
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Vyskakování oken v prohližeči
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vyskakování oken v prohližeči
Dobrý den, prosím o kontrolu logu, v internetovém prohlížeči vyskakují nad hlavním panelem nekontrolovatelně reklamní okna. Předem děkuji za pomoc.
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-07-2014
Ran by Dener (administrator) on DENER-PC on 11-07-2014 14:23:56
Running from C:\Users\Dener\Desktop
Platform: Windows 7 Home Premium (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 9
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files (x86)\trolatunt\updatetrolatunt.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files (x86)\trolatunt\bin\utiltrolatunt.exe
(Autodesk, Inc.) C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
() C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
() C:\Program Files (x86)\trolatunt\bin\trolatunt.PurBrowse64.exe
() C:\Program Files (x86)\trolatunt\bin\trolatunt.BrowserAdapter.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Ghisler Software GmbH) C:\totalcmd\TOTALCMD.EXE
(forum.viry.cz) C:\Users\Dener\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1225920 2014-04-30] (NVIDIA Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432 2014-07-07] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41336 2014-05-08] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840568 2014-05-08] (Adobe Systems Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54840 2007-05-08] (Hewlett-Packard)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKU\.DEFAULT\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224 2013-02-05] (Autodesk, Inc.)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224 2013-02-05] (Autodesk, Inc.)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Dener\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Policies\Explorer: []
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\Users\Dener\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Outlook 2010.lnk
ShortcutTarget: Microsoft Outlook 2010.lnk -> C:\Windows\Installer\{91140000-0011-0000-0000-0000000FF1CE}\outicon.exe ()
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: AutoCAD Digital Signatures Icon Overlay Handler -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll (Autodesk, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0610105E-9D97-4E34-9B60-3A6BA5EEDA03} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
SearchScopes: HKCU - {3F4B3240-721A-49F0-AE6E-38DD6228EA63} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKCU - {4085850D-C548-4CFD-BB4D-C70EB8D64CB8} URL = http://search.seznam.cz/?q={searchTerms ... arch_13415
SearchScopes: HKCU - {630B4E11-6C4C-43E4-821D-FC69992FFA11} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13415
SearchScopes: HKCU - {72FF1C01-120A-4C73-8C54-D1DF32F7316C} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {835BE983-6B20-4192-A0DF-EDC53EBFEDE6} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKCU - {94A3D286-0909-40C3-9790-38F5A5D7E249} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKCU - {BB376616-F032-45C7-9467-CBE19E7CBBF7} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {BEDC900D-5C21-43F7-8F27-33E0CB8123EE} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Hosts: 127.0.0.1 activate.adobe.com
Tcpip\Parameters: [DhcpNameServer] 85.132.166.13 85.132.166.14
FireFox:
========
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Acrobat - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2014-05-14]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-05-12]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014-07-11]
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
Chrome:
=======
CHR HomePage: https://www.google.cz/
CHR StartupUrls: "hxxp://www.google.com/"
CHR NewTab: "chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/core/chrome/content/speedDial/speedDial.html"
CHR Extension: (Dokumenty Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-12]
CHR Extension: (Disk Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-12]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2014-07-07]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2014-07-07]
CHR Extension: (YouTube) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-12]
CHR Extension: (Vyhledávání Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-12]
CHR Extension: (avast! Online Security) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-05-12]
CHR Extension: (Peněženka Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-12]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2014-07-07]
CHR Extension: (Gmail) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-12]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-07]
==================== Services (Whitelisted) =================
R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-07] (AVAST Software)
R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1037824 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2008-12-03] (Hewlett-Packard) [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1618888 2014-04-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21009352 2014-04-30] (NVIDIA Corporation)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2008-12-03] (Hewlett-Packard) [File not signed]
R2 Update trolatunt; C:\Program Files (x86)\trolatunt\updatetrolatunt.exe [321824 2014-07-11] ()
R2 Util trolatunt; C:\Program Files (x86)\trolatunt\bin\utiltrolatunt.exe [321824 2014-07-11] ()
==================== Drivers (Whitelisted) ====================
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-07] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-07] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-07] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-07] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-07] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-07] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-07] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-07] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-07-07] (Disc Soft Ltd)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19744 2014-04-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
R1 {0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64; C:\Windows\System32\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys [61112 2014-07-03] (StdLib)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-11 14:23 - 2014-07-11 14:24 - 00018746 _____ () C:\Users\Dener\Desktop\FRST.txt
2014-07-11 14:23 - 2014-07-11 14:23 - 00000000 ____D () C:\FRST
2014-07-11 14:22 - 2014-07-11 14:19 - 00112640 _____ (forum.viry.cz) C:\Users\Dener\Desktop\FRSTLauncher.exe
2014-07-11 14:22 - 2014-07-11 14:18 - 02084864 _____ (Farbar) C:\Users\Dener\Desktop\FRST64.exe
2014-07-11 13:31 - 2014-07-11 14:13 - 00077824 ____N () C:\Windows\KMSEmulator.exe
2014-07-11 09:16 - 2014-07-11 09:16 - 00285892 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-07-11 09:16 - 2014-07-11 09:16 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-07-11 08:44 - 2014-07-11 08:44 - 00000000 ____D () C:\Users\Dener\Documents\Stavba Popdjestřábí
2014-07-11 08:43 - 2014-07-11 08:45 - 00000000 ____D () C:\Users\Dener\Documents\Dokumenty_původní
2014-07-11 08:33 - 2014-07-11 08:49 - 00000000 ____D () C:\Users\Dener\Documents\Moje naskenované obrázky
2014-07-11 08:26 - 2014-07-11 08:26 - 00003020 _____ () C:\Windows\SysWOW64\TEST.log
2014-07-11 08:20 - 2014-07-11 08:20 - 00000000 ____D () C:\Users\Dener\AppData\Local\HP
2014-07-11 08:19 - 2014-07-11 08:23 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\HP
2014-07-11 08:19 - 2014-07-11 08:19 - 00000000 ____D () C:\ProgramData\WEBREG
2014-07-11 08:14 - 2014-07-11 08:14 - 00002167 _____ () C:\Users\Public\Desktop\HP Photosmart Essential 3.5.lnk
2014-07-11 08:13 - 2014-07-11 08:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-07-11 08:13 - 2014-07-11 08:13 - 00001361 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001355 _____ () C:\Users\Public\Desktop\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001245 _____ () C:\Users\Public\Desktop\Nakupujte spotřební materiál HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001040 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace I.R.I.S. OCR.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00000000 ____D () C:\ProgramData\HP Product Assistant
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\spool
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-07-11 08:09 - 2014-07-11 08:14 - 00000000 ____D () C:\Program Files (x86)\HP
2014-07-11 08:09 - 2014-07-11 08:09 - 00000000 ____D () C:\Program Files\HP
2014-07-11 08:07 - 2014-07-11 08:18 - 00242520 _____ () C:\Windows\hpoins19.dat
2014-07-11 08:07 - 2014-07-11 08:18 - 00001255 _____ () C:\ProgramData\hpzinstall.log
2014-07-11 08:07 - 2014-07-11 08:18 - 00000000 ____D () C:\ProgramData\HP
2014-07-11 08:07 - 2009-10-20 06:30 - 00013898 ____N () C:\Windows\hpomdl19.dat
2014-07-11 08:07 - 2009-07-08 12:51 - 00642360 _____ (Hewlett-Packard) C:\Windows\system32\hpzids40.dll
2014-07-10 11:57 - 2014-07-03 16:10 - 00061112 _____ (StdLib) C:\Windows\system32\Drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys
2014-07-10 00:53 - 2014-07-10 00:53 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-09 23:38 - 2014-07-01 03:56 - 00516096 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-09 23:38 - 2014-07-01 03:50 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-07-07 23:29 - 2014-07-10 11:57 - 00000000 ____D () C:\Program Files (x86)\trolatunt
2014-07-07 23:28 - 2014-07-11 14:17 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\Seznam.cz
2014-07-07 23:28 - 2014-07-07 23:28 - 00001954 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-07-07 23:28 - 2014-07-07 23:28 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-07-07 23:27 - 2014-07-07 23:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-07-07 23:27 - 2014-07-07 23:27 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-07-07 23:27 - 2014-07-07 23:27 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-07-07 13:02 - 2014-07-07 13:02 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-06-29 13:02 - 2014-06-29 13:02 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-06-29 13:02 - 2014-06-29 13:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-06-29 13:01 - 2014-06-29 13:02 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-06-29 13:01 - 2014-06-29 13:02 - 00000000 ____D () C:\Program Files\iTunes
2014-06-29 13:01 - 2014-06-29 13:02 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-06-29 13:01 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files\iPod
2014-06-29 12:57 - 2014-06-29 12:57 - 00001845 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-06-29 12:56 - 2014-06-29 12:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-06-19 18:05 - 2014-06-19 18:05 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-06-12 21:48 - 2014-07-11 09:03 - 00000967 _____ () C:\Users\Dener\Desktop\Stavba Popdjestřábí.lnk
==================== One Month Modified Files and Folders =======
2014-07-11 14:24 - 2014-07-11 14:23 - 00018746 _____ () C:\Users\Dener\Desktop\FRST.txt
2014-07-11 14:23 - 2014-07-11 14:23 - 00000000 ____D () C:\FRST
2014-07-11 14:21 - 2009-07-14 06:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-11 14:21 - 2009-07-14 06:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-11 14:19 - 2014-07-11 14:22 - 00112640 _____ (forum.viry.cz) C:\Users\Dener\Desktop\FRSTLauncher.exe
2014-07-11 14:18 - 2014-07-11 14:22 - 02084864 _____ (Farbar) C:\Users\Dener\Desktop\FRST64.exe
2014-07-11 14:17 - 2014-07-07 23:28 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\Seznam.cz
