\system32\xactengine3_3.dll
2014-06-07 20:10:52 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2014-06-07 20:10:50 ----A---- C:\Windows\system32\XAudio2_2.dll
2014-06-07 20:10:50 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2014-06-07 20:10:49 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2014-06-07 20:10:49 ----A---- C:\Windows\system32\xactengine3_2.dll
2014-06-07 20:10:49 ----A---- C:\Windows\system32\D3DX9_39.dll
2014-06-07 20:10:49 ----A---- C:\Windows\system32\d3dx10_39.dll
2014-06-07 20:10:49 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2014-06-07 20:10:46 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2014-06-07 20:10:46 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2014-06-07 20:10:46 ----A---- C:\Windows\system32\XAudio2_1.dll
2014-06-07 20:10:46 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2014-06-07 20:10:44 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2014-06-07 20:10:44 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2014-06-07 20:10:44 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2014-06-07 20:10:44 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2014-06-07 20:10:44 ----A---- C:\Windows\system32\xactengine3_1.dll
2014-06-07 20:10:44 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2014-06-07 20:10:44 ----A---- C:\Windows\system32\d3dx10_38.dll
2014-06-07 20:10:44 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2014-06-07 20:10:43 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2014-06-07 20:10:43 ----A---- C:\Windows\system32\D3DX9_38.dll
2014-06-07 20:10:41 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2014-06-07 20:10:41 ----A---- C:\Windows\system32\XAudio2_0.dll
2014-06-07 20:10:38 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2014-06-07 20:10:38 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2014-06-07 20:10:38 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2014-06-07 20:10:38 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2014-06-07 20:10:38 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2014-06-07 20:10:38 ----A---- C:\Windows\system32\xactengine3_0.dll
2014-06-07 20:10:38 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2014-06-07 20:10:38 ----A---- C:\Windows\system32\D3DX9_37.dll
2014-06-07 20:10:38 ----A---- C:\Windows\system32\d3dx10_37.dll
2014-06-07 20:10:38 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2014-06-07 20:10:35 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2014-06-07 20:10:35 ----A---- C:\Windows\system32\xactengine2_10.dll
2014-06-07 20:10:34 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2014-06-07 20:10:34 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2014-06-07 20:10:34 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2014-06-07 20:10:34 ----A---- C:\Windows\system32\d3dx9_36.dll
2014-06-07 20:10:34 ----A---- C:\Windows\system32\d3dx10_36.dll
2014-06-07 20:10:34 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2014-06-07 20:10:33 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2014-06-07 20:10:33 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2014-06-07 20:10:33 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2014-06-07 20:10:33 ----A---- C:\Windows\system32\xactengine2_9.dll
2014-06-07 20:10:33 ----A---- C:\Windows\system32\d3dx10_35.dll
2014-06-07 20:10:33 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2014-06-07 20:10:32 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2014-06-07 20:10:32 ----A---- C:\Windows\system32\d3dx9_35.dll
2014-06-07 20:10:30 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2014-06-07 20:10:30 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2014-06-07 20:10:30 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2014-06-07 20:10:30 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2014-06-07 20:10:30 ----A---- C:\Windows\system32\xactengine2_8.dll
2014-06-07 20:10:30 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2014-06-07 20:10:30 ----A---- C:\Windows\system32\d3dx10_34.dll
2014-06-07 20:10:30 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2014-06-07 20:10:29 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2014-06-07 20:10:29 ----A---- C:\Windows\system32\d3dx9_34.dll
2014-06-07 20:10:26 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2014-06-07 20:10:26 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2014-06-07 20:10:26 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2014-06-07 20:10:26 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2014-06-07 20:10:26 ----A---- C:\Windows\system32\xactengine2_7.dll
2014-06-07 20:10:26 ----A---- C:\Windows\system32\d3dx9_33.dll
2014-06-07 20:10:26 ----A---- C:\Windows\system32\d3dx10_33.dll
2014-06-07 20:10:26 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2014-06-07 20:10:25 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2014-06-07 20:10:25 ----A---- C:\Windows\system32\xactengine2_6.dll
2014-06-07 20:10:23 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2014-06-07 20:10:23 ----A---- C:\Windows\system32\xactengine2_5.dll
2014-06-07 20:10:22 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2014-06-07 20:10:22 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2014-06-07 20:10:22 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2014-06-07 20:10:22 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2014-06-07 20:10:22 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2014-06-07 20:10:22 ----A---- C:\Windows\system32\xactengine2_4.dll
2014-06-07 20:10:22 ----A---- C:\Windows\system32\x3daudio1_1.dll
2014-06-07 20:10:22 ----A---- C:\Windows\system32\d3dx9_32.dll
2014-06-07 20:10:22 ----A---- C:\Windows\system32\d3dx9_31.dll
2014-06-07 20:10:22 ----A---- C:\Windows\system32\d3dx10.dll
2014-06-07 20:10:19 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2014-06-07 20:10:19 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2014-06-07 20:10:19 ----A---- C:\Windows\system32\xinput1_2.dll
2014-06-07 20:10:19 ----A---- C:\Windows\system32\xactengine2_3.dll
2014-06-07 20:10:16 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2014-06-07 20:10:16 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2014-06-07 20:10:16 ----A---- C:\Windows\system32\xinput1_1.dll
2014-06-07 20:10:16 ----A---- C:\Windows\system32\xactengine2_2.dll
2014-06-07 20:10:14 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2014-06-07 20:10:14 ----A---- C:\Windows\system32\xactengine2_1.dll
2014-06-07 20:10:10 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2014-06-07 20:10:10 ----A---- C:\Windows\system32\d3dx9_30.dll
2014-06-07 20:10:08 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2014-06-07 20:10:08 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2014-06-07 20:10:08 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2014-06-07 20:10:08 ----A---- C:\Windows\system32\xactengine2_0.dll
2014-06-07 20:10:08 ----A---- C:\Windows\system32\x3daudio1_0.dll
2014-06-07 20:10:08 ----A---- C:\Windows\system32\d3dx9_29.dll
2014-06-07 20:10:07 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2014-06-07 20:10:07 ----A---- C:\Windows\system32\d3dx9_28.dll
2014-06-07 20:10:06 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2014-06-07 20:10:06 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2014-06-07 20:10:06 ----A---- C:\Windows\system32\d3dx9_27.dll
2014-06-07 20:10:06 ----A---- C:\Windows\system32\d3dx9_26.dll
2014-06-07 20:01:56 ----D---- C:\Windows\SYSWOW64\directx
2014-06-07 08:40:37 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\.technic
2014-06-07 08:40:32 ----D---- C:\ProgramData\Sun
2014-06-07 08:40:23 ----D---- C:\ProgramData\Oracle
2014-06-07 08:40:09 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2014-06-07 08:40:02 ----D---- C:\Program Files (x86)\Java
2014-06-07 07:50:50 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Skype
2014-06-07 07:50:31 ----RD---- C:\Program Files (x86)\Skype
2014-06-07 07:50:14 ----D---- C:\ProgramData\Skype
2014-06-06 02:23:35 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2014-06-06 02:23:35 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2014-06-06 02:23:35 ----A---- C:\Windows\system32\d3dx9_25.dll
2014-06-06 02:23:35 ----A---- C:\Windows\system32\d3dx9_24.dll
2014-06-06 02:20:28 ----D---- C:\Program Files (x86)\EA GAMES
2014-06-06 02:17:22 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2014-06-06 02:17:18 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\DAEMON Tools Lite
2014-06-06 02:17:17 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2014-06-06 02:16:51 ----D---- C:\ProgramData\DAEMON Tools Lite
2014-06-03 07:39:22 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\PSpad
2014-06-03 07:39:18 ----D---- C:\Program Files (x86)\PSPad editor
2014-06-03 06:21:49 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\GHISLER
2014-06-03 06:21:49 ----D---- C:\totalcmd
2014-06-03 03:21:25 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-06-03 03:21:24 ----D---- C:\Windows\SYSWOW64\Macromed
2014-06-03 03:21:23 ----D---- C:\Windows\system32\Macromed
2014-06-02 22:25:23 ----D---- C:\Riot Games
2014-06-02 22:18:38 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Mozilla
