
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Vir na FB (odkaz na youtube.com)
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 13
- Registrován: 02 črc 2014 17:29
Vir na FB (odkaz na youtube.com)
Dobrý den,
chtěla bych poprosit o pomoc, na FB se mi u kamarádky objevil odkaz na video na youtube, ve kterém mě označila. Bohužel jsem byla tak pitomá, že jsem na to klikla a chtěla si stáhnout aktualizaci flashe, kterou to nabízelo. Samozřejmě jsem zjistila, že to je vir...
Přikládám log z RSIT, předem díky za jakoukoli pomoc.
Log.txt
Logfile of random's system information tool 1.10 (written by random/random)
Run by Lucie Jírovcová at 2014-07-02 18:24:02
Microsoft Windows 8.1
System drive C: has 283 GB (62%) free of 459 GB
Total RAM: 3985 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:25:35, on 2. 7. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Lucie Jírovcová\Downloads\RSIT.exe
C:\Program Files (x86)\trend micro\Lucie Jírovcová.exe
C:\WINDOWS\syswow64\wwahost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13906
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Sony PC Companion] "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_95817D192D778F1EB4C2A964ECCB95F8] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12504 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\AutoKMS.job - C:\Windows\AutoKMS\AutoKMS.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\HPCeeScheduleForLucie Jírovcová.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForLucie Jírovcová (null)
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2013-10-20 627712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-15 1138536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2013-10-20 386048]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2013-10-20 627712]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-15 1138536]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-01-15 3764024]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2013-04-10 95192]
"HPMessageService"=C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [2013-12-25 1045304]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"Sony PC Companion"=C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [2014-05-23 466656]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"GoogleChromeAutoLaunch_95817D192D778F1EB4C2A964ECCB95F8"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2014-06-05 860488]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"msacm.l3acm"=l3codeca.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"vidc.cvid"=iccvid.dll
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FMVC"=fmcodec.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-07-02 18:24:02 ----D---- C:\rsit
2014-07-02 18:24:02 ----D---- C:\Program Files (x86)\trend micro
2014-07-01 13:12:56 ----HD---- C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp
2014-06-12 20:34:21 ----A---- C:\WINDOWS\SysWOW64\iernonce.dll
2014-06-12 20:34:21 ----A---- C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-06-12 20:34:20 ----A---- C:\WINDOWS\SysWOW64\mshtmled.dll
2014-06-12 20:34:20 ----A---- C:\WINDOWS\SysWOW64\iertutil.dll
2014-06-12 20:34:19 ----A---- C:\WINDOWS\SysWOW64\urlmon.dll
2014-06-12 20:34:19 ----A---- C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-06-12 20:34:18 ----A---- C:\WINDOWS\SysWOW64\msfeeds.dll
2014-06-12 20:34:18 ----A---- C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-06-12 20:34:17 ----A---- C:\WINDOWS\SysWOW64\mshtml.dll
2014-06-12 20:34:15 ----A---- C:\WINDOWS\SysWOW64\iesetup.dll
2014-06-12 20:34:14 ----A---- C:\WINDOWS\SysWOW64\jsproxy.dll
2014-06-12 20:34:13 ----A---- C:\WINDOWS\SysWOW64\dxtrans.dll
2014-06-12 20:34:12 ----A---- C:\WINDOWS\SysWOW64\ieframe.dll
2014-06-12 20:34:10 ----A---- C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-06-12 20:34:09 ----A---- C:\WINDOWS\SysWOW64\jscript9.dll
2014-06-12 20:34:09 ----A---- C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-06-12 20:34:08 ----A---- C:\WINDOWS\SysWOW64\wininet.dll
2014-06-12 20:34:08 ----A---- C:\WINDOWS\SysWOW64\msrating.dll
2014-06-12 20:33:46 ----A---- C:\WINDOWS\SysWOW64\msxml3.dll
2014-06-12 20:33:45 ----A---- C:\WINDOWS\SysWOW64\gdi32.dll
2014-06-12 20:33:42 ----A---- C:\WINDOWS\SysWOW64\WSShared.dll
2014-06-12 20:33:42 ----A---- C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-06-12 20:33:35 ----A---- C:\WINDOWS\SysWOW64\twinui.dll
2014-06-12 20:33:34 ----A---- C:\WINDOWS\SysWOW64\shell32.dll
2014-06-12 20:33:31 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-06-12 20:33:26 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-06-12 20:33:26 ----A---- C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2014-06-12 20:33:25 ----A---- C:\WINDOWS\SysWOW64\mstscax.dll
2014-06-12 20:33:23 ----A---- C:\WINDOWS\SysWOW64\d3d9.dll
2014-06-12 20:33:19 ----A---- C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-06-12 20:33:19 ----A---- C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-06-12 20:33:19 ----A---- C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2014-06-12 20:33:19 ----A---- C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-06-12 20:33:19 ----A---- C:\WINDOWS\SysWOW64\mfcore.dll
2014-06-12 20:33:18 ----A---- C:\WINDOWS\SysWOW64\mfsvr.dll
2014-06-12 20:33:17 ----A---- C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
2014-06-12 20:33:16 ----A---- C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-06-12 20:33:16 ----A---- C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-06-12 20:33:15 ----A---- C:\WINDOWS\SysWOW64\winmde.dll
2014-06-12 20:33:15 ----A---- C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2014-06-12 20:33:14 ----A---- C:\WINDOWS\SysWOW64\rdpencom.dll
2014-06-12 20:33:14 ----A---- C:\WINDOWS\SysWOW64\dwmapi.dll
2014-06-12 20:33:13 ----A---- C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2014-06-12 20:33:12 ----A---- C:\WINDOWS\SysWOW64\rpchttp.dll
2014-06-12 20:33:12 ----A---- C:\WINDOWS\SysWOW64\propsys.dll
2014-06-12 20:33:12 ----A---- C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2014-06-12 20:33:12 ----A---- C:\WINDOWS\SysWOW64\gpapi.dll
2014-06-12 20:33:11 ----A---- C:\WINDOWS\SysWOW64\wintrust.dll
2014-06-12 20:33:11 ----A---- C:\WINDOWS\SysWOW64\mfplat.dll
2014-06-12 20:33:11 ----A---- C:\WINDOWS\SysWOW64\mf.dll
2014-06-12 20:33:11 ----A---- C:\WINDOWS\SysWOW64\AudioSes.dll
2014-06-12 20:33:11 ----A---- C:\WINDOWS\SysWOW64\AudioEng.dll
2014-06-12 20:33:10 ----A---- C:\WINDOWS\SysWOW64\clusapi.dll
2014-06-12 20:33:09 ----A---- C:\WINDOWS\SysWOW64\resutils.dll
2014-06-12 20:33:06 ----A---- C:\WINDOWS\SysWOW64\tlscsp.dll
2014-06-12 20:33:06 ----A---- C:\WINDOWS\SysWOW64\d3d8thk.dll
2014-06-12 20:33:05 ----A---- C:\WINDOWS\SysWOW64\mispace.dll
2014-06-12 20:33:04 ----A---- C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-06-12 20:33:04 ----A---- C:\WINDOWS\SysWOW64\wlanapi.dll
2014-06-12 20:33:04 ----A---- C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-06-12 20:33:03 ----A---- C:\WINDOWS\SysWOW64\wlanhlp.dll
2014-06-12 20:33:03 ----A---- C:\WINDOWS\SysWOW64\srclient.dll
2014-06-12 20:32:03 ----A---- C:\WINDOWS\SysWOW64\drvinst.exe
2014-06-12 20:32:01 ----A---- C:\WINDOWS\SysWOW64\DWrite.dll
2014-06-12 20:31:59 ----A---- C:\WINDOWS\SysWOW64\Wpc.dll
2014-06-12 20:28:57 ----A---- C:\WINDOWS\SysWOW64\tsgqec.dll
======List of files/folders modified in the last 1 month======
2014-07-02 18:24:14 ----D---- C:\WINDOWS\Prefetch
2014-07-02 18:24:02 ----RD---- C:\Program Files (x86)
2014-07-02 18:08:24 ----D---- C:\WINDOWS\System32
2014-07-02 18:08:24 ----D---- C:\WINDOWS\Inf
2014-07-02 18:05:37 ----D---- C:\Users\Lucie Jírovcová\AppData\Roaming\ClassicShell
2014-07-02 17:37:30 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-07-02 17:37:28 ----SHD---- C:\WINDOWS\Installer
2014-07-02 17:37:27 ----D---- C:\WINDOWS\Temp
2014-07-02 17:36:50 ----SHD---- C:\System Volume Information
2014-07-01 22:34:28 ----D---- C:\WINDOWS\Tasks
2014-07-01 13:12:56 ----D---- C:\Windows
2014-07-01 08:46:44 ----D---- C:\WINDOWS\Microsoft.NET
2014-06-28 22:05:49 ----D---- C:\WINDOWS\CbsTemp
2014-06-28 22:04:55 ----D---- C:\WINDOWS\WinSxS
2014-06-28 21:52:25 ----D---- C:\WINDOWS\AppReadiness
2014-06-27 20:03:22 ----D---- C:\WINDOWS\LiveKernelReports
2014-06-27 08:20:33 ----HD---- C:\GrandeDevice
2014-06-22 08:17:22 ----SD---- C:\Users\Lucie Jírovcová\AppData\Roaming\Microsoft
2014-06-18 08:02:51 ----D---- C:\Users\Lucie Jírovcová\AppData\Roaming\vlc
2014-06-16 11:46:05 ----D---- C:\WINDOWS\rescache
2014-06-13 21:57:06 ----D---- C:\Program Files (x86)\Internet Explorer
2014-06-13 21:57:05 ----D---- C:\WINDOWS\WinStore
2014-06-13 21:57:05 ----D---- C:\WINDOWS\SysWOW64
2014-06-13 21:57:04 ----RD---- C:\WINDOWS\ToastData
2014-06-13 21:57:03 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-06-13 21:54:36 ----D---- C:\WINDOWS\SysWOW64\migration
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\SysWOW64\drivers\aswRvrt.sys []
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\SysWOW64\drivers\aswVmm.sys []
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys []
R1 aswRdr;aswRdr; \??\C:\WINDOWS\system32\drivers\aswRdr2.sys []
R1 aswSnx;aswSnx; \??\C:\WINDOWS\system32\drivers\aswSnx.sys []
R1 aswSP;aswSP; \??\C:\WINDOWS\system32\drivers\aswSP.sys []
R1 dtsoftbus01;@oem102.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys []
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys []
R2 aswMonFlt;aswMonFlt; \??\C:\WINDOWS\system32\drivers\aswMonFlt.sys []
R3 aswStm;aswStm; \??\C:\WINDOWS\system32\drivers\aswStm.sys []
R3 athr;@oem4.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athwbx.sys []
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys []
R3 IntcDAud;@oem23.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys []
R3 iwdbus;@oem30.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys []
R3 MEIx64;@oem42.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys []
R3 RTL8168;@oem12.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys []
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys []
R3 SynTP;@oem11.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys []
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys []
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys []
S3 AthBTPort;@oem12.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys []
S3 ATHDFU;Qualcomm Atheros Valkyrie USB BootROM; C:\WINDOWS\System32\Drivers\AthDfu.sys []
S3 BTATH_A2DP;@oem11.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys []
S3 btath_avdt;@oem11.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys []
S3 BTATH_HCRP;@oem15.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys []
S3 BTATH_LWFLT;@oem16.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys []
S3 BTATH_RCP;@oem18.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys []
S3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys []
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys []
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys []
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys []
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys []
S3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys []
S3 dg_ssudbus;@oem40.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys []
S3 ggflt;@oem101.inf,%SvcFltDesc%;SEMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys []
S3 ggsemc;@oem101.inf,%SvcDesc%;SEMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsemc.sys []
S3 intaud_WaveExtensible;@oem29.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys []
S3 nmwcdx64;@oem38.inf,%ServiceDisplayName%;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmbx64.sys []
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys []
S3 RSP2STOR;@oem6.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys []
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys []
S3 ssudmdm;@oem41.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [2013-03-05 98208]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2013-08-22 31552]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-12-24 318592]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-01-15 50344]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528]
R2 HPWMISVC;HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [2013-12-25 1039160]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-08-07 15720]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-11-16 2468496]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-05-11 733696]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-02-01 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-02-01 390616]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2010-05-04 503080]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2013-03-05 239176]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-15 116648]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-09-16 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-15 116648]
S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-05-11 822232]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 w3logsvc;@%windir%\system32\inetsrv\iisres.dll,-30014; C:\WINDOWS\system32\svchost.exe [2013-08-22 31552]
S3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\WINDOWS\system32\svchost.exe [2013-08-22 31552]
-----------------EOF-----------------
chtěla bych poprosit o pomoc, na FB se mi u kamarádky objevil odkaz na video na youtube, ve kterém mě označila. Bohužel jsem byla tak pitomá, že jsem na to klikla a chtěla si stáhnout aktualizaci flashe, kterou to nabízelo. Samozřejmě jsem zjistila, že to je vir...
Přikládám log z RSIT, předem díky za jakoukoli pomoc.