2014-07-11 14:17 - 2014-05-12 20:57 - 01609818 _____ () C:\Windows\WindowsUpdate.log
2014-07-11 14:14 - 2014-05-13 20:37 - 00000000 ____D () C:\Users\Dener\Documents\Soubory aplikace Outlook
2014-07-11 14:13 - 2014-07-11 13:31 - 00077824 ____N () C:\Windows\KMSEmulator.exe
2014-07-11 14:13 - 2014-05-13 17:28 - 00000200 _____ () C:\Windows\Tasks\AutoKMS.job
2014-07-11 14:13 - 2014-05-12 21:22 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-07-11 14:13 - 2009-07-14 04:34 - 00000615 _____ () C:\Windows\win.ini
2014-07-11 14:11 - 2014-05-14 23:56 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-07-11 14:11 - 2014-05-12 21:21 - 00000946 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-11 14:11 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-11 14:11 - 2009-07-14 06:51 - 00032530 _____ () C:\Windows\setupact.log
2014-07-11 13:38 - 2014-05-12 21:21 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-11 13:28 - 2009-07-14 06:45 - 00492000 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-11 09:16 - 2014-07-11 09:16 - 00285892 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-07-11 09:16 - 2014-07-11 09:16 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-07-11 09:03 - 2014-06-12 21:48 - 00000967 _____ () C:\Users\Dener\Desktop\Stavba Popdjestřábí.lnk
2014-07-11 08:49 - 2014-07-11 08:33 - 00000000 ____D () C:\Users\Dener\Documents\Moje naskenované obrázky
2014-07-11 08:45 - 2014-07-11 08:43 - 00000000 ____D () C:\Users\Dener\Documents\Dokumenty_původní
2014-07-11 08:44 - 2014-07-11 08:44 - 00000000 ____D () C:\Users\Dener\Documents\Stavba Popdjestřábí
2014-07-11 08:26 - 2014-07-11 08:26 - 00003020 _____ () C:\Windows\SysWOW64\TEST.log
2014-07-11 08:23 - 2014-07-11 08:19 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\HP
2014-07-11 08:20 - 2014-07-11 08:20 - 00000000 ____D () C:\Users\Dener\AppData\Local\HP
2014-07-11 08:20 - 2014-05-12 21:19 - 00142088 _____ () C:\Users\Dener\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-11 08:19 - 2014-07-11 08:19 - 00000000 ____D () C:\ProgramData\WEBREG
2014-07-11 08:18 - 2014-07-11 08:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-07-11 08:18 - 2014-07-11 08:07 - 00242520 _____ () C:\Windows\hpoins19.dat
2014-07-11 08:18 - 2014-07-11 08:07 - 00001255 _____ () C:\ProgramData\hpzinstall.log
2014-07-11 08:18 - 2014-07-11 08:07 - 00000000 ____D () C:\ProgramData\HP
2014-07-11 08:14 - 2014-07-11 08:14 - 00002167 _____ () C:\Users\Public\Desktop\HP Photosmart Essential 3.5.lnk
2014-07-11 08:14 - 2014-07-11 08:09 - 00000000 ____D () C:\Program Files (x86)\HP
2014-07-11 08:13 - 2014-07-11 08:13 - 00001361 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001355 _____ () C:\Users\Public\Desktop\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001245 _____ () C:\Users\Public\Desktop\Nakupujte spotřební materiál HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001040 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace I.R.I.S. OCR.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00000000 ____D () C:\ProgramData\HP Product Assistant
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\spool
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-07-11 08:09 - 2014-07-11 08:09 - 00000000 ____D () C:\Program Files\HP
2014-07-11 08:04 - 2009-07-14 17:18 - 00669448 _____ () C:\Windows\system32\perfh005.dat
2014-07-11 08:04 - 2009-07-14 17:18 - 00141080 _____ () C:\Windows\system32\perfc005.dat
2014-07-11 08:04 - 2009-07-14 07:13 - 01585078 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-10 11:57 - 2014-07-07 23:29 - 00000000 ____D () C:\Program Files (x86)\trolatunt
2014-07-10 11:53 - 2014-05-13 20:18 - 00018438 _____ () C:\Windows\AutoKMS.log
2014-07-10 00:53 - 2014-07-10 00:53 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-10 00:53 - 2014-05-13 16:52 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-10 00:52 - 2014-05-13 18:17 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-10 00:51 - 2014-05-13 18:17 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-09 23:57 - 2014-05-13 21:00 - 00000000 ____D () C:\Program Files\JDownloader
2014-07-09 08:18 - 2014-05-13 16:41 - 00026114 _____ () C:\Windows\PFRO.log
2014-07-07 23:28 - 2014-07-07 23:28 - 00001954 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-07-07 23:28 - 2014-07-07 23:28 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-07-07 23:28 - 2014-07-07 23:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-07-07 23:27 - 2014-07-07 23:27 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-07-07 23:27 - 2014-07-07 23:27 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-07-07 13:03 - 2014-05-12 21:22 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-07 13:03 - 2014-05-12 21:21 - 00427360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-07 13:02 - 2014-07-07 13:02 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-07 13:02 - 2014-05-12 21:21 - 01041168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00307344 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-07 13:02 - 2014-05-12 21:21 - 00224896 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00092008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-03 16:10 - 2014-07-10 11:57 - 00061112 _____ (StdLib) C:\Windows\system32\Drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys
2014-07-01 03:56 - 2014-07-09 23:38 - 00516096 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-01 03:50 - 2014-07-09 23:38 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-29 22:17 - 2014-05-18 11:46 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\Apple Computer
2014-06-29 13:02 - 2014-06-29 13:02 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-06-29 13:02 - 2014-06-29 13:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-06-29 13:02 - 2014-06-29 13:01 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-06-29 13:02 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files\iTunes
2014-06-29 13:02 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-06-29 13:01 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files\iPod
2014-06-29 12:57 - 2014-06-29 12:57 - 00001845 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-06-29 12:56 - 2014-06-29 12:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-06-29 12:56 - 2014-05-18 11:42 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-06-26 18:33 - 2014-05-12 21:21 - 00003946 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-26 18:33 - 2014-05-12 21:21 - 00003694 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-26 17:54 - 2014-05-29 16:56 - 00000000 ____D () C:\Users\Dener\Documents\Míra Holas
2014-06-19 18:05 - 2014-06-19 18:05 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-06-16 16:34 - 2014-05-12 21:22 - 00002183 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
Some content of TEMP:
====================
C:\Users\Dener\AppData\Local\Temp\AcDeltree.exe
C:\Users\Dener\AppData\Local\Temp\bitool.dll
C:\Users\Dener\AppData\Local\Temp\DTLite4491-0356.exe
C:\Users\Dener\AppData\Local\Temp\FP_AX_MSI_INSTALLER.exe
C:\Users\Dener\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\Dener\AppData\Local\Temp\listicka-partner-13415-1.1.2-offline.exe
C:\Users\Dener\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\Dener\AppData\Local\Temp\nvStInst.exe
C:\Users\Dener\AppData\Local\Temp\trolatuntSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Dener\Desktop" je 2 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-07-2014
Ran by Dener (administrator) on DENER-PC on 11-07-2014 14:23:56
Running from C:\Users\Dener\Desktop
Platform: Windows 7 Home Premium (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 9
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files (x86)\trolatunt\updatetrolatunt.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files (x86)\trolatunt\bin\utiltrolatunt.exe
(Autodesk, Inc.) C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
() C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
() C:\Program Files (x86)\trolatunt\bin\trolatunt.PurBrowse64.exe
() C:\Program Files (x86)\trolatunt\bin\trolatunt.BrowserAdapter.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Ghisler Software GmbH) C:\totalcmd\TOTALCMD.EXE
(forum.viry.cz) C:\Users\Dener\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1225920 2014-04-30] (NVIDIA Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432 2014-07-07] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41336 2014-05-08] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840568 2014-05-08] (Adobe Systems Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54840 2007-05-08] (Hewlett-Packard)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKU\.DEFAULT\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224 2013-02-05] (Autodesk, Inc.)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224 2013-02-05] (Autodesk, Inc.)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Dener\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Policies\Explorer: []
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\Users\Dener\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Outlook 2010.lnk
ShortcutTarget: Microsoft Outlook 2010.lnk -> C:\Windows\Installer\{91140000-0011-0000-0000-0000000FF1CE}\outicon.exe ()
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: AutoCAD Digital Signatures Icon Overlay Handler -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll (Autodesk, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0610105E-9D97-4E34-9B60-3A6BA5EEDA03} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
SearchScopes: HKCU - {3F4B3240-721A-49F0-AE6E-38DD6228EA63} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKCU - {4085850D-C548-4CFD-BB4D-C70EB8D64CB8} URL = http://search.seznam.cz/?q={searchTerms ... arch_13415
SearchScopes: HKCU - {630B4E11-6C4C-43E4-821D-FC69992FFA11} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13415
SearchScopes: HKCU - {72FF1C01-120A-4C73-8C54-D1DF32F7316C} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {835BE983-6B20-4192-A0DF-EDC53EBFEDE6} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKCU - {94A3D286-0909-40C3-9790-38F5A5D7E249} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKCU - {BB376616-F032-45C7-9467-CBE19E7CBBF7} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {BEDC900D-5C21-43F7-8F27-33E0CB8123EE} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Hosts: 127.0.0.1 activate.adobe.com
Tcpip\Parameters: [DhcpNameServer] 85.132.166.13 85.132.166.14
FireFox:
========
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Acrobat - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2014-05-14]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-05-12]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014-07-11]
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
Chrome:
=======
CHR HomePage: https://www.google.cz/
CHR StartupUrls: "hxxp://www.google.com/"
CHR NewTab: "chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/core/chrome/content/speedDial/speedDial.html"
CHR Extension: (Dokumenty Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-12]
CHR Extension: (Disk Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-12]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2014-07-07]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2014-07-07]
CHR Extension: (YouTube) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-12]
CHR Extension: (Vyhledávání Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-12]
CHR Extension: (avast! Online Security) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-05-12]
CHR Extension: (Peněženka Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-12]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2014-07-07]
