Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

opakujici se vypinani notebooku

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Marketa1m62
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 14 črc 2014 21:25

opakujici se vypinani notebooku

#1 Příspěvek od Marketa1m62 »

Pekny den, prosim o radu a ev. pomoc s nasledujicim problemem. Notebook se necekane sam restartuje, obcas se objevuje bluescreen, vypinaji se ruzne aplikace, prohlizece, vyskakuje hlaska ovladac zobrazení nvidia windows kernel mode driver, přestal odpovídat a byl úspěšně obnoven. Prestal fungovat AVG, obcas se pc restartuje i pri prihlasovani se. Prosim, zda je mozne zkontrolovat log. Diky a pekny vecer.

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-07-2014 01
Ran by mamka (administrator) on PETR-PC on 14-07-2014 22:12:42
Running from C:\Users\mamka\Desktop
Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\mamka\Desktop\FRSTLauncher (1).exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1225920 2014-04-30] (NVIDIA Corporation)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432 2014-07-14] (AVAST Software)
HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2014-01-05] (Microsoft Corporation)
HKU\S-1-5-21-3060002015-3784217756-1855706981-1006\...\MountPoints2: {5d5ac9f9-0875-11e4-96f7-001e37e657eb} - E:\LGAutoRun.exe
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{99E8B8DD-977C-4E64-BF58-F06CD11D3A1C}: [NameServer]8.8.8.8,4.4.4.4

FireFox:
========
FF ProfilePath: C:\Users\mamka\AppData\Roaming\Mozilla\Firefox\Profiles\sli5i2rg.default
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll No File
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mapy-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-07-14]

Chrome:
=======
CHR Extension: (Peněženka Google) - C:\Users\mamka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-10]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-14]

==================== Services (Whitelisted) =================

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-14] (AVAST Software)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1617696 2014-04-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21007192 2014-04-30] (NVIDIA Corporation)