Log.txt
Logfile of random's system information tool 1.10 (written by random/random)
Run by Lucie Jírovcová at 2014-07-02 18:24:02
Microsoft Windows 8.1
System drive C: has 283 GB (62%) free of 459 GB
Total RAM: 3985 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:25:35, on 2. 7. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17126)
Boot mode: Normal
Running processes:
C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Lucie Jírovcová\Downloads\RSIT.exe
C:\Program Files (x86)\trend micro\Lucie Jírovcová.exe
C:\WINDOWS\syswow64\wwahost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13906
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O3 - Toolbar: avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [seznam-listicka-distribuce] "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
O4 - HKCU\..\Run: [cz.seznam.software.autoupdate] "C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\szninstall.exe" -c
O4 - HKCU\..\Run: [cz.seznam.software.szndesktop] "C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe" -q
O4 - HKCU\..\Run: [Sony PC Companion] "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_95817D192D778F1EB4C2A964ECCB95F8] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12504 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\AutoKMS.job - C:\Windows\AutoKMS\AutoKMS.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\HPCeeScheduleForLucie Jírovcová.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForLucie Jírovcová (null)
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2013-10-20 627712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-15 1138536]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2013-10-20 386048]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2013-10-20 627712]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-01-15 1138536]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-01-15 3764024]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"seznam-listicka-distribuce"=C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [2013-05-16 1062472]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2013-04-10 95192]
"HPMessageService"=C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [2013-12-25 1045304]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"cz.seznam.software.autoupdate"=C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\szninstall.exe [2013-05-16 1062472]
"cz.seznam.software.szndesktop"=C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [2013-04-12 92664]
"Sony PC Companion"=C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [2014-05-23 466656]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2014-03-04 3696912]
"GoogleChromeAutoLaunch_95817D192D778F1EB4C2A964ECCB95F8"=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2014-06-05 860488]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"msacm.l3acm"=l3codeca.acm
"vidc.yuy2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"vidc.cvid"=iccvid.dll
"vidc.yvyu"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"vidc.uyvy"=msyuv.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FMVC"=fmcodec.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.FFDS"=ff_vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-07-02 18:24:02 ----D---- C:\rsit
2014-07-02 18:24:02 ----D---- C:\Program Files (x86)\trend micro
2014-07-01 13:12:56 ----HD---- C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp
2014-06-12 20:34:21 ----A---- C:\WINDOWS\SysWOW64\iernonce.dll
2014-06-12 20:34:21 ----A---- C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-06-12 20:34:20 ----A---- C:\WINDOWS\SysWOW64\mshtmled.dll
2014-06-12 20:34:20 ----A---- C:\WINDOWS\SysWOW64\iertutil.dll
2014-06-12 20:34:19 ----A---- C:\WINDOWS\SysWOW64\urlmon.dll
2014-06-12 20:34:19 ----A---- C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-06-12 20:34:18 ----A---- C:\WINDOWS\SysWOW64\msfeeds.dll
2014-06-12 20:34:18 ----A---- C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-06-12 20:34:17 ----A---- C:\WINDOWS\SysWOW64\mshtml.dll
2014-06-12 20:34:15 ----A---- C:\WINDOWS\SysWOW64\iesetup.dll
2014-06-12 20:34:14 ----A---- C:\WINDOWS\SysWOW64\jsproxy.dll
2014-06-12 20:34:13 ----A---- C:\WINDOWS\SysWOW64\dxtrans.dll
2014-06-12 20:34:12 ----A---- C:\WINDOWS\SysWOW64\ieframe.dll
2014-06-12 20:34:10 ----A---- C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-06-12 20:34:09 ----A---- C:\WINDOWS\SysWOW64\jscript9.dll
2014-06-12 20:34:09 ----A---- C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-06-12 20:34:08 ----A---- C:\WINDOWS\SysWOW64\wininet.dll
2014-06-12 20:34:08 ----A---- C:\WINDOWS\SysWOW64\msrating.dll
2014-06-12 20:33:46 ----A---- C:\WINDOWS\SysWOW64\msxml3.dll
2014-06-12 20:33:45 ----A---- C:\WINDOWS\SysWOW64\gdi32.dll
2014-06-12 20:33:42 ----A---- C:\WINDOWS\SysWOW64\WSShared.dll
2014-06-12 20:33:42 ----A---- C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-06-12 20:33:35 ----A---- C:\WINDOWS\SysWOW64\twinui.dll
2014-06-12 20:33:34 ----A---- C:\WINDOWS\SysWOW64\shell32.dll
2014-06-12 20:33:31 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-06-12 20:33:26 ----A---- C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-06-12 20:33:26 ----A---- C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2014-06-12 20:33:25 ----A---- C:\WINDOWS\SysWOW64\mstscax.dll
2014-06-12 20:33:23 ----A---- C:\WINDOWS\SysWOW64\d3d9.dll
2014-06-12 20:33:19 ----A---- C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-06-12 20:33:19 ----A---- C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-06-12 20:33:19 ----A---- C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2014-06-12 20:33:19 ----A---- C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-06-12 20:33:19 ----A---- C:\WINDOWS\SysWOW64\mfcore.dll
2014-06-12 20:33:18 ----A---- C:\WINDOWS\SysWOW64\mfsvr.dll
2014-06-12 20:33:17 ----A---- C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
2014-06-12 20:33:16 ----A---- C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-06-12 20:33:16 ----A---- C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-06-12 20:33:15 ----A---- C:\WINDOWS\SysWOW64\winmde.dll
2014-06-12 20:33:15 ----A---- C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2014-06-12 20:33:14 ----A---- C:\WINDOWS\SysWOW64\rdpencom.dll
2014-06-12 20:33:14 ----A---- C:\WINDOWS\SysWOW64\dwmapi.dll
2014-06-12 20:33:13 ----A---- C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2014-06-12 20:33:12 ----A---- C:\WINDOWS\SysWOW64\rpchttp.dll
2014-06-12 20:33:12 ----A---- C:\WINDOWS\SysWOW64\propsys.dll
2014-06-12 20:33:12 ----A---- C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2014-06-12 20:33:12 ----A---- C:\WINDOWS\SysWOW64\gpapi.dll
2014-06-12 20:33:11 ----A---- C:\WINDOWS\SysWOW64\wintrust.dll
2014-06-12 20:33:11 ----A---- C:\WINDOWS\SysWOW64\mfplat.dll
2014-06-12 20:33:11 ----A---- C:\WINDOWS\SysWOW64\mf.dll
2014-06-12 20:33:11 ----A---- C:\WINDOWS\SysWOW64\AudioSes.dll
2014-06-12 20:33:11 ----A---- C:\WINDOWS\SysWOW64\AudioEng.dll
2014-06-12 20:33:10 ----A---- C:\WINDOWS\SysWOW64\clusapi.dll
2014-06-12 20:33:09 ----A---- C:\WINDOWS\SysWOW64\resutils.dll
2014-06-12 20:33:06 ----A---- C:\WINDOWS\SysWOW64\tlscsp.dll
2014-06-12 20:33:06 ----A---- C:\WINDOWS\SysWOW64\d3d8thk.dll
2014-06-12 20:33:05 ----A---- C:\WINDOWS\SysWOW64\mispace.dll
2014-06-12 20:33:04 ----A---- C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-06-12 20:33:04 ----A---- C:\WINDOWS\SysWOW64\wlanapi.dll
2014-06-12 20:33:04 ----A---- C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-06-12 20:33:03 ----A---- C:\WINDOWS\SysWOW64\wlanhlp.dll
2014-06-12 20:33:03 ----A---- C:\WINDOWS\SysWOW64\srclient.dll
2014-06-12 20:32:03 ----A---- C:\WINDOWS\SysWOW64\drvinst.exe
2014-06-12 20:32:01 ----A---- C:\WINDOWS\SysWOW64\DWrite.dll
2014-06-12 20:31:59 ----A---- C:\WINDOWS\SysWOW64\Wpc.dll
2014-06-12 20:28:57 ----A---- C:\WINDOWS\SysWOW64\tsgqec.dll
======List of files/folders modified in the last 1 month======
2014-07-02 18:24:14 ----D---- C:\WINDOWS\Prefetch
2014-07-02 18:24:02 ----RD---- C:\Program Files (x86)
2014-07-02 18:08:24 ----D---- C:\WINDOWS\System32
2014-07-02 18:08:24 ----D---- C:\WINDOWS\Inf
2014-07-02 18:05:37 ----D---- C:\Users\Lucie Jírovcová\AppData\Roaming\ClassicShell
2014-07-02 17:37:30 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-07-02 17:37:28 ----SHD---- C:\WINDOWS\Installer
2014-07-02 17:37:27 ----D---- C:\WINDOWS\Temp
2014-07-02 17:36:50 ----SHD---- C:\System Volume Information
2014-07-01 22:34:28 ----D---- C:\WINDOWS\Tasks
2014-07-01 13:12:56 ----D---- C:\Windows
2014-07-01 08:46:44 ----D---- C:\WINDOWS\Microsoft.NET
2014-06-28 22:05:49 ----D---- C:\WINDOWS\CbsTemp
2014-06-28 22:04:55 ----D---- C:\WINDOWS\WinSxS
2014-06-28 21:52:25 ----D---- C:\WINDOWS\AppReadiness
2014-06-27 20:03:22 ----D---- C:\WINDOWS\LiveKernelReports
2014-06-27 08:20:33 ----HD---- C:\GrandeDevice
2014-06-22 08:17:22 ----SD---- C:\Users\Lucie Jírovcová\AppData\Roaming\Microsoft
2014-06-18 08:02:51 ----D---- C:\Users\Lucie Jírovcová\AppData\Roaming\vlc
2014-06-16 11:46:05 ----D---- C:\WINDOWS\rescache
2014-06-13 21:57:06 ----D---- C:\Program Files (x86)\Internet Explorer
2014-06-13 21:57:05 ----D---- C:\WINDOWS\WinStore
2014-06-13 21:57:05 ----D---- C:\WINDOWS\SysWOW64
2014-06-13 21:57:04 ----RD---- C:\WINDOWS\ToastData
2014-06-13 21:57:03 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-06-13 21:54:36 ----D---- C:\WINDOWS\SysWOW64\migration
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 aswRvrt;avast! Revert; C:\WINDOWS\SysWOW64\drivers\aswRvrt.sys []
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\SysWOW64\drivers\aswVmm.sys []
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys []
R1 aswRdr;aswRdr; \??\C:\WINDOWS\system32\drivers\aswRdr2.sys []
R1 aswSnx;aswSnx; \??\C:\WINDOWS\system32\drivers\aswSnx.sys []
R1 aswSP;aswSP; \??\C:\WINDOWS\system32\drivers\aswSP.sys []
R1 dtsoftbus01;@oem102.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys []
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys []
R2 aswMonFlt;aswMonFlt; \??\C:\WINDOWS\system32\drivers\aswMonFlt.sys []
R3 aswStm;aswStm; \??\C:\WINDOWS\system32\drivers\aswStm.sys []
R3 athr;@oem4.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athwbx.sys []
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys []
R3 IntcDAud;@oem23.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys []
R3 iwdbus;@oem30.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys []
R3 MEIx64;@oem42.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys []
R3 RTL8168;@oem12.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys []
R3 SmbDrvI;SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys []
R3 SynTP;@oem11.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys []
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys []
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys []
S3 AthBTPort;@oem12.inf,%BTHSUPPORT.SvcDesc%;Qualcomm Atheros Virtual Bluetooth Class; C:\WINDOWS\system32\DRIVERS\btath_flt.sys []
S3 ATHDFU;Qualcomm Atheros Valkyrie USB BootROM; C:\WINDOWS\System32\Drivers\AthDfu.sys []
S3 BTATH_A2DP;@oem11.inf,%BTATH_A2DP.SvcDesc%;Bluetooth A2DP Audio Driver; C:\WINDOWS\system32\drivers\btath_a2dp.sys []
S3 btath_avdt;@oem11.inf,%btath_avdt.SvcDesc%;Qualcomm Atheros Bluetooth AVDT Service; C:\WINDOWS\system32\drivers\btath_avdt.sys []
S3 BTATH_HCRP;@oem15.inf,%BTATH_HCRP.SvcDesc%;Bluetooth HCRP Server driver; C:\WINDOWS\System32\drivers\btath_hcrp.sys []
S3 BTATH_LWFLT;@oem16.inf,%BTATH_LWFLT%;Bluetooth LWFLT Device; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys []
S3 BTATH_RCP;@oem18.inf,%BTATH_RCP%;Bluetooth AVRCP Device; C:\WINDOWS\System32\drivers\btath_rcp.sys []
S3 BtFilter;BtFilter; C:\WINDOWS\system32\DRIVERS\btfilter.sys []
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys []
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys []
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys []
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys []
S3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys []
S3 dg_ssudbus;@oem40.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys []
S3 ggflt;@oem101.inf,%SvcFltDesc%;SEMC USB Flash Driver Filter; C:\WINDOWS\System32\drivers\ggflt.sys []
S3 ggsemc;@oem101.inf,%SvcDesc%;SEMC USB Flash Driver; C:\WINDOWS\System32\drivers\ggsemc.sys []
S3 intaud_WaveExtensible;@oem29.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys []
S3 nmwcdx64;@oem38.inf,%ServiceDisplayName%;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmbx64.sys []
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys []
S3 RSP2STOR;@oem6.inf,%Rts5229%;Realtek PCIE CardReader Driver - P2; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys []
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys []
S3 ssudmdm;@oem41.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE [2013-03-05 98208]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2013-08-22 31552]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2013-12-24 318592]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-01-15 50344]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-31 462184]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2012-09-27 86528]
R2 HPWMISVC;HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [2013-12-25 1039160]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-08-07 15720]
R2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-11-16 2468496]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-05-11 733696]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-02-01 169432]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-02-01 390616]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2010-05-04 503080]
R2 RtkAudioService;Realtek Audio Service; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [2013-03-05 239176]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
R3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-15 116648]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-09-16 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-15 116648]
S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2012-08-10 1001376]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-05-11 822232]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 174440]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 w3logsvc;@%windir%\system32\inetsrv\iisres.dll,-30014; C:\WINDOWS\system32\svchost.exe [2013-08-22 31552]
S3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\WINDOWS\system32\svchost.exe [2013-08-22 31552]
-----------------EOF-----------------
Re: Vir na FB (odkaz na youtube.com)
Zdravim
Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Aplikujte MBAM http://forum.viry.cz/viewtopic.php?f=29&t=137928


- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte

-
- Návštěvník
- Příspěvky: 13
- Registrován: 02 črc 2014 17:29
Re: Vir na FB (odkaz na youtube.com)
Všechno hotovo, otevřel se mi tento .txt soubor
# AdwCleaner v3.214 - Report created 02/07/2014 at 18:47:27
# Updated 29/06/2014 by Xplode
# Operating System : Windows 8.1 (64 bits)
# Username : Lucie Jírovcová - LJ
# Running from : C:\Users\Lucie Jírovcová\Desktop\adwcleaner_3.214.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\AlawarWrapper
Folder Deleted : C:\Program Files (x86)\WinZip Registry Optimizer
Folder Deleted : C:\Users\LUCIEJ~1\AppData\Local\Temp\apn
Folder Deleted : C:\Users\LUCIEJ~1\AppData\Local\Temp\AskSearch
Folder Deleted : C:\Users\Lucie Jírovcová\AppData\Local\VNT
Folder Deleted : C:\Users\Lucie Jírovcová\AppData\Local\AlawarWrapper
Folder Deleted : C:\Users\Public\Documents\AlawarWrapper
File Deleted : C:\WINDOWS\System32\roboot64.exe
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17126
-\\ Google Chrome v35.0.1916.153
[ File : C:\Users\Lucie Jírovcová\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [1264 octets] - [02/07/2014 18:46:29]
AdwCleaner[S0].txt - [1203 octets] - [02/07/2014 18:47:27]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1263 octets] ##########
# AdwCleaner v3.214 - Report created 02/07/2014 at 18:47:27
# Updated 29/06/2014 by Xplode
# Operating System : Windows 8.1 (64 bits)
# Username : Lucie Jírovcová - LJ
# Running from : C:\Users\Lucie Jírovcová\Desktop\adwcleaner_3.214.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\AlawarWrapper
Folder Deleted : C:\Program Files (x86)\WinZip Registry Optimizer
Folder Deleted : C:\Users\LUCIEJ~1\AppData\Local\Temp\apn
Folder Deleted : C:\Users\LUCIEJ~1\AppData\Local\Temp\AskSearch
Folder Deleted : C:\Users\Lucie Jírovcová\AppData\Local\VNT
Folder Deleted : C:\Users\Lucie Jírovcová\AppData\Local\AlawarWrapper
Folder Deleted : C:\Users\Public\Documents\AlawarWrapper
File Deleted : C:\WINDOWS\System32\roboot64.exe
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17126
-\\ Google Chrome v35.0.1916.153
[ File : C:\Users\Lucie Jírovcová\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [1264 octets] - [02/07/2014 18:46:29]
AdwCleaner[S0].txt - [1203 octets] - [02/07/2014 18:47:27]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1263 octets] ##########
Re: Vir na FB (odkaz na youtube.com)
Tak a ted vzhuru do MBAMu
-
- Návštěvník
- Příspěvky: 13
- Registrován: 02 črc 2014 17:29
Re: Vir na FB (odkaz na youtube.com)
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 2. 7. 2014
Čas skenování: 19:04:21
Protokol: log.txt
Správce: Ano
Verze: 2.00.2.1012
Databáze malwaru: v2014.07.02.05
Databáze rootkitů: v2014.07.01.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Self-protection: Vypnuto
OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Lucie JArovcovA!