CHR Extension: (Gmail) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-12]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-07]
==================== Services (Whitelisted) =================
R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-07] (AVAST Software)
R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1037824 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2008-12-03] (Hewlett-Packard) [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1618888 2014-04-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21009352 2014-04-30] (NVIDIA Corporation)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2008-12-03] (Hewlett-Packard) [File not signed]
R2 Update trolatunt; C:\Program Files (x86)\trolatunt\updatetrolatunt.exe [321824 2014-07-11] ()
R2 Util trolatunt; C:\Program Files (x86)\trolatunt\bin\utiltrolatunt.exe [321824 2014-07-11] ()
==================== Drivers (Whitelisted) ====================
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-07] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-07] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-07] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-07] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-07] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-07] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-07] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-07] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-07-07] (Disc Soft Ltd)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19744 2014-04-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
R1 {0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64; C:\Windows\System32\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys [61112 2014-07-03] (StdLib)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-11 14:23 - 2014-07-11 14:24 - 00018746 _____ () C:\Users\Dener\Desktop\FRST.txt
2014-07-11 14:23 - 2014-07-11 14:23 - 00000000 ____D () C:\FRST
2014-07-11 14:22 - 2014-07-11 14:19 - 00112640 _____ (forum.viry.cz) C:\Users\Dener\Desktop\FRSTLauncher.exe
2014-07-11 14:22 - 2014-07-11 14:18 - 02084864 _____ (Farbar) C:\Users\Dener\Desktop\FRST64.exe
2014-07-11 13:31 - 2014-07-11 14:13 - 00077824 ____N () C:\Windows\KMSEmulator.exe
2014-07-11 09:16 - 2014-07-11 09:16 - 00285892 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-07-11 09:16 - 2014-07-11 09:16 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-07-11 08:44 - 2014-07-11 08:44 - 00000000 ____D () C:\Users\Dener\Documents\Stavba Popdjestřábí
2014-07-11 08:43 - 2014-07-11 08:45 - 00000000 ____D () C:\Users\Dener\Documents\Dokumenty_původní
2014-07-11 08:33 - 2014-07-11 08:49 - 00000000 ____D () C:\Users\Dener\Documents\Moje naskenované obrázky
2014-07-11 08:26 - 2014-07-11 08:26 - 00003020 _____ () C:\Windows\SysWOW64\TEST.log
2014-07-11 08:20 - 2014-07-11 08:20 - 00000000 ____D () C:\Users\Dener\AppData\Local\HP
2014-07-11 08:19 - 2014-07-11 08:23 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\HP
2014-07-11 08:19 - 2014-07-11 08:19 - 00000000 ____D () C:\ProgramData\WEBREG
2014-07-11 08:14 - 2014-07-11 08:14 - 00002167 _____ () C:\Users\Public\Desktop\HP Photosmart Essential 3.5.lnk
2014-07-11 08:13 - 2014-07-11 08:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-07-11 08:13 - 2014-07-11 08:13 - 00001361 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001355 _____ () C:\Users\Public\Desktop\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001245 _____ () C:\Users\Public\Desktop\Nakupujte spotřební materiál HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001040 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace I.R.I.S. OCR.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00000000 ____D () C:\ProgramData\HP Product Assistant
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\spool
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-07-11 08:09 - 2014-07-11 08:14 - 00000000 ____D () C:\Program Files (x86)\HP
2014-07-11 08:09 - 2014-07-11 08:09 - 00000000 ____D () C:\Program Files\HP
2014-07-11 08:07 - 2014-07-11 08:18 - 00242520 _____ () C:\Windows\hpoins19.dat
2014-07-11 08:07 - 2014-07-11 08:18 - 00001255 _____ () C:\ProgramData\hpzinstall.log
2014-07-11 08:07 - 2014-07-11 08:18 - 00000000 ____D () C:\ProgramData\HP
2014-07-11 08:07 - 2009-10-20 06:30 - 00013898 ____N () C:\Windows\hpomdl19.dat
2014-07-11 08:07 - 2009-07-08 12:51 - 00642360 _____ (Hewlett-Packard) C:\Windows\system32\hpzids40.dll
2014-07-10 11:57 - 2014-07-03 16:10 - 00061112 _____ (StdLib) C:\Windows\system32\Drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys
2014-07-10 00:53 - 2014-07-10 00:53 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-09 23:38 - 2014-07-01 03:56 - 00516096 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-09 23:38 - 2014-07-01 03:50 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-07-07 23:29 - 2014-07-10 11:57 - 00000000 ____D () C:\Program Files (x86)\trolatunt
2014-07-07 23:28 - 2014-07-11 14:17 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\Seznam.cz
2014-07-07 23:28 - 2014-07-07 23:28 - 00001954 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-07-07 23:28 - 2014-07-07 23:28 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-07-07 23:27 - 2014-07-07 23:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-07-07 23:27 - 2014-07-07 23:27 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-07-07 23:27 - 2014-07-07 23:27 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-07-07 13:02 - 2014-07-07 13:02 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-06-29 13:02 - 2014-06-29 13:02 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-06-29 13:02 - 2014-06-29 13:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-06-29 13:01 - 2014-06-29 13:02 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-06-29 13:01 - 2014-06-29 13:02 - 00000000 ____D () C:\Program Files\iTunes
2014-06-29 13:01 - 2014-06-29 13:02 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-06-29 13:01 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files\iPod
2014-06-29 12:57 - 2014-06-29 12:57 - 00001845 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-06-29 12:56 - 2014-06-29 12:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-06-19 18:05 - 2014-06-19 18:05 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-06-12 21:48 - 2014-07-11 09:03 - 00000967 _____ () C:\Users\Dener\Desktop\Stavba Popdjestřábí.lnk
==================== One Month Modified Files and Folders =======
2014-07-11 14:24 - 2014-07-11 14:23 - 00018746 _____ () C:\Users\Dener\Desktop\FRST.txt
2014-07-11 14:23 - 2014-07-11 14:23 - 00000000 ____D () C:\FRST
2014-07-11 14:21 - 2009-07-14 06:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-11 14:21 - 2009-07-14 06:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-11 14:19 - 2014-07-11 14:22 - 00112640 _____ (forum.viry.cz) C:\Users\Dener\Desktop\FRSTLauncher.exe
2014-07-11 14:18 - 2014-07-11 14:22 - 02084864 _____ (Farbar) C:\Users\Dener\Desktop\FRST64.exe
2014-07-11 14:17 - 2014-07-07 23:28 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\Seznam.cz
2014-07-11 14:17 - 2014-05-12 20:57 - 01609818 _____ () C:\Windows\WindowsUpdate.log
2014-07-11 14:14 - 2014-05-13 20:37 - 00000000 ____D () C:\Users\Dener\Documents\Soubory aplikace Outlook
2014-07-11 14:13 - 2014-07-11 13:31 - 00077824 ____N () C:\Windows\KMSEmulator.exe
2014-07-11 14:13 - 2014-05-13 17:28 - 00000200 _____ () C:\Windows\Tasks\AutoKMS.job
2014-07-11 14:13 - 2014-05-12 21:22 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-07-11 14:13 - 2009-07-14 04:34 - 00000615 _____ () C:\Windows\win.ini
2014-07-11 14:11 - 2014-05-14 23:56 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-07-11 14:11 - 2014-05-12 21:21 - 00000946 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-11 14:11 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-11 14:11 - 2009-07-14 06:51 - 00032530 _____ () C:\Windows\setupact.log
2014-07-11 13:38 - 2014-05-12 21:21 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-11 13:28 - 2009-07-14 06:45 - 00492000 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-11 09:16 - 2014-07-11 09:16 - 00285892 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-07-11 09:16 - 2014-07-11 09:16 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-07-11 09:03 - 2014-06-12 21:48 - 00000967 _____ () C:\Users\Dener\Desktop\Stavba Popdjestřábí.lnk
2014-07-11 08:49 - 2014-07-11 08:33 - 00000000 ____D () C:\Users\Dener\Documents\Moje naskenované obrázky
2014-07-11 08:45 - 2014-07-11 08:43 - 00000000 ____D () C:\Users\Dener\Documents\Dokumenty_původní
2014-07-11 08:44 - 2014-07-11 08:44 - 00000000 ____D () C:\Users\Dener\Documents\Stavba Popdjestřábí
2014-07-11 08:26 - 2014-07-11 08:26 - 00003020 _____ () C:\Windows\SysWOW64\TEST.log
2014-07-11 08:23 - 2014-07-11 08:19 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\HP
2014-07-11 08:20 - 2014-07-11 08:20 - 00000000 ____D () C:\Users\Dener\AppData\Local\HP
2014-07-11 08:20 - 2014-05-12 21:19 - 00142088 _____ () C:\Users\Dener\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-11 08:19 - 2014-07-11 08:19 - 00000000 ____D () C:\ProgramData\WEBREG
2014-07-11 08:18 - 2014-07-11 08:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-07-11 08:18 - 2014-07-11 08:07 - 00242520 _____ () C:\Windows\hpoins19.dat
2014-07-11 08:18 - 2014-07-11 08:07 - 00001255 _____ () C:\ProgramData\hpzinstall.log
2014-07-11 08:18 - 2014-07-11 08:07 - 00000000 ____D () C:\ProgramData\HP
2014-07-11 08:14 - 2014-07-11 08:14 - 00002167 _____ () C:\Users\Public\Desktop\HP Photosmart Essential 3.5.lnk
2014-07-11 08:14 - 2014-07-11 08:09 - 00000000 ____D () C:\Program Files (x86)\HP
2014-07-11 08:13 - 2014-07-11 08:13 - 00001361 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001355 _____ () C:\Users\Public\Desktop\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001245 _____ () C:\Users\Public\Desktop\Nakupujte spotřební materiál HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001040 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace I.R.I.S. OCR.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00000000 ____D () C:\ProgramData\HP Product Assistant
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\spool
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-07-11 08:09 - 2014-07-11 08:09 - 00000000 ____D () C:\Program Files\HP
2014-07-11 08:04 - 2009-07-14 17:18 - 00669448 _____ () C:\Windows\system32\perfh005.dat
2014-07-11 08:04 - 2009-07-14 17:18 - 00141080 _____ () C:\Windows\system32\perfc005.dat
2014-07-11 08:04 - 2009-07-14 07:13 - 01585078 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-10 11:57 - 2014-07-07 23:29 - 00000000 ____D () C:\Program Files (x86)\trolatunt
2014-07-10 11:53 - 2014-05-13 20:18 - 00018438 _____ () C:\Windows\AutoKMS.log
2014-07-10 00:53 - 2014-07-10 00:53 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-10 00:53 - 2014-05-13 16:52 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-10 00:52 - 2014-05-13 18:17 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-10 00:51 - 2014-05-13 18:17 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-09 23:57 - 2014-05-13 21:00 - 00000000 ____D () C:\Program Files\JDownloader
2014-07-09 08:18 - 2014-05-13 16:41 - 00026114 _____ () C:\Windows\PFRO.log