2014-06-02 22:18:27 ----D---- C:\ProgramData\Mozilla
2014-06-02 22:18:27 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-06-02 22:18:25 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-06-02 21:53:34 ----A---- C:\Windows\svchost.com
2014-06-02 21:48:37 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\dclogs
2014-06-02 21:43:49 ----D---- C:\ProgramData\Malwarebytes
2014-06-02 21:42:48 ----D---- C:\Program Files (x86)\AVG
2014-06-02 21:33:10 ----HD---- C:\ProgramData\Common Files
2014-06-02 21:33:10 ----D---- C:\ProgramData\MFAData
2014-06-02 15:48:53 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Unity
2014-06-02 15:45:21 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Apple Computer
2014-06-02 15:45:17 ----D---- C:\ProgramData\Unity
2014-06-02 15:37:12 ----D---- C:\Program Files (x86)\Unity
2014-06-02 06:25:11 ----A---- C:\Windows\system32\drivers\{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64.sys
2014-06-01 23:39:45 ----D---- C:\ProgramData\Caphyon
2014-06-01 23:36:20 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Quadcore Games
2014-05-31 02:57:47 ----D---- C:\ProgramData\Adobe
2014-05-31 02:57:44 ----D---- C:\Program Files (x86)\Adobe
2014-05-27 14:52:51 ----D---- C:\Windows\Injector by .United
2014-05-26 14:31:45 ----A---- C:\Windows\SYSWOW64\EasyAntiCheat.exe
2014-05-25 12:22:57 ----D---- C:\ProgramData\LumaEmu_SteamCloud
2014-05-25 11:52:19 ----D---- C:\ProgramData\Package Cache
2014-05-25 11:45:57 ----D---- C:\Rust 14.03 pro rusted.cz
2014-05-25 02:38:59 ----D---- C:\ProgramData\RELOADED
2014-05-24 19:24:23 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\uTorrent
2014-05-23 10:38:52 ----A---- C:\Windows\SYSWOW64\drivers\stflt.sys
2014-05-22 14:56:19 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\MAXON
2014-05-22 14:54:04 ----D---- C:\Cinema 4d studio r12
2014-05-22 11:15:53 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\NVIDIA
2014-05-22 11:13:14 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\LolClient
2014-05-22 11:13:12 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Macromedia
2014-05-22 11:13:11 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Adobe
2014-05-22 01:30:41 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\BANDISOFT
2014-05-22 01:30:15 ----D---- C:\Program Files (x86)\Bandicam
2014-05-22 01:30:10 ----D---- C:\Program Files (x86)\BandiMPEG1
2014-05-22 01:22:24 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\wi_upd
2014-05-22 01:20:56 ----D---- C:\ProgramData\YoutubeAdblocker
2014-05-22 01:20:34 ----D---- C:\ProgramData\savEi Net
2014-05-22 01:20:10 ----D---- C:\ProgramData\7f73049dbbb3cb15
2014-05-22 01:19:37 ----D---- C:\ProgramData\InstallMate
2014-05-22 01:13:37 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2014-05-22 01:13:37 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2014-05-22 01:13:37 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2014-05-22 01:13:37 ----A---- C:\Windows\system32\XAudio2_7.dll
2014-05-22 01:13:37 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2014-05-22 01:13:37 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2014-05-22 01:13:36 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2014-05-22 01:13:36 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2014-05-22 01:13:36 ----A---- C:\Windows\system32\D3DX9_43.dll
2014-05-22 01:13:36 ----A---- C:\Windows\system32\d3dx11_43.dll
2014-05-22 01:13:35 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2014-05-22 01:13:35 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2014-05-22 01:13:35 ----A---- C:\Windows\system32\xinput1_3.dll
2014-05-22 01:13:35 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2014-05-22 01:10:46 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\WinRAR
2014-05-22 01:10:29 ----D---- C:\Program Files\WinRAR
2014-05-22 01:01:45 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2014-05-22 00:59:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-05-22 00:58:06 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2014-05-22 00:58:06 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2014-05-22 00:58:06 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2014-05-22 00:58:06 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2014-05-22 00:58:06 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2014-05-22 00:58:06 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2014-05-22 00:58:06 ----A---- C:\Windows\system32\PresentationHost.exe
2014-05-22 00:58:06 ----A---- C:\Windows\system32\netfxperf.dll
2014-05-22 00:58:06 ----A---- C:\Windows\system32\mscoree.dll
2014-05-22 00:58:06 ----A---- C:\Windows\system32\dfshim.dll
2014-05-22 00:55:02 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2014-05-22 00:55:02 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2014-05-22 00:55:02 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2014-05-22 00:55:02 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2014-05-22 00:55:02 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2014-05-22 00:54:47 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2014-05-22 00:41:26 ----D---- C:\ProgramData\PMB Files
2014-05-22 00:41:22 ----D---- C:\Program Files (x86)\Pando Networks
2014-05-22 00:40:58 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Riot Games
2014-05-22 00:22:26 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Zoner
2014-05-22 00:22:17 ----D---- C:\ProgramData\Zoner
2014-05-22 00:22:01 ----D---- C:\Program Files\Zoner
2014-05-21 23:41:25 ----D---- C:\ProgramData\NVIDIA
2014-05-21 23:30:00 ----A---- C:\Windows\system32\nvvsvc.exe
2014-05-21 23:30:00 ----A---- C:\Windows\system32\nvsvcr.dll
2014-05-21 23:30:00 ----A---- C:\Windows\system32\nvsvc64.dll
2014-05-21 23:30:00 ----A---- C:\Windows\system32\nvshext.dll
2014-05-21 23:30:00 ----A---- C:\Windows\system32\nvmctray.dll
2014-05-21 23:30:00 ----A---- C:\Windows\system32\nvcpl.dll
2014-05-21 23:29:38 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2014-05-21 23:29:38 ----A---- C:\Windows\system32\OpenCL.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2014-05-21 23:28:25 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvwgf2umx.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvopencl.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvoglv64.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\NvIFR64.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\NvFBC64.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvdispgenco6433495.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvdispco6433495.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvd3dumx.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvcuvid.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvcuvenc.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvcuda.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvcompiler.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\nvapi64.dll
2014-05-21 23:28:25 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2014-05-21 23:27:00 ----D---- C:\Program Files\NVIDIA Corporation
2014-05-21 23:15:14 ----D---- C:\Program Files (x86)\Steam
2014-05-21 22:47:00 ----A---- C:\Windows\system32\drivers\Cat.DB
2014-05-21 22:46:59 ----A---- C:\Windows\system32\drivers\pctEFA64.sys
2014-05-21 22:46:59 ----A---- C:\Windows\system32\drivers\pctDS64.sys
2014-05-21 22:46:58 ----A---- C:\Windows\system32\drivers\PCTCore64.sys
2014-05-21 22:46:55 ----A---- C:\Windows\system32\drivers\PCTSD64.sys
2014-05-21 22:46:04 ----D---- C:\ProgramData\TEMP
2014-05-21 22:46:03 ----D---- C:\ProgramData\PC Tools
2014-05-21 22:37:59 ----D---- C:\Windows\Minidump
2014-05-21 21:42:22 ----D---- C:\Windows\Panther
2014-05-21 21:32:38 ----N---- C:\Windows\system32\MpSigStub.exe
2014-05-21 21:28:59 ----D---- C:\Temp
2014-05-21 21:28:27 ----D---- C:\ProgramData\NVIDIA Corporation
2014-05-21 21:24:43 ----A---- C:\Windows\directx.sys
2014-05-21 21:22:00 ----SHD---- C:\Windows\Installer
2014-05-21 21:17:04 ----D---- C:\Program Files (x86)\Google
2014-05-21 21:14:11 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Identities
2014-05-21 21:12:38 ----SD---- C:\Users\KryštofČuřík\AppData\Roaming\Microsoft
2014-05-21 21:12:38 ----D---- C:\Users\KryštofČuřík\AppData\Roaming\Media Center Programs
2014-05-21 21:12:01 ----SHD---- C:\Recovery
2014-05-21 21:12:01 ----SHD---- C:\ProgramData\Šablony
2014-05-21 21:12:01 ----SHD---- C:\ProgramData\Plocha
2014-05-21 21:12:01 ----SHD---- C:\ProgramData\Oblíbené položky
2014-05-21 21:12:01 ----SHD---- C:\ProgramData\Nabídka Start
2014-05-21 21:12:01 ----SHD---- C:\ProgramData\Dokumenty
2014-05-21 21:12:01 ----SHD---- C:\ProgramData\Data aplikací
2014-05-21 20:46:25 ----D---- C:\Windows\SoftwareDistribution
2014-05-21 20:43:47 ----D---- C:\Windows\Prefetch
2014-05-21 20:43:36 ----ASH---- C:\pagefile.sys
2014-05-21 20:43:32 ----SHD---- C:\System Volume Information
2014-05-21 20:43:32 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 1 month======
2014-06-13 11:45:12 ----RD---- C:\Program Files
2014-06-13 11:45:12 ----D---- C:\Windows\Temp
2014-06-13 11:35:00 ----RD---- C:\Users
2014-06-13 06:52:10 ----SD---- C:\ProgramData\Microsoft