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 564351
Uplynulý čas: 2 hod, 29 min, 21 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristics: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(No malicious items detected)
Moduly: 0
(No malicious items detected)
Klíče registru: 0
(No malicious items detected)
Hodnoty registru: 0
(No malicious items detected)
Data registru: 0
(No malicious items detected)
Složky: 0
(No malicious items detected)
Soubory: 5
PUP.Optional.OpenCandy, C:\$Recycle.Bin\S-1-5-21-3485828363-1844069518-3799428762-1001\$RRLM6UN.exe, , [5766f6a494e72c0a17a0cbe9b252d828],
PUP.Optional.OpenCandy, C:\Users\install\download-tc850_b8.exe, , [e3da1a80a9d2cc6ad6e1367e8f757888],
PUP.Optional.Spigot.A, C:\Users\Lucie JArovcovA!\AppData\Local\Microsoft\Windows\INetCache\IE\BXDPA8SK\Offercast2802_PTV_[1].exe, , [15a8aeecf8839e98d7d333f750b10ff1],
PUP.Optional.Spigot.A, C:\Users\Lucie JArovcovA!\AppData\Local\Temp\PIPInstaller_PTV_.exe, , [734a475337443501c7e32307e9187987],
PUP.Optional.Spigot.A, C:\Users\Lucie JArovcovA!\AppData\Local\Temp\nsjDD7B.tmp-2\APN_ATU3_.exe, , [a8156d2dafcc2c0a901a002a35cc35cb],
Fyzické sektory: 0
(No malicious items detected)
(end)
www.malwarebytes.org
Datum skenování: 2. 7. 2014
Čas skenování: 19:04:21
Protokol: log.txt
Správce: Ano
Verze: 2.00.2.1012
Databáze malwaru: v2014.07.02.05
Databáze rootkitů: v2014.07.01.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Self-protection: Vypnuto
OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Lucie JArovcovA!
Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 564351
Uplynulý čas: 2 hod, 29 min, 21 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristics: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(No malicious items detected)
Moduly: 0
(No malicious items detected)
Klíče registru: 0
(No malicious items detected)
Hodnoty registru: 0
(No malicious items detected)
Data registru: 0
(No malicious items detected)
Složky: 0
(No malicious items detected)
Soubory: 5
PUP.Optional.OpenCandy, C:\$Recycle.Bin\S-1-5-21-3485828363-1844069518-3799428762-1001\$RRLM6UN.exe, , [5766f6a494e72c0a17a0cbe9b252d828],
PUP.Optional.OpenCandy, C:\Users\install\download-tc850_b8.exe, , [e3da1a80a9d2cc6ad6e1367e8f757888],
PUP.Optional.Spigot.A, C:\Users\Lucie JArovcovA!\AppData\Local\Microsoft\Windows\INetCache\IE\BXDPA8SK\Offercast2802_PTV_[1].exe, , [15a8aeecf8839e98d7d333f750b10ff1],
PUP.Optional.Spigot.A, C:\Users\Lucie JArovcovA!\AppData\Local\Temp\PIPInstaller_PTV_.exe, , [734a475337443501c7e32307e9187987],
PUP.Optional.Spigot.A, C:\Users\Lucie JArovcovA!\AppData\Local\Temp\nsjDD7B.tmp-2\APN_ATU3_.exe, , [a8156d2dafcc2c0a901a002a35cc35cb],
Fyzické sektory: 0
(No malicious items detected)
(end)
-
- Návštěvník
- Příspěvky: 13
- Registrován: 02 črc 2014 17:29
Re: Vir na FB (odkaz na youtube.com)
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-07-2014
Ran by Lucie Jírovcová (administrator) on LJ on 03-07-2014 08:01:26
Running from C:\Users\Lucie Jírovcová\Desktop
Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
() C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
() C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-15] (AVAST Software)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-04-10] (CyberLink Corp.)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-12-25] (Hewlett-Packard Development Company, L.P.)
HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2014-05-27] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [Sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [466656 2014-05-23] (Sony)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [GoogleChromeAutoLaunch_95817D192D778F1EB4C2A964ECCB95F8] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [860488 2014-06-05] (Google Inc.)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\MountPoints2: {685d46c5-accf-11e3-be85-a4db305a504e} - "F:\LaunchU3.exe" -a
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\MountPoints2: {c21d462a-8a4c-11e3-be7e-a0d3c19733f8} - "H:\Startme.exe"
ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: ShareOverlay -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: ShareOverlay -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13906
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
SearchScopes: HKLM - {E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
SearchScopes: HKLM-x32 - {E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKCU - {0797ABA3-CCD2-486E-BF67-907FD7A79DCF} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13906
SearchScopes: HKCU - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
SearchScopes: HKCU - {3B0A1FAA-554D-4607-B1EB-BA4EFF12ADB1} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13906
SearchScopes: HKCU - {6A03D491-E3ED-40B6-88D8-FEFF942CCFE2} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13906
SearchScopes: HKCU - {933647BA-FCA7-4397-9D8E-1CD7DC6ADAA5} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13906
SearchScopes: HKCU - {9F5FD010-ADAC-45EE-8923-03AC34845D35} URL = http://search.seznam.cz/?q={searchTerms ... arch_13906
SearchScopes: HKCU - {9F637C4B-D3DC-4940-BF2E-7B9064AB19FD} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13906
SearchScopes: HKCU - {B833E894-8F69-4C2C-8EF1-BAAA5F3765BB} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13906
SearchScopes: HKCU - {CAF91536-3F6F-4FD7-89B1-139C4DFDD343} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13906
SearchScopes: HKCU - {D7D07355-43C7-4E8A-A275-A0848DDDE879} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13906
SearchScopes: HKCU - {E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll (IvoSoft)
BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
BHO-x32: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.)
FF Plugin-x32: @cuminas.jp/DjVuPlugin - C:\Program Files (x86)\Cuminas\Document Express DjVu Plug-in\npdjvu.dll (Cuminas Corporation)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
Chrome:
=======
CHR HomePage:
CHR Extension: (Kalendář Google) - C:\Users\Lucie Jírovcová\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-01-28]
CHR Extension: (No Name) - C:\Users\Lucie Jírovcová\AppData\Local\Google\Chrome\User Data\Default\Extensions\godimpbmfohihoaikgfknnnmlncabkkp [2014-07-02]
CHR Extension: (avast! Online Security) - C:\Users\Lucie Jírovcová\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-01-16]
CHR Extension: (Peněženka Google) - C:\Users\Lucie Jírovcová\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-15]
CHR HKLM-x32\...\Chrome\Extension: [godimpbmfohihoaikgfknnnmlncabkkp] - C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx [2014-06-29]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-01-15]
==================== Services (Whitelisted) =================
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [318592 2013-12-24] (Windows (R) Win 7 DDK provider)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-15] (AVAST Software)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [86528 2012-09-27] (Hewlett-Packard Company) [File not signed]
R2 HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [1039160 2013-12-25] (Hewlett-Packard Development Company, L.P.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2014-02-01] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [239176 2013-03-05] (Realtek Semiconductor)
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-01-15] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [78648 2014-01-15] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [92544 2014-01-15] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-01-15] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [1034464 2014-01-15] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [422216 2014-01-15] (AVAST Software)
S3 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [79672 2014-01-15] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-15] ()
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3880448 2013-11-13] (Qualcomm Atheros Communications, Inc.)
R3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-05-10] (Disc Soft Ltd)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [122584 2014-07-03] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2014-05-12] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2014-02-01] (Intel Corporation)
S3 nmwcdx64; C:\Windows\system32\drivers\ccdcmbx64.sys [18432 2008-05-02] (Nokia)
S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [288328 2013-01-24] (Realtek Semiconductor Corp.)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [29424 2013-05-08] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2014-02-01] (Synaptics Incorporated)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.)