2014-07-07 23:28 - 2014-07-07 23:28 - 00001954 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-07-07 23:28 - 2014-07-07 23:28 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-07-07 23:28 - 2014-07-07 23:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-07-07 23:27 - 2014-07-07 23:27 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-07-07 23:27 - 2014-07-07 23:27 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-07-07 13:03 - 2014-05-12 21:22 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-07 13:03 - 2014-05-12 21:21 - 00427360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-07 13:02 - 2014-07-07 13:02 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-07 13:02 - 2014-05-12 21:21 - 01041168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00307344 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-07 13:02 - 2014-05-12 21:21 - 00224896 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00092008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-03 16:10 - 2014-07-10 11:57 - 00061112 _____ (StdLib) C:\Windows\system32\Drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys
2014-07-01 03:56 - 2014-07-09 23:38 - 00516096 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-01 03:50 - 2014-07-09 23:38 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-29 22:17 - 2014-05-18 11:46 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\Apple Computer
2014-06-29 13:02 - 2014-06-29 13:02 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-06-29 13:02 - 2014-06-29 13:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-06-29 13:02 - 2014-06-29 13:01 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-06-29 13:02 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files\iTunes
2014-06-29 13:02 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-06-29 13:01 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files\iPod
2014-06-29 12:57 - 2014-06-29 12:57 - 00001845 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-06-29 12:56 - 2014-06-29 12:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-06-29 12:56 - 2014-05-18 11:42 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-06-26 18:33 - 2014-05-12 21:21 - 00003946 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-26 18:33 - 2014-05-12 21:21 - 00003694 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-26 17:54 - 2014-05-29 16:56 - 00000000 ____D () C:\Users\Dener\Documents\Míra Holas
2014-06-19 18:05 - 2014-06-19 18:05 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-06-16 16:34 - 2014-05-12 21:22 - 00002183 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
Some content of TEMP:
====================
C:\Users\Dener\AppData\Local\Temp\AcDeltree.exe
C:\Users\Dener\AppData\Local\Temp\bitool.dll
C:\Users\Dener\AppData\Local\Temp\DTLite4491-0356.exe
C:\Users\Dener\AppData\Local\Temp\FP_AX_MSI_INSTALLER.exe
C:\Users\Dener\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\Dener\AppData\Local\Temp\listicka-partner-13415-1.1.2-offline.exe
C:\Users\Dener\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\Dener\AppData\Local\Temp\nvStInst.exe
C:\Users\Dener\AppData\Local\Temp\trolatuntSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Dener\Desktop" je 2 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
- Přílohy
-
- Addition.zip
- (7.08 KiB) Staženo 87 x
Re: Vyskakování oken v prohližeči
Zdravim
Stahnete Junkware Removal Tool http://thisisudax.org/downloads/JRT.exe
Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner


- Ulozte nejlepe na plochu
- Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
- Probehne vytvoreni zalohy a nasledne prohledavani
- Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte

- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
Re: Vyskakování oken v prohližeči
JRT mě nejde spustit, chybové okno: Not 7z archive
Re: Vyskakování oken v prohližeči
Pokracujte AdwCleanerem
Re: Vyskakování oken v prohližeči
# AdwCleaner v3.215 - Report created 11/07/2014 at 19:02:02
# Updated 09/07/2014 by Xplode
# Operating System : Windows 7 Home Premium (64 bits)
# Username : Dener - DENER-PC
# Running from : C:\Users\Dener\Desktop\adwcleaner_3.215.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : Update trolatunt
[#] Service Deleted : Util trolatunt
***** [ Files / Folders ] *****
[!] Folder Deleted : C:\Program Files (x86)\trolatunt
Folder Deleted : C:\Users\Dener\AppData\Roaming\OpenCandy
File Deleted : C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16545
-\\ Google Chrome v35.0.1916.153
[ File : C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [2028 octets] - [11/07/2014 19:01:09]
AdwCleaner[S0].txt - [1981 octets] - [11/07/2014 19:02:02]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2041 octets] ##########
# Updated 09/07/2014 by Xplode
# Operating System : Windows 7 Home Premium (64 bits)
# Username : Dener - DENER-PC
# Running from : C:\Users\Dener\Desktop\adwcleaner_3.215.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : Update trolatunt
[#] Service Deleted : Util trolatunt
***** [ Files / Folders ] *****
[!] Folder Deleted : C:\Program Files (x86)\trolatunt
Folder Deleted : C:\Users\Dener\AppData\Roaming\OpenCandy
File Deleted : C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
File Deleted : C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16545
-\\ Google Chrome v35.0.1916.153
[ File : C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [2028 octets] - [11/07/2014 19:01:09]
AdwCleaner[S0].txt - [1981 octets] - [11/07/2014 19:02:02]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2041 octets] ##########
Re: Vyskakování oken v prohližeči

- Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
- Do okna vlozte skript nize
Kód: Vybrat vše
autoclean; emptyclsid; iedefaults; FFdefaults; CHRdefaults; emptyalltemp; resethosts;
- Nasledne kliknete na Run Script
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Re: Vyskakování oken v prohližeči
Zoek.exe v5.0.0.0 Updated 05-July-2014
Tool run by Dener on p 11.07.2014 at 21:27:10,03.
Microsoft Windows 7 Home Premium 6.1.7600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Dener\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
11.7.2014 21:28:22 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\Users\Dener\AppData\Local\cache deleted
C:\Users\Dener\Searches deleted
C:\windows\SysNative\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
"C:\Windows\Installer\1c48b4.msi" deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"smartwebprinting@hp.com"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [11.07.2014 08:15]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"smartwebprinting@hp.com"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [11.07.2014 08:15]
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[07.07.2014 13:02]
Seznam Lištička - Email - Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig
Seznam LištiÄŤka - SlovnĂk - Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd
avast Online Security - Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Seznam Lištička - Rychlá volba - Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak
==== Chrome Fix ======================
C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage deleted successfully
C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/?clid=13415"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/?clid=13415"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0610105E-9D97-4E34-9B60-3A6BA5EEDA03} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_13415"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{3F4B3240-721A-49F0-AE6E-38DD6228EA63} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_13415"
{4085850D-C548-4CFD-BB4D-C70EB8D64CB8} Seznam Url="http://search.seznam.cz/?q={searchTerms ... arch_13415"
{630B4E11-6C4C-43E4-821D-FC69992FFA11} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_13415"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... {startPage}"
{72FF1C01-120A-4C73-8C54-D1DF32F7316C} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13415"
{835BE983-6B20-4192-A0DF-EDC53EBFEDE6} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_13415"
{94A3D286-0909-40C3-9790-38F5A5D7E249} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_13415"
{BB376616-F032-45C7-9467-CBE19E7CBBF7} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13415"
{BEDC900D-5C21-43F7-8F27-33E0CB8123EE} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415"
==== Reset Google Chrome ======================
C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F60730A4A66673047777F5728467D401 deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4A03706F-666A-4037-7777-5F2748764D10} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\F60730A4A66673047777F5728467D401 deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Dener\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Dener\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=187 folders=22 1721281 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Dener\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Dener\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Users\Dener\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found
==== EOF on p 11.07.2014 at 21:42:00,44 ======================
Tool run by Dener on p 11.07.2014 at 21:27:10,03.
Microsoft Windows 7 Home Premium 6.1.7600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Dener\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
11.7.2014 21:28:22 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\Users\Dener\AppData\Local\cache deleted
C:\Users\Dener\Searches deleted
C:\windows\SysNative\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
"C:\Windows\Installer\1c48b4.msi" deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"smartwebprinting@hp.com"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [11.07.2014 08:15]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"smartwebprinting@hp.com"="C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3" [11.07.2014 08:15]
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[07.07.2014 13:02]
Seznam Lištička - Email - Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig
Seznam LištiÄŤka - SlovnĂk - Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd
avast Online Security - Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Seznam Lištička - Rychlá volba - Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak
==== Chrome Fix ======================
C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage deleted successfully
C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/?clid=13415"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/?clid=13415"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0610105E-9D97-4E34-9B60-3A6BA5EEDA03} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_13415"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{3F4B3240-721A-49F0-AE6E-38DD6228EA63} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_13415"
{4085850D-C548-4CFD-BB4D-C70EB8D64CB8} Seznam Url="http://search.seznam.cz/?q={searchTerms ... arch_13415"
{630B4E11-6C4C-43E4-821D-FC69992FFA11} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_13415"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchT ... {startPage}"
{72FF1C01-120A-4C73-8C54-D1DF32F7316C} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13415"
{835BE983-6B20-4192-A0DF-EDC53EBFEDE6} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_13415"
{94A3D286-0909-40C3-9790-38F5A5D7E249} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_13415"
{BB376616-F032-45C7-9467-CBE19E7CBBF7} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_13415"
{BEDC900D-5C21-43F7-8F27-33E0CB8123EE} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415"
==== Reset Google Chrome ======================
C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\F60730A4A66673047777F5728467D401 deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4A03706F-666A-4037-7777-5F2748764D10} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\F60730A4A66673047777F5728467D401 deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Dener\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Dener\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=187 folders=22 1721281 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Dener\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Dener\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Users\Dener\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found