2014-06-13 03:21:36 ----D---- C:\Windows\System32
2014-06-13 03:21:36 ----D---- C:\Windows\inf
2014-06-13 03:21:36 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-06-13 03:19:01 ----D---- C:\Windows\system32\wdi
2014-06-12 13:23:03 ----RD---- C:\Program Files (x86)
2014-06-12 07:09:51 ----D---- C:\Windows\Tasks
2014-06-12 07:09:51 ----D---- C:\Windows\system32\Tasks
2014-06-12 06:38:11 ----D---- C:\Windows\SysWOW64
2014-06-12 06:37:12 ----HD---- C:\ProgramData
2014-06-12 03:13:51 ----D---- C:\Windows\system32\config
2014-06-11 03:44:03 ----D---- C:\Windows\winsxs
2014-06-11 03:43:54 ----D---- C:\Windows\Logs
2014-06-11 03:38:11 ----D---- C:\Program Files (x86)\Common Files
2014-06-08 04:28:26 ----RSD---- C:\Windows\assembly
2014-06-08 04:25:25 ----D---- C:\Windows
2014-06-08 00:20:07 ----D---- C:\Windows\system32\NDF
2014-06-06 02:23:35 ----D---- C:\Windows\Microsoft.NET
2014-06-06 02:17:45 ----D---- C:\Windows\system32\drivers
2014-06-06 02:17:44 ----D---- C:\Windows\system32\catroot
2014-06-06 02:17:43 ----D---- C:\Windows\system32\DriverStore
2014-06-02 22:04:47 ----D---- C:\Windows\system32\catroot2
2014-06-02 22:04:39 ----SHD---- C:\$Recycle.Bin
2014-06-02 21:40:20 ----D---- C:\Windows\debug
2014-06-02 07:52:16 ----A---- C:\Windows\win.ini
2014-05-25 16:23:11 ----D---- C:\Windows\SYSWOW64\drivers
2014-05-24 04:47:25 ----D---- C:\Windows\system32\LogFiles
2014-05-22 01:22:57 ----HD---- C:\Windows\system32\GroupPolicy
2014-05-22 01:22:57 ----D---- C:\Windows\SYSWOW64\GroupPolicy
2014-05-22 01:02:13 ----D---- C:\Windows\SYSWOW64\cs-CZ
2014-05-22 01:02:13 ----D---- C:\Windows\system32\cs-CZ
2014-05-22 00:59:46 ----D---- C:\Windows\SYSWOW64\en-US
2014-05-22 00:59:46 ----D---- C:\Windows\system32\en-US
2014-05-22 00:48:36 ----D---- C:\Program Files\Common Files\Microsoft Shared
2014-05-21 23:29:57 ----D---- C:\Windows\Help
2014-05-21 22:36:54 ----D---- C:\Windows\LiveKernelReports
2014-05-21 21:41:53 ----D---- C:\Windows\Setup
2014-05-21 21:32:23 ----D---- C:\Windows\system32\restore
2014-05-21 21:12:42 ----D---- C:\Windows\rescache
2014-05-21 21:12:01 ----D---- C:\Program Files\Windows NT
2014-05-21 20:58:13 ----D---- C:\Windows\system32\CodeIntegrity
2014-05-21 20:46:38 ----D---- C:\Windows\system32\sysprep
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 PCTCore;PCTools KDS; C:\Windows\system32\drivers\PCTCore64.sys [2012-10-22 413448]
R0 pctDS;PC Tools Data Store; C:\Windows\system32\drivers\pctDS64.sys [2012-02-28 453896]
R0 pctEFA;PC Tools Extended File Attributes; C:\Windows\system32\drivers\pctEFA64.sys [2012-02-28 1096176]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R1 {b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64;{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64; C:\Windows\system32\drivers\{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64.sys [2014-05-22 61112]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2014-06-06 283064]
R1 PCTSD;PC Tools Spyware Doctor Driver; C:\Windows\System32\Drivers\PCTSD64.sys [2012-11-01 253256]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys [2009-06-10 1146880]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-14 79360]
R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 64bitový systém Windows Vista; C:\Windows\system32\DRIVERS\netw5v64.sys [2009-06-10 5434368]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-07-14 109056]
R3 TPM;Čip TPM; C:\Windows\system32\drivers\tpm.sys [2009-07-14 38400]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-07-14 551936]
S3 e1yexpress;Ovladač gigabitových síťových připojení Intel(R); C:\Windows\system32\DRIVERS\e1y60x64.sys [2009-06-10 281088]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2014-02-14 923936]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc []
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-06-07 356480]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-03 257712]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 EasyAntiCheat;EasyAntiCheat; C:\Windows\syswow64\EasyAntiCheat.exe [2014-02-25 93048]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc []
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-06-13 160880]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
Naposledy upravil(a) vyosek dne 13 čer 2014 11:14, celkem upraveno 1 x.
Důvod: Log odstranen z [code]
Důvod: Log odstranen z [code]
Re: Problémy s podsložkou Temp
Zdravim
Ono ty hlasky budou zpusobeny spise silnym zavirovanim
Stahnete RKill http://download.bleepingcomputer.com/grinler/rkill.com
Stahnete a ulozte na plochu Combofix http://download.bleepingcomputer.com/sUBs/ComboFix.exe




- Pokud ho havet blokuje, pouzijte jeden z nasledujicich - i ty prejmenovane
Rkill EXE:
http://download.bleepingcomputer.com/grinler/rkill.exe
Rkill iExplore.exe:
http://download.bleepingcomputer.com/gr ... xplore.exe
Rkill uSeRiNiT.exe:
http://download.bleepingcomputer.com/gr ... eRiNiT.exe
Rkill WiNlOgOn.exe:
http://download.bleepingcomputer.com/gr ... NlOgOn.exe - Ulozte nejlepena plochu a ukoncete vsechny aplikace (jinak to udela RKill za Vas)
- Spustte tradicne dvojklikem - program probehne do par sekund a ukonci i svou cinnost
- RKill ukonci vsechny ne-systemove procesy - tedy i procesy, pod kterymi bezi havet
- Na plose vznikne log Rkill.txt ten mi sem vlozte
- Ted nerestartujte PC - prisli byste o ucinek RKillu

- Vypnete vsechny rezidentni bezpecnostní programy - firewally, antiviry, antispywary apod.
- Pokud mate Win XP spustte pod uctem Spravce\Administratora
- Pokud mate Win Vista ci Win 7, kliknete na Combofix pravym a dejte Run As Administrator ci Spustit jako spravce
- Ihned po startu se zobrazi stranka s licencnim ujednanim, pokracujte kliknutim na Ano
- Pokud Vam CF nabidne instalaci Konzoly pro zotaveni, tak souhlaste
- Dale postupujte dle pokynu, behem scanu nechte PC naprosto v klidu - nespoustejte zadne aplikace a neklikejte do zobrazujiciho se okna
- Scan by mel trvat cca 10 min, ale pokud bude PC hodne zaneseno, muze se cas prodlouzit
- Po dokonceni skenu a pripadnem restartu CF zobrazi log, pripadne jej najdete zde C:\ComboFix.txt, jeho obsah sem vlozte
- Detailni postup vc. obrazku mate zde http://www.bleepingcomputer.com/combofi ... t-combofix
Re: Problémy s podsložkou Temp
tak jo vzniklo něco takového:
_________
Rkill 2.6.6 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html
Program started at: 06/13/2014 01:27:42 PM in x64 mode.
Windows Version: Windows 7 Home Premium
Checking for Windows services to stop:
* No malware services found to stop.
Checking for processes to terminate:
* C:\Users\KRYTOF~1\AppData\Local\Temp\3582-490\msdcsc.exe (PID: 2652) [SUP-HEUR]
* C:\Users\KRYTOF~1\AppData\Local\Temp\3582-490\msdcsc.exe (PID: 2652) [T-HEUR]
2 proccesses terminated!
Checking Registry for malware related settings:
* No issues found in the Registry.
Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
* HKLM\Software\Classes\exefile\shell\open\command "@" was changed. It was reset to "%1" %*!
Performing miscellaneous checks:
* Windows Firewall Disabled
[HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = dword:00000000
Checking Windows Service Integrity:
* No issues found.
Searching for Missing Digital Signatures:
* No issues found.
Checking HOSTS File:
* No issues found.
Program finished at: 06/13/2014 01:28:19 PM
Execution time: 0 hours(s), 0 minute(s), and 37 seconds(s)
_________
Rkill 2.6.6 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2014 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html
Program started at: 06/13/2014 01:27:42 PM in x64 mode.
Windows Version: Windows 7 Home Premium
Checking for Windows services to stop:
* No malware services found to stop.
Checking for processes to terminate:
* C:\Users\KRYTOF~1\AppData\Local\Temp\3582-490\msdcsc.exe (PID: 2652) [SUP-HEUR]
* C:\Users\KRYTOF~1\AppData\Local\Temp\3582-490\msdcsc.exe (PID: 2652) [T-HEUR]
2 proccesses terminated!
Checking Registry for malware related settings:
* No issues found in the Registry.
Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
* HKLM\Software\Classes\exefile\shell\open\command "@" was changed. It was reset to "%1" %*!
Performing miscellaneous checks:
* Windows Firewall Disabled
[HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = dword:00000000
Checking Windows Service Integrity:
* No issues found.
Searching for Missing Digital Signatures:
* No issues found.
Checking HOSTS File:
* No issues found.
Program finished at: 06/13/2014 01:28:19 PM
Execution time: 0 hours(s), 0 minute(s), and 37 seconds(s)
Re: Problémy s podsložkou Temp
Pokracujte ComboFixem
Re: Problémy s podsložkou Temp
ComboFix 14-06-12.01 - KryštofČuřík 13.06.2014 15:27:07.1.2 - x64
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.3996.2962 [GMT 2:00]
Spuštěný z: c:\users\KRYTOF~1\DOWNLO~1\ComboFix.exe
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\KryštofČuřík\Documents\MSDCSC\D0voaetUiV3f\D0voaetUiV3f\msdcsc.exe
c:\users\KryštofČuřík\Documents\MSDCSC\D0voaetUiV3f\msdcsc.exe
c:\users\KryštofČuřík\Documents\MSDCSC\msdcsc.exe
c:\windows\PFRO.log
c:\windows\svchost.com
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-05-13 do 2014-06-13 )))))))))))))))))))))))))))))))
.
.