S3 AthBTPort; \SystemRoot\system32\DRIVERS\btath_flt.sys [X]
S3 BTATH_A2DP; \SystemRoot\system32\drivers\btath_a2dp.sys [X]
S3 btath_avdt; \SystemRoot\system32\drivers\btath_avdt.sys [X]
S3 BTATH_HCRP; \SystemRoot\System32\drivers\btath_hcrp.sys [X]
S3 BTATH_LWFLT; \SystemRoot\system32\DRIVERS\btath_lwflt.sys [X]
S3 BTATH_RCP; \SystemRoot\System32\drivers\btath_rcp.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-03 08:00 - 2014-07-03 08:01 - 00021418 _____ () C:\Users\Lucie Jírovcová\Desktop\FRST.txt
2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 501612.crdownload
2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Desktop\FRSTLauncher (4).exe
2014-07-03 07:48 - 2014-07-03 07:48 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 337530.crdownload
2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 683120.crdownload
2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 392758.crdownload
2014-07-02 22:14 - 2014-07-02 22:14 - 00008672 _____ () C:\Users\Lucie Jírovcová\Desktop\Addition.rar
2014-07-02 22:10 - 2014-07-03 08:01 - 00000000 ____D () C:\FRST
2014-07-02 22:08 - 2014-07-02 22:08 - 02083840 _____ (Farbar) C:\Users\Lucie Jírovcová\Desktop\FRST64.exe
2014-07-02 22:04 - 2014-07-02 22:04 - 01073664 _____ (Farbar) C:\Users\Lucie Jírovcová\Downloads\FRST.exe
2014-07-02 19:00 - 2014-07-02 20:54 - 720254976 _____ () C:\Users\Lucie Jírovcová\Downloads\Vypravej-03x17---Smrt-Brezneva-DVDrip-CZ.avi
2014-07-02 19:00 - 2014-07-02 20:54 - 718878720 _____ () C:\Users\Lucie Jírovcová\Downloads\Vypravej-03x16---Ju-a-Hele-DVDrip-CZ.avi
2014-07-02 18:58 - 2014-07-03 07:07 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-07-02 18:57 - 2014-07-02 18:57 - 00001125 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-02 18:57 - 2014-07-02 18:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-02 18:57 - 2014-07-02 18:57 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-02 18:57 - 2014-07-02 18:57 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-02 18:57 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-07-02 18:57 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-07-02 18:57 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-07-02 18:56 - 2014-07-02 18:57 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Lucie Jírovcová\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-02 18:47 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
2014-07-02 18:46 - 2014-07-02 21:36 - 00000000 ____D () C:\AdwCleaner
2014-07-02 18:44 - 2014-07-02 18:44 - 01346519 _____ () C:\Users\Lucie Jírovcová\Desktop\adwcleaner_3.214.exe
2014-07-02 18:24 - 2014-07-02 18:25 - 00000000 ____D () C:\rsit
2014-07-02 18:24 - 2014-07-02 18:25 - 00000000 ____D () C:\Program Files (x86)\trend micro
2014-07-02 18:23 - 2014-07-02 18:23 - 01107968 _____ () C:\Users\Lucie Jírovcová\Downloads\RSIT.exe
2014-07-01 13:12 - 2014-07-01 13:12 - 00000000 ___HD () C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp
2014-06-27 07:50 - 2014-06-27 07:50 - 00001510 _____ () C:\Users\Lucie Jírovcová\životopis.lnk
2014-06-24 22:21 - 2014-06-24 22:21 - 00000000 ____D () C:\WINDOWS\System32\Tasks\GenericSettingsHandler
2014-06-12 20:34 - 2014-05-30 12:21 - 23414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-06-12 20:34 - 2014-05-30 11:45 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-06-12 20:34 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-06-12 20:34 - 2014-05-30 11:20 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-06-12 20:34 - 2014-05-30 11:18 - 17271296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-06-12 20:34 - 2014-05-30 11:08 - 05782528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-06-12 20:34 - 2014-05-30 11:06 - 00452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-06-12 20:34 - 2014-05-30 10:46 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-06-12 20:34 - 2014-05-30 10:44 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-06-12 20:34 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-06-12 20:34 - 2014-05-30 10:38 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-06-12 20:34 - 2014-05-30 10:35 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-06-12 20:34 - 2014-05-30 10:29 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-06-12 20:34 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-06-12 20:34 - 2014-05-30 10:23 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-06-12 20:34 - 2014-05-30 10:16 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-06-12 20:34 - 2014-05-30 10:04 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-06-12 20:34 - 2014-05-30 10:02 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-06-12 20:34 - 2014-05-30 09:56 - 04244992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-06-12 20:34 - 2014-05-30 09:56 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-06-12 20:34 - 2014-05-30 09:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-06-12 20:34 - 2014-05-30 09:49 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-06-12 20:34 - 2014-05-30 09:43 - 13522944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-06-12 20:34 - 2014-05-30 09:40 - 11725312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-06-12 20:34 - 2014-05-30 09:30 - 01398272 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-06-12 20:34 - 2014-05-30 09:21 - 01790976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-06-12 20:34 - 2014-05-30 09:15 - 01143296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-06-12 20:34 - 2014-05-30 09:13 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-06-12 20:34 - 2014-05-30 09:13 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-06-12 20:34 - 2014-02-06 13:30 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll
2014-06-12 20:34 - 2014-02-06 13:07 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-06-12 20:34 - 2014-02-06 13:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-06-12 20:34 - 2014-02-06 12:56 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-06-12 20:34 - 2014-02-06 12:49 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-06-12 20:34 - 2014-02-06 12:48 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-06-12 20:34 - 2014-02-06 12:17 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-06-12 20:34 - 2014-02-06 12:00 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-06-12 20:34 - 2014-02-06 11:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-06-12 20:34 - 2014-02-06 11:52 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-06-12 20:34 - 2014-02-06 11:47 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-06-12 20:34 - 2014-02-06 11:25 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-06-12 20:33 - 2014-05-10 05:46 - 02151424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2014-06-12 20:33 - 2014-05-10 05:22 - 01312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2014-06-12 20:33 - 2014-05-09 01:06 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2014-06-12 20:33 - 2014-05-05 06:02 - 03360256 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2014-06-12 20:33 - 2014-05-03 09:14 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-06-12 20:33 - 2014-05-03 06:21 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-06-12 20:33 - 2014-05-03 06:07 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-06-12 20:33 - 2014-05-03 05:41 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-06-12 20:33 - 2014-05-03 05:38 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-06-12 20:33 - 2014-04-30 13:16 - 01336648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2014-06-12 20:33 - 2014-04-30 05:51 - 01064448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2014-06-12 20:33 - 2014-04-18 16:57 - 00032600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
2014-06-12 20:33 - 2014-04-18 16:44 - 01466856 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-06-12 20:33 - 2014-04-18 15:29 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-06-12 20:33 - 2014-04-18 11:44 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll
2014-06-12 20:33 - 2014-04-18 11:32 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-06-12 20:33 - 2014-04-18 10:58 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-06-12 20:33 - 2014-04-18 10:32 - 00805376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2014-06-12 20:33 - 2014-04-18 10:21 - 01126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-06-12 20:33 - 2014-04-18 10:09 - 08652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-06-12 20:33 - 2014-04-18 09:51 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-06-12 20:33 - 2014-04-18 09:49 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-06-12 20:33 - 2014-04-14 11:20 - 00324888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2014-06-12 20:33 - 2014-04-14 10:01 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2014-06-12 20:33 - 2014-04-11 08:13 - 01200128 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2014-06-12 20:33 - 2014-04-11 06:51 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2014-06-12 20:33 - 2014-04-11 06:23 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2014-06-12 20:33 - 2014-04-11 05:30 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2014-06-12 20:33 - 2014-04-09 13:53 - 00337240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2014-06-12 20:33 - 2014-04-09 08:39 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
2014-06-12 20:33 - 2014-04-09 07:44 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
2014-06-12 20:33 - 2014-04-09 06:35 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-06-12 20:33 - 2014-04-09 05:33 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2014-06-12 20:33 - 2014-04-08 04:01 - 00589656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2014-06-12 20:33 - 2014-04-06 18:34 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2014-06-12 20:33 - 2014-04-06 18:34 - 00275800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2014-06-12 20:33 - 2014-04-06 18:32 - 00125496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2014-06-12 20:33 - 2014-04-06 18:31 - 21268952 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-06-12 20:33 - 2014-04-06 18:30 - 00201920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2014-06-12 20:33 - 2014-04-06 18:24 - 00360792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2014-06-12 20:33 - 2014-04-06 18:20 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 01403856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 01379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00881616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00765408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00609448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00491744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00467496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00463256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00244880 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2014-06-12 20:33 - 2014-04-06 18:20 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00028408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2014-06-12 20:33 - 2014-04-06 17:23 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2014-06-12 20:33 - 2014-04-06 17:22 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-06-12 20:33 - 2014-04-06 17:22 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-06-12 20:33 - 2014-04-06 16:10 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-06-12 20:33 - 2014-04-06 14:58 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll
2014-06-12 20:33 - 2014-04-06 14:51 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2014-06-12 20:33 - 2014-04-06 14:33 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2014-06-12 20:33 - 2014-04-06 14:24 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe
2014-06-12 20:33 - 2014-04-06 14:06 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srclient.dll
2014-06-12 20:33 - 2014-04-06 13:55 - 16872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-06-12 20:33 - 2014-04-06 13:54 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-06-12 20:33 - 2014-04-06 13:26 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2014-06-12 20:33 - 2014-04-06 13:20 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-06-12 20:33 - 2014-04-06 13:01 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-06-12 20:33 - 2014-04-06 12:52 - 00955904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-06-12 20:33 - 2014-04-06 12:51 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2014-06-12 20:33 - 2014-04-06 12:37 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-06-12 20:33 - 2014-04-06 12:36 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-06-12 20:33 - 2014-04-06 12:05 - 01222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2014-06-12 20:33 - 2014-04-06 11:59 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2014-06-12 20:33 - 2014-04-03 10:12 - 02124840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2014-06-12 20:33 - 2014-04-03 10:12 - 00307304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2014-06-12 20:33 - 2014-04-03 10:12 - 00130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2014-06-12 20:33 - 2014-04-03 09:59 - 02518872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-06-12 20:33 - 2014-04-03 09:59 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-06-12 20:33 - 2014-04-03 06:03 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2014-06-12 20:33 - 2014-04-03 06:03 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
2014-06-12 20:33 - 2014-04-03 05:53 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2014-06-12 20:33 - 2014-04-03 04:53 - 04269056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-06-12 20:33 - 2014-04-03 04:53 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2014-06-12 20:33 - 2014-04-03 04:51 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2014-06-12 20:33 - 2014-04-03 04:23 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2014-06-12 20:33 - 2014-04-03 04:23 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2014-06-12 20:33 - 2014-04-03 04:23 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tlscsp.dll
2014-06-12 20:33 - 2014-04-03 04:22 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll
2014-06-12 20:33 - 2014-04-01 08:23 - 00384856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2014-06-12 20:33 - 2014-03-31 07:42 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-06-12 20:33 - 2014-03-31 02:41 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2014-06-12 20:33 - 2014-03-31 02:01 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2014-06-12 20:33 - 2014-03-31 01:43 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2014-06-12 20:33 - 2014-03-31 00:54 - 01308160 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2014-06-12 20:33 - 2014-03-31 00:49 - 01287168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2014-06-12 20:33 - 2014-03-31 00:35 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2014-06-12 20:33 - 2014-03-31 00:11 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-06-12 20:33 - 2014-03-30 23:47 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-06-12 20:33 - 2014-03-28 17:58 - 00407016 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2014-06-12 20:33 - 2014-03-27 08:16 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2014-06-12 20:33 - 2014-03-27 07:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2014-06-12 20:33 - 2014-03-27 06:59 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2014-06-12 20:33 - 2014-03-27 06:48 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2014-06-12 20:33 - 2014-03-27 06:19 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2014-06-12 20:33 - 2014-03-27 05:46 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2014-06-12 20:33 - 2014-03-27 05:15 - 00718336 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2014-06-12 20:33 - 2014-03-27 05:10 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2014-06-12 20:33 - 2014-03-25 00:58 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2014-06-12 20:33 - 2014-03-20 05:48 - 00263424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2014-06-12 20:33 - 2014-03-20 02:44 - 06645248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-06-12 20:33 - 2014-03-20 01:33 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-06-12 20:33 - 2014-03-19 10:15 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2014-06-12 20:33 - 2014-03-19 10:07 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2014-06-12 20:33 - 2014-03-19 09:24 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2014-06-12 20:33 - 2014-03-19 09:17 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2014-06-12 20:33 - 2014-03-19 08:36 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2014-06-12 20:33 - 2014-03-19 07:56 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-06-12 20:33 - 2014-03-19 07:45 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2014-06-12 20:33 - 2014-03-19 07:19 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2014-06-12 20:33 - 2014-03-19 07:07 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2014-06-12 20:33 - 2014-03-19 07:02 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2014-06-12 20:33 - 2014-03-19 07:00 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2014-06-12 20:33 - 2014-03-19 06:51 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-06-12 20:33 - 2014-03-19 06:31 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2014-06-12 20:33 - 2014-03-19 06:18 - 02688000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2014-06-12 20:33 - 2014-03-18 10:19 - 00077312 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2014-06-12 20:33 - 2014-03-18 07:00 - 07173120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2014-06-12 20:33 - 2014-03-18 06:52 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2014-06-12 20:33 - 2014-03-17 07:09 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2014-06-12 20:33 - 2014-03-17 06:11 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-06-12 20:33 - 2014-03-17 05:01 - 00486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2014-06-12 20:33 - 2014-03-17 04:47 - 01025024 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-06-12 20:33 - 2014-03-17 04:45 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2014-06-12 20:33 - 2014-03-14 08:26 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll
2014-06-12 20:33 - 2014-03-14 08:10 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
2014-06-12 20:33 - 2014-03-06 14:42 - 00310616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2014-06-12 20:32 - 2014-05-19 08:31 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe
2014-06-12 20:32 - 2014-05-19 08:21 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2014-06-12 20:32 - 2014-05-19 07:23 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe
2014-06-12 20:32 - 2014-05-01 15:31 - 03048904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2014-06-12 20:32 - 2014-05-01 09:14 - 03118080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2014-06-12 20:32 - 2014-05-01 09:05 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2014-06-12 20:32 - 2014-04-30 06:43 - 01975296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2014-06-12 20:32 - 2014-04-30 06:26 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2014-06-12 20:32 - 2014-04-30 05:47 - 01509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2014-06-12 20:31 - 2014-05-01 15:31 - 00055328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2014-06-12 20:31 - 2014-05-01 08:51 - 02344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2014-06-12 20:31 - 2014-05-01 07:24 - 02834944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2014-06-12 20:28 - 2014-06-12 20:28 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
==================== One Month Modified Files and Folders =======
2014-07-03 08:01 - 2014-07-03 08:00 - 00021418 _____ () C:\Users\Lucie Jírovcová\Desktop\FRST.txt
2014-07-03 08:01 - 2014-07-02 22:10 - 00000000 ____D () C:\FRST
2014-07-03 08:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 501612.crdownload
2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Desktop\FRSTLauncher (4).exe
2014-07-03 07:59 - 2014-01-15 23:04 - 00000000 ____D () C:\Users\Lucie Jírovcová\AppData\Roaming\ClassicShell
2014-07-03 07:58 - 2014-02-20 08:53 - 00003986 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{19F5A441-08E4-4802-B9CC-FABED7860C62}
2014-07-03 07:48 - 2014-07-03 07:48 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 337530.crdownload
2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 683120.crdownload
2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 392758.crdownload
2014-07-03 07:46 - 2014-01-15 19:19 - 01483214 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-03 07:15 - 2014-01-15 11:43 - 00000976 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-03 07:11 - 2014-01-15 22:37 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3485828363-1844069518-3799428762-1001
2014-07-03 07:07 - 2014-07-02 18:58 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-07-03 07:07 - 2014-04-13 23:37 - 00000000 __RDO () C:\Users\Lucie Jírovcová\OneDrive
2014-07-03 07:07 - 2014-01-15 11:43 - 00000972 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-02 22:14 - 2014-07-02 22:14 - 00008672 _____ () C:\Users\Lucie Jírovcová\Desktop\Addition.rar
2014-07-02 22:08 - 2014-07-02 22:08 - 02083840 _____ (Farbar) C:\Users\Lucie Jírovcová\Desktop\FRST64.exe
2014-07-02 22:04 - 2014-07-02 22:04 - 01073664 _____ (Farbar) C:\Users\Lucie Jírovcová\Downloads\FRST.exe
2014-07-02 21:57 - 2014-01-15 23:48 - 00002890 _____ () C:\WINDOWS\System32\Tasks\AutoKMS
2014-07-02 21:57 - 2014-01-15 23:48 - 00000280 _____ () C:\WINDOWS\Tasks\AutoKMS.job
2014-07-02 21:56 - 2013-11-14 05:30 - 00659332 _____ () C:\WINDOWS\PFRO.log
2014-07-02 21:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\tracing
2014-07-02 21:56 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-07-02 21:55 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-07-02 21:52 - 2014-01-15 23:26 - 00000000 ____D () C:\Users\install
2014-07-02 21:36 - 2014-07-02 18:46 - 00000000 ____D () C:\AdwCleaner
2014-07-02 20:54 - 2014-07-02 19:00 - 720254976 _____ () C:\Users\Lucie Jírovcová\Downloads\Vypravej-03x17---Smrt-Brezneva-DVDrip-CZ.avi
2014-07-02 20:54 - 2014-07-02 19:00 - 718878720 _____ () C:\Users\Lucie Jírovcová\Downloads\Vypravej-03x16---Ju-a-Hele-DVDrip-CZ.avi
2014-07-02 18:57 - 2014-07-02 18:57 - 00001125 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-02 18:57 - 2014-07-02 18:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-02 18:57 - 2014-07-02 18:57 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-02 18:57 - 2014-07-02 18:57 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-02 18:57 - 2014-07-02 18:56 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Lucie Jírovcová\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-02 18:55 - 2013-11-14 14:40 - 01938474 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-07-02 18:55 - 2013-11-14 14:24 - 00803244 _____ () C:\WINDOWS\system32\perfh005.dat
2014-07-02 18:55 - 2013-11-14 14:24 - 00184236 _____ () C:\WINDOWS\system32\perfc005.dat
2014-07-02 18:44 - 2014-07-02 18:44 - 01346519 _____ () C:\Users\Lucie Jírovcová\Desktop\adwcleaner_3.214.exe
2014-07-02 18:25 - 2014-07-02 18:24 - 00000000 ____D () C:\rsit
2014-07-02 18:25 - 2014-07-02 18:24 - 00000000 ____D () C:\Program Files (x86)\trend micro
2014-07-02 18:23 - 2014-07-02 18:23 - 01107968 _____ () C:\Users\Lucie Jírovcová\Downloads\RSIT.exe
2014-07-02 18:05 - 2013-08-22 16:46 - 00315607 _____ () C:\WINDOWS\setupact.log
2014-07-02 17:37 - 2014-05-10 12:43 - 00000000 ____D () C:\Users\Lucie Jírovcová\Documents\My Games
2014-07-02 17:37 - 2014-04-11 20:19 - 00000000 ____D () C:\Users\Lucie Jírovcová\hry
2014-07-02 17:37 - 2013-06-09 14:16 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-07-01 22:41 - 2014-05-08 10:26 - 00000378 _____ () C:\WINDOWS\Tasks\HPCeeScheduleForLucie Jírovcová.job
2014-07-01 22:00 - 2014-03-02 17:35 - 00000000 ____D () C:\Users\Lucie Jírovcová\Terezka práce
2014-07-01 13:12 - 2014-07-01 13:12 - 00000000 ___HD () C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp
2014-07-01 12:39 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-06-30 20:26 - 2014-01-15 19:07 - 00000000 ____D () C:\Users\Lucie Jírovcová
2014-06-30 19:03 - 2014-01-16 11:52 - 00000000 ____D () C:\Users\Lucie Jírovcová\Škola
2014-06-29 13:36 - 2014-05-08 11:04 - 00000000 ____D () C:\Users\Lucie Jírovcová\Recepty
2014-06-28 22:05 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-06-28 22:04 - 2014-01-15 23:14 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2014-06-28 21:52 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-06-27 20:03 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\LiveKernelReports
2014-06-27 08:20 - 2014-01-15 23:59 - 00000000 ___HD () C:\GrandeDevice
2014-06-27 07:50 - 2014-06-27 07:50 - 00001510 _____ () C:\Users\Lucie Jírovcová\životopis.lnk
2014-06-25 09:20 - 2014-01-15 11:28 - 00000000 ____D () C:\Users\Lucie Jírovcová\AppData\Local\Packages
2014-06-25 08:50 - 2014-05-28 08:32 - 00002049 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2014-06-25 08:50 - 2014-02-01 14:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2014-06-25 08:50 - 2013-11-09 07:57 - 00254040 _____ () C:\WINDOWS\DPINST.LOG
2014-06-24 22:21 - 2014-06-24 22:21 - 00000000 ____D () C:\WINDOWS\System32\Tasks\GenericSettingsHandler
2014-06-22 13:10 - 2014-01-15 11:43 - 00003948 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-22 13:10 - 2014-01-15 11:43 - 00003712 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-22 08:17 - 2014-01-15 23:42 - 00000000 ____D () C:\Users\Lucie Jírovcová\AppData\Local\Microsoft Help
2014-06-19 23:37 - 2014-01-16 11:20 - 00000052 _____ () C:\WINDOWS\SysWOW64\DOErrors.log
2014-06-19 23:37 - 2014-01-16 11:20 - 00000000 _____ () C:\WINDOWS\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-06-18 08:02 - 2014-05-29 11:12 - 00000000 ____D () C:\Users\Lucie Jírovcová\AppData\Roaming\vlc
2014-06-16 20:54 - 2014-01-15 12:11 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-06-16 20:52 - 2014-01-15 12:11 - 95414520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-06-16 11:46 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-06-13 21:59 - 2013-08-22 16:44 - 00410552 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-06-13 21:57 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-06-13 21:57 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-06-13 21:57 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-06-13 21:57 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
2014-06-12 20:28 - 2014-06-12 20:28 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2014-06-12 10:41 - 2014-05-08 10:26 - 00003212 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleForLucie Jírovcová
2014-06-09 17:43 - 2014-01-15 11:29 - 00001206 _____ () C:\Users\Lucie Jírovcová\Desktop\App.lnk
Files to move or delete:
====================
C:\Users\install\avast_free_antivirus_setup_online.exe
C:\Users\install\ClassicShellSetup_4_0_2.exe
C:\Users\install\MPC-HC.1.7.1.x64.exe
C:\Users\install\winrar-x64-501cz.exe
Some content of TEMP:
====================
C:\Users\Lucie Jírovcová\AppData\Local\Temp\COMAP.EXE
C:\Users\Lucie Jírovcová\AppData\Local\Temp\Extract.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\GeewaDarkAngelsMasqueradeofShadowsCs_91.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\Quarantine.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63286.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63340.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63425.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63599.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63752.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64440.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64441.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64442.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64445.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64446.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64569.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65048.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65049.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65428.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65787.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65790.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65792.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-06-28 22:03
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (Windows) (Fixed) (Total:448.44 GB) (Free:276.27 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:16.21 GB) (Free:1.6 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive g: (Fable Disk 1) (CDROM) (Total:0.54 GB) (Free:0 GB) CDFS
Available physical RAM: 1963.22 MB
Total physical RAM: 3985.27 MB
Percentage of memory in use: 50%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 466 GB) (Disk ID: 1E1F4777)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\WINDOWS\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForLucie Jírovcová.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Users\Lucie Jírovcová\OneDrive:ms-properties
AlternateDataStreams: C:\Users\Lucie Jírovcová\SkyDrive:ms-properties
==================== Security Center ==================
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Lucie J�rovcov�\Desktop" je 38344 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Ran by Lucie Jírovcová (administrator) on LJ on 03-07-2014 08:01:26
Running from C:\Users\Lucie Jírovcová\Desktop
Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Sony) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
() C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
() C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-15] (AVAST Software)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-04-10] (CyberLink Corp.)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-12-25] (Hewlett-Packard Development Company, L.P.)
HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2014-05-27] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [Sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [466656 2014-05-23] (Sony)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [GoogleChromeAutoLaunch_95817D192D778F1EB4C2A964ECCB95F8] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [860488 2014-06-05] (Google Inc.)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\MountPoints2: {685d46c5-accf-11e3-be85-a4db305a504e} - "F:\LaunchU3.exe" -a
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\MountPoints2: {c21d462a-8a4c-11e3-be7e-a0d3c19733f8} - "H:\Startme.exe"
ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: ShareOverlay -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: ShareOverlay -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13906
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
SearchScopes: HKLM - {E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
SearchScopes: HKLM-x32 - {E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKCU - {0797ABA3-CCD2-486E-BF67-907FD7A79DCF} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13906
SearchScopes: HKCU - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
SearchScopes: HKCU - {3B0A1FAA-554D-4607-B1EB-BA4EFF12ADB1} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13906
SearchScopes: HKCU - {6A03D491-E3ED-40B6-88D8-FEFF942CCFE2} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13906
SearchScopes: HKCU - {933647BA-FCA7-4397-9D8E-1CD7DC6ADAA5} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13906
SearchScopes: HKCU - {9F5FD010-ADAC-45EE-8923-03AC34845D35} URL = http://search.seznam.cz/?q={searchTerms ... arch_13906
SearchScopes: HKCU - {9F637C4B-D3DC-4940-BF2E-7B9064AB19FD} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13906
SearchScopes: HKCU - {B833E894-8F69-4C2C-8EF1-BAAA5F3765BB} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13906
SearchScopes: HKCU - {CAF91536-3F6F-4FD7-89B1-139C4DFDD343} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13906
SearchScopes: HKCU - {D7D07355-43C7-4E8A-A275-A0848DDDE879} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13906
SearchScopes: HKCU - {E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... earchTerms}
BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll (IvoSoft)
BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
BHO-x32: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.)
FF Plugin-x32: @cuminas.jp/DjVuPlugin - C:\Program Files (x86)\Cuminas\Document Express DjVu Plug-in\npdjvu.dll (Cuminas Corporation)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
Chrome:
=======
CHR HomePage:
CHR Extension: (Kalendář Google) - C:\Users\Lucie Jírovcová\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-01-28]
CHR Extension: (No Name) - C:\Users\Lucie Jírovcová\AppData\Local\Google\Chrome\User Data\Default\Extensions\godimpbmfohihoaikgfknnnmlncabkkp [2014-07-02]
CHR Extension: (avast! Online Security) - C:\Users\Lucie Jírovcová\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-01-16]
CHR Extension: (Peněženka Google) - C:\Users\Lucie Jírovcová\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-15]
CHR HKLM-x32\...\Chrome\Extension: [godimpbmfohihoaikgfknnnmlncabkkp] - C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx [2014-06-29]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-01-15]
==================== Services (Whitelisted) =================
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [318592 2013-12-24] (Windows (R) Win 7 DDK provider)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-15] (AVAST Software)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [86528 2012-09-27] (Hewlett-Packard Company) [File not signed]
R2 HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [1039160 2013-12-25] (Hewlett-Packard Development Company, L.P.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2014-02-01] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [239176 2013-03-05] (Realtek Semiconductor)
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-01-15] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [78648 2014-01-15] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [92544 2014-01-15] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-01-15] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [1034464 2014-01-15] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [422216 2014-01-15] (AVAST Software)
S3 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [79672 2014-01-15] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-15] ()
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3880448 2013-11-13] (Qualcomm Atheros Communications, Inc.)
R3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-05-10] (Disc Soft Ltd)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [122584 2014-07-03] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2014-05-12] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2014-02-01] (Intel Corporation)
S3 nmwcdx64; C:\Windows\system32\drivers\ccdcmbx64.sys [18432 2008-05-02] (Nokia)
S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [288328 2013-01-24] (Realtek Semiconductor Corp.)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [29424 2013-05-08] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2014-02-01] (Synaptics Incorporated)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.)