==== EOF on p 11.07.2014 at 21:42:00,44 ======================
Re: Vyskakování oken v prohližeči
Poprosim o novy log z FRST
Re: Vyskakování oken v prohližeči
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-07-2014
Ran by Dener (administrator) on DENER-PC on 11-07-2014 22:29:30
Running from C:\Users\Dener\Desktop
Platform: Windows 7 Home Premium (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 9
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Autodesk, Inc.) C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1225920 2014-04-30] (NVIDIA Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432 2014-07-07] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41336 2014-05-08] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840568 2014-05-08] (Adobe Systems Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54840 2007-05-08] (Hewlett-Packard)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKU\.DEFAULT\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224 2013-02-05] (Autodesk, Inc.)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224 2013-02-05] (Autodesk, Inc.)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Dener\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Policies\Explorer: []
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\Users\Dener\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Outlook 2010.lnk
ShortcutTarget: Microsoft Outlook 2010.lnk -> C:\Windows\Installer\{91140000-0011-0000-0000-0000000FF1CE}\outicon.exe ()
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: AutoCAD Digital Signatures Icon Overlay Handler -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll (Autodesk, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={searchT ... {startPage}
SearchScopes: HKCU - {0610105E-9D97-4E34-9B60-3A6BA5EEDA03} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
SearchScopes: HKCU - {3F4B3240-721A-49F0-AE6E-38DD6228EA63} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKCU - {4085850D-C548-4CFD-BB4D-C70EB8D64CB8} URL = http://search.seznam.cz/?q={searchTerms ... arch_13415
SearchScopes: HKCU - {630B4E11-6C4C-43E4-821D-FC69992FFA11} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13415
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={searchT ... {startPage}
SearchScopes: HKCU - {72FF1C01-120A-4C73-8C54-D1DF32F7316C} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {835BE983-6B20-4192-A0DF-EDC53EBFEDE6} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKCU - {94A3D286-0909-40C3-9790-38F5A5D7E249} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKCU - {BB376616-F032-45C7-9467-CBE19E7CBBF7} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {BEDC900D-5C21-43F7-8F27-33E0CB8123EE} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Tcpip\Parameters: [DhcpNameServer] 85.132.166.13 85.132.166.14
FireFox:
========
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Acrobat - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2014-05-14]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-05-12]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014-07-11]
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
Chrome:
=======
CHR Extension: (Dokumenty Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-12]
CHR Extension: (Disk Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-12]
CHR Extension: (YouTube) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-12]
CHR Extension: (Vyhledávání Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-12]
CHR Extension: (avast! Online Security) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-05-12]
CHR Extension: (Peněženka Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-12]
CHR Extension: (Gmail) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-12]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-07]
==================== Services (Whitelisted) =================
S2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-07] (AVAST Software)
R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1037824 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2008-12-03] (Hewlett-Packard) [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1618888 2014-04-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21009352 2014-04-30] (NVIDIA Corporation)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2008-12-03] (Hewlett-Packard) [File not signed]
==================== Drivers (Whitelisted) ====================
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-07] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-07] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-07] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-07] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-07] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-07] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-07] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-07] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-07-07] (Disc Soft Ltd)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19744 2014-04-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S1 {0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64; system32\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-11 21:39 - 2014-07-11 21:26 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-07-11 21:28 - 2014-07-11 21:42 - 00008810 _____ () C:\zoek-results.log
2014-07-11 21:26 - 2014-07-11 21:37 - 00000000 ____D () C:\zoek_backup
2014-07-11 21:26 - 2014-07-11 21:26 - 01285120 _____ () C:\Users\Dener\Desktop\zoek.exe
2014-07-11 19:01 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-07-11 19:00 - 2014-07-11 19:02 - 00000000 ____D () C:\AdwCleaner
2014-07-11 18:45 - 2014-07-11 18:45 - 01006181 _____ (Thisisu) C:\Users\Dener\Desktop\JRT.exe
2014-07-11 18:43 - 2014-07-11 18:38 - 01348263 _____ () C:\Users\Dener\Desktop\adwcleaner_3.215.exe
2014-07-11 15:09 - 2014-07-11 15:10 - 00000000 ____D () C:\Users\Dener\Documents\Koleno
2014-07-11 14:24 - 2014-07-11 14:25 - 00028918 _____ () C:\Users\Dener\Desktop\Addition.txt
2014-07-11 14:23 - 2014-07-11 22:29 - 00017328 _____ () C:\Users\Dener\Desktop\FRST.txt
2014-07-11 14:23 - 2014-07-11 22:29 - 00000000 ____D () C:\FRST
2014-07-11 14:22 - 2014-07-11 14:19 - 00112640 _____ (forum.viry.cz) C:\Users\Dener\Desktop\FRSTLauncher.exe
2014-07-11 14:22 - 2014-07-11 14:18 - 02084864 _____ (Farbar) C:\Users\Dener\Desktop\FRST64.exe
2014-07-11 09:16 - 2014-07-11 09:16 - 00285892 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-07-11 09:16 - 2014-07-11 09:16 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-07-11 08:44 - 2014-07-11 08:44 - 00000000 ____D () C:\Users\Dener\Documents\Stavba Popdjestřábí
2014-07-11 08:43 - 2014-07-11 08:45 - 00000000 ____D () C:\Users\Dener\Documents\Dokumenty_původní
2014-07-11 08:33 - 2014-07-11 15:11 - 00000000 ____D () C:\Users\Dener\Documents\Moje naskenované obrázky
2014-07-11 08:26 - 2014-07-11 08:26 - 00003020 _____ () C:\Windows\SysWOW64\TEST.log
2014-07-11 08:20 - 2014-07-11 08:20 - 00000000 ____D () C:\Users\Dener\AppData\Local\HP
2014-07-11 08:19 - 2014-07-11 08:23 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\HP
2014-07-11 08:19 - 2014-07-11 08:19 - 00000000 ____D () C:\ProgramData\WEBREG
2014-07-11 08:13 - 2014-07-11 08:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-07-11 08:13 - 2014-07-11 08:13 - 00001361 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001355 _____ () C:\Users\Public\Desktop\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001040 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace I.R.I.S. OCR.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00000000 ____D () C:\ProgramData\HP Product Assistant
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\spool
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-07-11 08:09 - 2014-07-11 08:14 - 00000000 ____D () C:\Program Files (x86)\HP
2014-07-11 08:09 - 2014-07-11 08:09 - 00000000 ____D () C:\Program Files\HP
2014-07-11 08:07 - 2014-07-11 08:18 - 00242520 _____ () C:\Windows\hpoins19.dat
2014-07-11 08:07 - 2014-07-11 08:18 - 00001255 _____ () C:\ProgramData\hpzinstall.log
2014-07-11 08:07 - 2014-07-11 08:18 - 00000000 ____D () C:\ProgramData\HP
2014-07-11 08:07 - 2009-10-20 06:30 - 00013898 ____N () C:\Windows\hpomdl19.dat
2014-07-11 08:07 - 2009-07-08 12:51 - 00642360 _____ (Hewlett-Packard) C:\Windows\system32\hpzids40.dll
2014-07-10 00:53 - 2014-07-10 00:53 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-09 23:38 - 2014-07-01 03:56 - 00516096 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-09 23:38 - 2014-07-01 03:50 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-07-07 23:29 - 2014-07-11 19:02 - 00000000 ____D () C:\Program Files (x86)\trolatunt
2014-07-07 23:28 - 2014-07-11 21:47 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\Seznam.cz
2014-07-07 23:28 - 2014-07-07 23:28 - 00001954 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-07-07 23:28 - 2014-07-07 23:28 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-07-07 23:27 - 2014-07-07 23:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-07-07 23:27 - 2014-07-07 23:27 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-07-07 23:27 - 2014-07-07 23:27 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-07-07 13:02 - 2014-07-07 13:02 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-06-29 13:02 - 2014-06-29 13:02 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-06-29 13:02 - 2014-06-29 13:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-06-29 13:01 - 2014-06-29 13:02 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-06-29 13:01 - 2014-06-29 13:02 - 00000000 ____D () C:\Program Files\iTunes
2014-06-29 13:01 - 2014-06-29 13:02 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-06-29 13:01 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files\iPod
2014-06-29 12:57 - 2014-06-29 12:57 - 00001845 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-06-29 12:56 - 2014-06-29 12:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-06-19 18:05 - 2014-06-19 18:05 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-06-12 21:48 - 2014-07-11 09:03 - 00000967 _____ () C:\Users\Dener\Desktop\Stavba Popdjestřábí.lnk
==================== One Month Modified Files and Folders =======
2014-07-11 22:29 - 2014-07-11 14:23 - 00017328 _____ () C:\Users\Dener\Desktop\FRST.txt
2014-07-11 22:29 - 2014-07-11 14:23 - 00000000 ____D () C:\FRST
2014-07-11 21:50 - 2009-07-14 06:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-11 21:50 - 2009-07-14 06:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-11 21:47 - 2014-07-07 23:28 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\Seznam.cz
2014-07-11 21:47 - 2014-05-12 20:57 - 01653725 _____ () C:\Windows\WindowsUpdate.log
2014-07-11 21:44 - 2014-05-13 20:37 - 00000000 ____D () C:\Users\Dener\Documents\Soubory aplikace Outlook
2014-07-11 21:43 - 2014-05-12 21:22 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-07-11 21:42 - 2014-07-11 21:28 - 00008810 _____ () C:\zoek-results.log
2014-07-11 21:42 - 2014-05-13 20:18 - 00019518 _____ () C:\Windows\AutoKMS.log
2014-07-11 21:42 - 2014-05-13 17:28 - 00000200 _____ () C:\Windows\Tasks\AutoKMS.job
2014-07-11 21:41 - 2014-05-12 21:21 - 00000946 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-11 21:41 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-11 21:41 - 2009-07-14 06:51 - 00033034 _____ () C:\Windows\setupact.log
2014-07-11 21:40 - 2014-05-14 23:56 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-07-11 21:40 - 2014-05-13 16:41 - 00027164 _____ () C:\Windows\PFRO.log