2014-06-13 13:34 . 2014-06-13 13:34 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-06-13 09:45 . 2014-06-13 09:54 -------- d-----w- c:\program files\trend micro
2014-06-13 09:45 . 2014-06-13 09:45 -------- d-----w- C:\rsit
2014-06-12 11:23 . 2014-06-12 11:46 -------- d-----w- c:\program files (x86)\Bound By Flame
2014-06-12 07:17 . 2014-06-13 10:30 -------- d-----w- c:\program files (x86)\QuadCoreM2
2014-06-12 04:37 . 2014-06-13 01:17 -------- d-----w- c:\programdata\Seearch-NewTaB
2014-06-12 04:37 . 2014-06-12 05:09 -------- d-----w- c:\program files (x86)\Seearch-NewTaB
2014-06-12 04:37 . 2014-06-12 04:37 -------- d-----w- c:\programdata\Supersoftware App
2014-06-12 04:36 . 2014-06-13 01:17 -------- d-----w- c:\programdata\Supersoftware
2014-06-12 04:36 . 2014-06-13 01:17 -------- d-----w- c:\programdata\save On
2014-06-12 04:36 . 2014-06-12 04:36 -------- d-----w- c:\program files (x86)\save On
2014-06-11 08:33 . 2014-06-11 08:42 -------- d-----w- c:\program files\Electronic Arts
2014-06-11 02:03 . 2014-06-11 02:03 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2014-06-11 02:03 . 2014-06-11 02:03 -------- d-----w- c:\program files (x86)\AGEIA Technologies
2014-06-11 01:38 . 2014-06-11 01:38 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2014-06-11 01:38 . 2014-06-11 01:38 -------- d-----w- c:\programdata\Steam
2014-06-11 01:18 . 2014-06-11 01:18 -------- d-----w- c:\program files (x86)\Kaos Studios
2014-06-10 07:14 . 2014-06-10 07:15 -------- d-----w- C:\Python27
2014-06-10 04:32 . 2014-06-07 06:40 145408 ----a-w- c:\windows\SysWow64\javacpl.cpl
2014-06-10 04:31 . 2010-07-07 12:30 1233920 ----a-w- c:\windows\SysWow64\msxml4.dll
2014-06-10 04:31 . 2014-06-10 04:31 -------- d-----w- c:\program files (x86)\Common Files\SourceTec
2014-06-10 04:31 . 2009-06-04 13:28 82432 ----a-w- c:\windows\SysWow64\msxml4r.dll
2014-06-10 04:31 . 2009-06-04 13:28 44544 ----a-w- c:\windows\SysWow64\msxml4a.dll
2014-06-10 04:30 . 2014-06-10 04:30 -------- d-----w- c:\program files (x86)\SourceTec
2014-06-08 19:06 . 2014-06-08 19:06 -------- d-----w- c:\program files (x86)\Scirra
2014-06-08 02:27 . 2014-06-08 02:27 -------- d-----w- c:\program files (x86)\GameSpy Arcade
2014-06-08 02:24 . 2014-06-08 02:24 -------- d--h--w- c:\program files (x86)\InstallShield Installation Information
2014-06-07 23:03 . 2001-07-24 15:23 139264 ----a-w- c:\windows\SysWow64\FODBCLib.dll
2014-06-07 23:03 . 2014-06-07 23:24 -------- d-----w- c:\programdata\SendMails
2014-06-07 23:03 . 2014-06-07 23:08 -------- d-----w- c:\programdata\Microsoft NT Ident
2014-06-07 18:10 . 2009-09-04 15:44 73544 ----a-w- c:\windows\system32\XAPOFX1_3.dll
2014-06-07 06:40 . 2014-06-10 04:32 -------- d-----w- c:\program files (x86)\Common Files\Java
2014-06-07 06:40 . 2014-06-07 06:40 -------- d-----w- c:\programdata\Oracle
2014-06-07 06:40 . 2014-06-07 06:40 98216 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2014-06-07 06:40 . 2014-06-10 04:32 -------- d-----w- c:\program files (x86)\Java
2014-06-07 05:50 . 2014-06-07 05:50 -------- d-----w- c:\program files (x86)\Common Files\Skype
2014-06-07 05:50 . 2014-06-07 05:50 -------- d-----r- c:\program files (x86)\Skype
2014-06-07 05:50 . 2014-06-07 05:50 -------- d-----w- c:\programdata\Skype
2014-06-06 00:23 . 2005-03-18 15:19 3823312 ----a-w- c:\windows\system32\d3dx9_25.dll
2014-06-06 00:23 . 2005-02-05 17:45 3544272 ----a-w- c:\windows\system32\d3dx9_24.dll
2014-06-06 00:20 . 2014-06-08 02:24 -------- d-----w- c:\program files (x86)\EA GAMES
2014-06-06 00:19 . 2014-06-06 00:19 -------- d-----w- c:\program files (x86)\Common Files\InstallShield
2014-06-06 00:17 . 2014-06-06 00:17 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2014-06-06 00:17 . 2014-06-06 00:17 -------- d-----w- c:\program files (x86)\DAEMON Tools Lite
2014-06-06 00:16 . 2014-06-06 00:19 -------- d-----w- c:\programdata\DAEMON Tools Lite
2014-06-03 05:39 . 2014-06-03 05:39 -------- d-----w- c:\program files (x86)\PSPad editor
2014-06-03 04:21 . 2014-06-03 04:21 -------- d-----w- C:\totalcmd
2014-06-03 01:21 . 2014-06-03 01:21 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-06-03 01:21 . 2014-06-03 01:21 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-06-03 01:21 . 2014-06-03 01:21 -------- d-----w- c:\windows\SysWow64\Macromed
2014-06-03 01:21 . 2014-06-03 01:21 -------- d-----w- c:\windows\system32\Macromed
2014-06-02 20:25 . 2014-06-02 20:25 -------- d-----w- C:\Riot Games
2014-06-02 20:18 . 2014-06-13 01:17 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service
2014-06-02 19:43 . 2014-06-02 19:43 -------- d-----w- c:\programdata\Malwarebytes
2014-06-02 19:42 . 2014-06-02 19:42 -------- d-----w- c:\program files (x86)\AVG
2014-06-02 19:33 . 2014-06-02 19:42 -------- d-----w- c:\programdata\MFAData
2014-06-02 19:33 . 2014-06-02 19:33 -------- d--h--w- c:\programdata\Common Files
2014-06-02 13:45 . 2014-06-02 22:35 -------- d-----w- c:\programdata\Unity
2014-06-02 13:37 . 2014-06-02 13:44 -------- d-----w- c:\program files (x86)\Unity
2014-06-02 04:25 . 2014-05-22 16:26 61112 ----a-w- c:\windows\system32\drivers\{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64.sys
2014-06-01 21:39 . 2014-06-01 21:39 -------- d-----w- c:\programdata\Caphyon
2014-05-31 00:57 . 2014-05-31 00:57 -------- d-----w- c:\program files (x86)\Common Files\Adobe AIR
2014-05-27 12:52 . 2014-05-27 12:52 -------- d-----w- c:\windows\Injector by .United
2014-05-26 12:31 . 2014-02-25 20:46 93048 ----a-w- c:\windows\SysWow64\EasyAntiCheat.exe
2014-05-25 10:22 . 2014-05-25 10:22 -------- d-----w- c:\programdata\LumaEmu_SteamCloud
2014-05-25 09:52 . 2014-05-25 10:15 -------- d-----w- c:\programdata\Package Cache
2014-05-25 09:45 . 2014-06-02 20:28 -------- d-----w- C:\Rust 14.03 pro rusted.cz
2014-05-25 00:38 . 2014-05-25 00:38 -------- d-----w- c:\programdata\RELOADED
2014-05-23 08:38 . 2014-05-25 14:23 51496 ----a-w- c:\windows\SysWow64\drivers\stflt.sys
2014-05-22 12:54 . 2014-06-02 20:27 -------- d-----w- C:\Cinema 4d studio r12
2014-05-22 09:16 . 2014-05-22 09:16 -------- d-----w- c:\users\Kryštof Čuřík
2014-05-21 23:30 . 2014-05-21 23:30 -------- d-----w- c:\program files (x86)\Bandicam
2014-05-21 23:30 . 2014-05-21 23:30 -------- d-----w- c:\program files (x86)\BandiMPEG1
2014-05-21 23:20 . 2014-05-25 09:56 -------- d-----w- c:\programdata\YoutubeAdblocker
2014-05-21 23:20 . 2014-05-21 23:24 -------- d-----w- c:\programdata\savEi Net
2014-05-21 23:20 . 2014-06-12 05:09 -------- d-----w- c:\programdata\7f73049dbbb3cb15
2014-05-21 23:20 . 2014-05-21 23:20 -------- d-----w- c:\users\Guest
2014-05-21 23:20 . 2014-05-21 23:20 -------- d-----w- c:\users\Administrator
2014-05-21 23:19 . 2014-06-12 04:37 -------- d-----w- c:\programdata\InstallMate
2014-05-21 23:10 . 2014-05-21 23:10 -------- d-----w- c:\program files\WinRAR
2014-05-21 22:59 . 2014-05-21 22:59 -------- d-----w- c:\program files (x86)\Microsoft.NET
2014-05-21 22:58 . 2009-11-25 19:47 49472 ----a-w- c:\windows\SysWow64\netfxperf.dll
2014-05-21 22:58 . 2009-11-25 19:47 297808 ----a-w- c:\windows\SysWow64\mscoree.dll
2014-05-21 22:58 . 2009-11-25 19:47 99176 ----a-w- c:\windows\SysWow64\PresentationHostProxy.dll
2014-05-21 22:58 . 2009-11-25 19:47 48960 ----a-w- c:\windows\system32\netfxperf.dll