S3 AthBTPort; \SystemRoot\system32\DRIVERS\btath_flt.sys [X]
S3 BTATH_A2DP; \SystemRoot\system32\drivers\btath_a2dp.sys [X]
S3 btath_avdt; \SystemRoot\system32\drivers\btath_avdt.sys [X]
S3 BTATH_HCRP; \SystemRoot\System32\drivers\btath_hcrp.sys [X]
S3 BTATH_LWFLT; \SystemRoot\system32\DRIVERS\btath_lwflt.sys [X]
S3 BTATH_RCP; \SystemRoot\System32\drivers\btath_rcp.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-03 08:00 - 2014-07-03 08:01 - 00021418 _____ () C:\Users\Lucie Jírovcová\Desktop\FRST.txt
2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 501612.crdownload
2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Desktop\FRSTLauncher (4).exe
2014-07-03 07:48 - 2014-07-03 07:48 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 337530.crdownload
2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 683120.crdownload
2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 392758.crdownload
2014-07-02 22:14 - 2014-07-02 22:14 - 00008672 _____ () C:\Users\Lucie Jírovcová\Desktop\Addition.rar
2014-07-02 22:10 - 2014-07-03 08:01 - 00000000 ____D () C:\FRST
2014-07-02 22:08 - 2014-07-02 22:08 - 02083840 _____ (Farbar) C:\Users\Lucie Jírovcová\Desktop\FRST64.exe
2014-07-02 22:04 - 2014-07-02 22:04 - 01073664 _____ (Farbar) C:\Users\Lucie Jírovcová\Downloads\FRST.exe
2014-07-02 19:00 - 2014-07-02 20:54 - 720254976 _____ () C:\Users\Lucie Jírovcová\Downloads\Vypravej-03x17---Smrt-Brezneva-DVDrip-CZ.avi
2014-07-02 19:00 - 2014-07-02 20:54 - 718878720 _____ () C:\Users\Lucie Jírovcová\Downloads\Vypravej-03x16---Ju-a-Hele-DVDrip-CZ.avi
2014-07-02 18:58 - 2014-07-03 07:07 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-07-02 18:57 - 2014-07-02 18:57 - 00001125 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-02 18:57 - 2014-07-02 18:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-02 18:57 - 2014-07-02 18:57 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-02 18:57 - 2014-07-02 18:57 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-02 18:57 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-07-02 18:57 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-07-02 18:57 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-07-02 18:56 - 2014-07-02 18:57 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Lucie Jírovcová\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-02 18:47 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
2014-07-02 18:46 - 2014-07-02 21:36 - 00000000 ____D () C:\AdwCleaner
2014-07-02 18:44 - 2014-07-02 18:44 - 01346519 _____ () C:\Users\Lucie Jírovcová\Desktop\adwcleaner_3.214.exe
2014-07-02 18:24 - 2014-07-02 18:25 - 00000000 ____D () C:\rsit
2014-07-02 18:24 - 2014-07-02 18:25 - 00000000 ____D () C:\Program Files (x86)\trend micro
2014-07-02 18:23 - 2014-07-02 18:23 - 01107968 _____ () C:\Users\Lucie Jírovcová\Downloads\RSIT.exe
2014-07-01 13:12 - 2014-07-01 13:12 - 00000000 ___HD () C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp
2014-06-27 07:50 - 2014-06-27 07:50 - 00001510 _____ () C:\Users\Lucie Jírovcová\životopis.lnk
2014-06-24 22:21 - 2014-06-24 22:21 - 00000000 ____D () C:\WINDOWS\System32\Tasks\GenericSettingsHandler
2014-06-12 20:34 - 2014-05-30 12:21 - 23414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-06-12 20:34 - 2014-05-30 11:45 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-06-12 20:34 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-06-12 20:34 - 2014-05-30 11:20 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-06-12 20:34 - 2014-05-30 11:18 - 17271296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-06-12 20:34 - 2014-05-30 11:08 - 05782528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-06-12 20:34 - 2014-05-30 11:06 - 00452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-06-12 20:34 - 2014-05-30 10:46 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-06-12 20:34 - 2014-05-30 10:44 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-06-12 20:34 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-06-12 20:34 - 2014-05-30 10:38 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-06-12 20:34 - 2014-05-30 10:35 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-06-12 20:34 - 2014-05-30 10:29 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-06-12 20:34 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-06-12 20:34 - 2014-05-30 10:23 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-06-12 20:34 - 2014-05-30 10:16 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-06-12 20:34 - 2014-05-30 10:04 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-06-12 20:34 - 2014-05-30 10:02 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-06-12 20:34 - 2014-05-30 09:56 - 04244992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-06-12 20:34 - 2014-05-30 09:56 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-06-12 20:34 - 2014-05-30 09:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-06-12 20:34 - 2014-05-30 09:49 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-06-12 20:34 - 2014-05-30 09:43 - 13522944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-06-12 20:34 - 2014-05-30 09:40 - 11725312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-06-12 20:34 - 2014-05-30 09:30 - 01398272 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-06-12 20:34 - 2014-05-30 09:21 - 01790976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-06-12 20:34 - 2014-05-30 09:15 - 01143296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-06-12 20:34 - 2014-05-30 09:13 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-06-12 20:34 - 2014-05-30 09:13 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-06-12 20:34 - 2014-02-06 13:30 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll
2014-06-12 20:34 - 2014-02-06 13:07 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-06-12 20:34 - 2014-02-06 13:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-06-12 20:34 - 2014-02-06 12:56 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-06-12 20:34 - 2014-02-06 12:49 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-06-12 20:34 - 2014-02-06 12:48 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-06-12 20:34 - 2014-02-06 12:17 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-06-12 20:34 - 2014-02-06 12:00 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-06-12 20:34 - 2014-02-06 11:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-06-12 20:34 - 2014-02-06 11:52 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-06-12 20:34 - 2014-02-06 11:47 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-06-12 20:34 - 2014-02-06 11:25 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-06-12 20:33 - 2014-05-10 05:46 - 02151424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2014-06-12 20:33 - 2014-05-10 05:22 - 01312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2014-06-12 20:33 - 2014-05-09 01:06 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2014-06-12 20:33 - 2014-05-05 06:02 - 03360256 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2014-06-12 20:33 - 2014-05-03 09:14 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-06-12 20:33 - 2014-05-03 06:21 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-06-12 20:33 - 2014-05-03 06:07 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-06-12 20:33 - 2014-05-03 05:41 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-06-12 20:33 - 2014-05-03 05:38 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-06-12 20:33 - 2014-04-30 13:16 - 01336648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2014-06-12 20:33 - 2014-04-30 05:51 - 01064448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2014-06-12 20:33 - 2014-04-18 16:57 - 00032600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
2014-06-12 20:33 - 2014-04-18 16:44 - 01466856 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-06-12 20:33 - 2014-04-18 15:29 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-06-12 20:33 - 2014-04-18 11:44 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll
2014-06-12 20:33 - 2014-04-18 11:32 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-06-12 20:33 - 2014-04-18 10:58 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-06-12 20:33 - 2014-04-18 10:32 - 00805376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2014-06-12 20:33 - 2014-04-18 10:21 - 01126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-06-12 20:33 - 2014-04-18 10:09 - 08652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-06-12 20:33 - 2014-04-18 09:51 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-06-12 20:33 - 2014-04-18 09:49 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-06-12 20:33 - 2014-04-14 11:20 - 00324888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2014-06-12 20:33 - 2014-04-14 10:01 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2014-06-12 20:33 - 2014-04-11 08:13 - 01200128 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2014-06-12 20:33 - 2014-04-11 06:51 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2014-06-12 20:33 - 2014-04-11 06:23 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2014-06-12 20:33 - 2014-04-11 05:30 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2014-06-12 20:33 - 2014-04-09 13:53 - 00337240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2014-06-12 20:33 - 2014-04-09 08:39 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
2014-06-12 20:33 - 2014-04-09 07:44 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
2014-06-12 20:33 - 2014-04-09 06:35 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-06-12 20:33 - 2014-04-09 05:33 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2014-06-12 20:33 - 2014-04-08 04:01 - 00589656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2014-06-12 20:33 - 2014-04-06 18:34 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2014-06-12 20:33 - 2014-04-06 18:34 - 00275800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2014-06-12 20:33 - 2014-04-06 18:32 - 00125496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2014-06-12 20:33 - 2014-04-06 18:31 - 21268952 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-06-12 20:33 - 2014-04-06 18:30 - 00201920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2014-06-12 20:33 - 2014-04-06 18:24 - 00360792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2014-06-12 20:33 - 2014-04-06 18:20 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 01403856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 01379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00881616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00765408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00609448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00491744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00467496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00463256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00244880 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2014-06-12 20:33 - 2014-04-06 18:20 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2014-06-12 20:33 - 2014-04-06 18:20 - 00028408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2014-06-12 20:33 - 2014-04-06 17:23 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2014-06-12 20:33 - 2014-04-06 17:22 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-06-12 20:33 - 2014-04-06 17:22 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2014-06-12 20:33 - 2014-04-06 17:16 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-06-12 20:33 - 2014-04-06 16:10 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-06-12 20:33 - 2014-04-06 14:58 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll
2014-06-12 20:33 - 2014-04-06 14:51 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2014-06-12 20:33 - 2014-04-06 14:33 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2014-06-12 20:33 - 2014-04-06 14:24 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe
2014-06-12 20:33 - 2014-04-06 14:06 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srclient.dll
2014-06-12 20:33 - 2014-04-06 13:55 - 16872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-06-12 20:33 - 2014-04-06 13:54 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-06-12 20:33 - 2014-04-06 13:26 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2014-06-12 20:33 - 2014-04-06 13:20 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-06-12 20:33 - 2014-04-06 13:01 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-06-12 20:33 - 2014-04-06 12:52 - 00955904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-06-12 20:33 - 2014-04-06 12:51 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2014-06-12 20:33 - 2014-04-06 12:37 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-06-12 20:33 - 2014-04-06 12:36 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-06-12 20:33 - 2014-04-06 12:05 - 01222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2014-06-12 20:33 - 2014-04-06 11:59 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2014-06-12 20:33 - 2014-04-03 10:12 - 02124840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2014-06-12 20:33 - 2014-04-03 10:12 - 00307304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2014-06-12 20:33 - 2014-04-03 10:12 - 00130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2014-06-12 20:33 - 2014-04-03 09:59 - 02518872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-06-12 20:33 - 2014-04-03 09:59 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-06-12 20:33 - 2014-04-03 06:03 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2014-06-12 20:33 - 2014-04-03 06:03 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
2014-06-12 20:33 - 2014-04-03 05:53 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2014-06-12 20:33 - 2014-04-03 04:53 - 04269056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-06-12 20:33 - 2014-04-03 04:53 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2014-06-12 20:33 - 2014-04-03 04:51 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2014-06-12 20:33 - 2014-04-03 04:23 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2014-06-12 20:33 - 2014-04-03 04:23 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2014-06-12 20:33 - 2014-04-03 04:23 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tlscsp.dll
2014-06-12 20:33 - 2014-04-03 04:22 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll
2014-06-12 20:33 - 2014-04-01 08:23 - 00384856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2014-06-12 20:33 - 2014-03-31 07:42 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-06-12 20:33 - 2014-03-31 02:41 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2014-06-12 20:33 - 2014-03-31 02:01 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2014-06-12 20:33 - 2014-03-31 01:43 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2014-06-12 20:33 - 2014-03-31 00:54 - 01308160 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2014-06-12 20:33 - 2014-03-31 00:49 - 01287168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2014-06-12 20:33 - 2014-03-31 00:35 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2014-06-12 20:33 - 2014-03-31 00:11 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-06-12 20:33 - 2014-03-30 23:47 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-06-12 20:33 - 2014-03-28 17:58 - 00407016 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2014-06-12 20:33 - 2014-03-27 08:16 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2014-06-12 20:33 - 2014-03-27 07:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2014-06-12 20:33 - 2014-03-27 06:59 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2014-06-12 20:33 - 2014-03-27 06:48 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2014-06-12 20:33 - 2014-03-27 06:19 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2014-06-12 20:33 - 2014-03-27 05:46 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2014-06-12 20:33 - 2014-03-27 05:15 - 00718336 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2014-06-12 20:33 - 2014-03-27 05:10 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2014-06-12 20:33 - 2014-03-25 00:58 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2014-06-12 20:33 - 2014-03-20 05:48 - 00263424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2014-06-12 20:33 - 2014-03-20 02:44 - 06645248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-06-12 20:33 - 2014-03-20 01:33 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-06-12 20:33 - 2014-03-19 10:15 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2014-06-12 20:33 - 2014-03-19 10:07 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2014-06-12 20:33 - 2014-03-19 09:24 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2014-06-12 20:33 - 2014-03-19 09:17 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2014-06-12 20:33 - 2014-03-19 08:36 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2014-06-12 20:33 - 2014-03-19 07:56 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-06-12 20:33 - 2014-03-19 07:45 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2014-06-12 20:33 - 2014-03-19 07:19 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2014-06-12 20:33 - 2014-03-19 07:07 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2014-06-12 20:33 - 2014-03-19 07:02 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2014-06-12 20:33 - 2014-03-19 07:00 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2014-06-12 20:33 - 2014-03-19 06:51 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-06-12 20:33 - 2014-03-19 06:31 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2014-06-12 20:33 - 2014-03-19 06:18 - 02688000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2014-06-12 20:33 - 2014-03-18 10:19 - 00077312 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2014-06-12 20:33 - 2014-03-18 07:00 - 07173120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2014-06-12 20:33 - 2014-03-18 06:52 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2014-06-12 20:33 - 2014-03-17 07:09 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2014-06-12 20:33 - 2014-03-17 06:11 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-06-12 20:33 - 2014-03-17 05:01 - 00486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2014-06-12 20:33 - 2014-03-17 04:47 - 01025024 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-06-12 20:33 - 2014-03-17 04:45 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2014-06-12 20:33 - 2014-03-14 08:26 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll
2014-06-12 20:33 - 2014-03-14 08:10 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
2014-06-12 20:33 - 2014-03-06 14:42 - 00310616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2014-06-12 20:32 - 2014-05-19 08:31 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe
2014-06-12 20:32 - 2014-05-19 08:21 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2014-06-12 20:32 - 2014-05-19 07:23 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe
2014-06-12 20:32 - 2014-05-01 15:31 - 03048904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2014-06-12 20:32 - 2014-05-01 09:14 - 03118080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2014-06-12 20:32 - 2014-05-01 09:05 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2014-06-12 20:32 - 2014-04-30 06:43 - 01975296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2014-06-12 20:32 - 2014-04-30 06:26 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2014-06-12 20:32 - 2014-04-30 05:47 - 01509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2014-06-12 20:31 - 2014-05-01 15:31 - 00055328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2014-06-12 20:31 - 2014-05-01 08:51 - 02344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2014-06-12 20:31 - 2014-05-01 07:24 - 02834944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2014-06-12 20:28 - 2014-06-12 20:28 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
==================== One Month Modified Files and Folders =======
2014-07-03 08:01 - 2014-07-03 08:00 - 00021418 _____ () C:\Users\Lucie Jírovcová\Desktop\FRST.txt
2014-07-03 08:01 - 2014-07-02 22:10 - 00000000 ____D () C:\FRST
2014-07-03 08:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 501612.crdownload
2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Desktop\FRSTLauncher (4).exe
2014-07-03 07:59 - 2014-01-15 23:04 - 00000000 ____D () C:\Users\Lucie Jírovcová\AppData\Roaming\ClassicShell
2014-07-03 07:58 - 2014-02-20 08:53 - 00003986 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{19F5A441-08E4-4802-B9CC-FABED7860C62}
2014-07-03 07:48 - 2014-07-03 07:48 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 337530.crdownload
2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 683120.crdownload
2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 392758.crdownload
2014-07-03 07:46 - 2014-01-15 19:19 - 01483214 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-03 07:15 - 2014-01-15 11:43 - 00000976 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-03 07:11 - 2014-01-15 22:37 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3485828363-1844069518-3799428762-1001
2014-07-03 07:07 - 2014-07-02 18:58 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-07-03 07:07 - 2014-04-13 23:37 - 00000000 __RDO () C:\Users\Lucie Jírovcová\OneDrive
2014-07-03 07:07 - 2014-01-15 11:43 - 00000972 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-02 22:14 - 2014-07-02 22:14 - 00008672 _____ () C:\Users\Lucie Jírovcová\Desktop\Addition.rar
2014-07-02 22:08 - 2014-07-02 22:08 - 02083840 _____ (Farbar) C:\Users\Lucie Jírovcová\Desktop\FRST64.exe
2014-07-02 22:04 - 2014-07-02 22:04 - 01073664 _____ (Farbar) C:\Users\Lucie Jírovcová\Downloads\FRST.exe
2014-07-02 21:57 - 2014-01-15 23:48 - 00002890 _____ () C:\WINDOWS\System32\Tasks\AutoKMS
2014-07-02 21:57 - 2014-01-15 23:48 - 00000280 _____ () C:\WINDOWS\Tasks\AutoKMS.job
2014-07-02 21:56 - 2013-11-14 05:30 - 00659332 _____ () C:\WINDOWS\PFRO.log
2014-07-02 21:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\tracing
2014-07-02 21:56 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-07-02 21:55 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-07-02 21:52 - 2014-01-15 23:26 - 00000000 ____D () C:\Users\install
2014-07-02 21:36 - 2014-07-02 18:46 - 00000000 ____D () C:\AdwCleaner
2014-07-02 20:54 - 2014-07-02 19:00 - 720254976 _____ () C:\Users\Lucie Jírovcová\Downloads\Vypravej-03x17---Smrt-Brezneva-DVDrip-CZ.avi
2014-07-02 20:54 - 2014-07-02 19:00 - 718878720 _____ () C:\Users\Lucie Jírovcová\Downloads\Vypravej-03x16---Ju-a-Hele-DVDrip-CZ.avi
2014-07-02 18:57 - 2014-07-02 18:57 - 00001125 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-02 18:57 - 2014-07-02 18:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-02 18:57 - 2014-07-02 18:57 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-02 18:57 - 2014-07-02 18:57 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-02 18:57 - 2014-07-02 18:56 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Lucie Jírovcová\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-02 18:55 - 2013-11-14 14:40 - 01938474 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-07-02 18:55 - 2013-11-14 14:24 - 00803244 _____ () C:\WINDOWS\system32\perfh005.dat
2014-07-02 18:55 - 2013-11-14 14:24 - 00184236 _____ () C:\WINDOWS\system32\perfc005.dat
2014-07-02 18:44 - 2014-07-02 18:44 - 01346519 _____ () C:\Users\Lucie Jírovcová\Desktop\adwcleaner_3.214.exe
2014-07-02 18:25 - 2014-07-02 18:24 - 00000000 ____D () C:\rsit
2014-07-02 18:25 - 2014-07-02 18:24 - 00000000 ____D () C:\Program Files (x86)\trend micro
2014-07-02 18:23 - 2014-07-02 18:23 - 01107968 _____ () C:\Users\Lucie Jírovcová\Downloads\RSIT.exe
2014-07-02 18:05 - 2013-08-22 16:46 - 00315607 _____ () C:\WINDOWS\setupact.log
2014-07-02 17:37 - 2014-05-10 12:43 - 00000000 ____D () C:\Users\Lucie Jírovcová\Documents\My Games
2014-07-02 17:37 - 2014-04-11 20:19 - 00000000 ____D () C:\Users\Lucie Jírovcová\hry
2014-07-02 17:37 - 2013-06-09 14:16 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-07-01 22:41 - 2014-05-08 10:26 - 00000378 _____ () C:\WINDOWS\Tasks\HPCeeScheduleForLucie Jírovcová.job
2014-07-01 22:00 - 2014-03-02 17:35 - 00000000 ____D () C:\Users\Lucie Jírovcová\Terezka práce
2014-07-01 13:12 - 2014-07-01 13:12 - 00000000 ___HD () C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp
2014-07-01 12:39 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-06-30 20:26 - 2014-01-15 19:07 - 00000000 ____D () C:\Users\Lucie Jírovcová
2014-06-30 19:03 - 2014-01-16 11:52 - 00000000 ____D () C:\Users\Lucie Jírovcová\Škola
2014-06-29 13:36 - 2014-05-08 11:04 - 00000000 ____D () C:\Users\Lucie Jírovcová\Recepty
2014-06-28 22:05 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-06-28 22:04 - 2014-01-15 23:14 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2014-06-28 21:52 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-06-27 20:03 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\LiveKernelReports
2014-06-27 08:20 - 2014-01-15 23:59 - 00000000 ___HD () C:\GrandeDevice
2014-06-27 07:50 - 2014-06-27 07:50 - 00001510 _____ () C:\Users\Lucie Jírovcová\životopis.lnk
2014-06-25 09:20 - 2014-01-15 11:28 - 00000000 ____D () C:\Users\Lucie Jírovcová\AppData\Local\Packages
2014-06-25 08:50 - 2014-05-28 08:32 - 00002049 _____ () C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk
2014-06-25 08:50 - 2014-02-01 14:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2014-06-25 08:50 - 2013-11-09 07:57 - 00254040 _____ () C:\WINDOWS\DPINST.LOG
2014-06-24 22:21 - 2014-06-24 22:21 - 00000000 ____D () C:\WINDOWS\System32\Tasks\GenericSettingsHandler
2014-06-22 13:10 - 2014-01-15 11:43 - 00003948 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-22 13:10 - 2014-01-15 11:43 - 00003712 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-22 08:17 - 2014-01-15 23:42 - 00000000 ____D () C:\Users\Lucie Jírovcová\AppData\Local\Microsoft Help
2014-06-19 23:37 - 2014-01-16 11:20 - 00000052 _____ () C:\WINDOWS\SysWOW64\DOErrors.log
2014-06-19 23:37 - 2014-01-16 11:20 - 00000000 _____ () C:\WINDOWS\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-06-18 08:02 - 2014-05-29 11:12 - 00000000 ____D () C:\Users\Lucie Jírovcová\AppData\Roaming\vlc
2014-06-16 20:54 - 2014-01-15 12:11 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-06-16 20:52 - 2014-01-15 12:11 - 95414520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-06-16 11:46 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-06-13 21:59 - 2013-08-22 16:44 - 00410552 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-06-13 21:57 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-06-13 21:57 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-06-13 21:57 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-06-13 21:57 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
2014-06-12 20:28 - 2014-06-12 20:28 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2014-06-12 10:41 - 2014-05-08 10:26 - 00003212 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleForLucie Jírovcová
2014-06-09 17:43 - 2014-01-15 11:29 - 00001206 _____ () C:\Users\Lucie Jírovcová\Desktop\App.lnk
Files to move or delete:
====================
C:\Users\install\avast_free_antivirus_setup_online.exe
C:\Users\install\ClassicShellSetup_4_0_2.exe
C:\Users\install\MPC-HC.1.7.1.x64.exe
C:\Users\install\winrar-x64-501cz.exe
Some content of TEMP:
====================
C:\Users\Lucie Jírovcová\AppData\Local\Temp\COMAP.EXE
C:\Users\Lucie Jírovcová\AppData\Local\Temp\Extract.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\GeewaDarkAngelsMasqueradeofShadowsCs_91.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\Quarantine.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63286.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63340.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63425.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63599.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63752.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64440.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64441.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64442.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64445.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64446.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64569.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65048.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65049.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65428.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65787.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65790.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65792.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-06-28 22:03
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (Windows) (Fixed) (Total:448.44 GB) (Free:276.27 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:16.21 GB) (Free:1.6 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive g: (Fable Disk 1) (CDROM) (Total:0.54 GB) (Free:0 GB) CDFS
Available physical RAM: 1963.22 MB
Total physical RAM: 3985.27 MB
Percentage of memory in use: 50%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 466 GB) (Disk ID: 1E1F4777)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\WINDOWS\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForLucie Jírovcová.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Users\Lucie Jírovcová\OneDrive:ms-properties
AlternateDataStreams: C:\Users\Lucie Jírovcová\SkyDrive:ms-properties
==================== Security Center ==================
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Lucie J�rovcov�\Desktop" je 38344 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
- Přílohy
-
- Addition1.rar
- (8.8 KiB) Staženo 35 x
Re: Vir na FB (odkaz na youtube.com)

- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] () HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-04-10] (CyberLink Corp.) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-12-25] (Hewlett-Packard Development Company, L.P.) HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] () HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] () HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [Sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [466656 2014-05-23] (Sony) HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd) HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [GoogleChromeAutoLaunch_95817D192D778F1EB4C2A964ECCB95F8] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [860488 2014-06-05] (Google Inc.) HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\MountPoints2: {685d46c5-accf-11e3-be85-a4db305a504e} - "F:\LaunchU3.exe" -a HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\MountPoints2: {c21d462a-8a4c-11e3-be7e-a0d3c19733f8} - "H:\Startme.exe" ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=CMNTDFJS SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=CMNTDFJS SearchScopes: HKLM - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms} SearchScopes: HKLM - {E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms} SearchScopes: HKLM-x32 - DefaultScope value is missing. SearchScopes: HKLM-x32 - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms} SearchScopes: HKLM-x32 - {E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=CMNTDFJS SearchScopes: HKCU - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms} Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File CHR HKLM-x32\...\Chrome\Extension: [godimpbmfohihoaikgfknnnmlncabkkp] - C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx [2014-06-29] 2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 501612.crdownload 2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Desktop\FRSTLauncher (4).exe 2014-07-03 07:48 - 2014-07-03 07:48 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 337530.crdownload 2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 683120.crdownload 2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 392758.crdownload 2014-07-02 22:14 - 2014-07-02 22:14 - 00008672 _____ () C:\Users\Lucie Jírovcová\Desktop\Addition.rar 2014-07-02 18:47 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll 2014-07-02 18:46 - 2014-07-02 21:36 - 00000000 ____D () C:\AdwCleaner 2014-07-02 18:44 - 2014-07-02 18:44 - 01346519 _____ () C:\Users\Lucie Jírovcová\Desktop\adwcleaner_3.214.exe 2014-07-02 18:24 - 2014-07-02 18:25 - 00000000 ____D () C:\rsit 2014-07-02 18:24 - 2014-07-02 18:25 - 00000000 ____D () C:\Program Files (x86)\trend micro 2014-07-02 18:23 - 2014-07-02 18:23 - 01107968 _____ () C:\Users\Lucie Jírovcová\Downloads\RSIT.exe 2014-07-01 13:12 - 2014-07-01 13:12 - 00000000 ___HD () C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp C:\Users\Lucie Jírovcová\AppData\Local\Temp\COMAP.EXE C:\Users\Lucie Jírovcová\AppData\Local\Temp\Extract.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\GeewaDarkAngelsMasqueradeofShadowsCs_91.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\Quarantine.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63286.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63340.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63425.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63599.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63752.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64440.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64441.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64442.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64445.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64446.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64569.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65048.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65049.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65428.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65787.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65790.exe C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65792.exe C:\Windows\AutoKMS Task: C:\WINDOWS\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForLucie Jírovcová.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Hosts: Reboot: End
- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST

- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt

-
- Návštěvník
- Příspěvky: 13
- Registrován: 02 črc 2014 17:29
Re: Vir na FB (odkaz na youtube.com)
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 01-07-2014
Ran by Lucie Jírovcová at 2014-07-04 08:47:00 Run:1
Running from C:\Users\Lucie Jírovcová\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-04-10] (CyberLink Corp.)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-12-25] (Hewlett-Packard Development Company, L.P.)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [Sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [466656 2014-05-23] (Sony)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [GoogleChromeAutoLaunch_95817D192D778F1EB4C2A964ECCB95F8] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [860488 2014-06-05] (Google Inc.)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\MountPoints2: {685d46c5-accf-11e3-be85-a4db305a504e} - "F:\LaunchU3.exe" -a
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\MountPoints2: {c21d462a-8a4c-11e3-be7e-a0d3c19733f8} - "H:\Startme.exe"
ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
SearchScopes: HKLM - {E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
SearchScopes: HKLM-x32 - {E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKCU - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
CHR HKLM-x32\...\Chrome\Extension: [godimpbmfohihoaikgfknnnmlncabkkp] - C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx [2014-06-29]
2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 501612.crdownload
2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Desktop\FRSTLauncher (4).exe
2014-07-03 07:48 - 2014-07-03 07:48 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 337530.crdownload
2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 683120.crdownload
2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 392758.crdownload
2014-07-02 22:14 - 2014-07-02 22:14 - 00008672 _____ () C:\Users\Lucie Jírovcová\Desktop\Addition.rar
2014-07-02 18:47 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
2014-07-02 18:46 - 2014-07-02 21:36 - 00000000 ____D () C:\AdwCleaner
2014-07-02 18:44 - 2014-07-02 18:44 - 01346519 _____ () C:\Users\Lucie Jírovcová\Desktop\adwcleaner_3.214.exe
2014-07-02 18:24 - 2014-07-02 18:25 - 00000000 ____D () C:\rsit
2014-07-02 18:24 - 2014-07-02 18:25 - 00000000 ____D () C:\Program Files (x86)\trend micro
2014-07-02 18:23 - 2014-07-02 18:23 - 01107968 _____ () C:\Users\Lucie Jírovcová\Downloads\RSIT.exe
2014-07-01 13:12 - 2014-07-01 13:12 - 00000000 ___HD () C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp
C:\Users\Lucie Jírovcová\AppData\Local\Temp\COMAP.EXE
C:\Users\Lucie Jírovcová\AppData\Local\Temp\Extract.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\GeewaDarkAngelsMasqueradeofShadowsCs_91.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\Quarantine.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63286.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63340.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63425.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63599.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63752.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64440.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64441.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64442.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64445.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64446.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64569.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65048.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65049.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65428.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65787.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65790.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65792.exe
C:\Windows\AutoKMS
Task: C:\WINDOWS\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForLucie Jírovcová.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Hosts:
Reboot:
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\RemoteControl10 => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\HPMessageService => value deleted successfully.
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.autoupdate => value deleted successfully.
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => value deleted successfully.
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Sony PC Companion => value deleted successfully.
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_95817D192D778F1EB4C2A964ECCB95F8 => value deleted successfully.
'HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{685d46c5-accf-11e3-be85-a4db305a504e}' => Key deleted successfully.
'HKCR\CLSID\{685d46c5-accf-11e3-be85-a4db305a504e}'=> Key not found.
'HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c21d462a-8a4c-11e3-be7e-a0d3c19733f8}' => Key deleted successfully.
'HKCR\CLSID\{c21d462a-8a4c-11e3-be7e-a0d3c19733f8}'=> Key not found.
'HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SkyDrive1'=> Key not found.
'HKLM\Software\Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}'=> Key not found.
'HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SkyDrive2'=> Key not found.
'HKLM\Software\Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}'=> Key not found.
'HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SkyDrive3'=> Key not found.
'HKLM\Software\Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}'=> Key not found.
'HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SkyDrive1'=> Key not found.
'HKLM\Software\Wow6432Node\Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}'=> Key not found.
'HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SkyDrive2'=> Key not found.
'HKLM\Software\Wow6432Node\Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}'=> Key not found.
'HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SkyDrive3'=> Key not found.
'HKLM\Software\Wow6432Node\Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}'=> Key not found.
HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
'HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}' => Key deleted successfully.
'HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}'=> Key not found.
'HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1F690364-72E6-494D-A004-6CB094C9848F}' => Key deleted successfully.
'HKCR\CLSID\{1F690364-72E6-494D-A004-6CB094C9848F}'=> Key not found.
'HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0}' => Key deleted successfully.
'HKCR\CLSID\{E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0}'=> Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
'HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{1F690364-72E6-494D-A004-6CB094C9848F}' => Key deleted successfully.
'HKCR\Wow6432Node\CLSID\{1F690364-72E6-494D-A004-6CB094C9848F}'=> Key not found.
'HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0}' => Key deleted successfully.
'HKCR\Wow6432Node\CLSID\{E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0}'=> Key not found.
'HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}' => Key deleted successfully.
'HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}'=> Key not found.
'HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1F690364-72E6-494D-A004-6CB094C9848F}' => Key deleted successfully.
'HKCR\CLSID\{1F690364-72E6-494D-A004-6CB094C9848F}'=> Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value deleted successfully.
'HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}'=> Key not found.
'HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\godimpbmfohihoaikgfknnnmlncabkkp' => Key deleted successfully.
C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx => Moved successfully.
C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 501612.crdownload => Moved successfully.
C:\Users\Lucie Jírovcová\Desktop\FRSTLauncher (4).exe => Moved successfully.
C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 337530.crdownload => Moved successfully.
C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 683120.crdownload => Moved successfully.
C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 392758.crdownload => Moved successfully.
C:\Users\Lucie Jírovcová\Desktop\Addition.rar => Moved successfully.
C:\WINDOWS\SysWOW64\sqlite3.dll => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Lucie Jírovcová\Desktop\adwcleaner_3.214.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files (x86)\trend micro => Moved successfully.
C:\Users\Lucie Jírovcová\Downloads\RSIT.exe => Moved successfully.
C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\COMAP.EXE => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\Extract.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\GeewaDarkAngelsMasqueradeofShadowsCs_91.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63286.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63340.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63425.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63599.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63752.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64440.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64441.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64442.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64445.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64446.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64569.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65048.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65049.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65428.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65787.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65790.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65792.exe => Moved successfully.
C:\Windows\AutoKMS => Moved successfully.
C:\WINDOWS\Tasks\AutoKMS.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\WINDOWS\Tasks\HPCeeScheduleForLucie Jírovcová.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
The system needed a reboot.
==== End of Fixlog ====
Ran by Lucie Jírovcová at 2014-07-04 08:47:00 Run:1
Running from C:\Users\Lucie Jírovcová\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-04-10] (CyberLink Corp.)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-12-25] (Hewlett-Packard Development Company, L.P.)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Lucie Jírovcová\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [Sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [466656 2014-05-23] (Sony)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\Run: [GoogleChromeAutoLaunch_95817D192D778F1EB4C2A964ECCB95F8] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [860488 2014-06-05] (Google Inc.)
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\MountPoints2: {685d46c5-accf-11e3-be85-a4db305a504e} - "F:\LaunchU3.exe" -a
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\...\MountPoints2: {c21d462a-8a4c-11e3-be7e-a0d3c19733f8} - "H:\Startme.exe"
ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
SearchScopes: HKLM - {E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
SearchScopes: HKLM-x32 - {E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKCU - {1F690364-72E6-494D-A004-6CB094C9848F} URL = http://www.amazon.co.uk/s/ref=azs_osd_i ... -keywords={searchTerms}
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
CHR HKLM-x32\...\Chrome\Extension: [godimpbmfohihoaikgfknnnmlncabkkp] - C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx [2014-06-29]
2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 501612.crdownload
2014-07-03 07:59 - 2014-07-03 07:59 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Desktop\FRSTLauncher (4).exe
2014-07-03 07:48 - 2014-07-03 07:48 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 337530.crdownload
2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 683120.crdownload
2014-07-03 07:47 - 2014-07-03 07:47 - 00112640 _____ (forum.viry.cz) C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 392758.crdownload
2014-07-02 22:14 - 2014-07-02 22:14 - 00008672 _____ () C:\Users\Lucie Jírovcová\Desktop\Addition.rar
2014-07-02 18:47 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
2014-07-02 18:46 - 2014-07-02 21:36 - 00000000 ____D () C:\AdwCleaner
2014-07-02 18:44 - 2014-07-02 18:44 - 01346519 _____ () C:\Users\Lucie Jírovcová\Desktop\adwcleaner_3.214.exe
2014-07-02 18:24 - 2014-07-02 18:25 - 00000000 ____D () C:\rsit
2014-07-02 18:24 - 2014-07-02 18:25 - 00000000 ____D () C:\Program Files (x86)\trend micro
2014-07-02 18:23 - 2014-07-02 18:23 - 01107968 _____ () C:\Users\Lucie Jírovcová\Downloads\RSIT.exe
2014-07-01 13:12 - 2014-07-01 13:12 - 00000000 ___HD () C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp
C:\Users\Lucie Jírovcová\AppData\Local\Temp\COMAP.EXE
C:\Users\Lucie Jírovcová\AppData\Local\Temp\Extract.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\GeewaDarkAngelsMasqueradeofShadowsCs_91.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\Quarantine.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63286.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63340.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63425.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63599.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63752.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64440.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64441.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64442.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64445.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64446.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64569.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65048.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65049.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65428.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65787.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65790.exe
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65792.exe
C:\Windows\AutoKMS
Task: C:\WINDOWS\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForLucie Jírovcová.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Hosts:
Reboot:
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\RemoteControl10 => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\HPMessageService => value deleted successfully.
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.autoupdate => value deleted successfully.
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => value deleted successfully.
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Sony PC Companion => value deleted successfully.
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_95817D192D778F1EB4C2A964ECCB95F8 => value deleted successfully.
'HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{685d46c5-accf-11e3-be85-a4db305a504e}' => Key deleted successfully.
'HKCR\CLSID\{685d46c5-accf-11e3-be85-a4db305a504e}'=> Key not found.
'HKU\S-1-5-21-3485828363-1844069518-3799428762-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c21d462a-8a4c-11e3-be7e-a0d3c19733f8}' => Key deleted successfully.
'HKCR\CLSID\{c21d462a-8a4c-11e3-be7e-a0d3c19733f8}'=> Key not found.
'HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SkyDrive1'=> Key not found.
'HKLM\Software\Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}'=> Key not found.
'HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SkyDrive2'=> Key not found.
'HKLM\Software\Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}'=> Key not found.
'HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SkyDrive3'=> Key not found.
'HKLM\Software\Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}'=> Key not found.
'HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SkyDrive1'=> Key not found.
'HKLM\Software\Wow6432Node\Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}'=> Key not found.
'HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SkyDrive2'=> Key not found.
'HKLM\Software\Wow6432Node\Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}'=> Key not found.
'HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SkyDrive3'=> Key not found.
'HKLM\Software\Wow6432Node\Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}'=> Key not found.
HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
'HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}' => Key deleted successfully.
'HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}'=> Key not found.
'HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1F690364-72E6-494D-A004-6CB094C9848F}' => Key deleted successfully.
'HKCR\CLSID\{1F690364-72E6-494D-A004-6CB094C9848F}'=> Key not found.
'HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0}' => Key deleted successfully.
'HKCR\CLSID\{E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0}'=> Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
'HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{1F690364-72E6-494D-A004-6CB094C9848F}' => Key deleted successfully.
'HKCR\Wow6432Node\CLSID\{1F690364-72E6-494D-A004-6CB094C9848F}'=> Key not found.
'HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0}' => Key deleted successfully.
'HKCR\Wow6432Node\CLSID\{E6C2E6F2-D873-4298-9E82-7DFCC65E4FA0}'=> Key not found.
'HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}' => Key deleted successfully.
'HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}'=> Key not found.
'HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1F690364-72E6-494D-A004-6CB094C9848F}' => Key deleted successfully.
'HKCR\CLSID\{1F690364-72E6-494D-A004-6CB094C9848F}'=> Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value deleted successfully.
'HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}'=> Key not found.
'HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\godimpbmfohihoaikgfknnnmlncabkkp' => Key deleted successfully.
C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp\coc.crx => Moved successfully.
C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 501612.crdownload => Moved successfully.
C:\Users\Lucie Jírovcová\Desktop\FRSTLauncher (4).exe => Moved successfully.
C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 337530.crdownload => Moved successfully.
C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 683120.crdownload => Moved successfully.
C:\Users\Lucie Jírovcová\Downloads\Nepotvrzeno 392758.crdownload => Moved successfully.
C:\Users\Lucie Jírovcová\Desktop\Addition.rar => Moved successfully.
C:\WINDOWS\SysWOW64\sqlite3.dll => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Lucie Jírovcová\Desktop\adwcleaner_3.214.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files (x86)\trend micro => Moved successfully.
C:\Users\Lucie Jírovcová\Downloads\RSIT.exe => Moved successfully.
C:\WINDOWS\KBD2341Update-godimpbmfohihoaikgfknnnmlncabkkp => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\COMAP.EXE => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\Extract.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\GeewaDarkAngelsMasqueradeofShadowsCs_91.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63286.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63340.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63425.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63599.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP63752.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64440.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64441.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64442.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64445.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64446.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP64569.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65048.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65049.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65428.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65787.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65790.exe => Moved successfully.
C:\Users\Lucie Jírovcová\AppData\Local\Temp\SP65792.exe => Moved successfully.
C:\Windows\AutoKMS => Moved successfully.
C:\WINDOWS\Tasks\AutoKMS.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\WINDOWS\Tasks\HPCeeScheduleForLucie Jírovcová.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
The system needed a reboot.
==== End of Fixlog ====
Re: Vir na FB (odkaz na youtube.com)
Jak se chova PC???
-
- Návštěvník
- Příspěvky: 13
- Registrován: 02 črc 2014 17:29
Re: Vir na FB (odkaz na youtube.com)
Normálně, žádné změny nebo problémy. I FB už se dostal do normálu.
Re: Vir na FB (odkaz na youtube.com)
Tak jeste uklidime
T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
OTC http://oldtimer.geekstogo.com/OTC.exe
TFC http://oldtimer.geekstogo.com/TFC.exe
Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
A pokud nejsou problemy ci dotazy, je to z me strany vse 


- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)

- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC

- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte

Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy


-
- Návštěvník
- Příspěvky: 13
- Registrován: 02 črc 2014 17:29
Re: Vir na FB (odkaz na youtube.com)
Děkuji
Jste zlatí! 