2014-07-11 21:38 - 2014-05-12 21:21 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-11 21:37 - 2014-07-11 21:26 - 00000000 ____D () C:\zoek_backup
2014-07-11 21:37 - 2014-05-12 21:03 - 00000000 ____D () C:\Users\Dener
2014-07-11 21:26 - 2014-07-11 21:39 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-07-11 21:26 - 2014-07-11 21:26 - 01285120 _____ () C:\Users\Dener\Desktop\zoek.exe
2014-07-11 19:02 - 2014-07-11 19:00 - 00000000 ____D () C:\AdwCleaner
2014-07-11 19:02 - 2014-07-07 23:29 - 00000000 ____D () C:\Program Files (x86)\trolatunt
2014-07-11 19:02 - 2009-07-14 04:34 - 00000615 _____ () C:\Windows\win.ini
2014-07-11 18:46 - 2009-07-14 17:18 - 00669448 _____ () C:\Windows\system32\perfh005.dat
2014-07-11 18:46 - 2009-07-14 17:18 - 00141080 _____ () C:\Windows\system32\perfc005.dat
2014-07-11 18:46 - 2009-07-14 07:13 - 01585078 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-11 18:45 - 2014-07-11 18:45 - 01006181 _____ (Thisisu) C:\Users\Dener\Desktop\JRT.exe
2014-07-11 18:38 - 2014-07-11 18:43 - 01348263 _____ () C:\Users\Dener\Desktop\adwcleaner_3.215.exe
2014-07-11 15:11 - 2014-07-11 08:33 - 00000000 ____D () C:\Users\Dener\Documents\Moje naskenované obrázky
2014-07-11 15:10 - 2014-07-11 15:09 - 00000000 ____D () C:\Users\Dener\Documents\Koleno
2014-07-11 14:25 - 2014-07-11 14:24 - 00028918 _____ () C:\Users\Dener\Desktop\Addition.txt
2014-07-11 14:19 - 2014-07-11 14:22 - 00112640 _____ (forum.viry.cz) C:\Users\Dener\Desktop\FRSTLauncher.exe
2014-07-11 14:18 - 2014-07-11 14:22 - 02084864 _____ (Farbar) C:\Users\Dener\Desktop\FRST64.exe
2014-07-11 13:28 - 2009-07-14 06:45 - 00492000 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-11 09:16 - 2014-07-11 09:16 - 00285892 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-07-11 09:16 - 2014-07-11 09:16 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-07-11 09:03 - 2014-06-12 21:48 - 00000967 _____ () C:\Users\Dener\Desktop\Stavba Popdjestřábí.lnk
2014-07-11 08:45 - 2014-07-11 08:43 - 00000000 ____D () C:\Users\Dener\Documents\Dokumenty_původní
2014-07-11 08:44 - 2014-07-11 08:44 - 00000000 ____D () C:\Users\Dener\Documents\Stavba Popdjestřábí
2014-07-11 08:26 - 2014-07-11 08:26 - 00003020 _____ () C:\Windows\SysWOW64\TEST.log
2014-07-11 08:23 - 2014-07-11 08:19 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\HP
2014-07-11 08:20 - 2014-07-11 08:20 - 00000000 ____D () C:\Users\Dener\AppData\Local\HP
2014-07-11 08:20 - 2014-05-12 21:19 - 00142088 _____ () C:\Users\Dener\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-11 08:19 - 2014-07-11 08:19 - 00000000 ____D () C:\ProgramData\WEBREG
2014-07-11 08:18 - 2014-07-11 08:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-07-11 08:18 - 2014-07-11 08:07 - 00242520 _____ () C:\Windows\hpoins19.dat
2014-07-11 08:18 - 2014-07-11 08:07 - 00001255 _____ () C:\ProgramData\hpzinstall.log
2014-07-11 08:18 - 2014-07-11 08:07 - 00000000 ____D () C:\ProgramData\HP
2014-07-11 08:14 - 2014-07-11 08:09 - 00000000 ____D () C:\Program Files (x86)\HP
2014-07-11 08:13 - 2014-07-11 08:13 - 00001361 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001355 _____ () C:\Users\Public\Desktop\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001040 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace I.R.I.S. OCR.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00000000 ____D () C:\ProgramData\HP Product Assistant
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\spool
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-07-11 08:09 - 2014-07-11 08:09 - 00000000 ____D () C:\Program Files\HP
2014-07-10 00:53 - 2014-07-10 00:53 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-10 00:53 - 2014-05-13 16:52 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-10 00:52 - 2014-05-13 18:17 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-10 00:51 - 2014-05-13 18:17 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-09 23:57 - 2014-05-13 21:00 - 00000000 ____D () C:\Program Files\JDownloader
2014-07-07 23:28 - 2014-07-07 23:28 - 00001954 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-07-07 23:28 - 2014-07-07 23:28 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-07-07 23:28 - 2014-07-07 23:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-07-07 23:27 - 2014-07-07 23:27 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-07-07 23:27 - 2014-07-07 23:27 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-07-07 13:03 - 2014-05-12 21:22 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-07 13:03 - 2014-05-12 21:21 - 00427360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-07 13:02 - 2014-07-07 13:02 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-07 13:02 - 2014-05-12 21:21 - 01041168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00307344 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-07 13:02 - 2014-05-12 21:21 - 00224896 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00092008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-01 03:56 - 2014-07-09 23:38 - 00516096 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-01 03:50 - 2014-07-09 23:38 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-29 22:17 - 2014-05-18 11:46 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\Apple Computer
2014-06-29 13:02 - 2014-06-29 13:02 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-06-29 13:02 - 2014-06-29 13:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-06-29 13:02 - 2014-06-29 13:01 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-06-29 13:02 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files\iTunes
2014-06-29 13:02 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-06-29 13:01 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files\iPod
2014-06-29 12:57 - 2014-06-29 12:57 - 00001845 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-06-29 12:56 - 2014-06-29 12:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-06-29 12:56 - 2014-05-18 11:42 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-06-26 18:33 - 2014-05-12 21:21 - 00003946 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-26 18:33 - 2014-05-12 21:21 - 00003694 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-26 17:54 - 2014-05-29 16:56 - 00000000 ____D () C:\Users\Dener\Documents\Míra Holas
2014-06-19 18:05 - 2014-06-19 18:05 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-06-16 16:34 - 2014-05-12 21:22 - 00002183 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-07-10 12:25
==================== End Of Log ============================
Ran by Dener (administrator) on DENER-PC on 11-07-2014 22:29:30
Running from C:\Users\Dener\Desktop
Platform: Windows 7 Home Premium (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 9
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Autodesk, Inc.) C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1225920 2014-04-30] (NVIDIA Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432 2014-07-07] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41336 2014-05-08] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840568 2014-05-08] (Adobe Systems Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54840 2007-05-08] (Hewlett-Packard)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKU\.DEFAULT\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224 2013-02-05] (Autodesk, Inc.)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224 2013-02-05] (Autodesk, Inc.)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Dener\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Policies\Explorer: []
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\Users\Dener\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Outlook 2010.lnk
ShortcutTarget: Microsoft Outlook 2010.lnk -> C:\Windows\Installer\{91140000-0011-0000-0000-0000000FF1CE}\outicon.exe ()
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: AutoCAD Digital Signatures Icon Overlay Handler -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll (Autodesk, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={searchT ... {startPage}
SearchScopes: HKCU - {0610105E-9D97-4E34-9B60-3A6BA5EEDA03} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
SearchScopes: HKCU - {3F4B3240-721A-49F0-AE6E-38DD6228EA63} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKCU - {4085850D-C548-4CFD-BB4D-C70EB8D64CB8} URL = http://search.seznam.cz/?q={searchTerms ... arch_13415
SearchScopes: HKCU - {630B4E11-6C4C-43E4-821D-FC69992FFA11} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13415
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={searchT ... {startPage}
SearchScopes: HKCU - {72FF1C01-120A-4C73-8C54-D1DF32F7316C} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {835BE983-6B20-4192-A0DF-EDC53EBFEDE6} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKCU - {94A3D286-0909-40C3-9790-38F5A5D7E249} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKCU - {BB376616-F032-45C7-9467-CBE19E7CBBF7} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {BEDC900D-5C21-43F7-8F27-33E0CB8123EE} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Tcpip\Parameters: [DhcpNameServer] 85.132.166.13 85.132.166.14
FireFox:
========
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Acrobat - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2014-05-14]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-05-12]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014-07-11]
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
Chrome:
=======
CHR Extension: (Dokumenty Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-12]
CHR Extension: (Disk Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-12]
CHR Extension: (YouTube) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-12]
CHR Extension: (Vyhledávání Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-12]
CHR Extension: (avast! Online Security) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-05-12]
CHR Extension: (Peněženka Google) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-12]
CHR Extension: (Gmail) - C:\Users\Dener\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-12]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-07]
==================== Services (Whitelisted) =================
S2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-07] (AVAST Software)
R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1037824 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2008-12-03] (Hewlett-Packard) [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1618888 2014-04-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21009352 2014-04-30] (NVIDIA Corporation)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2008-12-03] (Hewlett-Packard) [File not signed]
==================== Drivers (Whitelisted) ====================
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-07] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-07] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-07] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-07] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-07] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-07] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-07] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-07] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-07-07] (Disc Soft Ltd)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19744 2014-04-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S1 {0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64; system32\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-11 21:39 - 2014-07-11 21:26 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-07-11 21:28 - 2014-07-11 21:42 - 00008810 _____ () C:\zoek-results.log
2014-07-11 21:26 - 2014-07-11 21:37 - 00000000 ____D () C:\zoek_backup