2014-05-21 22:58 . 2009-11-25 19:47 295264 ----a-w- c:\windows\SysWow64\PresentationHost.exe
2014-05-21 22:58 . 2009-11-25 19:47 1130824 ----a-w- c:\windows\SysWow64\dfshim.dll
2014-05-21 22:58 . 2009-11-25 19:47 109912 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2014-05-21 22:58 . 2009-11-25 19:47 444752 ----a-w- c:\windows\system32\mscoree.dll
2014-05-21 22:58 . 2009-11-25 19:47 320352 ----a-w- c:\windows\system32\PresentationHost.exe
2014-05-21 22:58 . 2009-11-25 19:47 1942856 ----a-w- c:\windows\system32\dfshim.dll
2014-05-21 22:55 . 2008-07-31 08:41 68616 ----a-w- c:\windows\SysWow64\XAPOFX1_1.dll
2014-05-21 22:55 . 2008-07-31 08:40 509448 ----a-w- c:\windows\SysWow64\XAudio2_2.dll
2014-05-21 22:55 . 2008-07-12 06:18 467984 ----a-w- c:\windows\SysWow64\d3dx10_39.dll
2014-05-21 22:55 . 2008-07-12 06:18 3851784 ----a-w- c:\windows\SysWow64\D3DX9_39.dll
2014-05-21 22:55 . 2008-07-12 06:18 1493528 ----a-w- c:\windows\SysWow64\D3DCompiler_39.dll
2014-05-21 22:54 . 2014-06-02 20:25 -------- d-sh--w- c:\windows\SysWow64\AI_RecycleBin
2014-05-21 22:41 . 2014-06-13 03:37 -------- d-----w- c:\programdata\PMB Files
2014-05-21 22:41 . 2014-05-21 22:41 -------- d-----w- c:\program files (x86)\Pando Networks
2014-05-21 22:22 . 2014-05-21 22:22 -------- d-----w- c:\programdata\Zoner
2014-05-21 22:22 . 2014-05-21 22:22 -------- d-----w- c:\program files\Zoner
2014-05-21 21:41 . 2014-05-21 21:41 -------- d-----w- c:\programdata\NVIDIA
2014-05-21 21:30 . 2014-02-14 01:20 6712608 ----a-w- c:\windows\system32\nvcpl.dll
2014-05-21 21:30 . 2014-02-14 01:20 3498272 ----a-w- c:\windows\system32\nvsvc64.dll
2014-05-21 21:30 . 2014-02-14 01:20 923936 ----a-w- c:\windows\system32\nvvsvc.exe
2014-05-21 21:30 . 2014-02-14 01:20 63776 ----a-w- c:\windows\system32\nvshext.dll
2014-05-21 21:30 . 2014-02-14 01:20 386336 ----a-w- c:\windows\system32\nvmctray.dll
2014-05-21 21:30 . 2014-02-14 01:20 2559776 ----a-w- c:\windows\system32\nvsvcr.dll
2014-05-21 21:29 . 2014-02-14 02:36 61216 ----a-w- c:\windows\system32\OpenCL.dll
2014-05-21 21:29 . 2014-02-14 02:36 53024 ----a-w- c:\windows\SysWow64\OpenCL.dll
2014-05-21 21:27 . 2014-05-21 21:29 -------- d-----w- c:\program files\NVIDIA Corporation
2014-05-21 21:15 . 2014-06-12 12:08 -------- d-----w- c:\program files (x86)\Steam
2014-05-21 21:15 . 2014-06-02 19:47 -------- d-----w- c:\program files (x86)\Common Files\Steam
2014-05-21 20:46 . 2012-02-28 09:43 1096176 ----a-w- c:\windows\system32\drivers\pctEFA64.sys
2014-05-21 20:46 . 2012-02-28 09:43 453896 ----a-w- c:\windows\system32\drivers\pctDS64.sys
2014-05-21 20:46 . 2012-10-22 14:38 413448 ----a-w- c:\windows\system32\drivers\PCTCore64.sys
2014-05-21 20:46 . 2014-05-21 20:46 -------- d-----w- c:\program files (x86)\Common Files\PC Tools
2014-05-21 20:46 . 2012-11-01 13:35 253256 ----a-w- c:\windows\system32\drivers\PCTSD64.sys
2014-05-21 20:46 . 2014-05-21 20:46 -------- d-----w- c:\programdata\PC Tools
2014-05-21 19:42 . 2014-06-02 19:40 -------- d-----w- c:\windows\Panther
2014-05-21 19:32 . 2014-04-17 03:31 10651704 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{AC1772A5-D063-4346-9247-49A9E86F1E21}\mpengine.dll
2014-05-21 19:32 . 2014-03-31 07:35 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-05-21 19:28 . 2014-06-07 18:01 -------- d-----w- C:\Temp
2014-05-21 19:28 . 2014-05-21 21:29 -------- d-----w- c:\programdata\NVIDIA Corporation
2014-05-21 19:24 . 2014-06-13 13:23 177 ----a-w- c:\windows\directx.sys
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-06-12 23:53 . 2014-06-10 07:15 139776 ----a-w- c:\users\KryštofČuřík\AppData\Roaming\Microsoft\Installer\{049CA433-77A0-4E48-AC76-180A282C4E10}\python_icon.exe
2014-06-12 23:53 . 2014-06-10 07:15 139776 ----a-w- c:\users\KryštofČuřík\AppData\Roaming\Microsoft\Installer\{049CA433-77A0-4E48-AC76-180A282C4E10}\python_icon.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{D4129AD7-78D6-FC6B-3652-75C34D8088CD}]
2014-06-12 04:36 423936 ----a-w- c:\program files (x86)\save On\ceWgnIZ_Sm.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\progra~2\DAEMON~1\DTLite.exe" [2014-06-13 3738384]
"Zoner Photo Studio Autoupdate"="c:\program files\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE" [2012-10-18 752736]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 e1yexpress;Ovladač gigabitových síťových připojení Intel(R);c:\windows\system32\DRIVERS\e1y60x64.sys;c:\windows\SYSNATIVE\DRIVERS\e1y60x64.sys [x]
R3 EasyAntiCheat;EasyAntiCheat;c:\windows\system32\EasyAntiCheat.exe;c:\windows\SYSNATIVE\EasyAntiCheat.exe [x]
S0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore64.sys;c:\windows\SYSNATIVE\drivers\PCTCore64.sys [x]
S0 pctDS;PC Tools Data Store;c:\windows\system32\drivers\pctDS64.sys;c:\windows\SYSNATIVE\drivers\pctDS64.sys [x]
S0 pctEFA;PC Tools Extended File Attributes;c:\windows\system32\drivers\pctEFA64.sys;c:\windows\SYSNATIVE\drivers\pctEFA64.sys [x]
S1 {b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64;{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64;c:\windows\system32\drivers\{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64.sys;c:\windows\SYSNATIVE\drivers\{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 PCTSD;PC Tools Spyware Doctor Driver;c:\windows\system32\Drivers\PCTSD64.sys;c:\windows\SYSNATIVE\Drivers\PCTSD64.sys [x]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 64bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v64.sys;c:\windows\SYSNATIVE\DRIVERS\netw5v64.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2014-06-13 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-03 01:21]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4129AD7-78D6-FC6B-3652-75C34D8088CD}]
2014-06-12 04:36 472064 ----a-w- c:\program files (x86)\save On\ceWgnIZ_Sm.x64.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ
mStart Page = hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Sothink SWF Catcher - c:\program files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
TCP: DhcpNameServer = 213.211.50.1 213.211.50.1
FF - ProfilePath - c:\users\KryštofČuřík\AppData\Roaming\Mozilla\Firefox\Profiles\16qs64pn.default\
FF - prefs.js: browser.search.defaulturl - hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ&l=1&q=
FF - prefs.js: browser.search.selectedEngine - WebSearch
FF - prefs.js: browser.startup.homepage - hxxp://google.cz/
FF - prefs.js: keyword.URL - hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ&l=1&q=
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKCU-Run-iLivid - c:\users\KryštofČuřík\AppData\Local\iLivid\iLivid.exe
Wow6432Node-HKLM-Run-mobilegeni daemon - c:\program files (x86)\Mobogenie\DaemonProcess.exe
Wow6432Node-HKLM-Run-Mirosoft Services - c:\users\KryštofČuřík\AppData\Roaming\Microsoft\Windows\Templates\Microsoft Services\services.exe
Wow6432Node-HKLM-Run-seznam-listicka-distribuce - c:\program files (x86)\Seznam.cz\distribution\szninstall.exe
Wow6432Node-HKLM-Run-SunJavaUpdateSched - c:\program files (x86)\Java\jre8\bin\jusched.exe
AddRemove-Steam App 271290 - c:\users\KRYTOF~1\AppData\Local\Temp\3582-490\steam.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2014-06-13 15:36:03
ComboFix-quarantined-files.txt 2014-06-13 13:36
.