==================== Drivers (Whitelisted) ====================

S3 andnetadb; C:\Windows\System32\Drivers\lgandnetadb.sys [31744 2014-03-28] (Google Inc)
S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [29184 2014-03-28] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [36352 2014-03-28] (LG Electronics Inc.)
S3 andnetndis; C:\Windows\System32\DRIVERS\lgandnetndis64.sys [93696 2014-03-28] (LG Electronics Inc.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-14] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-14] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-14] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-14] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-14] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-14] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-14] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-14] ()
R3 HpqRemHid; C:\Windows\System32\DRIVERS\HpqRemHid.sys [9088 2007-07-11] (Hewlett-Packard Development Company, L.P.)
S3 intelppm; C:\Windows\System32\DRIVERS\intelppm.sys [62464 2009-07-14] (Microsoft Corporation) [File not signed]
S3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [8192 2005-03-29] ()
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18776 2014-04-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R3 smserial; C:\Windows\System32\DRIVERS\SmSerl64.sys [1227776 2009-06-10] (Motorola Inc.)
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation)
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-07-14 22:12 - 2014-07-14 22:13 - 00008247 _____ () C:\Users\mamka\Desktop\FRST.txt
2014-07-14 22:12 - 2014-07-14 22:12 - 00000000 ____D () C:\FRST
2014-07-14 22:07 - 2014-07-14 22:07 - 00112640 _____ (forum.viry.cz) C:\Users\mamka\Desktop\FRSTLauncher (1).exe
2014-07-14 22:03 - 2014-07-14 22:03 - 02086912 _____ (Farbar) C:\Users\mamka\Desktop\FRST64.exe
2014-07-14 22:03 - 2014-07-14 22:03 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\AVAST Software
2014-07-14 22:01 - 2014-07-14 22:10 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-07-14 22:01 - 2014-07-14 22:01 - 00427360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-14 22:01 - 2014-07-14 22:01 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-14 22:01 - 2014-07-14 22:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-07-14 22:01 - 2014-07-14 22:00 - 01041168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-07-14 22:01 - 2014-07-14 22:00 - 00307344 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-14 22:01 - 2014-07-14 22:00 - 00224896 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-14 22:01 - 2014-07-14 22:00 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-14 22:01 - 2014-07-14 22:00 - 00092008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-07-14 22:01 - 2014-07-14 22:00 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-14 22:01 - 2014-07-14 22:00 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-07-14 22:01 - 2014-07-14 22:00 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-14 22:00 - 2014-07-14 22:00 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-14 22:00 - 2014-07-14 22:00 - 00000000 ____D () C:\Program Files\AVAST Software
2014-07-14 21:55 - 2014-07-14 21:58 - 91906368 _____ (AVAST Software) C:\Users\mamka\Downloads\avast_free_antivirus_setup (1).exe
2014-07-14 21:54 - 2014-07-14 22:00 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-07-14 21:49 - 2014-07-14 21:53 - 91745640 _____ (AVAST Software) C:\Users\mamka\Downloads\avast_free_antivirus_setup.exe
2014-07-12 20:27 - 2014-07-12 20:27 - 00264808 _____ () C:\Windows\Minidump\071214-42385-01.dmp
2014-07-12 07:36 - 2014-07-12 07:36 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-07-12 07:36 - 2014-07-12 07:36 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-07-12 07:36 - 2014-07-12 07:36 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Mozilla
2014-07-12 07:36 - 2014-07-12 07:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-07-12 07:35 - 2014-07-12 07:35 - 29677080 _____ (Mozilla) C:\Users\mamka\Downloads\Firefox Setup 30.0 (2).exe
2014-07-12 07:30 - 2014-07-12 07:31 - 29677080 _____ (Mozilla) C:\Users\mamka\Downloads\Firefox Setup 30.0 (1).exe
2014-07-12 07:29 - 2014-07-12 07:30 - 29677080 _____ (Mozilla) C:\Users\mamka\Downloads\Firefox Setup 30.0.exe
2014-07-12 06:38 - 2014-07-12 06:38 - 00268936 _____ () C:\Windows\Minidump\071214-46566-01.dmp
2014-07-12 01:50 - 2014-07-12 01:50 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Win7codecs
2014-07-12 01:48 - 2014-07-12 01:48 - 00001011 _____ () C:\Users\Ondra\Desktop\SpeedFan.lnk
2014-07-12 01:48 - 2014-07-12 01:48 - 00001011 _____ () C:\Users\mamka\Desktop\SpeedFan.lnk
2014-07-12 01:48 - 2014-07-12 01:48 - 00001011 _____ () C:\Users\Honzik\Desktop\SpeedFan.lnk
2014-07-12 01:48 - 2014-07-12 01:48 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan
2014-07-12 01:48 - 2014-07-12 01:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedFan
2014-07-12 01:37 - 2014-07-12 01:37 - 00282904 _____ () C:\Windows\Minidump\071214-55520-01.dmp
2014-07-12 01:36 - 2014-07-12 01:36 - 00003304 ____N () C:\bootsqm.dat
2014-07-12 01:29 - 2014-07-12 20:27 - 140831336 _____ () C:\Windows\MEMORY.DMP
2014-07-12 01:29 - 2014-07-12 01:29 - 00290648 _____ () C:\Windows\Minidump\071214-80215-01.dmp
2014-07-12 00:30 - 2014-07-14 22:09 - 00142916 _____ () C:\Windows\PFRO.log
2014-07-12 00:30 - 2014-07-14 22:09 - 00005126 _____ () C:\Windows\setupact.log
2014-07-12 00:30 - 2014-07-12 00:30 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-12 00:22 - 2014-07-12 00:22 - 00013060 _____ () C:\Program Files\cc_20140712_002212.reg
2014-07-12 00:15 - 2014-07-12 00:15 - 00000000 ____D () C:\Users\mamka\AppData\Local\MFAData
2014-07-12 00:14 - 2014-07-12 00:14 - 00002440 _____ () C:\Program Files\cc_20140712_001406.reg
2014-07-12 00:04 - 2014-07-12 00:04 - 00007978 _____ () C:\Users\mamka\Downloads\hijackthis.log
2014-07-12 00:03 - 2014-07-12 00:03 - 00388608 _____ (Trend Micro Inc.) C:\Users\mamka\Downloads\HiJackThis.exe
2014-07-11 20:31 - 2014-07-11 20:31 - 00000000 ____D () C:\Windows\system32\%LOCALAPPDATA%
2014-07-11 18:19 - 2014-07-11 19:55 - 890316800 _____ () C:\Users\mamka\Downloads\Scooby-Doo-a-Kostlivci.avi
2014-07-11 12:33 - 2014-07-11 14:04 - 870932136 _____ () C:\Users\mamka\Downloads\Číslo-5-žije-,1.-CZ-dub-1986..avi
2014-07-11 09:07 - 2014-07-11 09:42 - 973615682 _____ () C:\Users\mamka\Downloads\letopisy-narnie-princ-kaspian-cz.avi
2014-07-11 07:55 - 2014-07-11 08:42 - 848636416 _____ () C:\Users\mamka\Downloads\Letopisy-Narnie-Lev,-čarodejnice-a-skříň..avi
2014-07-11 07:47 - 2014-07-11 07:55 - 526825839 _____ () C:\Users\mamka\Downloads\E.T.mimozemstan.cz.avi
2014-07-11 07:32 - 2014-07-11 07:32 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_lgandnetadb_01005.Wdf
2014-07-11 06:51 - 2014-07-11 06:51 - 00000000 ____D () C:\Program Files (x86)\LG Electronics
2014-07-11 06:51 - 2014-03-28 15:41 - 00031744 _____ (Google Inc) C:\Windows\system32\Drivers\lgandnetadb.sys
2014-07-11 06:51 - 2014-03-28 15:26 - 00093696 _____ (LG Electronics Inc.) C:\Windows\system32\Drivers\lgandnetndis64.sys
2014-07-11 06:51 - 2014-03-28 15:25 - 00036352 _____ (LG Electronics Inc.) C:\Windows\system32\Drivers\lgandnetmodem64.sys
2014-07-11 06:51 - 2014-03-28 15:25 - 00029184 _____ (LG Electronics Inc.) C:\Windows\system32\Drivers\lgandnetdiag64.sys
2014-07-11 06:51 - 2011-07-18 06:03 - 01919968 _____ (Microsoft Corporation) C:\Windows\system32\wdfcoinstaller01005.dll
2014-07-11 06:33 - 2014-07-11 07:59 - 00003826 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1405053202
2014-07-11 06:33 - 2014-07-11 07:59 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-07-11 06:33 - 2014-07-11 06:33 - 00001133 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-07-11 06:33 - 2014-07-11 06:33 - 00001133 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-07-11 06:33 - 2014-07-11 06:33 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Opera Software
2014-07-11 06:33 - 2014-07-11 06:33 - 00000000 ____D () C:\Users\mamka\AppData\Local\Opera Software
2014-07-11 00:19 - 2014-07-11 01:35 - 703486644 _____ () C:\Users\mamka\Downloads\Scooby-Doo-a-ostrov-zombii---Scooby-Doo-On-Zombie-Island-1998-CZ-Maxvencamax.avi
2014-07-10 22:59 - 2014-03-24 12:31 - 03683457 _____ () C:\Windows\system32\nvcoproc.bin
2014-07-10 22:57 - 2014-07-10 22:57 - 00109296 _____ () C:\Users\mamka\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-10 22:54 - 2014-07-13 09:48 - 00000000 ____D () C:\Users\mamka\AppData\Local\Microsoft Games
2014-07-10 18:48 - 2014-07-10 22:49 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Mumble