2014-07-11 21:26 - 2014-07-11 21:26 - 01285120 _____ () C:\Users\Dener\Desktop\zoek.exe
2014-07-11 19:01 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-07-11 19:00 - 2014-07-11 19:02 - 00000000 ____D () C:\AdwCleaner
2014-07-11 18:45 - 2014-07-11 18:45 - 01006181 _____ (Thisisu) C:\Users\Dener\Desktop\JRT.exe
2014-07-11 18:43 - 2014-07-11 18:38 - 01348263 _____ () C:\Users\Dener\Desktop\adwcleaner_3.215.exe
2014-07-11 15:09 - 2014-07-11 15:10 - 00000000 ____D () C:\Users\Dener\Documents\Koleno
2014-07-11 14:24 - 2014-07-11 14:25 - 00028918 _____ () C:\Users\Dener\Desktop\Addition.txt
2014-07-11 14:23 - 2014-07-11 22:29 - 00017328 _____ () C:\Users\Dener\Desktop\FRST.txt
2014-07-11 14:23 - 2014-07-11 22:29 - 00000000 ____D () C:\FRST
2014-07-11 14:22 - 2014-07-11 14:19 - 00112640 _____ (forum.viry.cz) C:\Users\Dener\Desktop\FRSTLauncher.exe
2014-07-11 14:22 - 2014-07-11 14:18 - 02084864 _____ (Farbar) C:\Users\Dener\Desktop\FRST64.exe
2014-07-11 09:16 - 2014-07-11 09:16 - 00285892 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-07-11 09:16 - 2014-07-11 09:16 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-07-11 08:44 - 2014-07-11 08:44 - 00000000 ____D () C:\Users\Dener\Documents\Stavba Popdjestřábí
2014-07-11 08:43 - 2014-07-11 08:45 - 00000000 ____D () C:\Users\Dener\Documents\Dokumenty_původní
2014-07-11 08:33 - 2014-07-11 15:11 - 00000000 ____D () C:\Users\Dener\Documents\Moje naskenované obrázky
2014-07-11 08:26 - 2014-07-11 08:26 - 00003020 _____ () C:\Windows\SysWOW64\TEST.log
2014-07-11 08:20 - 2014-07-11 08:20 - 00000000 ____D () C:\Users\Dener\AppData\Local\HP
2014-07-11 08:19 - 2014-07-11 08:23 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\HP
2014-07-11 08:19 - 2014-07-11 08:19 - 00000000 ____D () C:\ProgramData\WEBREG
2014-07-11 08:13 - 2014-07-11 08:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-07-11 08:13 - 2014-07-11 08:13 - 00001361 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001355 _____ () C:\Users\Public\Desktop\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001040 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace I.R.I.S. OCR.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00000000 ____D () C:\ProgramData\HP Product Assistant
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\spool
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-07-11 08:09 - 2014-07-11 08:14 - 00000000 ____D () C:\Program Files (x86)\HP
2014-07-11 08:09 - 2014-07-11 08:09 - 00000000 ____D () C:\Program Files\HP
2014-07-11 08:07 - 2014-07-11 08:18 - 00242520 _____ () C:\Windows\hpoins19.dat
2014-07-11 08:07 - 2014-07-11 08:18 - 00001255 _____ () C:\ProgramData\hpzinstall.log
2014-07-11 08:07 - 2014-07-11 08:18 - 00000000 ____D () C:\ProgramData\HP
2014-07-11 08:07 - 2009-10-20 06:30 - 00013898 ____N () C:\Windows\hpomdl19.dat
2014-07-11 08:07 - 2009-07-08 12:51 - 00642360 _____ (Hewlett-Packard) C:\Windows\system32\hpzids40.dll
2014-07-10 00:53 - 2014-07-10 00:53 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-09 23:38 - 2014-07-01 03:56 - 00516096 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-09 23:38 - 2014-07-01 03:50 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-07-07 23:29 - 2014-07-11 19:02 - 00000000 ____D () C:\Program Files (x86)\trolatunt
2014-07-07 23:28 - 2014-07-11 21:47 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\Seznam.cz
2014-07-07 23:28 - 2014-07-07 23:28 - 00001954 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-07-07 23:28 - 2014-07-07 23:28 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-07-07 23:27 - 2014-07-07 23:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-07-07 23:27 - 2014-07-07 23:27 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-07-07 23:27 - 2014-07-07 23:27 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-07-07 13:02 - 2014-07-07 13:02 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-06-29 13:02 - 2014-06-29 13:02 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-06-29 13:02 - 2014-06-29 13:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-06-29 13:01 - 2014-06-29 13:02 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-06-29 13:01 - 2014-06-29 13:02 - 00000000 ____D () C:\Program Files\iTunes
2014-06-29 13:01 - 2014-06-29 13:02 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-06-29 13:01 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files\iPod
2014-06-29 12:57 - 2014-06-29 12:57 - 00001845 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-06-29 12:56 - 2014-06-29 12:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-06-19 18:05 - 2014-06-19 18:05 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-06-12 21:48 - 2014-07-11 09:03 - 00000967 _____ () C:\Users\Dener\Desktop\Stavba Popdjestřábí.lnk
==================== One Month Modified Files and Folders =======
2014-07-11 22:29 - 2014-07-11 14:23 - 00017328 _____ () C:\Users\Dener\Desktop\FRST.txt
2014-07-11 22:29 - 2014-07-11 14:23 - 00000000 ____D () C:\FRST
2014-07-11 21:50 - 2009-07-14 06:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-11 21:50 - 2009-07-14 06:45 - 00014240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-11 21:47 - 2014-07-07 23:28 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\Seznam.cz
2014-07-11 21:47 - 2014-05-12 20:57 - 01653725 _____ () C:\Windows\WindowsUpdate.log
2014-07-11 21:44 - 2014-05-13 20:37 - 00000000 ____D () C:\Users\Dener\Documents\Soubory aplikace Outlook
2014-07-11 21:43 - 2014-05-12 21:22 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-07-11 21:42 - 2014-07-11 21:28 - 00008810 _____ () C:\zoek-results.log
2014-07-11 21:42 - 2014-05-13 20:18 - 00019518 _____ () C:\Windows\AutoKMS.log
2014-07-11 21:42 - 2014-05-13 17:28 - 00000200 _____ () C:\Windows\Tasks\AutoKMS.job
2014-07-11 21:41 - 2014-05-12 21:21 - 00000946 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-11 21:41 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-11 21:41 - 2009-07-14 06:51 - 00033034 _____ () C:\Windows\setupact.log
2014-07-11 21:40 - 2014-05-14 23:56 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-07-11 21:40 - 2014-05-13 16:41 - 00027164 _____ () C:\Windows\PFRO.log
2014-07-11 21:38 - 2014-05-12 21:21 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-11 21:37 - 2014-07-11 21:26 - 00000000 ____D () C:\zoek_backup
2014-07-11 21:37 - 2014-05-12 21:03 - 00000000 ____D () C:\Users\Dener
2014-07-11 21:26 - 2014-07-11 21:39 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-07-11 21:26 - 2014-07-11 21:26 - 01285120 _____ () C:\Users\Dener\Desktop\zoek.exe
2014-07-11 19:02 - 2014-07-11 19:00 - 00000000 ____D () C:\AdwCleaner
2014-07-11 19:02 - 2014-07-07 23:29 - 00000000 ____D () C:\Program Files (x86)\trolatunt
2014-07-11 19:02 - 2009-07-14 04:34 - 00000615 _____ () C:\Windows\win.ini
2014-07-11 18:46 - 2009-07-14 17:18 - 00669448 _____ () C:\Windows\system32\perfh005.dat
2014-07-11 18:46 - 2009-07-14 17:18 - 00141080 _____ () C:\Windows\system32\perfc005.dat
2014-07-11 18:46 - 2009-07-14 07:13 - 01585078 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-11 18:45 - 2014-07-11 18:45 - 01006181 _____ (Thisisu) C:\Users\Dener\Desktop\JRT.exe
2014-07-11 18:38 - 2014-07-11 18:43 - 01348263 _____ () C:\Users\Dener\Desktop\adwcleaner_3.215.exe
2014-07-11 15:11 - 2014-07-11 08:33 - 00000000 ____D () C:\Users\Dener\Documents\Moje naskenované obrázky
2014-07-11 15:10 - 2014-07-11 15:09 - 00000000 ____D () C:\Users\Dener\Documents\Koleno
2014-07-11 14:25 - 2014-07-11 14:24 - 00028918 _____ () C:\Users\Dener\Desktop\Addition.txt
2014-07-11 14:19 - 2014-07-11 14:22 - 00112640 _____ (forum.viry.cz) C:\Users\Dener\Desktop\FRSTLauncher.exe
2014-07-11 14:18 - 2014-07-11 14:22 - 02084864 _____ (Farbar) C:\Users\Dener\Desktop\FRST64.exe
2014-07-11 13:28 - 2009-07-14 06:45 - 00492000 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-11 09:16 - 2014-07-11 09:16 - 00285892 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-07-11 09:16 - 2014-07-11 09:16 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-07-11 09:03 - 2014-06-12 21:48 - 00000967 _____ () C:\Users\Dener\Desktop\Stavba Popdjestřábí.lnk
2014-07-11 08:45 - 2014-07-11 08:43 - 00000000 ____D () C:\Users\Dener\Documents\Dokumenty_původní
2014-07-11 08:44 - 2014-07-11 08:44 - 00000000 ____D () C:\Users\Dener\Documents\Stavba Popdjestřábí
2014-07-11 08:26 - 2014-07-11 08:26 - 00003020 _____ () C:\Windows\SysWOW64\TEST.log
2014-07-11 08:23 - 2014-07-11 08:19 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\HP
2014-07-11 08:20 - 2014-07-11 08:20 - 00000000 ____D () C:\Users\Dener\AppData\Local\HP
2014-07-11 08:20 - 2014-05-12 21:19 - 00142088 _____ () C:\Users\Dener\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-11 08:19 - 2014-07-11 08:19 - 00000000 ____D () C:\ProgramData\WEBREG
2014-07-11 08:18 - 2014-07-11 08:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-07-11 08:18 - 2014-07-11 08:07 - 00242520 _____ () C:\Windows\hpoins19.dat
2014-07-11 08:18 - 2014-07-11 08:07 - 00001255 _____ () C:\ProgramData\hpzinstall.log
2014-07-11 08:18 - 2014-07-11 08:07 - 00000000 ____D () C:\ProgramData\HP
2014-07-11 08:14 - 2014-07-11 08:09 - 00000000 ____D () C:\Program Files (x86)\HP
2014-07-11 08:13 - 2014-07-11 08:13 - 00001361 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001355 _____ () C:\Users\Public\Desktop\Centrum řešení HP.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00001040 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registrace I.R.I.S. OCR.lnk
2014-07-11 08:13 - 2014-07-11 08:13 - 00000000 ____D () C:\ProgramData\HP Product Assistant
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\spool
2014-07-11 08:12 - 2014-07-11 08:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-07-11 08:09 - 2014-07-11 08:09 - 00000000 ____D () C:\Program Files\HP
2014-07-10 00:53 - 2014-07-10 00:53 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-10 00:53 - 2014-05-13 16:52 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-10 00:52 - 2014-05-13 18:17 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-10 00:51 - 2014-05-13 18:17 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-09 23:57 - 2014-05-13 21:00 - 00000000 ____D () C:\Program Files\JDownloader
2014-07-07 23:28 - 2014-07-07 23:28 - 00001954 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-07-07 23:28 - 2014-07-07 23:28 - 00000000 ____D () C:\Program Files (x86)\Seznam.cz
2014-07-07 23:28 - 2014-07-07 23:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-07-07 23:27 - 2014-07-07 23:27 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-07-07 23:27 - 2014-07-07 23:27 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-07-07 13:03 - 2014-05-12 21:22 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-07 13:03 - 2014-05-12 21:21 - 00427360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-07 13:02 - 2014-07-07 13:02 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-07 13:02 - 2014-05-12 21:21 - 01041168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00307344 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-07 13:02 - 2014-05-12 21:21 - 00224896 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00092008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-07-07 13:02 - 2014-05-12 21:21 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-01 03:56 - 2014-07-09 23:38 - 00516096 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-01 03:50 - 2014-07-09 23:38 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-29 22:17 - 2014-05-18 11:46 - 00000000 ____D () C:\Users\Dener\AppData\Roaming\Apple Computer
2014-06-29 13:02 - 2014-06-29 13:02 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-06-29 13:02 - 2014-06-29 13:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-06-29 13:02 - 2014-06-29 13:01 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-06-29 13:02 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files\iTunes