Před spuštěním: Volných bajtů: 137 734 922 240
Po spuštění: Volných bajtů: 142 474 391 552
.
- - End Of File - - 202256808D35EDB0E1079081FF16D1C1
A36C5E4F47E84449FF07ED3517B43A31
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.3996.2962 [GMT 2:00]
Spuštěný z: c:\users\KRYTOF~1\DOWNLO~1\ComboFix.exe
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\KryštofČuřík\Documents\MSDCSC\D0voaetUiV3f\D0voaetUiV3f\msdcsc.exe
c:\users\KryštofČuřík\Documents\MSDCSC\D0voaetUiV3f\msdcsc.exe
c:\users\KryštofČuřík\Documents\MSDCSC\msdcsc.exe
c:\windows\PFRO.log
c:\windows\svchost.com
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-05-13 do 2014-06-13 )))))))))))))))))))))))))))))))
.
.
2014-06-13 13:34 . 2014-06-13 13:34 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-06-13 09:45 . 2014-06-13 09:54 -------- d-----w- c:\program files\trend micro
2014-06-13 09:45 . 2014-06-13 09:45 -------- d-----w- C:\rsit
2014-06-12 11:23 . 2014-06-12 11:46 -------- d-----w- c:\program files (x86)\Bound By Flame
2014-06-12 07:17 . 2014-06-13 10:30 -------- d-----w- c:\program files (x86)\QuadCoreM2
2014-06-12 04:37 . 2014-06-13 01:17 -------- d-----w- c:\programdata\Seearch-NewTaB
2014-06-12 04:37 . 2014-06-12 05:09 -------- d-----w- c:\program files (x86)\Seearch-NewTaB
2014-06-12 04:37 . 2014-06-12 04:37 -------- d-----w- c:\programdata\Supersoftware App
2014-06-12 04:36 . 2014-06-13 01:17 -------- d-----w- c:\programdata\Supersoftware
2014-06-12 04:36 . 2014-06-13 01:17 -------- d-----w- c:\programdata\save On
2014-06-12 04:36 . 2014-06-12 04:36 -------- d-----w- c:\program files (x86)\save On
2014-06-11 08:33 . 2014-06-11 08:42 -------- d-----w- c:\program files\Electronic Arts
2014-06-11 02:03 . 2014-06-11 02:03 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
2014-06-11 02:03 . 2014-06-11 02:03 -------- d-----w- c:\program files (x86)\AGEIA Technologies
2014-06-11 01:38 . 2014-06-11 01:38 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2014-06-11 01:38 . 2014-06-11 01:38 -------- d-----w- c:\programdata\Steam
2014-06-11 01:18 . 2014-06-11 01:18 -------- d-----w- c:\program files (x86)\Kaos Studios
2014-06-10 07:14 . 2014-06-10 07:15 -------- d-----w- C:\Python27
2014-06-10 04:32 . 2014-06-07 06:40 145408 ----a-w- c:\windows\SysWow64\javacpl.cpl
2014-06-10 04:31 . 2010-07-07 12:30 1233920 ----a-w- c:\windows\SysWow64\msxml4.dll
2014-06-10 04:31 . 2014-06-10 04:31 -------- d-----w- c:\program files (x86)\Common Files\SourceTec
2014-06-10 04:31 . 2009-06-04 13:28 82432 ----a-w- c:\windows\SysWow64\msxml4r.dll
2014-06-10 04:31 . 2009-06-04 13:28 44544 ----a-w- c:\windows\SysWow64\msxml4a.dll
2014-06-10 04:30 . 2014-06-10 04:30 -------- d-----w- c:\program files (x86)\SourceTec
2014-06-08 19:06 . 2014-06-08 19:06 -------- d-----w- c:\program files (x86)\Scirra
2014-06-08 02:27 . 2014-06-08 02:27 -------- d-----w- c:\program files (x86)\GameSpy Arcade
2014-06-08 02:24 . 2014-06-08 02:24 -------- d--h--w- c:\program files (x86)\InstallShield Installation Information
2014-06-07 23:03 . 2001-07-24 15:23 139264 ----a-w- c:\windows\SysWow64\FODBCLib.dll
2014-06-07 23:03 . 2014-06-07 23:24 -------- d-----w- c:\programdata\SendMails
2014-06-07 23:03 . 2014-06-07 23:08 -------- d-----w- c:\programdata\Microsoft NT Ident
2014-06-07 18:10 . 2009-09-04 15:44 73544 ----a-w- c:\windows\system32\XAPOFX1_3.dll
2014-06-07 06:40 . 2014-06-10 04:32 -------- d-----w- c:\program files (x86)\Common Files\Java
2014-06-07 06:40 . 2014-06-07 06:40 -------- d-----w- c:\programdata\Oracle
2014-06-07 06:40 . 2014-06-07 06:40 98216 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2014-06-07 06:40 . 2014-06-10 04:32 -------- d-----w- c:\program files (x86)\Java
2014-06-07 05:50 . 2014-06-07 05:50 -------- d-----w- c:\program files (x86)\Common Files\Skype
2014-06-07 05:50 . 2014-06-07 05:50 -------- d-----r- c:\program files (x86)\Skype
2014-06-07 05:50 . 2014-06-07 05:50 -------- d-----w- c:\programdata\Skype
2014-06-06 00:23 . 2005-03-18 15:19 3823312 ----a-w- c:\windows\system32\d3dx9_25.dll
2014-06-06 00:23 . 2005-02-05 17:45 3544272 ----a-w- c:\windows\system32\d3dx9_24.dll
2014-06-06 00:20 . 2014-06-08 02:24 -------- d-----w- c:\program files (x86)\EA GAMES
2014-06-06 00:19 . 2014-06-06 00:19 -------- d-----w- c:\program files (x86)\Common Files\InstallShield
2014-06-06 00:17 . 2014-06-06 00:17 283064 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2014-06-06 00:17 . 2014-06-06 00:17 -------- d-----w- c:\program files (x86)\DAEMON Tools Lite
2014-06-06 00:16 . 2014-06-06 00:19 -------- d-----w- c:\programdata\DAEMON Tools Lite
2014-06-03 05:39 . 2014-06-03 05:39 -------- d-----w- c:\program files (x86)\PSPad editor
2014-06-03 04:21 . 2014-06-03 04:21 -------- d-----w- C:\totalcmd
2014-06-03 01:21 . 2014-06-03 01:21 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-06-03 01:21 . 2014-06-03 01:21 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-06-03 01:21 . 2014-06-03 01:21 -------- d-----w- c:\windows\SysWow64\Macromed
2014-06-03 01:21 . 2014-06-03 01:21 -------- d-----w- c:\windows\system32\Macromed
2014-06-02 20:25 . 2014-06-02 20:25 -------- d-----w- C:\Riot Games
2014-06-02 20:18 . 2014-06-13 01:17 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service
2014-06-02 19:43 . 2014-06-02 19:43 -------- d-----w- c:\programdata\Malwarebytes
2014-06-02 19:42 . 2014-06-02 19:42 -------- d-----w- c:\program files (x86)\AVG
2014-06-02 19:33 . 2014-06-02 19:42 -------- d-----w- c:\programdata\MFAData
2014-06-02 19:33 . 2014-06-02 19:33 -------- d--h--w- c:\programdata\Common Files
2014-06-02 13:45 . 2014-06-02 22:35 -------- d-----w- c:\programdata\Unity
2014-06-02 13:37 . 2014-06-02 13:44 -------- d-----w- c:\program files (x86)\Unity
2014-06-02 04:25 . 2014-05-22 16:26 61112 ----a-w- c:\windows\system32\drivers\{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64.sys
2014-06-01 21:39 . 2014-06-01 21:39 -------- d-----w- c:\programdata\Caphyon
2014-05-31 00:57 . 2014-05-31 00:57 -------- d-----w- c:\program files (x86)\Common Files\Adobe AIR
2014-05-27 12:52 . 2014-05-27 12:52 -------- d-----w- c:\windows\Injector by .United
2014-05-26 12:31 . 2014-02-25 20:46 93048 ----a-w- c:\windows\SysWow64\EasyAntiCheat.exe
2014-05-25 10:22 . 2014-05-25 10:22 -------- d-----w- c:\programdata\LumaEmu_SteamCloud
2014-05-25 09:52 . 2014-05-25 10:15 -------- d-----w- c:\programdata\Package Cache
2014-05-25 09:45 . 2014-06-02 20:28 -------- d-----w- C:\Rust 14.03 pro rusted.cz
2014-05-25 00:38 . 2014-05-25 00:38 -------- d-----w- c:\programdata\RELOADED
2014-05-23 08:38 . 2014-05-25 14:23 51496 ----a-w- c:\windows\SysWow64\drivers\stflt.sys
2014-05-22 12:54 . 2014-06-02 20:27 -------- d-----w- C:\Cinema 4d studio r12
2014-05-22 09:16 . 2014-05-22 09:16 -------- d-----w- c:\users\Kryštof Čuřík
2014-05-21 23:30 . 2014-05-21 23:30 -------- d-----w- c:\program files (x86)\Bandicam
2014-05-21 23:30 . 2014-05-21 23:30 -------- d-----w- c:\program files (x86)\BandiMPEG1
2014-05-21 23:20 . 2014-05-25 09:56 -------- d-----w- c:\programdata\YoutubeAdblocker
2014-05-21 23:20 . 2014-05-21 23:24 -------- d-----w- c:\programdata\savEi Net
2014-05-21 23:20 . 2014-06-12 05:09 -------- d-----w- c:\programdata\7f73049dbbb3cb15
2014-05-21 23:20 . 2014-05-21 23:20 -------- d-----w- c:\users\Guest
2014-05-21 23:20 . 2014-05-21 23:20 -------- d-----w- c:\users\Administrator
2014-05-21 23:19 . 2014-06-12 04:37 -------- d-----w- c:\programdata\InstallMate
2014-05-21 23:10 . 2014-05-21 23:10 -------- d-----w- c:\program files\WinRAR
2014-05-21 22:59 . 2014-05-21 22:59 -------- d-----w- c:\program files (x86)\Microsoft.NET