2014-07-10 18:48 - 2014-07-10 18:48 - 00002393 _____ () C:\Users\mamka\Documents\MumbleAutomaticCertificateBackup.p12
2014-07-10 17:16 - 2014-07-10 17:16 - 00002392 _____ () C:\Users\Honzik\Documents\MumbleAutomaticCertificateBackup.p12
2014-07-10 17:14 - 2014-07-10 17:19 - 00000000 ____D () C:\Users\Honzik\AppData\Roaming\Mumble
2014-07-10 17:14 - 2014-07-10 17:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble
2014-07-10 17:14 - 2014-07-10 17:14 - 00000000 ____D () C:\Program Files (x86)\Mumble
2014-07-10 17:11 - 2014-07-10 17:11 - 16232960 _____ () C:\Users\Honzik\Downloads\mumble-1.2.7.msi
2014-07-10 17:06 - 2014-07-10 17:08 - 00000000 ____D () C:\Users\Honzik\AppData\Local\Microsoft Games
2014-07-10 17:06 - 2014-07-10 17:06 - 00109296 _____ () C:\Users\Honzik\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-10 12:43 - 2014-07-10 13:11 - 734796168 _____ () C:\Users\mamka\Downloads\Norbit-2007-DVDRip-XVID-CZ-najlepsiefilmy.huu.cz.avi
2014-07-10 11:28 - 2014-07-10 11:28 - 00000000 __SHD () C:\Users\mamka\AppData\Local\EmieUserList
2014-07-10 11:28 - 2014-07-10 11:28 - 00000000 __SHD () C:\Users\mamka\AppData\Local\EmieSiteList
2014-07-09 13:59 - 2014-06-30 04:09 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-09 13:59 - 2014-06-30 04:04 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-07-09 13:59 - 2014-06-20 22:14 - 00266424 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-07-09 13:59 - 2014-06-20 21:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-07-09 13:59 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-09 13:59 - 2014-06-19 03:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-09 13:59 - 2014-06-19 03:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-07-09 13:59 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-09 13:59 - 2014-06-19 02:42 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-07-09 13:59 - 2014-06-19 02:42 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-09 13:59 - 2014-06-19 02:41 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-07-09 13:59 - 2014-06-19 02:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-07-09 13:59 - 2014-06-19 02:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-09 13:59 - 2014-06-19 02:31 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-09 13:59 - 2014-06-19 02:26 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-07-09 13:59 - 2014-06-19 02:24 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-07-09 13:59 - 2014-06-19 02:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-07-09 13:59 - 2014-06-19 02:23 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-07-09 13:59 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-07-09 13:59 - 2014-06-19 02:14 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-07-09 13:59 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-09 13:59 - 2014-06-19 01:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-07-09 13:59 - 2014-06-19 01:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-07-09 13:59 - 2014-06-19 01:53 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-09 13:59 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-09 13:59 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-09 13:59 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-09 13:59 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-09 13:59 - 2014-06-19 01:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-07-09 13:59 - 2014-06-19 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-07-09 13:59 - 2014-06-19 01:36 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-07-09 13:59 - 2014-06-19 01:35 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-07-09 13:59 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-09 13:59 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-07-09 13:59 - 2014-06-19 01:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-07-09 13:59 - 2014-06-19 01:28 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-07-09 13:59 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-09 13:59 - 2014-06-19 01:27 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-07-09 13:59 - 2014-06-19 01:25 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-07-09 13:59 - 2014-06-19 01:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-07-09 13:59 - 2014-06-19 01:22 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-07-09 13:59 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-07-09 13:59 - 2014-06-19 01:06 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-07-09 13:59 - 2014-06-19 01:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-07-09 13:59 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-07-09 13:59 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-09 13:59 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-07-09 13:59 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-07-09 13:59 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-09 13:59 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-07-09 13:59 - 2014-06-19 00:46 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-07-09 13:59 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-07-09 13:59 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-07-09 13:59 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-09 13:59 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-07-09 13:59 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-07-09 13:59 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-07-09 13:59 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-07-09 13:59 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-07-09 13:59 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2014-07-09 13:59 - 2014-06-18 03:10 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-07-09 13:59 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-07-09 13:59 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-07-09 13:59 - 2014-05-30 10:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-07-09 13:59 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-07-09 13:59 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-07-09 13:59 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-07-09 13:59 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-07-09 13:59 - 2014-05-30 10:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-07-09 13:59 - 2014-05-30 10:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-07-09 13:59 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-07-09 13:59 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-07-09 13:59 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-07-09 13:59 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-07-09 13:59 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-07-09 13:59 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-07-09 13:59 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-07-09 13:59 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-07-09 13:57 - 2014-06-05 16:45 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-07-09 13:57 - 2014-06-05 16:26 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-07-09 13:57 - 2014-06-05 16:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-07-09 09:42 - 2014-07-09 09:42 - 00000000 ____D () C:\Users\Honzik\AppData\Roaming\Macromedia
2014-07-09 09:42 - 2014-07-09 09:42 - 00000000 ____D () C:\Users\Honzik\AppData\Local\Macromedia
2014-07-09 09:41 - 2014-07-09 09:41 - 00000000 ____D () C:\Users\Honzik\AppData\Roaming\Mozilla
2014-07-09 09:41 - 2014-07-09 09:41 - 00000000 ____D () C:\Users\Honzik\AppData\Local\Mozilla
2014-07-09 09:39 - 2014-07-09 09:39 - 00001397 _____ () C:\Users\Honzik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-07-09 09:39 - 2014-07-09 09:39 - 00000000 ____D () C:\Users\Honzik\AppData\Roaming\Adobe
2014-07-09 09:39 - 2014-07-09 09:39 - 00000000 ____D () C:\Users\Honzik\AppData\Local\Google
2014-07-09 09:38 - 2014-07-09 09:39 - 00000000 ____D () C:\Users\Honzik\AppData\Local\VirtualStore
2014-07-09 09:38 - 2014-07-09 09:39 - 00000000 ____D () C:\Users\Honzik
2014-07-09 09:38 - 2014-07-09 09:38 - 00000020 ___SH () C:\Users\Honzik\ntuser.ini
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Šablony
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Soubory cookie
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Poslední
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Okolní tiskárny
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Okolní síť
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Nabídka Start
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Dokumenty
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Documents\Obrázky
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Documents\Hudba