2014-06-29 13:02 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-06-29 13:01 - 2014-06-29 13:01 - 00000000 ____D () C:\Program Files\iPod
2014-06-29 12:57 - 2014-06-29 12:57 - 00001845 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-06-29 12:57 - 2014-06-29 12:57 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-06-29 12:56 - 2014-06-29 12:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-06-29 12:56 - 2014-05-18 11:42 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-06-26 18:33 - 2014-05-12 21:21 - 00003946 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-26 18:33 - 2014-05-12 21:21 - 00003694 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-26 17:54 - 2014-05-29 16:56 - 00000000 ____D () C:\Users\Dener\Documents\Míra Holas
2014-06-19 18:05 - 2014-06-19 18:05 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-06-16 16:34 - 2014-05-12 21:22 - 00002183 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-07-10 12:25
==================== End Of Log ============================
Re: Vyskakování oken v prohližeči

- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41336 2014-05-08] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840568 2014-05-08] (Adobe Systems Inc.) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.) HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] () HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54840 2007-05-08] (Hewlett-Packard) HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd) HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Dener\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] () HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] () HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Policies\Explorer: [] Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File S1 {0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64; system32\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys [X] 2014-07-11 21:39 - 2014-07-11 21:26 - 00024064 _____ () C:\Windows\zoek-delete.exe 2014-07-11 21:28 - 2014-07-11 21:42 - 00008810 _____ () C:\zoek-results.log 2014-07-11 21:26 - 2014-07-11 21:37 - 00000000 ____D () C:\zoek_backup 2014-07-11 21:26 - 2014-07-11 21:26 - 01285120 _____ () C:\Users\Dener\Desktop\zoek.exe 2014-07-11 19:01 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-07-11 19:00 - 2014-07-11 19:02 - 00000000 ____D () C:\AdwCleaner 2014-07-11 18:45 - 2014-07-11 18:45 - 01006181 _____ (Thisisu) C:\Users\Dener\Desktop\JRT.exe 2014-07-11 18:43 - 2014-07-11 18:38 - 01348263 _____ () C:\Users\Dener\Desktop\adwcleaner_3.215.exe 2014-07-11 14:24 - 2014-07-11 14:25 - 00028918 _____ () C:\Users\Dener\Desktop\Addition.txt 2014-07-11 14:23 - 2014-07-11 22:29 - 00017328 _____ () C:\Users\Dener\Desktop\FRST.txt 2014-07-11 14:22 - 2014-07-11 14:19 - 00112640 _____ (forum.viry.cz) C:\Users\Dener\Desktop\FRSTLauncher.exe 2014-07-11 21:42 - 2014-05-13 20:18 - 00019518 _____ () C:\Windows\AutoKMS.log 2014-07-11 21:42 - 2014-05-13 17:28 - 00000200 _____ () C:\Windows\Tasks\AutoKMS.job C:\Windows\AutoKMS.exe Hosts: Reboot: End
- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST

- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt

Re: Vyskakování oken v prohližeči
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 13-07-2014
Ran by Dener at 2014-07-13 23:05:29 Run:1
Running from C:\Users\Dener\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41336 2014-05-08] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840568 2014-05-08] (Adobe Systems Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54840 2007-05-08] (Hewlett-Packard)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Dener\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Policies\Explorer: []
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
S1 {0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64; system32\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys [X]
2014-07-11 21:39 - 2014-07-11 21:26 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-07-11 21:28 - 2014-07-11 21:42 - 00008810 _____ () C:\zoek-results.log
2014-07-11 21:26 - 2014-07-11 21:37 - 00000000 ____D () C:\zoek_backup
2014-07-11 21:26 - 2014-07-11 21:26 - 01285120 _____ () C:\Users\Dener\Desktop\zoek.exe
2014-07-11 19:01 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-07-11 19:00 - 2014-07-11 19:02 - 00000000 ____D () C:\AdwCleaner
2014-07-11 18:45 - 2014-07-11 18:45 - 01006181 _____ (Thisisu) C:\Users\Dener\Desktop\JRT.exe
2014-07-11 18:43 - 2014-07-11 18:38 - 01348263 _____ () C:\Users\Dener\Desktop\adwcleaner_3.215.exe
2014-07-11 14:24 - 2014-07-11 14:25 - 00028918 _____ () C:\Users\Dener\Desktop\Addition.txt
2014-07-11 14:23 - 2014-07-11 22:29 - 00017328 _____ () C:\Users\Dener\Desktop\FRST.txt
2014-07-11 14:22 - 2014-07-11 14:19 - 00112640 _____ (forum.viry.cz) C:\Users\Dener\Desktop\FRSTLauncher.exe
2014-07-11 21:42 - 2014-05-13 20:18 - 00019518 _____ () C:\Windows\AutoKMS.log
2014-07-11 21:42 - 2014-05-13 17:28 - 00000200 _____ () C:\Windows\Tasks\AutoKMS.job
C:\Windows\AutoKMS.exe
Hosts:
Reboot:
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\BCSSync => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Acrobat Speed Launcher => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Acrobat Assistant 8.0 => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\HP Software Update => value deleted successfully.
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.autoupdate => value deleted successfully.
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => value deleted successfully.
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\ => value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => value deleted successfully.
'HKCR\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93}'=> Key not found.
{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64 => Service deleted successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Dener\Desktop\zoek.exe => Moved successfully.
C:\Windows\SysWOW64\sqlite3.dll => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Dener\Desktop\JRT.exe => Moved successfully.
C:\Users\Dener\Desktop\adwcleaner_3.215.exe => Moved successfully.
C:\Users\Dener\Desktop\Addition.txt => Moved successfully.
C:\Users\Dener\Desktop\FRST.txt => Moved successfully.
"C:\Users\Dener\Desktop\FRSTLauncher.exe" => File/Directory not found.
C:\Windows\AutoKMS.log => Moved successfully.
C:\Windows\Tasks\AutoKMS.job => Moved successfully.
C:\Windows\AutoKMS.exe => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
The system needed a reboot.
==== End of Fixlog ====
Ran by Dener at 2014-07-13 23:05:29 Run:1
Running from C:\Users\Dener\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41336 2014-05-08] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840568 2014-05-08] (Adobe Systems Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54840 2007-05-08] (Hewlett-Packard)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Dener\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Dener\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [92664 2013-04-12] ()
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\...\Policies\Explorer: []
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
S1 {0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64; system32\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys [X]
2014-07-11 21:39 - 2014-07-11 21:26 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-07-11 21:28 - 2014-07-11 21:42 - 00008810 _____ () C:\zoek-results.log
2014-07-11 21:26 - 2014-07-11 21:37 - 00000000 ____D () C:\zoek_backup
2014-07-11 21:26 - 2014-07-11 21:26 - 01285120 _____ () C:\Users\Dener\Desktop\zoek.exe
2014-07-11 19:01 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-07-11 19:00 - 2014-07-11 19:02 - 00000000 ____D () C:\AdwCleaner
2014-07-11 18:45 - 2014-07-11 18:45 - 01006181 _____ (Thisisu) C:\Users\Dener\Desktop\JRT.exe
2014-07-11 18:43 - 2014-07-11 18:38 - 01348263 _____ () C:\Users\Dener\Desktop\adwcleaner_3.215.exe
2014-07-11 14:24 - 2014-07-11 14:25 - 00028918 _____ () C:\Users\Dener\Desktop\Addition.txt
2014-07-11 14:23 - 2014-07-11 22:29 - 00017328 _____ () C:\Users\Dener\Desktop\FRST.txt
2014-07-11 14:22 - 2014-07-11 14:19 - 00112640 _____ (forum.viry.cz) C:\Users\Dener\Desktop\FRSTLauncher.exe
2014-07-11 21:42 - 2014-05-13 20:18 - 00019518 _____ () C:\Windows\AutoKMS.log
2014-07-11 21:42 - 2014-05-13 17:28 - 00000200 _____ () C:\Windows\Tasks\AutoKMS.job
C:\Windows\AutoKMS.exe
Hosts:
Reboot:
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\BCSSync => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Acrobat Speed Launcher => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Acrobat Assistant 8.0 => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\seznam-listicka-distribuce => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\HP Software Update => value deleted successfully.
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.autoupdate => value deleted successfully.
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\Software\Microsoft\Windows\CurrentVersion\Run\\cz.seznam.software.szndesktop => value deleted successfully.
HKU\S-1-5-21-2684403127-2876713720-1962332720-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\ => value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => value deleted successfully.
'HKCR\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93}'=> Key not found.
{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64 => Service deleted successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Dener\Desktop\zoek.exe => Moved successfully.
C:\Windows\SysWOW64\sqlite3.dll => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Dener\Desktop\JRT.exe => Moved successfully.
C:\Users\Dener\Desktop\adwcleaner_3.215.exe => Moved successfully.
C:\Users\Dener\Desktop\Addition.txt => Moved successfully.
C:\Users\Dener\Desktop\FRST.txt => Moved successfully.
"C:\Users\Dener\Desktop\FRSTLauncher.exe" => File/Directory not found.
C:\Windows\AutoKMS.log => Moved successfully.
C:\Windows\Tasks\AutoKMS.job => Moved successfully.
C:\Windows\AutoKMS.exe => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
The system needed a reboot.
==== End of Fixlog ====
Re: Vyskakování oken v prohližeči
Tak jeste uklidime
T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
OTC http://oldtimer.geekstogo.com/OTC.exe
TFC http://oldtimer.geekstogo.com/TFC.exe
Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
A pokud nejsou problemy ci dotazy, je to z me strany vse 


- Stahnete a spustte
- Pro potvrzeni volby mackejte A, Enter
- Po pouziti utilitu smazte
- Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)

- Stahnete a spustte
- Kliknete na CleanUp a potvrdte YES
- Program uklidi a restartuje PC

- Stahnete a spustte
- Kliknete na Start a potvrdte OK
- Program uklidi a restartuje pc
- Po pouziti utilitu smazte

Panel čistič
- Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
- dejte Hledej problémy
- nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
- postup opakujte dokud nebude bez problemu - vetsinou cca 3x
- Zde muzete odinstalovat nepotrebne programy


Re: Vyskakování oken v prohližeči
Velmi Vám děkuji za odbornou pomoc, vše je vyřešeno - ještě dočistím PC. Posílám drobnou finanční pomoc.
Ještě jednou děkuji,
s pozdravem Czikó P.
Ještě jednou děkuji,
s pozdravem Czikó P.
Re: Vyskakování oken v prohližeči
Nemate zac, rad jsem pomohl
Zase nekdy 
Za podporu fora jmenem celeho tymu dekuji
A na zaklade Pravidla o zamykani temat


Za podporu fora jmenem celeho tymu dekuji

A na zaklade Pravidla o zamykani temat