2014-05-21 22:58 . 2009-11-25 19:47 49472 ----a-w- c:\windows\SysWow64\netfxperf.dll
2014-05-21 22:58 . 2009-11-25 19:47 297808 ----a-w- c:\windows\SysWow64\mscoree.dll
2014-05-21 22:58 . 2009-11-25 19:47 99176 ----a-w- c:\windows\SysWow64\PresentationHostProxy.dll
2014-05-21 22:58 . 2009-11-25 19:47 48960 ----a-w- c:\windows\system32\netfxperf.dll
2014-05-21 22:58 . 2009-11-25 19:47 295264 ----a-w- c:\windows\SysWow64\PresentationHost.exe
2014-05-21 22:58 . 2009-11-25 19:47 1130824 ----a-w- c:\windows\SysWow64\dfshim.dll
2014-05-21 22:58 . 2009-11-25 19:47 109912 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2014-05-21 22:58 . 2009-11-25 19:47 444752 ----a-w- c:\windows\system32\mscoree.dll
2014-05-21 22:58 . 2009-11-25 19:47 320352 ----a-w- c:\windows\system32\PresentationHost.exe
2014-05-21 22:58 . 2009-11-25 19:47 1942856 ----a-w- c:\windows\system32\dfshim.dll
2014-05-21 22:55 . 2008-07-31 08:41 68616 ----a-w- c:\windows\SysWow64\XAPOFX1_1.dll
2014-05-21 22:55 . 2008-07-31 08:40 509448 ----a-w- c:\windows\SysWow64\XAudio2_2.dll
2014-05-21 22:55 . 2008-07-12 06:18 467984 ----a-w- c:\windows\SysWow64\d3dx10_39.dll
2014-05-21 22:55 . 2008-07-12 06:18 3851784 ----a-w- c:\windows\SysWow64\D3DX9_39.dll
2014-05-21 22:55 . 2008-07-12 06:18 1493528 ----a-w- c:\windows\SysWow64\D3DCompiler_39.dll
2014-05-21 22:54 . 2014-06-02 20:25 -------- d-sh--w- c:\windows\SysWow64\AI_RecycleBin
2014-05-21 22:41 . 2014-06-13 03:37 -------- d-----w- c:\programdata\PMB Files
2014-05-21 22:41 . 2014-05-21 22:41 -------- d-----w- c:\program files (x86)\Pando Networks
2014-05-21 22:22 . 2014-05-21 22:22 -------- d-----w- c:\programdata\Zoner
2014-05-21 22:22 . 2014-05-21 22:22 -------- d-----w- c:\program files\Zoner
2014-05-21 21:41 . 2014-05-21 21:41 -------- d-----w- c:\programdata\NVIDIA
2014-05-21 21:30 . 2014-02-14 01:20 6712608 ----a-w- c:\windows\system32\nvcpl.dll
2014-05-21 21:30 . 2014-02-14 01:20 3498272 ----a-w- c:\windows\system32\nvsvc64.dll
2014-05-21 21:30 . 2014-02-14 01:20 923936 ----a-w- c:\windows\system32\nvvsvc.exe
2014-05-21 21:30 . 2014-02-14 01:20 63776 ----a-w- c:\windows\system32\nvshext.dll
2014-05-21 21:30 . 2014-02-14 01:20 386336 ----a-w- c:\windows\system32\nvmctray.dll
2014-05-21 21:30 . 2014-02-14 01:20 2559776 ----a-w- c:\windows\system32\nvsvcr.dll
2014-05-21 21:29 . 2014-02-14 02:36 61216 ----a-w- c:\windows\system32\OpenCL.dll
2014-05-21 21:29 . 2014-02-14 02:36 53024 ----a-w- c:\windows\SysWow64\OpenCL.dll
2014-05-21 21:27 . 2014-05-21 21:29 -------- d-----w- c:\program files\NVIDIA Corporation
2014-05-21 21:15 . 2014-06-12 12:08 -------- d-----w- c:\program files (x86)\Steam
2014-05-21 21:15 . 2014-06-02 19:47 -------- d-----w- c:\program files (x86)\Common Files\Steam
2014-05-21 20:46 . 2012-02-28 09:43 1096176 ----a-w- c:\windows\system32\drivers\pctEFA64.sys
2014-05-21 20:46 . 2012-02-28 09:43 453896 ----a-w- c:\windows\system32\drivers\pctDS64.sys
2014-05-21 20:46 . 2012-10-22 14:38 413448 ----a-w- c:\windows\system32\drivers\PCTCore64.sys
2014-05-21 20:46 . 2014-05-21 20:46 -------- d-----w- c:\program files (x86)\Common Files\PC Tools
2014-05-21 20:46 . 2012-11-01 13:35 253256 ----a-w- c:\windows\system32\drivers\PCTSD64.sys
2014-05-21 20:46 . 2014-05-21 20:46 -------- d-----w- c:\programdata\PC Tools
2014-05-21 19:42 . 2014-06-02 19:40 -------- d-----w- c:\windows\Panther
2014-05-21 19:32 . 2014-04-17 03:31 10651704 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{AC1772A5-D063-4346-9247-49A9E86F1E21}\mpengine.dll
2014-05-21 19:32 . 2014-03-31 07:35 270496 ------w- c:\windows\system32\MpSigStub.exe
2014-05-21 19:28 . 2014-06-07 18:01 -------- d-----w- C:\Temp
2014-05-21 19:28 . 2014-05-21 21:29 -------- d-----w- c:\programdata\NVIDIA Corporation
2014-05-21 19:24 . 2014-06-13 13:23 177 ----a-w- c:\windows\directx.sys
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-06-12 23:53 . 2014-06-10 07:15 139776 ----a-w- c:\users\KryštofČuřík\AppData\Roaming\Microsoft\Installer\{049CA433-77A0-4E48-AC76-180A282C4E10}\python_icon.exe
2014-06-12 23:53 . 2014-06-10 07:15 139776 ----a-w- c:\users\KryštofČuřík\AppData\Roaming\Microsoft\Installer\{049CA433-77A0-4E48-AC76-180A282C4E10}\python_icon.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{D4129AD7-78D6-FC6B-3652-75C34D8088CD}]
2014-06-12 04:36 423936 ----a-w- c:\program files (x86)\save On\ceWgnIZ_Sm.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\progra~2\DAEMON~1\DTLite.exe" [2014-06-13 3738384]
"Zoner Photo Studio Autoupdate"="c:\program files\ZONER\PHOTO STUDIO 15\Program32\ZPSTRAY.EXE" [2012-10-18 752736]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 e1yexpress;Ovladač gigabitových síťových připojení Intel(R);c:\windows\system32\DRIVERS\e1y60x64.sys;c:\windows\SYSNATIVE\DRIVERS\e1y60x64.sys [x]
R3 EasyAntiCheat;EasyAntiCheat;c:\windows\system32\EasyAntiCheat.exe;c:\windows\SYSNATIVE\EasyAntiCheat.exe [x]
S0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore64.sys;c:\windows\SYSNATIVE\drivers\PCTCore64.sys [x]
S0 pctDS;PC Tools Data Store;c:\windows\system32\drivers\pctDS64.sys;c:\windows\SYSNATIVE\drivers\pctDS64.sys [x]
S0 pctEFA;PC Tools Extended File Attributes;c:\windows\system32\drivers\pctEFA64.sys;c:\windows\SYSNATIVE\drivers\pctEFA64.sys [x]
S1 {b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64;{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64;c:\windows\system32\drivers\{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64.sys;c:\windows\SYSNATIVE\drivers\{b2db3058-74ee-4ace-bcd8-8cd0fbe3a4f6}w64.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 PCTSD;PC Tools Spyware Doctor Driver;c:\windows\system32\Drivers\PCTSD64.sys;c:\windows\SYSNATIVE\Drivers\PCTSD64.sys [x]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series – ovladač adaptéru pro 64bitový systém Windows Vista;c:\windows\system32\DRIVERS\netw5v64.sys;c:\windows\SYSNATIVE\DRIVERS\netw5v64.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2014-06-13 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-03 01:21]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4129AD7-78D6-FC6B-3652-75C34D8088CD}]
2014-06-12 04:36 472064 ----a-w- c:\program files (x86)\save On\ceWgnIZ_Sm.x64.dll
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ
mStart Page = hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Sothink SWF Catcher - c:\program files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
TCP: DhcpNameServer = 213.211.50.1 213.211.50.1
FF - ProfilePath - c:\users\KryštofČuřík\AppData\Roaming\Mozilla\Firefox\Profiles\16qs64pn.default\
FF - prefs.js: browser.search.defaulturl - hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ&l=1&q=
FF - prefs.js: browser.search.selectedEngine - WebSearch
FF - prefs.js: browser.startup.homepage - hxxp://google.cz/
FF - prefs.js: keyword.URL - hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ&l=1&q=
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKCU-Run-iLivid - c:\users\KryštofČuřík\AppData\Local\iLivid\iLivid.exe
Wow6432Node-HKLM-Run-mobilegeni daemon - c:\program files (x86)\Mobogenie\DaemonProcess.exe
Wow6432Node-HKLM-Run-Mirosoft Services - c:\users\KryštofČuřík\AppData\Roaming\Microsoft\Windows\Templates\Microsoft Services\services.exe
Wow6432Node-HKLM-Run-seznam-listicka-distribuce - c:\program files (x86)\Seznam.cz\distribution\szninstall.exe
Wow6432Node-HKLM-Run-SunJavaUpdateSched - c:\program files (x86)\Java\jre8\bin\jusched.exe
AddRemove-Steam App 271290 - c:\users\KRYTOF~1\AppData\Local\Temp\3582-490\steam.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2014-06-13 15:36:03
ComboFix-quarantined-files.txt 2014-06-13 13:36
.