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Documents\Filmy
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Data aplikací
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\AppData\Local\Data aplikací
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 ____D () C:\Users\Honzik\AppData\Local\NVIDIA Corporation
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 ____D () C:\Users\Honzik\AppData\Local\NVIDIA
2014-07-09 09:38 - 2014-06-02 16:50 - 00000000 ____D () C:\Users\Honzik\AppData\Local\Overwolf
2014-07-09 09:38 - 2014-04-23 18:50 - 00000000 ____D () C:\Users\Honzik\AppData\Roaming\TuneUp Software
2014-07-09 09:38 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Honzik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-07-09 09:38 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Honzik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-07-09 08:50 - 2014-07-09 08:51 - 00000000 ____D () C:\Users\Ondra\AppData\Local\VirtualStore
2014-07-09 08:50 - 2014-07-09 08:50 - 00001397 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-07-09 08:50 - 2014-07-09 08:50 - 00000020 ___SH () C:\Users\Ondra\ntuser.ini
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Šablony
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Soubory cookie
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Poslední
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Okolní tiskárny
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Okolní síť
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Nabídka Start
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Dokumenty
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Documents\Obrázky
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Documents\Hudba
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Documents\Filmy
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Data aplikací
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\AppData\Local\Data aplikací
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Adobe
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 ____D () C:\Users\Ondra\AppData\Local\NVIDIA Corporation
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 ____D () C:\Users\Ondra\AppData\Local\NVIDIA
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Google
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 ____D () C:\Users\Ondra
2014-07-09 08:50 - 2014-06-02 16:50 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Overwolf
2014-07-09 08:50 - 2014-04-23 18:50 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\TuneUp Software
2014-07-09 08:50 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-07-09 08:50 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-07-08 20:48 - 2014-07-08 20:48 - 00001150 _____ () C:\Users\mamka\Desktop\WoW – zástupce.lnk
2014-07-08 16:43 - 2014-07-08 16:43 - 00535495 _____ () C:\Users\mamka\Desktop\VuhDo.lua
2014-07-08 16:02 - 2014-07-14 22:13 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-08 16:02 - 2014-07-14 22:10 - 00000946 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-08 16:02 - 2014-07-08 16:21 - 00002183 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-08 16:02 - 2014-07-08 16:08 - 00003946 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-07-08 16:02 - 2014-07-08 16:08 - 00003694 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-07-08 16:02 - 2014-07-08 16:03 - 00000000 ____D () C:\Users\mamka\AppData\Local\Google
2014-07-08 16:02 - 2014-07-08 16:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-07-08 16:01 - 2014-07-08 16:02 - 00000000 ____D () C:\Program Files (x86)\Google
2014-07-08 14:54 - 2014-07-08 15:07 - 234255184 _____ () C:\Users\mamka\Downloads\Age-Of-Empires-2-&-The-Conquerors-Expansion---Full-Game---[eMoo].rar
2014-07-08 14:23 - 2014-07-08 14:23 - 00001992 _____ () C:\Program Files\cc_20140708_142251.reg
2014-07-08 14:22 - 2014-07-12 07:21 - 00000000 ____D () C:\Users\mamka\AppData\Local\CrashDumps
2014-07-08 14:21 - 2014-07-08 14:21 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-07-08 14:21 - 2014-07-08 14:21 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-07-08 14:21 - 2014-07-08 14:21 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-08 14:17 - 2014-07-08 14:17 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\WinRAR
2014-07-08 14:17 - 2014-06-23 23:17 - 00009201 ____S () C:\Windows\SysWOW64\mspsob.vbe
2014-07-08 14:17 - 2014-06-23 23:17 - 00004332 ____S () C:\Windows\SysWOW64\msaqwssv.vbe
2014-07-08 14:16 - 2014-07-08 14:16 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Macromedia
2014-07-08 14:16 - 2014-07-08 14:16 - 00000000 ____D () C:\Users\mamka\AppData\Local\Macromedia
2014-07-08 14:15 - 2014-07-08 14:15 - 00000000 ____D () C:\Users\mamka\AppData\Local\Mozilla
2014-07-08 14:12 - 2014-07-08 14:12 - 00000000 ____D () C:\Users\mamka\Desktop\petr
2014-07-08 14:11 - 2014-07-08 14:11 - 00001397 _____ () C:\Users\mamka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-07-08 14:11 - 2014-07-08 14:11 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Adobe
2014-07-08 14:10 - 2014-07-12 00:04 - 00000000 ____D () C:\Users\mamka\AppData\Local\VirtualStore
2014-07-08 14:10 - 2014-07-08 14:11 - 00000000 ____D () C:\Users\mamka
2014-07-08 14:10 - 2014-07-08 14:10 - 00000020 ___SH () C:\Users\mamka\ntuser.ini
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Šablony
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Soubory cookie
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Poslední
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Okolní tiskárny
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Okolní síť
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Nabídka Start
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Dokumenty
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Documents\Obrázky
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Documents\Hudba
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Documents\Filmy
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Data aplikací
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\AppData\Local\Data aplikací
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 ____D () C:\Users\mamka\AppData\Local\NVIDIA Corporation
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 ____D () C:\Users\mamka\AppData\Local\NVIDIA
2014-07-08 14:10 - 2014-06-02 16:50 - 00000000 ____D () C:\Users\mamka\AppData\Local\Overwolf
2014-07-08 14:10 - 2014-04-23 18:50 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\TuneUp Software
2014-07-08 14:10 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\mamka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-07-08 14:10 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\mamka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-07-08 14:04 - 2014-06-23 23:17 - 00009201 ____S () C:\Windows\SysWOW64\mscywfq.vbe
2014-07-08 14:04 - 2014-06-23 23:17 - 00004332 ____S () C:\Windows\SysWOW64\msnbluu.vbe
2014-07-08 13:55 - 2014-07-08 13:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys
2014-07-08 13:55 - 2014-07-08 13:55 - 00000000 ____D () C:\Program Files (x86)\Lavalys
2014-07-08 13:54 - 2014-07-08 13:54 - 04179293 _____ (Lavalys, Inc. ) C:\Users\petr\Downloads\everesthome220.exe
2014-07-08 13:44 - 2013-06-27 10:59 - 00000000 ____D () C:\Users\petr\Downloads\firefox
2014-07-08 13:43 - 2014-07-08 13:43 - 10255080 _____ (Lavalys, Inc. ) C:\Users\petr\Downloads\everestultimate550.exe
2014-07-08 13:43 - 2014-07-08 13:43 - 00733360 _____ () C:\Users\petr\Downloads\everest-lista-centrumcz.exe
2014-07-08 13:36 - 2014-07-08 13:36 - 00000000 ____D () C:\ProgramData\Sun
2014-07-08 13:36 - 2014-07-08 13:36 - 00000000 ____D () C:\ProgramData\Oracle
2014-07-08 13:35 - 2014-07-10 15:17 - 00000000 ____D () C:\Users\mamka\Desktop\WoW Cata 4.3.4 (Equilibrium)
2014-07-08 13:33 - 2014-07-08 13:34 - 13231857 _____ () C:\Users\petr\Downloads\WoW-Cata-4.3.4-(Twinstar).rar
2014-07-08 13:33 - 2014-07-08 13:33 - 00918952 _____ (Oracle Corporation) C:\Users\petr\Downloads\jxpiinstall.exe
2014-07-08 13:32 - 2014-06-23 23:17 - 00009201 ____S () C:\Windows\SysWOW64\msikwy.vbe
2014-07-08 13:32 - 2014-06-23 23:17 - 00004332 ____S () C:\Windows\SysWOW64\msfbnca.vbe
2014-07-08 13:32 - 2013-08-11 15:40 - 00043520 ____S (NirSoft) C:\Windows\SysWOW64\nircmdc.exe
2014-06-15 19:38 - 2014-06-15 19:38 - 18583216 _____ (Adobe Systems Incorporated) C:\Users\petr\Downloads\install_flash_player_ax.exe
2014-06-15 15:33 - 2014-06-15 15:33 - 29677080 _____ (Mozilla) C:\Users\petr\Downloads\Firefox Setup 30.0.exe
2014-06-15 12:27 - 2014-06-15 12:27 - 00000000 ____D () C:\Windows\system32\appmgmt

==================== One Month Modified Files and Folders =======

2014-07-14 22:13 - 2014-07-14 22:12 - 00008247 _____ () C:\Users\mamka\Desktop\FRST.txt
2014-07-14 22:13 - 2014-07-08 16:02 - 00000950 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-14 22:13 - 2014-01-03 20:56 - 01687153 _____ () C:\Windows\WindowsUpdate.log
2014-07-14 22:12 - 2014-07-14 22:12 - 00000000 ____D () C:\FRST
2014-07-14 22:10 - 2014-07-14 22:01 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-07-14 22:10 - 2014-07-08 16:02 - 00000946 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-14 22:09 - 2014-07-12 00:30 - 00142916 _____ () C:\Windows\PFRO.log
2014-07-14 22:09 - 2014-07-12 00:30 - 00005126 _____ () C:\Windows\setupact.log
2014-07-14 22:09 - 2014-01-03 22:00 - 00000000 ____D () C:\Program Files (x86)\AVG
2014-07-14 22:09 - 2014-01-03 21:57 - 00000000 ____D () C:\ProgramData\MFAData
2014-07-14 22:09 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-14 22:07 - 2014-07-14 22:07 - 00112640 _____ (forum.viry.cz) C:\Users\mamka\Desktop\FRSTLauncher (1).exe
2014-07-14 22:07 - 2009-07-14 06:45 - 00014416 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-14 22:07 - 2009-07-14 06:45 - 00014416 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-14 22:03 - 2014-07-14 22:03 - 02086912 _____ (Farbar) C:\Users\mamka\Desktop\FRST64.exe
2014-07-14 22:03 - 2014-07-14 22:03 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\AVAST Software
2014-07-14 22:01 - 2014-07-14 22:01 - 00427360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-14 22:01 - 2014-07-14 22:01 - 00001966 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-14 22:01 - 2014-07-14 22:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-07-14 22:00 - 2014-07-14 22:01 - 01041168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-07-14 22:00 - 2014-07-14 22:01 - 00307344 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-14 22:00 - 2014-07-14 22:01 - 00224896 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-14 22:00 - 2014-07-14 22:01 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-14 22:00 - 2014-07-14 22:01 - 00092008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-07-14 22:00 - 2014-07-14 22:01 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-14 22:00 - 2014-07-14 22:01 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-07-14 22:00 - 2014-07-14 22:01 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-14 22:00 - 2014-07-14 22:00 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-14 22:00 - 2014-07-14 22:00 - 00000000 ____D () C:\Program Files\AVAST Software
2014-07-14 22:00 - 2014-07-14 21:54 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-07-14 21:58 - 2014-07-14 21:55 - 91906368 _____ (AVAST Software) C:\Users\mamka\Downloads\avast_free_antivirus_setup (1).exe
2014-07-14 21:53 - 2014-07-14 21:49 - 91745640 _____ (AVAST Software) C:\Users\mamka\Downloads\avast_free_antivirus_setup.exe
2014-07-13 09:48 - 2014-07-10 22:54 - 00000000 ____D () C:\Users\mamka\AppData\Local\Microsoft Games
2014-07-13 09:47 - 2009-07-14 17:18 - 00719556 _____ () C:\Windows\system32\perfh005.dat
2014-07-13 09:47 - 2009-07-14 17:18 - 00159328 _____ () C:\Windows\system32\perfc005.dat
2014-07-13 09:47 - 2009-07-14 07:13 - 00006256 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-12 20:30 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-07-12 20:27 - 2014-07-12 20:27 - 00264808 _____ () C:\Windows\Minidump\071214-42385-01.dmp
2014-07-12 20:27 - 2014-07-12 01:29 - 140831336 _____ () C:\Windows\MEMORY.DMP
2014-07-12 20:27 - 2014-04-30 22:37 - 00000000 ____D () C:\Windows\Minidump
2014-07-12 07:36 - 2014-07-12 07:36 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-07-12 07:36 - 2014-07-12 07:36 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-07-12 07:36 - 2014-07-12 07:36 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Mozilla
2014-07-12 07:36 - 2014-07-12 07:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-07-12 07:36 - 2014-01-03 21:28 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-07-12 07:35 - 2014-07-12 07:35 - 29677080 _____ (Mozilla) C:\Users\mamka\Downloads\Firefox Setup 30.0 (2).exe
2014-07-12 07:31 - 2014-07-12 07:30 - 29677080 _____ (Mozilla) C:\Users\mamka\Downloads\Firefox Setup 30.0 (1).exe
2014-07-12 07:30 - 2014-07-12 07:29 - 29677080 _____ (Mozilla) C:\Users\mamka\Downloads\Firefox Setup 30.0.exe
2014-07-12 07:21 - 2014-07-08 14:22 - 00000000 ____D () C:\Users\mamka\AppData\Local\CrashDumps
2014-07-12 06:38 - 2014-07-12 06:38 - 00268936 _____ () C:\Windows\Minidump\071214-46566-01.dmp
2014-07-12 01:50 - 2014-07-12 01:50 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Win7codecs
2014-07-12 01:48 - 2014-07-12 01:48 - 00001011 _____ () C:\Users\Ondra\Desktop\SpeedFan.lnk
2014-07-12 01:48 - 2014-07-12 01:48 - 00001011 _____ () C:\Users\mamka\Desktop\SpeedFan.lnk
2014-07-12 01:48 - 2014-07-12 01:48 - 00001011 _____ () C:\Users\Honzik\Desktop\SpeedFan.lnk
2014-07-12 01:48 - 2014-07-12 01:48 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan
2014-07-12 01:48 - 2014-07-12 01:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedFan
2014-07-12 01:48 - 2014-01-05 23:31 - 00000045 _____ () C:\Windows\SysWOW64\initdebug.nfo
2014-07-12 01:48 - 2014-01-05 23:31 - 00000000 ____D () C:\Program Files (x86)\SpeedFan
2014-07-12 01:37 - 2014-07-12 01:37 - 00282904 _____ () C:\Windows\Minidump\071214-55520-01.dmp
2014-07-12 01:36 - 2014-07-12 01:36 - 00003304 ____N () C:\bootsqm.dat
2014-07-12 01:29 - 2014-07-12 01:29 - 00290648 _____ () C:\Windows\Minidump\071214-80215-01.dmp
2014-07-12 01:29 - 2009-07-14 07:08 - 00032588 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-07-12 00:30 - 2014-07-12 00:30 - 00000000 _____ () C:\Windows\setuperr.log
2014-07-12 00:22 - 2014-07-12 00:22 - 00013060 _____ () C:\Program Files\cc_20140712_002212.reg
2014-07-12 00:15 - 2014-07-12 00:15 - 00000000 ____D () C:\Users\mamka\AppData\Local\MFAData
2014-07-12 00:14 - 2014-07-12 00:14 - 00002440 _____ () C:\Program Files\cc_20140712_001406.reg
2014-07-12 00:04 - 2014-07-12 00:04 - 00007978 _____ () C:\Users\mamka\Downloads\hijackthis.log
2014-07-12 00:04 - 2014-07-08 14:10 - 00000000 ____D () C:\Users\mamka\AppData\Local\VirtualStore
2014-07-12 00:03 - 2014-07-12 00:03 - 00388608 _____ (Trend Micro Inc.) C:\Users\mamka\Downloads\HiJackThis.exe
2014-07-11 20:35 - 2009-07-14 07:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD
2014-07-11 20:31 - 2014-07-11 20:31 - 00000000 ____D () C:\Windows\system32\%LOCALAPPDATA%
2014-07-11 19:55 - 2014-07-11 18:19 - 890316800 _____ () C:\Users\mamka\Downloads\Scooby-Doo-a-Kostlivci.avi
2014-07-11 14:04 - 2014-07-11 12:33 - 870932136 _____ () C:\Users\mamka\Downloads\Číslo-5-žije-,1.-CZ-dub-1986..avi
2014-07-11 09:42 - 2014-07-11 09:07 - 973615682 _____ () C:\Users\mamka\Downloads\letopisy-narnie-princ-kaspian-cz.avi
2014-07-11 08:42 - 2014-07-11 07:55 - 848636416 _____ () C:\Users\mamka\Downloads\Letopisy-Narnie-Lev,-čarodejnice-a-skříň..avi
2014-07-11 07:59 - 2014-07-11 06:33 - 00003826 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1405053202
2014-07-11 07:59 - 2014-07-11 06:33 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-07-11 07:55 - 2014-07-11 07:47 - 526825839 _____ () C:\Users\mamka\Downloads\E.T.mimozemstan.cz.avi
2014-07-11 07:32 - 2014-07-11 07:32 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_lgandnetadb_01005.Wdf
2014-07-11 06:51 - 2014-07-11 06:51 - 00000000 ____D () C:\Program Files (x86)\LG Electronics
2014-07-11 06:51 - 2014-01-05 00:27 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-07-11 06:33 - 2014-07-11 06:33 - 00001133 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-07-11 06:33 - 2014-07-11 06:33 - 00001133 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-07-11 06:33 - 2014-07-11 06:33 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Opera Software
2014-07-11 06:33 - 2014-07-11 06:33 - 00000000 ____D () C:\Users\mamka\AppData\Local\Opera Software
2014-07-11 01:35 - 2014-07-11 00:19 - 703486644 _____ () C:\Users\mamka\Downloads\Scooby-Doo-a-ostrov-zombii---Scooby-Doo-On-Zombie-Island-1998-CZ-Maxvencamax.avi
2014-07-11 00:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-07-10 23:02 - 2014-05-28 15:15 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-07-10 22:57 - 2014-07-10 22:57 - 00109296 _____ () C:\Users\mamka\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-10 22:53 - 2014-01-04 00:28 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-07-10 22:50 - 2014-06-09 17:49 - 00077575 _____ () C:\ProgramData\nvModes.001
2014-07-10 22:49 - 2014-07-10 18:48 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Mumble
2014-07-10 22:48 - 2014-06-09 17:45 - 00077575 _____ () C:\ProgramData\nvModes.dat
2014-07-10 18:48 - 2014-07-10 18:48 - 00002393 _____ () C:\Users\mamka\Documents\MumbleAutomaticCertificateBackup.p12
2014-07-10 17:19 - 2014-07-10 17:14 - 00000000 ____D () C:\Users\Honzik\AppData\Roaming\Mumble
2014-07-10 17:16 - 2014-07-10 17:16 - 00002392 _____ () C:\Users\Honzik\Documents\MumbleAutomaticCertificateBackup.p12
2014-07-10 17:14 - 2014-07-10 17:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble
2014-07-10 17:14 - 2014-07-10 17:14 - 00000000 ____D () C:\Program Files (x86)\Mumble
2014-07-10 17:11 - 2014-07-10 17:11 - 16232960 _____ () C:\Users\Honzik\Downloads\mumble-1.2.7.msi
2014-07-10 17:08 - 2014-07-10 17:06 - 00000000 ____D () C:\Users\Honzik\AppData\Local\Microsoft Games
2014-07-10 17:06 - 2014-07-10 17:06 - 00109296 _____ () C:\Users\Honzik\AppData\Local\GDIPFONTCACHEV1.DAT
2014-07-10 15:17 - 2014-07-08 13:35 - 00000000 ____D () C:\Users\mamka\Desktop\WoW Cata 4.3.4 (Equilibrium)
2014-07-10 13:11 - 2014-07-10 12:43 - 734796168 _____ () C:\Users\mamka\Downloads\Norbit-2007-DVDRip-XVID-CZ-najlepsiefilmy.huu.cz.avi
2014-07-10 11:28 - 2014-07-10 11:28 - 00000000 __SHD () C:\Users\mamka\AppData\Local\EmieUserList
2014-07-10 11:28 - 2014-07-10 11:28 - 00000000 __SHD () C:\Users\mamka\AppData\Local\EmieSiteList
2014-07-09 15:42 - 2014-04-24 19:10 - 00418320 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-09 15:39 - 2014-05-06 20:26 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-09 15:39 - 2009-07-14 17:37 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-09 15:39 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2014-07-09 15:39 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism
2014-07-09 15:36 - 2014-01-12 13:20 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-09 15:34 - 2014-01-12 13:20 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-09 10:18 - 2009-07-14 17:36 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-07-09 09:42 - 2014-07-09 09:42 - 00000000 ____D () C:\Users\Honzik\AppData\Roaming\Macromedia
2014-07-09 09:42 - 2014-07-09 09:42 - 00000000 ____D () C:\Users\Honzik\AppData\Local\Macromedia
2014-07-09 09:41 - 2014-07-09 09:41 - 00000000 ____D () C:\Users\Honzik\AppData\Roaming\Mozilla
2014-07-09 09:41 - 2014-07-09 09:41 - 00000000 ____D () C:\Users\Honzik\AppData\Local\Mozilla
2014-07-09 09:39 - 2014-07-09 09:39 - 00001397 _____ () C:\Users\Honzik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-07-09 09:39 - 2014-07-09 09:39 - 00000000 ____D () C:\Users\Honzik\AppData\Roaming\Adobe
2014-07-09 09:39 - 2014-07-09 09:39 - 00000000 ____D () C:\Users\Honzik\AppData\Local\Google
2014-07-09 09:39 - 2014-07-09 09:38 - 00000000 ____D () C:\Users\Honzik\AppData\Local\VirtualStore
2014-07-09 09:39 - 2014-07-09 09:38 - 00000000 ____D () C:\Users\Honzik
2014-07-09 09:38 - 2014-07-09 09:38 - 00000020 ___SH () C:\Users\Honzik\ntuser.ini
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Šablony
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Soubory cookie
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Poslední
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Okolní tiskárny
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Okolní síť
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Nabídka Start
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Dokumenty
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Documents\Obrázky
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Documents\Hudba
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Documents\Filmy
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\Data aplikací
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 _SHDL () C:\Users\Honzik\AppData\Local\Data aplikací
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 ____D () C:\Users\Honzik\AppData\Local\NVIDIA Corporation
2014-07-09 09:38 - 2014-07-09 09:38 - 00000000 ____D () C:\Users\Honzik\AppData\Local\NVIDIA
2014-07-09 08:51 - 2014-07-09 08:50 - 00000000 ____D () C:\Users\Ondra\AppData\Local\VirtualStore
2014-07-09 08:50 - 2014-07-09 08:50 - 00001397 _____ () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-07-09 08:50 - 2014-07-09 08:50 - 00000020 ___SH () C:\Users\Ondra\ntuser.ini
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Šablony
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Soubory cookie
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Poslední
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Okolní tiskárny
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Okolní síť
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Nabídka Start
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Dokumenty
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Documents\Obrázky
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Documents\Hudba
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Documents\Filmy
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\Data aplikací
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 _SHDL () C:\Users\Ondra\AppData\Local\Data aplikací
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 ____D () C:\Users\Ondra\AppData\Roaming\Adobe
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 ____D () C:\Users\Ondra\AppData\Local\NVIDIA Corporation
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 ____D () C:\Users\Ondra\AppData\Local\NVIDIA
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 ____D () C:\Users\Ondra\AppData\Local\Google
2014-07-09 08:50 - 2014-07-09 08:50 - 00000000 ____D () C:\Users\Ondra
2014-07-08 20:48 - 2014-07-08 20:48 - 00001150 _____ () C:\Users\mamka\Desktop\WoW – zástupce.lnk
2014-07-08 16:43 - 2014-07-08 16:43 - 00535495 _____ () C:\Users\mamka\Desktop\VuhDo.lua
2014-07-08 16:21 - 2014-07-08 16:02 - 00002183 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-08 16:08 - 2014-07-08 16:02 - 00003946 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-07-08 16:08 - 2014-07-08 16:02 - 00003694 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-07-08 16:03 - 2014-07-08 16:02 - 00000000 ____D () C:\Users\mamka\AppData\Local\Google
2014-07-08 16:02 - 2014-07-08 16:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-07-08 16:02 - 2014-07-08 16:01 - 00000000 ____D () C:\Program Files (x86)\Google
2014-07-08 15:07 - 2014-07-08 14:54 - 234255184 _____ () C:\Users\mamka\Downloads\Age-Of-Empires-2-&-The-Conquerors-Expansion---Full-Game---[eMoo].rar
2014-07-08 14:23 - 2014-07-08 14:23 - 00001992 _____ () C:\Program Files\cc_20140708_142251.reg
2014-07-08 14:21 - 2014-07-08 14:21 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-07-08 14:21 - 2014-07-08 14:21 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-07-08 14:21 - 2014-07-08 14:21 - 00000000 ____D () C:\Program Files\CCleaner
2014-07-08 14:17 - 2014-07-08 14:17 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\WinRAR
2014-07-08 14:16 - 2014-07-08 14:16 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Macromedia
2014-07-08 14:16 - 2014-07-08 14:16 - 00000000 ____D () C:\Users\mamka\AppData\Local\Macromedia
2014-07-08 14:15 - 2014-07-08 14:15 - 00000000 ____D () C:\Users\mamka\AppData\Local\Mozilla
2014-07-08 14:12 - 2014-07-08 14:12 - 00000000 ____D () C:\Users\mamka\Desktop\petr
2014-07-08 14:12 - 2014-01-03 21:02 - 00000000 ____D () C:\Users\petr
2014-07-08 14:12 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\WinBioDatabase
2014-07-08 14:11 - 2014-07-08 14:11 - 00001397 _____ () C:\Users\mamka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-07-08 14:11 - 2014-07-08 14:11 - 00000000 ____D () C:\Users\mamka\AppData\Roaming\Adobe
2014-07-08 14:11 - 2014-07-08 14:10 - 00000000 ____D () C:\Users\mamka
2014-07-08 14:10 - 2014-07-08 14:10 - 00000020 ___SH () C:\Users\mamka\ntuser.ini
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Šablony
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Soubory cookie
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Poslední
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Okolní tiskárny
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Okolní síť
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Nabídka Start
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Dokumenty
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Documents\Obrázky
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Documents\Hudba
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Documents\Filmy
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\Data aplikací
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 _SHDL () C:\Users\mamka\AppData\Local\Data aplikací
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 ____D () C:\Users\mamka\AppData\Local\NVIDIA Corporation
2014-07-08 14:10 - 2014-07-08 14:10 - 00000000 ____D () C:\Users\mamka\AppData\Local\NVIDIA
2014-07-08 13:59 - 2014-05-31 20:12 - 00000000 ____D () C:\Users\petr\AppData\Roaming\.minecraft
2014-07-08 13:55 - 2014-07-08 13:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys
2014-07-08 13:55 - 2014-07-08 13:55 - 00000000 ____D () C:\Program Files (x86)\Lavalys
2014-07-08 13:54 - 2014-07-08 13:54 - 04179293 _____ (Lavalys, Inc. ) C:\Users\petr\Downloads\everesthome220.exe
2014-07-08 13:43 - 2014-07-08 13:43 - 10255080 _____ (Lavalys, Inc. ) C:\Users\petr\Downloads\everestultimate550.exe
2014-07-08 13:43 - 2014-07-08 13:43 - 00733360 _____ () C:\Users\petr\Downloads\everest-lista-centrumcz.exe
2014-07-08 13:36 - 2014-07-08 13:36 - 00000000 ____D () C:\ProgramData\Sun
2014-07-08 13:36 - 2014-07-08 13:36 - 00000000 ____D () C:\ProgramData\Oracle
2014-07-08 13:34 - 2014-07-08 13:33 - 13231857 _____ () C:\Users\petr\Downloads\WoW-Cata-4.3.4-(Twinstar).rar
2014-07-08 13:33 - 2014-07-08 13:33 - 00918952 _____ (Oracle Corporation) C:\Users\petr\Downloads\jxpiinstall.exe
2014-07-08 13:14 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-06-30 04:09 - 2014-07-09 13:59 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-30 04:04 - 2014-07-09 13:59 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-23 23:17 - 2014-07-08 14:17 - 00009201 ____S () C:\Windows\SysWOW64\mspsob.vbe
2014-06-23 23:17 - 2014-07-08 14:17 - 00004332 ____S () C:\Windows\SysWOW64\msaqwssv.vbe
2014-06-23 23:17 - 2014-07-08 14:04 - 00009201 ____S () C:\Windows\SysWOW64\mscywfq.vbe
2014-06-23 23:17 - 2014-07-08 14:04 - 00004332 ____S () C:\Windows\SysWOW64\msnbluu.vbe
2014-06-23 23:17 - 2014-07-08 13:32 - 00009201 ____S () C:\Windows\SysWOW64\msikwy.vbe
2014-06-23 23:17 - 2014-07-08 13:32 - 00004332 ____S () C:\Windows\SysWOW64\msfbnca.vbe
2014-06-20 22:14 - 2014-07-09 13:59 - 00266424 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-06-20 21:39 - 2014-07-09 13:59 - 00240824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-06-19 03:39 - 2014-07-09 13:59 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-06-19 03:06 - 2014-07-09 13:59 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-06-19 03:06 - 2014-07-09 13:59 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-06-19 02:48 - 2014-07-09 13:59 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-06-19 02:42 - 2014-07-09 13:59 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-06-19 02:42 - 2014-07-09 13:59 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-06-19 02:41 - 2014-07-09 13:59 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-06-19 02:41 - 2014-07-09 13:59 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-06-19 02:32 - 2014-07-09 13:59 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-06-19 02:31 - 2014-07-09 13:59 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-06-19 02:26 - 2014-07-09 13:59 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-06-19 02:24 - 2014-07-09 13:59 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-06-19 02:24 - 2014-07-09 13:59 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-06-19 02:23 - 2014-07-09 13:59 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-06-19 02:16 - 2014-07-09 13:59 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-06-19 02:14 - 2014-07-09 13:59 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-19 02:09 - 2014-07-09 13:59 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-06-19 01:59 - 2014-07-09 13:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-19 01:56 - 2014-07-09 13:59 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-06-19 01:53 - 2014-07-09 13:59 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-06-19 01:51 - 2014-07-09 13:59 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-06-19 01:50 - 2014-07-09 13:59 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-06-19 01:48 - 2014-07-09 13:59 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-06-19 01:39 - 2014-07-09 13:59 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-06-19 01:38 - 2014-07-09 13:59 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-06-19 01:37 - 2014-07-09 13:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-06-19 01:36 - 2014-07-09 13:59 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-06-19 01:35 - 2014-07-09 13:59 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-06-19 01:33 - 2014-07-09 13:59 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-06-19 01:32 - 2014-07-09 13:59 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-06-19 01:28 - 2014-07-09 13:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-06-19 01:28 - 2014-07-09 13:59 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-06-19 01:27 - 2014-07-09 13:59 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-06-19 01:27 - 2014-07-09 13:59 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-06-19 01:25 - 2014-07-09 13:59 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-06-19 01:23 - 2014-07-09 13:59 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-06-19 01:22 - 2014-07-09 13:59 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-06-19 01:12 - 2014-07-09 13:59 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-06-19 01:06 - 2014-07-09 13:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-06-19 01:01 - 2014-07-09 13:59 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-06-19 00:59 - 2014-07-09 13:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-06-19 00:58 - 2014-07-09 13:59 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-06-19 00:58 - 2014-07-09 13:59 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-06-19 00:52 - 2014-07-09 13:59 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-06-19 00:51 - 2014-07-09 13:59 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-06-19 00:49 - 2014-07-09 13:59 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-06-19 00:46 - 2014-07-09 13:59 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-06-19 00:45 - 2014-07-09 13:59 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-06-19 00:35 - 2014-07-09 13:59 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-06-19 00:34 - 2014-07-09 13:59 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-06-19 00:15 - 2014-07-09 13:59 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-06-19 00:13 - 2014-07-09 13:59 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-06-19 00:09 - 2014-07-09 13:59 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-06-19 00:07 - 2014-07-09 13:59 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-06-18 04:18 - 2014-07-09 13:59 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-06-18 03:51 - 2014-07-09 13:59 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2014-06-18 03:10 - 2014-07-09 13:59 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-06-15 19:38 - 2014-06-15 19:38 - 18583216 _____ (Adobe Systems Incorporated) C:\Users\petr\Downloads\install_flash_player_ax.exe
2014-06-15 16:01 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration
2014-06-15 15:33 - 2014-06-15 15:33 - 29677080 _____ (Mozilla) C:\Users\petr\Downloads\Firefox Setup 30.0.exe
2014-06-15 15:17 - 2014-05-13 16:52 - 00000000 ____D () C:\Users\petr\AppData\Local\CrashDumps
2014-06-15 13:09 - 2014-06-08 11:03 - 00000000 ____D () C:\Users\petr\AppData\Local\Unity
2014-06-15 12:31 - 2014-05-16 17:35 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2014-06-15 12:28 - 2014-04-25 15:05 - 00000000 ____D () C:\Program Files (x86)\TeamSpeak 3 Client
2014-06-15 12:27 - 2014-06-15 12:27 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-06-15 12:27 - 2014-04-24 18:56 - 00000000 ____D () C:\ProgramData\Skype
2014-06-14 20:44 - 2014-04-24 18:57 - 00000000 ____D () C:\Users\petr\AppData\Roaming\Skype

Some content of TEMP:
====================
C:\Users\mamka\AppData\Local\Temp\sfamcc00001.dll
C:\Users\mamka\AppData\Local\Temp\sfextra.dll
C:\Users\petr\AppData\Local\Temp\TUUUninstallHelper.exe
C:\Users\petr\AppData\Local\Temp\~85E1.exe
C:\Users\petr\AppData\Local\Temp\~AB6C.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-07-11 00:50




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:232.88 GB) (Free:179.4 GB) NTFS ==>[Drive with boot components (obtained from BCD)]

Available physical RAM: 1475.29 MB
Total physical RAM: 3070.43 MB
Percentage of memory in use: 51%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: F283DBB2)
Partition 1: (Active) - (Size=233 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\mamka\Desktop" je 5729 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15729
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: opakujici se vypinani notebooku

#2 Příspěvek od JaRon »

ahoj
vorba fixlistu pro FRST

•Spustte poznamkovy blok (Start-spustit-notepad)
•Zkopirujte skript nize

Kód: Vybrat vše

Start
2014-07-08 14:17 - 2014-06-23 23:17 - 00009201 ____S () C:\Windows\SysWOW64\mspsob.vbe
2014-07-08 14:17 - 2014-06-23 23:17 - 00004332 ____S () C:\Windows\SysWOW64\msaqwssv.vbe
2014-07-08 14:04 - 2014-06-23 23:17 - 00009201 ____S () C:\Windows\SysWOW64\mscywfq.vbe
2014-07-08 14:04 - 2014-06-23 23:17 - 00004332 ____S () C:\Windows\SysWOW64\msnbluu.vbe
2014-07-08 13:32 - 2014-06-23 23:17 - 00009201 ____S () C:\Windows\SysWOW64\msikwy.vbe
2014-07-08 13:32 - 2014-06-23 23:17 - 00004332 ____S () C:\Windows\SysWOW64\msfbnca.vbe
2014-06-23 23:17 - 2014-07-08 14:17 - 00009201 ____S () C:\Windows\SysWOW64\mspsob.vbe
2014-06-23 23:17 - 2014-07-08 14:17 - 00004332 ____S () C:\Windows\SysWOW64\msaqwssv.vbe
2014-06-23 23:17 - 2014-07-08 14:04 - 00009201 ____S () C:\Windows\SysWOW64\mscywfq.vbe
2014-06-23 23:17 - 2014-07-08 14:04 - 00004332 ____S () C:\Windows\SysWOW64\msnbluu.vbe
2014-06-23 23:17 - 2014-07-08 13:32 - 00009201 ____S () C:\Windows\SysWOW64\msikwy.vbe
2014-06-23 23:17 - 2014-07-08 13:32 - 00004332 ____S () C:\Windows\SysWOW64\msfbnca.vbe
C:\Users\mamka\AppData\Local\Temp\sfamcc00001.dll
C:\Users\mamka\AppData\Local\Temp\sfextra.dll
C:\Users\petr\AppData\Local\Temp\TUUUninstallHelper.exe
C:\Users\petr\AppData\Local\Temp\~85E1.exe
C:\Users\petr\AppData\Local\Temp\~AB6C.exe



Hosts:
CMD: shutdown /r /f /t 2
End
•Ulozte vytvoreny TXT jako fixlist.txt
•Presunte vytvoreny fixlist vedle FRST

Spustte znovu FRST.exe

•Kliknete na Fix
•Probehne oprava a vytvori log Fixlog.txt

Restart PC a dejte mi sem fixlog.txt
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Marketa1m62
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 14 črc 2014 21:25

Re: opakujici se vypinani notebooku

#3 Příspěvek od Marketa1m62 »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 14-07-2014 01
Ran by mamka at 2014-07-15 07:52:00 Run:1
Running from C:\Users\mamka\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
2014-07-08 14:17 - 2014-06-23 23:17 - 00009201 ____S () C:\Windows\SysWOW64\mspsob.vbe
2014-07-08 14:17 - 2014-06-23 23:17 - 00004332 ____S () C:\Windows\SysWOW64\msaqwssv.vbe
2014-07-08 14:04 - 2014-06-23 23:17 - 00009201 ____S () C:\Windows\SysWOW64\mscywfq.vbe
2014-07-08 14:04 - 2014-06-23 23:17 - 00004332 ____S () C:\Windows\SysWOW64\msnbluu.vbe
2014-07-08 13:32 - 2014-06-23 23:17 - 00009201 ____S () C:\Windows\SysWOW64\msikwy.vbe
2014-07-08 13:32 - 2014-06-23 23:17 - 00004332 ____S () C:\Windows\SysWOW64\msfbnca.vbe
2014-06-23 23:17 - 2014-07-08 14:17 - 00009201 ____S () C:\Windows\SysWOW64\mspsob.vbe
2014-06-23 23:17 - 2014-07-08 14:17 - 00004332 ____S () C:\Windows\SysWOW64\msaqwssv.vbe
2014-06-23 23:17 - 2014-07-08 14:04 - 00009201 ____S () C:\Windows\SysWOW64\mscywfq.vbe
2014-06-23 23:17 - 2014-07-08 14:04 - 00004332 ____S () C:\Windows\SysWOW64\msnbluu.vbe
2014-06-23 23:17 - 2014-07-08 13:32 - 00009201 ____S () C:\Windows\SysWOW64\msikwy.vbe
2014-06-23 23:17 - 2014-07-08 13:32 - 00004332 ____S () C:\Windows\SysWOW64\msfbnca.vbe
C:\Users\mamka\AppData\Local\Temp\sfamcc00001.dll
C:\Users\mamka\AppData\Local\Temp\sfextra.dll
C:\Users\petr\AppData\Local\Temp\TUUUninstallHelper.exe
C:\Users\petr\AppData\Local\Temp\~85E1.exe
C:\Users\petr\AppData\Local\Temp\~AB6C.exe



Hosts:
CMD: shutdown /r /f /t 2
End
*****************

C:\Windows\SysWOW64\mspsob.vbe => Moved successfully.
C:\Windows\SysWOW64\msaqwssv.vbe => Moved successfully.
C:\Windows\SysWOW64\mscywfq.vbe => Moved successfully.
C:\Windows\SysWOW64\msnbluu.vbe => Moved successfully.
C:\Windows\SysWOW64\msikwy.vbe => Moved successfully.
C:\Windows\SysWOW64\msfbnca.vbe => Moved successfully.
"C:\Windows\SysWOW64\mspsob.vbe" => File/Directory not found.
"C:\Windows\SysWOW64\msaqwssv.vbe" => File/Directory not found.
"C:\Windows\SysWOW64\mscywfq.vbe" => File/Directory not found.
"C:\Windows\SysWOW64\msnbluu.vbe" => File/Directory not found.
"C:\Windows\SysWOW64\msikwy.vbe" => File/Directory not found.
"C:\Windows\SysWOW64\msfbnca.vbe" => File/Directory not found.
C:\Users\mamka\AppData\Local\Temp\sfamcc00001.dll => Moved successfully.
C:\Users\mamka\AppData\Local\Temp\sfextra.dll => Moved successfully.
C:\Users\petr\AppData\Local\Temp\TUUUninstallHelper.exe => Moved successfully.
C:\Users\petr\AppData\Local\Temp\~85E1.exe => Moved successfully.
C:\Users\petr\AppData\Local\Temp\~AB6C.exe => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.

========= shutdown /r /f /t 2 =========


========= End of CMD: =========


==== End of Fixlog ====

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15729
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: opakujici se vypinani notebooku

#4 Příspěvek od JaRon »

fajn, vacsia cast smejdov je zmazana
teraz prescanuj PC s MBAM - kompletna kontrola
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Marketa1m62
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 14 črc 2014 21:25

Re: opakujici se vypinani notebooku

#5 Příspěvek od Marketa1m62 »

Dobre dopoledne, tu je vysledek scanovani:

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 15.7.2014
Čas skenování: 8:25:37
Protokol: mwba.txt
Správce: Ano

Verze: 2.00.2.1012
Databáze malwaru: v2014.07.15.04
Databáze rootkitů: v2014.07.14.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Self-protection: Vypnuto

OS: Windows 7 Service Pack 1
CPU: x64
Souborový systém: NTFS
Uživatel: mamka

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 511279
Uplynulý čas: 1 hod, 36 min, 56 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Zapnuto
Heuristics: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(No malicious items detected)

Moduly: 0
(No malicious items detected)

Klíče registru: 0
(No malicious items detected)

Hodnoty registru: 0
(No malicious items detected)

Data registru: 0
(No malicious items detected)

Složky: 0
(No malicious items detected)

Soubory: 1
Trojan.Agent.W, C:\Windows\Setup\SCRIPTS\Windows7Loader.exe, , [5024a0ff3d3ed26419039ccc12f25aa6],

Fyzické sektory: 0
(No malicious items detected)


(end)

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15729
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: opakujici se vypinani notebooku

#6 Příspěvek od JaRon »

jaaaaj, tak tu mame nelegalny system a tym padom koncim - vid pravidla fora
ahooooooj
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Marketa1m62
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 14 črc 2014 21:25

Re: opakujici se vypinani notebooku

#7 Příspěvek od Marketa1m62 »

No to tedy :( notebook jsem koupila pred dvema tydny na aukru udajne s legalnim systemem :( Kazdopadne diky za pomoc.

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15729
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: opakujici se vypinani notebooku

#8 Příspěvek od JaRon »

rado sa stalo :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Zamčeno