Před spuštěním: Volných bajtů: 137 734 922 240
Po spuštění: Volných bajtů: 142 474 391 552
.
- - End Of File - - 202256808D35EDB0E1079081FF16D1C1
A36C5E4F47E84449FF07ED3517B43A31
Re: Problémy s podsložkou Temp

- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
Re: Problémy s podsložkou Temp
# AdwCleaner v3.212 - Report created 13/06/2014 at 22:32:06
# Updated 05/06/2014 by Xplode
# Operating System : Windows 7 Home Premium (64 bits)
# Username : KryštofČuřík - KRYŠTOFČUŘÍK-PC
# Running from : C:\Users\KryštofČuřík\Downloads\adwcleaner_3.212.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
[!] Folder Deleted : C:\ProgramData\savEi Net
[!] Folder Deleted : C:\ProgramData\Seearch-NewTaB
[!] Folder Deleted : C:\ProgramData\YoutubeAdblocker
[!] Folder Deleted : C:\Program Files (x86)\Seearch-NewTaB
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Chromatic Browser
[!] Folder Deleted : C:\Users\Guest\AppData\Local\torch
[!] Folder Deleted : C:\Users\KryštofČuřík\AppData\Local\Chromatic Browser
[!] Folder Deleted : C:\Users\KryštofČuřík\AppData\Local\Mobogenie
[!] Folder Deleted : C:\Users\KryštofČuřík\AppData\Local\torch
[!] Folder Deleted : C:\Users\KryštofČuřík\Documents\Mobogenie
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmhnflemeaoebhbejaadfienjkhkjbpi
[!] Folder Deleted : C:\Users\KryštofČuřík\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmhnflemeaoebhbejaadfienjkhkjbpi
File Deleted : C:\Users\KryštofČuřík\daemonprocess.txt
File Deleted : C:\Users\KryštofČuřík\AppData\Roaming\Mozilla\Firefox\Profiles\16qs64pn.default\searchplugins\WebSearch.xml
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\S-1758673221
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{41E2BE59-5C34-46AB-B743-6678BC94F42C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D54C859C-6066-4F31-8FE0-2AAEDCAE67D7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKCU\Software\AppDataLow\Software\blockAndSurf
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKLM\Software\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\Software\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7DD5E91C-3864-77EC-7635-D14910C2A03E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7600.16385
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
-\\ Mozilla Firefox v30.0 (cs)
[ File : C:\Users\KryštofČuřík\AppData\Roaming\Mozilla\Firefox\Profiles\16qs64pn.default\prefs.js ]
Line Deleted : user_pref("browser.search.defaultenginename", "WebSearch");
Line Deleted : user_pref("browser.search.defaultenginename,S", "WebSearch");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ&l=1&q=");
Line Deleted : user_pref("browser.search.order.1", "WebSearch");
Line Deleted : user_pref("browser.search.order.1,S", "WebSearch");
Line Deleted : user_pref("browser.search.selectedEngine", "WebSearch");
Line Deleted : user_pref("browser.search.selectedEngine,S", "WebSearch");
Line Deleted : user_pref("extensions.2XbMjNPP1Jkg.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sum[...]
Line Deleted : user_pref("extensions.H_a4Aj.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.[...]
Line Deleted : user_pref("extensions.nMI8suNktPOM.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sum[...]
Line Deleted : user_pref("keyword.URL", "hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ&l=1&q=");
-\\ Google Chrome v
[ File : C:\Users\KryštofČuřík\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Search Provider] : hxxp://websearch.eazytosearch.info/?l=1&q={searchTerms}&pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ
Deleted [Startup_urls] : hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ
Deleted [Homepage] : hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ
Deleted [Extension] : lmhnflemeaoebhbejaadfienjkhkjbpi
*************************
AdwCleaner[R0].txt - [6981 octets] - [13/06/2014 22:31:32]
AdwCleaner[S0].txt - [6569 octets] - [13/06/2014 22:32:06]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6629 octets] ##########
# Updated 05/06/2014 by Xplode
# Operating System : Windows 7 Home Premium (64 bits)
# Username : KryštofČuřík - KRYŠTOFČUŘÍK-PC
# Running from : C:\Users\KryštofČuřík\Downloads\adwcleaner_3.212.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
[!] Folder Deleted : C:\ProgramData\savEi Net
[!] Folder Deleted : C:\ProgramData\Seearch-NewTaB
[!] Folder Deleted : C:\ProgramData\YoutubeAdblocker
[!] Folder Deleted : C:\Program Files (x86)\Seearch-NewTaB
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Chromatic Browser
[!] Folder Deleted : C:\Users\Guest\AppData\Local\torch
[!] Folder Deleted : C:\Users\KryštofČuřík\AppData\Local\Chromatic Browser
[!] Folder Deleted : C:\Users\KryštofČuřík\AppData\Local\Mobogenie
[!] Folder Deleted : C:\Users\KryštofČuřík\AppData\Local\torch
[!] Folder Deleted : C:\Users\KryštofČuřík\Documents\Mobogenie
[!] Folder Deleted : C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmhnflemeaoebhbejaadfienjkhkjbpi
[!] Folder Deleted : C:\Users\KryštofČuřík\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmhnflemeaoebhbejaadfienjkhkjbpi
File Deleted : C:\Users\KryštofČuřík\daemonprocess.txt
File Deleted : C:\Users\KryštofČuřík\AppData\Roaming\Mozilla\Firefox\Profiles\16qs64pn.default\searchplugins\WebSearch.xml
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\S-1758673221
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{41E2BE59-5C34-46AB-B743-6678BC94F42C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{D54C859C-6066-4F31-8FE0-2AAEDCAE67D7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\RegisteredApplicationsEx
Key Deleted : HKCU\Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKCU\Software\AppDataLow\Software\blockAndSurf
Key Deleted : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\Software\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKLM\Software\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\Software\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7DD5E91C-3864-77EC-7635-D14910C2A03E}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.7600.16385
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
-\\ Mozilla Firefox v30.0 (cs)
[ File : C:\Users\KryštofČuřík\AppData\Roaming\Mozilla\Firefox\Profiles\16qs64pn.default\prefs.js ]
Line Deleted : user_pref("browser.search.defaultenginename", "WebSearch");
Line Deleted : user_pref("browser.search.defaultenginename,S", "WebSearch");
Line Deleted : user_pref("browser.search.defaulturl", "hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ&l=1&q=");
Line Deleted : user_pref("browser.search.order.1", "WebSearch");
Line Deleted : user_pref("browser.search.order.1,S", "WebSearch");
Line Deleted : user_pref("browser.search.selectedEngine", "WebSearch");
Line Deleted : user_pref("browser.search.selectedEngine,S", "WebSearch");
Line Deleted : user_pref("extensions.2XbMjNPP1Jkg.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sum[...]
Line Deleted : user_pref("extensions.H_a4Aj.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.[...]
Line Deleted : user_pref("extensions.nMI8suNktPOM.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sum[...]
Line Deleted : user_pref("keyword.URL", "hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ&l=1&q=");
-\\ Google Chrome v
[ File : C:\Users\KryštofČuřík\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Search Provider] : hxxp://websearch.eazytosearch.info/?l=1&q={searchTerms}&pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ
Deleted [Startup_urls] : hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ
Deleted [Homepage] : hxxp://websearch.eazytosearch.info/?pid=724&r=2014/06/12&hid=633329127200021535&lg=EN&cc=CZ
Deleted [Extension] : lmhnflemeaoebhbejaadfienjkhkjbpi
*************************
AdwCleaner[R0].txt - [6981 octets] - [13/06/2014 22:31:32]
AdwCleaner[S0].txt - [6569 octets] - [13/06/2014 22:32:06]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6629 octets] ##########
Re: Problémy s podsložkou Temp

- Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
- Do okna vlozte skript nize
Kód: Vybrat vše
autoclean; emptyclsid; iedefaults; FFdefaults; CHRdefaults; emptyalltemp; resethosts;
- Nasledne kliknete na Run Script
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem