
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Nelze odinstalovat ani opravit office 2010
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Nelze odinstalovat ani opravit office 2010
Zdravím viráky,
zničehonic mi přestala fungovat sada office. Stalo se tomu po spuštění ntb a kontrole disku C, kdy se opravovali nějaké chybné svazky atd.
Najednou při každém pokusu spustit jakýkoliv program z office vyskočí okno s informací, že začíná instalace. Nikdy však neproběhne a jde to i těžko zavřít.
Přes ovládací panely a příkazy upravit nebo odinstalovat to také nejde. Nic nenastane a při opětovném pokusu to zahlásí, že již probíhá jiná akce.
Takže poslední možnost byla nainstalovat fixit od microsoftu, ale i tam při pokusu o opravu nebo odinstalaci jakéhokoliv programu z office sady program zahlásí, že odinstalace nebo oprava nebyla úspěšná. Tak už jsem nějak na konci s nápady. Poradí někdo?
Díky předem za pomoc .
zničehonic mi přestala fungovat sada office. Stalo se tomu po spuštění ntb a kontrole disku C, kdy se opravovali nějaké chybné svazky atd.
Najednou při každém pokusu spustit jakýkoliv program z office vyskočí okno s informací, že začíná instalace. Nikdy však neproběhne a jde to i těžko zavřít.
Přes ovládací panely a příkazy upravit nebo odinstalovat to také nejde. Nic nenastane a při opětovném pokusu to zahlásí, že již probíhá jiná akce.
Takže poslední možnost byla nainstalovat fixit od microsoftu, ale i tam při pokusu o opravu nebo odinstalaci jakéhokoliv programu z office sady program zahlásí, že odinstalace nebo oprava nebyla úspěšná. Tak už jsem nějak na konci s nápady. Poradí někdo?
Díky předem za pomoc .
- Rudy
- Site Admin
- Příspěvky: 119547
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Nelze odinstalovat ani opravit office 2010
Zdravím!
Zkuste použít Total Uninstall: http://www.stahuj.centrum.cz/utility_a_ ... uninstall/ .
Zkuste použít Total Uninstall: http://www.stahuj.centrum.cz/utility_a_ ... uninstall/ .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Nelze odinstalovat ani opravit office 2010
Zkoušel jsem ten program, ale ani on není schopný tu odinstalaci provést. Posílám screen, kde je vidět okno s komentem při pokusu o odinstalování sady MO. http://i59.tinypic.com/117xx6g.png Mám podezření, jestli v tom pc není nějaký šotek. Prosím o nějakou radu jak dále postupovat. díky
- Přílohy
-
- chyba.jpg (117.94 KiB) Zobrazeno 2855 x
- Rudy
- Site Admin
- Příspěvky: 119547
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Nelze odinstalovat ani opravit office 2010
Tak to není dobrá zpráva. Občas se stane, že odinstalátor nefunguje. Pokud tam nejsou office2010 dlouho, šlo by to vyřešit obnovou systému před datum instalace. Jinak bude nutné odmazat ručně z registry vše, co se jich týká. Návod: http://forum.viry.cz/viewtopic.php?f=46&t=2791 . Potom vymazat jejich adresář a zkusit novou instalaci. Můžeme se podívyt, co tam běží a případně vyčistit. Dejte log RSIT: http://forum.viry.cz/viewtopic.php?f=13&t=130786 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Nelze odinstalovat ani opravit office 2010
Hmm, tak teď už jsem zmaten. Zkoušel jsem spustit RSIT, ale vyskočilo toto http://i62.tinypic.com/153032c.jpg. Je možné, že mám nějaký vir, který brání spuštění toho programu?? Díky za pomoc
- Rudy
- Site Admin
- Příspěvky: 119547
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Nelze odinstalovat ani opravit office 2010
Zkuste FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Nelze odinstalovat ani opravit office 2010
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-10-2014
Ran by rekoj 666 (administrator) on REKOJ666-HP on 19-10-2014 18:25:43
Running from C:\Users\rekoj 666\Desktop
Loaded Profile: rekoj 666 (Available profiles: rekoj 666 & Nouzák & Guest)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
(McAfee, Inc.) C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ActivIdentity) C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\acevents.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe
(Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
(Hewlett-Packard Development Company, L.P) C:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickLook\HPDayStarterService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\nlssrv32.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(McAfee, Inc.) C:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\acevents.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(Irza Alexander) C:\Program Files (x86)\Volume2\Volume2.exe
() C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe
() C:\Windows\inf\system32-x86.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpAgent.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\rekoj 666\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [HPPowerAssistant] => C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [1691192 2010-04-05] (Hewlett-Packard)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2174760 2014-05-20] (Synaptics Incorporated)
HKLM\...\Run: [HPWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-04-05] (Hewlett-Packard)
HKLM\...\Run: [acevents] => C:\Program Files\ActivIdentity\ActivClient\acevents.exe [196648 2009-06-04] (ActivIdentity)
HKLM\...\Run: [accrdsub] => C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [483880 2009-06-04] (ActivIdentity)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [6325424 2012-11-14] (ESET)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [489472 2014-05-20] (IDT, Inc.)
HKLM-x32\...\Run: [File Sanitizer] => c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [11268096 2010-05-06] (Hewlett-Packard)
HKLM-x32\...\Run: [estar] => C:\System.Sav\Util\HideDOS.EXE [77824 2006-11-29] ()
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [46368 2010-03-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [29984 2010-03-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PPort12reminder] => C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe [328992 2010-02-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDFHook] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe [636192 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDF5 Registry Controller] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe [62752 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [312376 2011-03-21] (Hewlett-Packard Company)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-10-07] (Hewlett-Packard)
HKLM\...\Winlogon: [Userinit] C:\windows\system32\userinit.exe,C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [KiesHelper] => C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe [888120 2011-01-30] (Samsung)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [3372856 2011-01-30] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [Google Update] => C:\Users\rekoj 666\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-09-22] (Google Inc.)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [Volume2] => C:\Program Files (x86)\Volume2\Volume2.exe [1577984 2012-01-08] (Irza Alexander)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [Facebook Update] => C:\Users\rekoj 666\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-01-07] (Facebook Inc.)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [System-boot] => C:\Windows\inf\SYSTEM-x32.exe [454144 2014-10-15] ()
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Policies\Explorer: [HideSCAVolume] 0
Lsa: [Notification Packages] DPPassFilter scecli
Startup: C:\Users\rekoj 666\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PdaNet Desktop.lnk
ShortcutTarget: PdaNet Desktop.lnk -> C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe ()
ShellIconOverlayIdentifiers: [1aCopyShExtError] -> {83BEA36E-7680-4598-A4DF-994426F6E78D} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [2aCopyShExtSynced] -> {845B7388-6F85-4F32-9FD5-F02DC7882B89} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [3aCopyShExtSyncing] -> {F6378A7A-F753-449B-AE1B-997A96132E61} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [4aCopyShExtSyncingProg1] -> {3A511828-777D-46F8-82F4-5B530C1B3D9E} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [5aCopyShExtSyncingProg2] -> {C8C88204-5B14-40EC-BA72-8AEBC762047E} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [6aCopyShExtSyncingProg3] -> {ACFF45C3-3EEB-4351-86C2-6696BA264239} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [7aCopyShExtSyncingProg4] -> {29AF997F-488B-46F0-AE78-7146F1B89CC3} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [8aCopyShExtSyncingProg5] -> {03F9AD29-1C78-4B66-8890-B177B5430C53} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
URLSearchHook: HKCU - (No Name) - {95289393-33EA-4F8D-B952-483415B9C955} - No File
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
BHO: HP ProtectTools Security Manager Extension -> {395610AE-C624-4f58-B89E-23733EA00F9A} -> C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll (DigitalPersona, Inc.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: File Sanitizer for HP ProtectTools -> {3134413B-49B4-425C-98A5-893C1F195601} -> c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard)
BHO-x32: HP ProtectTools Security Manager Extension -> {395610AE-C624-4f58-B89E-23733EA00F9A} -> C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll (DigitalPersona, Inc.)
BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files (x86)\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll (Zeon Corporation)
BHO-x32: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
DPF: HKLM-x32 {8FEFF364-6A5F-4966-A917-A3AC28411659} http://download.sopcast.com/download/SOPCORE.CAB
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.10.1 10.0.0.1
FireFox:
========
FF ProfilePath: C:\Users\rekoj 666\AppData\Roaming\Mozilla\Firefox\Profiles\sfotytoj.rekoj666
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @java.com/DTPlugin,version=10.13.2 -> C:\windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.13.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1205146.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\rekoj 666\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 -> C:\Users\rekoj 666\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 -> C:\Users\rekoj 666\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: facebook.com/fbDesktopPlugin -> C:\Users\rekoj 666\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: BS Player ControlBar - C:\Users\rekoj 666\AppData\Roaming\Mozilla\Firefox\Profiles\sfotytoj.rekoj666\Extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} [2014-02-26]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-03-03]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2014-03-03]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2012-11-25]
FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt
FF Extension: DigitalPersona Extension - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt [2014-05-19]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
Chrome:
=======
CHR Profile: C:\Users\rekoj 666\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (AdBlock Premium) - C:\Users\rekoj 666\AppData\Local\Google\Chrome\User Data\Default\Extensions\fndlhnanhedoklpdaacidomdnplcjcpj [2014-10-06]
CHR Extension: (Skype Click to Call) - C:\Users\rekoj 666\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2011-11-04]
CHR Extension: (Peněženka Google) - C:\Users\rekoj 666\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-08]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2011-10-10]
CHR StartMenuInternet: Google Chrome - C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 ac.sharedstore; C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe [277032 2009-06-04] (ActivIdentity)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [File not signed]
R3 DEBridge; c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe [704512 2010-02-02] (McAfee, Inc.) [File not signed]
R2 DpHost; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [462160 2010-07-16] (DigitalPersona, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1329304 2012-11-14] (ESET)
S3 FLCDLOCK; c:\Windows\SysWOW64\flcdlock.exe [362040 2009-12-07] (Hewlett-Packard Ltd)
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [658432 2010-09-22] (Macrovision Europe Ltd.) [File not signed]
R2 HP ProtectTools Service; C:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [32768 2010-10-19] (Hewlett-Packard Development Company, L.P) [File not signed]
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
R2 HPDayStarterService; c:\Program Files (x86)\Hewlett-Packard\HP QuickLook\HPDayStarterService.exe [90112 2010-03-25] (Hewlett-Packard Company) [File not signed]
R2 HpFkCryptService; c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [281192 2010-02-02] (McAfee, Inc.)
R2 HPFSService; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [298496 2010-05-06] (Hewlett-Packard) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [293944 2011-03-21] (Hewlett-Packard Company)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [50688 2012-07-31] (Hewlett-Packard) [File not signed]
R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [144672 2010-03-09] (Nuance Communications, Inc.)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [66048 2012-07-31] (Hewlett-Packard) [File not signed]
R3 ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [615936 2010-06-14] (Nokia) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [40760 2009-10-21] (Hewlett-Packard Development Company L.P.)
S3 dgderdrv; C:\Windows\System32\drivers\dgderdrv.sys [20552 2010-10-25] (Devguru Co., Ltd)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [211344 2012-10-08] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [149592 2012-10-08] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [138744 2012-10-08] (ESET)
S3 IntcDAud; C:\Windows\System32\DRIVERS\IntcDAud.sys [271872 2010-02-03] (Intel(R) Corporation) [File not signed]
S3 nmwcdcx64; C:\Windows\System32\drivers\ccdcmbox64.sys [25088 2010-02-26] (Nokia)
S3 nmwcdx64; C:\Windows\System32\drivers\ccdcmbx64.sys [19456 2010-02-26] (Nokia)
R1 RsvLock; C:\Windows\System32\Drivers\RsvLock.sys [58184 2010-02-02] (McAfee, Inc.)
R1 RsvLock; C:\Windows\SysWow64\Drivers\RsvLock.sys [40088 2010-02-02] (McAfee, Inc.)
R0 SafeBoot; C:\Windows\System32\Drivers\SafeBoot.sys [56648 2010-02-02] () [File not signed]
R0 SafeBoot; C:\Windows\SysWow64\Drivers\SafeBoot.sys [110520 2010-02-02] (McAfee, Inc.)
R0 SbAlg; C:\Windows\System32\Drivers\SbAlg.sys [60160 2009-06-04] (McAfee, Inc.)
R0 SbAlg; C:\Windows\SysWow64\Drivers\SbAlg.sys [51800 2010-02-02] (McAfee, Inc.)
R0 SbFsLock; C:\Windows\System32\Drivers\SbFsLock.sys [15688 2010-02-02] (McAfee, Inc.)
R0 SbFsLock; C:\Windows\SysWow64\Drivers\SbFsLock.sys [13256 2010-02-02] (McAfee, Inc.)
R0 sfdrv01; C:\Windows\System32\drivers\sfdrv01.sys [75384 2009-02-03] (Protection Technology (StarForce))
R0 sfvfs02; C:\Windows\System32\drivers\sfvfs02.sys [107384 2007-02-08] (Protection Technology (StarForce))
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1803904 2010-01-19] ()
R0 speedfan; C:\Windows\SysWow64\speedfan.sys [14104 2007-02-07] (Windows (R) Server 2003 DDK provider)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2010-09-18] () [File not signed]
U3 am3svdde; C:\Windows\System32\Drivers\am3svdde.sys [0 ] (Microsoft Corporation)
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-10-19 18:25 - 2014-10-19 18:27 - 00029909 _____ () C:\Users\rekoj 666\Desktop\FRST.txt
2014-10-19 18:25 - 2014-10-19 18:25 - 00000000 ____D () C:\FRST
2014-10-19 18:23 - 2014-10-19 18:23 - 00112640 _____ (forum.viry.cz) C:\Users\rekoj 666\Desktop\FRSTLauncher.exe
2014-10-19 18:22 - 2014-10-19 18:22 - 02112512 _____ (Farbar) C:\Users\rekoj 666\Desktop\FRST64.exe
2014-10-19 18:02 - 2014-10-19 18:02 - 00000000 ____D () C:\rsit
2014-10-19 18:02 - 2014-10-19 18:02 - 00000000 ____D () C:\Program Files (x86)\trend micro
2014-10-18 12:03 - 2014-10-18 12:03 - 00000851 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Uninstall 6.lnk
2014-10-18 12:03 - 2014-10-18 12:03 - 00000839 _____ () C:\Users\Public\Desktop\Total Uninstall 6.lnk
2014-10-18 12:03 - 2014-10-18 12:03 - 00000000 ____D () C:\ProgramData\Martau
2014-10-18 12:03 - 2014-10-18 12:03 - 00000000 ____D () C:\Program Files\Total Uninstall 6
2014-10-18 11:19 - 2014-10-18 11:19 - 00000000 ____D () C:\MATS
2014-10-17 10:40 - 2014-10-17 10:40 - 00000000 ____D () C:\Users\rekoj 666\AppData\Roaming\poclbm
2014-10-17 09:11 - 2014-10-17 09:11 - 00003416 ____N () C:\bootsqm.dat
2014-10-17 09:09 - 2014-10-17 09:09 - 00000000 __SHD () C:\found.000
2014-10-16 14:47 - 2014-10-10 04:05 - 00507392 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-10-16 14:47 - 2014-10-10 04:05 - 00276480 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2014-10-16 14:47 - 2014-10-10 04:00 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-10-16 14:47 - 2014-09-29 02:58 - 03198976 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-10-16 14:47 - 2014-09-13 03:58 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\packager.dll
2014-10-16 14:47 - 2014-09-13 03:40 - 00067072 _____ (Microsoft Corporation) C:\windows\SysWOW64\packager.dll
2014-10-16 14:47 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDYAK.DLL
2014-10-16 14:47 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDTAT.DLL
2014-10-16 14:47 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDRU1.DLL
2014-10-16 14:47 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDBASH.DLL
2014-10-16 14:47 - 2014-07-09 04:03 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\KBDRU.DLL
2014-10-16 14:47 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDYAK.DLL
2014-10-16 14:47 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDTAT.DLL
2014-10-16 14:47 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU1.DLL
2014-10-16 14:47 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU.DLL
2014-10-16 14:47 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDBASH.DLL
2014-10-16 14:47 - 2014-07-09 00:38 - 00419992 _____ () C:\windows\system32\locale.nls
2014-10-16 14:47 - 2014-07-09 00:30 - 00419992 _____ () C:\windows\SysWOW64\locale.nls
2014-10-16 14:47 - 2014-06-19 00:23 - 01943696 _____ (Microsoft Corporation) C:\windows\system32\dfshim.dll
2014-10-16 14:47 - 2014-06-19 00:23 - 01131664 _____ (Microsoft Corporation) C:\windows\SysWOW64\dfshim.dll
2014-10-16 14:47 - 2014-06-19 00:23 - 00156824 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscorier.dll
2014-10-16 14:47 - 2014-06-19 00:23 - 00156312 _____ (Microsoft Corporation) C:\windows\system32\mscorier.dll
2014-10-16 14:47 - 2014-06-19 00:23 - 00081560 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscories.dll
2014-10-16 14:47 - 2014-06-19 00:23 - 00073880 _____ (Microsoft Corporation) C:\windows\system32\mscories.dll
2014-10-16 14:46 - 2014-10-07 04:54 - 00378552 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-10-16 14:46 - 2014-10-07 04:04 - 00331448 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-10-16 14:46 - 2014-09-26 00:50 - 13619200 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-10-16 14:46 - 2014-09-26 00:46 - 00365056 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-10-16 14:46 - 2014-09-26 00:46 - 00243200 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-10-16 14:46 - 2014-09-26 00:46 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-10-16 14:46 - 2014-09-26 00:43 - 11807232 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-10-16 14:46 - 2014-09-26 00:32 - 02017280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-10-16 14:46 - 2014-09-26 00:31 - 02108416 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-10-16 14:46 - 2014-09-19 04:25 - 23631360 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-10-16 14:46 - 2014-09-19 03:56 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-10-16 14:46 - 2014-09-19 03:55 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-10-16 14:46 - 2014-09-19 03:44 - 17484800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-10-16 14:46 - 2014-09-19 03:41 - 02796032 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-10-16 14:46 - 2014-09-19 03:40 - 00547328 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-10-16 14:46 - 2014-09-19 03:40 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-10-16 14:46 - 2014-09-19 03:39 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-10-16 14:46 - 2014-09-19 03:38 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-10-16 14:46 - 2014-09-19 03:36 - 05829632 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-10-16 14:46 - 2014-09-19 03:31 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-10-16 14:46 - 2014-09-19 03:30 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-10-16 14:46 - 2014-09-19 03:27 - 00595968 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-10-16 14:46 - 2014-09-19 03:26 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-10-16 14:46 - 2014-09-19 03:25 - 04201472 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-10-16 14:46 - 2014-09-19 03:25 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-10-16 14:46 - 2014-09-19 03:25 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-10-16 14:46 - 2014-09-19 03:18 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-10-16 14:46 - 2014-09-19 03:14 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-10-16 14:46 - 2014-09-19 03:14 - 00446464 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-10-16 14:46 - 2014-09-19 03:06 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-10-16 14:46 - 2014-09-19 03:02 - 00454656 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-10-16 14:46 - 2014-09-19 03:01 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-10-16 14:46 - 2014-09-19 03:01 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-10-16 14:46 - 2014-09-19 03:01 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-10-16 14:46 - 2014-09-19 03:00 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-10-16 14:46 - 2014-09-19 02:59 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-10-16 14:46 - 2014-09-19 02:58 - 00289280 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-10-16 14:46 - 2014-09-19 02:55 - 02187264 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-10-16 14:46 - 2014-09-19 02:54 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-10-16 14:46 - 2014-09-19 02:53 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-10-16 14:46 - 2014-09-19 02:51 - 00440320 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-10-16 14:46 - 2014-09-19 02:50 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-10-16 14:46 - 2014-09-19 02:49 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-10-16 14:46 - 2014-09-19 02:42 - 00731136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-10-16 14:46 - 2014-09-19 02:42 - 00710656 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-10-16 14:46 - 2014-09-19 02:40 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-10-16 14:46 - 2014-09-19 02:36 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-10-16 14:46 - 2014-09-19 02:33 - 02309632 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-10-16 14:46 - 2014-09-19 02:32 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-10-16 14:46 - 2014-09-19 02:20 - 00607744 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-10-16 14:46 - 2014-09-19 02:18 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-10-16 14:46 - 2014-09-19 02:14 - 01447936 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-10-16 14:46 - 2014-09-19 01:59 - 01810944 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-10-16 14:46 - 2014-09-19 01:59 - 00775168 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-10-16 14:46 - 2014-09-19 01:53 - 01190400 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-10-16 14:46 - 2014-09-19 01:52 - 00678400 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-10-16 14:46 - 2014-09-18 04:00 - 03241472 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-10-16 14:46 - 2014-09-18 03:32 - 02363904 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2014-10-16 14:45 - 2014-09-04 07:23 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\rastls.dll
2014-10-16 14:45 - 2014-09-04 07:04 - 00372736 _____ (Microsoft Corporation) C:\windows\SysWOW64\rastls.dll
2014-10-16 14:45 - 2014-07-17 04:07 - 03722240 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2014-10-16 14:45 - 2014-07-17 04:07 - 01118720 _____ (Microsoft Corporation) C:\windows\system32\mstsc.exe
2014-10-16 14:45 - 2014-07-17 04:07 - 00681984 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2014-10-16 14:45 - 2014-07-17 04:07 - 00455168 _____ (Microsoft Corporation) C:\windows\system32\winlogon.exe
2014-10-16 14:45 - 2014-07-17 04:07 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\winsta.dll
2014-10-16 14:45 - 2014-07-17 04:07 - 00150528 _____ (Microsoft Corporation) C:\windows\system32\rdpcorekmts.dll
2014-10-16 14:45 - 2014-07-17 04:07 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2014-10-16 14:45 - 2014-07-17 04:07 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2014-10-16 14:45 - 2014-07-17 03:40 - 00157696 _____ (Microsoft Corporation) C:\windows\SysWOW64\winsta.dll
2014-10-16 14:45 - 2014-07-17 03:39 - 03221504 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2014-10-16 14:45 - 2014-07-17 03:39 - 01051136 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstsc.exe
2014-10-16 14:45 - 2014-07-17 03:39 - 00131584 _____ (Microsoft Corporation) C:\windows\SysWOW64\aaclient.dll
2014-10-16 14:45 - 2014-07-17 03:39 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2014-10-16 14:45 - 2014-07-17 03:39 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2014-10-16 14:45 - 2014-07-17 03:21 - 00212480 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpwd.sys
2014-10-16 14:45 - 2014-07-17 03:21 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys
2014-10-15 17:37 - 2014-10-15 19:57 - 00000000 ____D () C:\Users\rekoj 666\Downloads\The Grand Budapest Hotel (2014) [1080p]
2014-10-14 21:20 - 2014-10-14 21:20 - 00028147 _____ () C:\Users\rekoj 666\Downloads\The.Big.Bang.Theory.S08E05.720p.HDTV.X264-DIMENSION.srt
2014-10-14 14:44 - 2014-10-14 14:48 - 123953373 _____ () C:\Users\rekoj 666\Downloads\The.Big.Bang.Theory.S08E05.HDTV.x264-LOL.mp4
2014-10-13 14:50 - 2014-10-13 14:52 - 74044999 _____ () C:\Users\rekoj 666\Downloads\Family.Guy.S13E02.HDTV.x264-LOL.mp4
2014-10-13 14:00 - 2014-10-13 14:13 - 00000000 ____D () C:\Users\rekoj 666\Downloads\Family Guy S13E01 HDTV x264-2HD[ettv]
2014-10-12 20:00 - 2014-10-12 20:36 - 00000000 ____D () C:\Users\rekoj 666\Downloads\Gone Girl 2014 480p FIRST HDCAM ENGLISH x264 Pimp4003
2014-10-12 14:00 - 2014-10-12 14:00 - 00000000 ____D () C:\Users\rekoj 666\AppData\Local\FUJIFILM
2014-10-09 00:21 - 2014-10-09 12:59 - 00000000 ____D () C:\Users\rekoj 666\Downloads\Suicide Club 2001 DVDRip Xvid LKRG
2014-10-09 00:20 - 2014-10-09 00:33 - 00000000 ____D () C:\Users\rekoj 666\Downloads\The Big Bang Theory S08E04 HDTV x264-LOL[ettv]
2014-10-08 16:35 - 2014-10-08 16:42 - 00000000 ____D () C:\Users\rekoj 666\Downloads\The Big Bang Theory S08E03 HDTV x264-LOL[ettv]
2014-10-07 17:41 - 2014-10-07 17:43 - 120390990 _____ () C:\Users\rekoj 666\Downloads\The.Big.Bang.Theory.S08E02.HDTV.x264-LOL.mp4
2014-10-07 16:58 - 2014-10-07 16:58 - 00032535 _____ () C:\Users\rekoj 666\Downloads\The.Big.Bang.Theory.S08E01.720p.HDTV.X264-DIMENSION.srt
2014-10-07 16:56 - 2014-10-07 16:58 - 139488547 _____ () C:\Users\rekoj 666\Downloads\The.Big.Bang.Theory.S08E01.HDTV.x264-LOL.mp4
2014-10-07 14:37 - 2014-10-07 14:37 - 00000000 ____D () C:\windows\CheckSur
2014-10-06 01:27 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll
2014-10-06 01:27 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll
2014-10-06 01:25 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\windows\system32\icardres.dll
2014-10-06 01:25 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardres.dll
2014-10-06 01:25 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\windows\system32\icardagt.exe
2014-10-06 01:25 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\windows\system32\infocardapi.dll
2014-10-06 01:25 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardagt.exe
2014-10-06 01:25 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\windows\SysWOW64\infocardapi.dll
2014-10-06 01:24 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2014-10-06 01:24 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2014-10-05 22:08 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll
2014-10-05 22:08 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll
2014-10-05 22:08 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2014-10-05 22:04 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2014-10-05 22:04 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2014-10-05 22:04 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2014-10-05 22:04 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2014-10-05 22:04 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2014-10-05 22:04 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2014-10-05 22:04 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2014-10-05 22:04 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2014-10-05 21:53 - 2014-10-18 12:14 - 00001910 _____ () C:\windows\setupact.log
2014-10-05 21:53 - 2014-10-05 21:53 - 00000000 _____ () C:\windows\setuperr.log
2014-10-05 21:50 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2014-10-05 21:50 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2014-10-05 21:50 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2014-10-05 21:50 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2014-10-05 21:50 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2014-10-05 20:49 - 2014-10-05 20:49 - 17903792 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerInstaller.exe
2014-10-05 20:22 - 2014-10-05 21:33 - 00000000 ____D () C:\Users\rekoj 666\Downloads\Wedding Crashers (2005)
2014-10-05 20:18 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2014-10-05 20:18 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2014-10-05 20:16 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll
2014-10-05 20:16 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSWorkspace.dll
2014-10-05 20:15 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2014-10-05 20:15 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2014-10-05 20:15 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2014-10-05 20:15 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2014-10-05 20:15 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2014-10-05 20:15 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2014-10-05 20:15 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2014-10-05 20:14 - 2014-09-25 04:08 - 00371712 _____ (Microsoft Corporation) C:\windows\system32\qdvd.dll
2014-10-05 20:14 - 2014-09-25 03:40 - 00519680 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll
2014-10-05 20:14 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2014-10-05 20:14 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2014-10-05 20:14 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2014-10-05 20:14 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2014-10-05 20:14 - 2014-06-16 04:10 - 00985536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2014-10-05 19:55 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2014-10-05 19:55 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2014-10-05 19:55 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2014-10-05 19:55 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2014-10-05 19:54 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2014-10-05 19:54 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2014-10-05 19:54 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2014-10-05 19:54 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2014-10-05 19:54 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2014-10-05 19:54 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2014-10-05 19:53 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2014-10-05 19:53 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2014-10-05 19:53 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2014-10-05 19:53 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe
2014-10-05 19:37 - 2014-10-05 19:37 - 00000000 ____D () C:\Program Files (x86)\GUM690E.tmp
2014-10-05 19:30 - 2014-07-25 12:49 - 00272808 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2014-10-05 19:29 - 2014-07-25 12:55 - 00098216 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2014-10-05 19:29 - 2014-07-25 12:49 - 00175528 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2014-10-05 19:29 - 2014-07-25 12:49 - 00175528 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2014-10-05 19:27 - 2014-10-05 19:29 - 00004489 _____ () C:\windows\SysWOW64\jupdate-1.7.0_67-b01.log
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-10-19 17:49 - 2012-04-15 19:54 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-10-19 17:34 - 2014-05-06 08:18 - 00000978 _____ () C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA1cf68f3e85eebb.job
2014-10-19 16:00 - 2010-05-26 20:03 - 00674178 _____ () C:\windows\system32\perfh005.dat
2014-10-19 16:00 - 2010-05-26 20:03 - 00143694 _____ () C:\windows\system32\perfc005.dat
2014-10-19 16:00 - 2009-07-14 07:13 - 01593214 _____ () C:\windows\system32\PerfStringBackup.INI
2014-10-19 15:47 - 2014-01-07 10:42 - 00000944 _____ () C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA.job
2014-10-19 14:32 - 2010-10-22 13:43 - 00003998 _____ () C:\windows\System32\Tasks\User_Feed_Synchronization-{D1CDD196-A96A-410C-9962-084742CF4139}
2014-10-19 13:14 - 2010-08-27 17:29 - 01866905 _____ () C:\windows\WindowsUpdate.log
2014-10-19 12:20 - 2014-07-06 19:28 - 00000926 _____ () C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core1cf993fbf7366da.job
2014-10-19 12:19 - 2014-01-07 10:42 - 00000922 _____ () C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core.job
2014-10-18 12:24 - 2009-07-14 06:45 - 00025648 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-18 12:24 - 2009-07-14 06:45 - 00025648 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-18 12:15 - 2012-11-27 01:35 - 00000374 _____ () C:\windows\system32\Drivers\etc\hosts.ics
2014-10-18 12:15 - 2010-05-26 19:44 - 00000000 ____D () C:\ProgramData\HPQLOG
2014-10-18 12:14 - 2009-07-14 07:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-10-18 11:19 - 2010-05-26 19:49 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-10-17 09:14 - 2009-07-14 06:45 - 05018256 _____ () C:\windows\system32\FNTCACHE.DAT
2014-10-17 09:12 - 2014-05-06 17:01 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-10-17 00:40 - 2013-08-15 01:39 - 00000000 ____D () C:\windows\system32\MRT
2014-10-17 00:16 - 2010-09-18 20:31 - 103265616 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-10-15 23:34 - 2010-09-18 18:16 - 00000000 ____D () C:\Users\rekoj 666\AppData\Roaming\uTorrent
2014-10-14 21:03 - 2011-10-28 17:53 - 00000000 _____ () C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-10-14 21:03 - 2010-09-23 14:27 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2014-10-14 16:56 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\LiveKernelReports
2014-10-14 14:50 - 2014-05-16 12:45 - 00000000 ____D () C:\Users\rekoj 666\Downloads\Subs
2014-10-12 18:32 - 2014-02-04 17:03 - 00000000 ____D () C:\Users\rekoj 666\AppData\Roaming\vlc
2014-10-12 14:11 - 2014-05-13 08:09 - 00000000 ____D () C:\Users\rekoj 666\Desktop\Foto
2014-10-09 10:37 - 2011-07-08 12:22 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2014-10-07 18:51 - 2009-07-27 18:14 - 00000000 ____D () C:\swsetup
2014-10-07 15:39 - 2012-06-23 14:51 - 00000000 ____D () C:\Users\rekoj 666\AppData\Local\Macromedia
2014-10-06 16:52 - 2010-09-16 03:07 - 00000000 ____D () C:\windows\rescache
2014-10-06 10:43 - 2010-09-15 19:29 - 00000000 ___RD () C:\Users\rekoj 666\Virtual Machines
2014-10-06 10:18 - 2009-07-27 16:36 - 00000000 ____D () C:\Program Files\Windows Journal
2014-10-06 10:18 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\SysWOW64\Dism
2014-10-06 10:18 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\system32\Dism
2014-10-06 10:18 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-10-06 02:04 - 2011-08-10 15:25 - 01572596 _____ () C:\windows\SysWOW64\PerfStringBackup.INI
2014-10-06 02:01 - 2012-05-19 00:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-10-06 02:00 - 2012-05-19 00:34 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-10-06 02:00 - 2012-05-19 00:34 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-10-05 22:02 - 2010-09-15 19:14 - 00000000 ____D () C:\Users\rekoj 666\AppData\Roaming\hpqLog
2014-10-05 21:39 - 2010-09-21 18:25 - 00000000 ____D () C:\Users\rekoj 666\AppData\Local\CrashDumps
2014-10-05 20:49 - 2012-04-15 19:54 - 00701104 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-10-05 20:49 - 2012-04-15 19:54 - 00003852 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2014-10-05 20:49 - 2011-08-03 18:10 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-10-05 19:30 - 2013-10-16 09:49 - 00000000 ____D () C:\ProgramData\Oracle
2014-10-05 19:29 - 2011-02-07 12:19 - 00000000 ____D () C:\Program Files (x86)\Java
Some content of TEMP:
====================
C:\Users\rekoj 666\AppData\Local\Temp\Extract.exe
C:\Users\rekoj 666\AppData\Local\Temp\SP50030.exe
C:\Users\rekoj 666\AppData\Local\Temp\SP63944.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
Folder Size 2.6.0.0 (HKLM-x32\...\{2DFA85ED-588F-4CE3-A175-29E52C3804A8}_is1) (Version: 2.6.0.0 - MindGems, Inc.)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core.job => C:\Users\rekoj 666\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA.job => C:\Users\rekoj 666\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core1cf993fbf7366da.job => C:\Users\rekoj 666\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA1cf68f3e85eebb.job => C:\Users\rekoj 666\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: ESET NOD32 Antivirus 6.0 (Enabled - Up to date) {77DEAFED-8149-104B-25A1-21771CA47CD1}
AS: ESET NOD32 Antivirus 6.0 (Enabled - Up to date) {CCBF4E09-A773-1FC5-1F11-1A056723366C}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\rekoj 666\Desktop" je 125695 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001
==================== End Of Log ==============================
Ran by rekoj 666 (administrator) on REKOJ666-HP on 19-10-2014 18:25:43
Running from C:\Users\rekoj 666\Desktop
Loaded Profile: rekoj 666 (Available profiles: rekoj 666 & Nouzák & Guest)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
(McAfee, Inc.) C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ActivIdentity) C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\acevents.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(LSI Corporation) C:\Program Files\LSI SoftModem\agr64svc.exe
(Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
(Hewlett-Packard Development Company, L.P) C:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickLook\HPDayStarterService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\nlssrv32.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(McAfee, Inc.) C:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe
(DigitalPersona, Inc.) C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\acevents.exe
(ActivIdentity) C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(Irza Alexander) C:\Program Files (x86)\Volume2\Volume2.exe
() C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe
() C:\Windows\inf\system32-x86.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpAgent.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\rekoj 666\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [HPPowerAssistant] => C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [1691192 2010-04-05] (Hewlett-Packard)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2174760 2014-05-20] (Synaptics Incorporated)
HKLM\...\Run: [HPWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-04-05] (Hewlett-Packard)
HKLM\...\Run: [acevents] => C:\Program Files\ActivIdentity\ActivClient\acevents.exe [196648 2009-06-04] (ActivIdentity)
HKLM\...\Run: [accrdsub] => C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [483880 2009-06-04] (ActivIdentity)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [6325424 2012-11-14] (ESET)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [489472 2014-05-20] (IDT, Inc.)
HKLM-x32\...\Run: [File Sanitizer] => c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [11268096 2010-05-06] (Hewlett-Packard)
HKLM-x32\...\Run: [estar] => C:\System.Sav\Util\HideDOS.EXE [77824 2006-11-29] ()
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [46368 2010-03-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [29984 2010-03-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PPort12reminder] => C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe [328992 2010-02-09] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDFHook] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe [636192 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PDF5 Registry Controller] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe [62752 2010-03-05] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [312376 2011-03-21] (Hewlett-Packard Company)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-10-07] (Hewlett-Packard)
HKLM\...\Winlogon: [Userinit] C:\windows\system32\userinit.exe,C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [KiesHelper] => C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe [888120 2011-01-30] (Samsung)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [3372856 2011-01-30] (Samsung Electronics Co., Ltd.)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [Google Update] => C:\Users\rekoj 666\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-09-22] (Google Inc.)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [Volume2] => C:\Program Files (x86)\Volume2\Volume2.exe [1577984 2012-01-08] (Irza Alexander)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [Facebook Update] => C:\Users\rekoj 666\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-01-07] (Facebook Inc.)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [System-boot] => C:\Windows\inf\SYSTEM-x32.exe [454144 2014-10-15] ()
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Policies\Explorer: [HideSCAVolume] 0
Lsa: [Notification Packages] DPPassFilter scecli
Startup: C:\Users\rekoj 666\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PdaNet Desktop.lnk
ShortcutTarget: PdaNet Desktop.lnk -> C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe ()
ShellIconOverlayIdentifiers: [1aCopyShExtError] -> {83BEA36E-7680-4598-A4DF-994426F6E78D} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [2aCopyShExtSynced] -> {845B7388-6F85-4F32-9FD5-F02DC7882B89} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [3aCopyShExtSyncing] -> {F6378A7A-F753-449B-AE1B-997A96132E61} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [4aCopyShExtSyncingProg1] -> {3A511828-777D-46F8-82F4-5B530C1B3D9E} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [5aCopyShExtSyncingProg2] -> {C8C88204-5B14-40EC-BA72-8AEBC762047E} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [6aCopyShExtSyncingProg3] -> {ACFF45C3-3EEB-4351-86C2-6696BA264239} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [7aCopyShExtSyncingProg4] -> {29AF997F-488B-46F0-AE78-7146F1B89CC3} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [8aCopyShExtSyncingProg5] -> {03F9AD29-1C78-4B66-8890-B177B5430C53} => C:\Users\rekoj 666\AppData\Roaming\Copy\overlay\CopyShExt.dll (Barracuda Networks, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\rekoj 666\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
URLSearchHook: HKCU - (No Name) - {95289393-33EA-4F8D-B952-483415B9C955} - No File
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
BHO: HP ProtectTools Security Manager Extension -> {395610AE-C624-4f58-B89E-23733EA00F9A} -> C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll (DigitalPersona, Inc.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: File Sanitizer for HP ProtectTools -> {3134413B-49B4-425C-98A5-893C1F195601} -> c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard)
BHO-x32: HP ProtectTools Security Manager Extension -> {395610AE-C624-4f58-B89E-23733EA00F9A} -> C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpOtsPluginIe8.dll (DigitalPersona, Inc.)
BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files (x86)\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll (Zeon Corporation)
BHO-x32: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
DPF: HKLM-x32 {8FEFF364-6A5F-4966-A917-A3AC28411659} http://download.sopcast.com/download/SOPCORE.CAB
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.10.1 10.0.0.1
FireFox:
========
FF ProfilePath: C:\Users\rekoj 666\AppData\Roaming\Mozilla\Firefox\Profiles\sfotytoj.rekoj666
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @java.com/DTPlugin,version=10.13.2 -> C:\windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.13.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1205146.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\rekoj 666\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 -> C:\Users\rekoj 666\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 -> C:\Users\rekoj 666\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: facebook.com/fbDesktopPlugin -> C:\Users\rekoj 666\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: BS Player ControlBar - C:\Users\rekoj 666\AppData\Roaming\Mozilla\Firefox\Profiles\sfotytoj.rekoj666\Extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} [2014-02-26]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-03-03]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2014-03-03]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2012-11-25]
FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt
FF Extension: DigitalPersona Extension - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt [2014-05-19]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
Chrome:
=======
CHR Profile: C:\Users\rekoj 666\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (AdBlock Premium) - C:\Users\rekoj 666\AppData\Local\Google\Chrome\User Data\Default\Extensions\fndlhnanhedoklpdaacidomdnplcjcpj [2014-10-06]
CHR Extension: (Skype Click to Call) - C:\Users\rekoj 666\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2011-11-04]
CHR Extension: (Peněženka Google) - C:\Users\rekoj 666\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-08]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2011-10-10]
CHR StartMenuInternet: Google Chrome - C:\Users\rekoj 666\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 ac.sharedstore; C:\Program Files\Common Files\ActivIdentity\ac.sharedstore.exe [277032 2009-06-04] (ActivIdentity)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [File not signed]
R3 DEBridge; c:\Program Files\Hewlett-Packard\Drive Encryption\SbHpAuthenticatorService.exe [704512 2010-02-02] (McAfee, Inc.) [File not signed]
R2 DpHost; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [462160 2010-07-16] (DigitalPersona, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1329304 2012-11-14] (ESET)
S3 FLCDLOCK; c:\Windows\SysWOW64\flcdlock.exe [362040 2009-12-07] (Hewlett-Packard Ltd)
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [658432 2010-09-22] (Macrovision Europe Ltd.) [File not signed]
R2 HP ProtectTools Service; C:\Program Files (x86)\Hewlett-Packard\2009 Password Filter for HP ProtectTools\PTChangeFilterService.exe [32768 2010-10-19] (Hewlett-Packard Development Company, L.P) [File not signed]
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
R2 HPDayStarterService; c:\Program Files (x86)\Hewlett-Packard\HP QuickLook\HPDayStarterService.exe [90112 2010-03-25] (Hewlett-Packard Company) [File not signed]
R2 HpFkCryptService; c:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [281192 2010-02-02] (McAfee, Inc.)
R2 HPFSService; C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [298496 2010-05-06] (Hewlett-Packard) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\hpHotkeyMonitor.exe [293944 2011-03-21] (Hewlett-Packard Company)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed]
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [50688 2012-07-31] (Hewlett-Packard) [File not signed]
R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [144672 2010-03-09] (Nuance Communications, Inc.)
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [66048 2012-07-31] (Hewlett-Packard) [File not signed]
R3 ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [615936 2010-06-14] (Nokia) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [40760 2009-10-21] (Hewlett-Packard Development Company L.P.)
S3 dgderdrv; C:\Windows\System32\drivers\dgderdrv.sys [20552 2010-10-25] (Devguru Co., Ltd)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [211344 2012-10-08] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [149592 2012-10-08] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [138744 2012-10-08] (ESET)
S3 IntcDAud; C:\Windows\System32\DRIVERS\IntcDAud.sys [271872 2010-02-03] (Intel(R) Corporation) [File not signed]
S3 nmwcdcx64; C:\Windows\System32\drivers\ccdcmbox64.sys [25088 2010-02-26] (Nokia)
S3 nmwcdx64; C:\Windows\System32\drivers\ccdcmbx64.sys [19456 2010-02-26] (Nokia)
R1 RsvLock; C:\Windows\System32\Drivers\RsvLock.sys [58184 2010-02-02] (McAfee, Inc.)
R1 RsvLock; C:\Windows\SysWow64\Drivers\RsvLock.sys [40088 2010-02-02] (McAfee, Inc.)
R0 SafeBoot; C:\Windows\System32\Drivers\SafeBoot.sys [56648 2010-02-02] () [File not signed]
R0 SafeBoot; C:\Windows\SysWow64\Drivers\SafeBoot.sys [110520 2010-02-02] (McAfee, Inc.)
R0 SbAlg; C:\Windows\System32\Drivers\SbAlg.sys [60160 2009-06-04] (McAfee, Inc.)
R0 SbAlg; C:\Windows\SysWow64\Drivers\SbAlg.sys [51800 2010-02-02] (McAfee, Inc.)
R0 SbFsLock; C:\Windows\System32\Drivers\SbFsLock.sys [15688 2010-02-02] (McAfee, Inc.)
R0 SbFsLock; C:\Windows\SysWow64\Drivers\SbFsLock.sys [13256 2010-02-02] (McAfee, Inc.)
R0 sfdrv01; C:\Windows\System32\drivers\sfdrv01.sys [75384 2009-02-03] (Protection Technology (StarForce))
R0 sfvfs02; C:\Windows\System32\drivers\sfvfs02.sys [107384 2007-02-08] (Protection Technology (StarForce))
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1803904 2010-01-19] ()
R0 speedfan; C:\Windows\SysWow64\speedfan.sys [14104 2007-02-07] (Windows (R) Server 2003 DDK provider)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2010-09-18] () [File not signed]
U3 am3svdde; C:\Windows\System32\Drivers\am3svdde.sys [0 ] (Microsoft Corporation)
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-10-19 18:25 - 2014-10-19 18:27 - 00029909 _____ () C:\Users\rekoj 666\Desktop\FRST.txt
2014-10-19 18:25 - 2014-10-19 18:25 - 00000000 ____D () C:\FRST
2014-10-19 18:23 - 2014-10-19 18:23 - 00112640 _____ (forum.viry.cz) C:\Users\rekoj 666\Desktop\FRSTLauncher.exe
2014-10-19 18:22 - 2014-10-19 18:22 - 02112512 _____ (Farbar) C:\Users\rekoj 666\Desktop\FRST64.exe
2014-10-19 18:02 - 2014-10-19 18:02 - 00000000 ____D () C:\rsit
2014-10-19 18:02 - 2014-10-19 18:02 - 00000000 ____D () C:\Program Files (x86)\trend micro
2014-10-18 12:03 - 2014-10-18 12:03 - 00000851 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Uninstall 6.lnk
2014-10-18 12:03 - 2014-10-18 12:03 - 00000839 _____ () C:\Users\Public\Desktop\Total Uninstall 6.lnk
2014-10-18 12:03 - 2014-10-18 12:03 - 00000000 ____D () C:\ProgramData\Martau
2014-10-18 12:03 - 2014-10-18 12:03 - 00000000 ____D () C:\Program Files\Total Uninstall 6
2014-10-18 11:19 - 2014-10-18 11:19 - 00000000 ____D () C:\MATS
2014-10-17 10:40 - 2014-10-17 10:40 - 00000000 ____D () C:\Users\rekoj 666\AppData\Roaming\poclbm
2014-10-17 09:11 - 2014-10-17 09:11 - 00003416 ____N () C:\bootsqm.dat
2014-10-17 09:09 - 2014-10-17 09:09 - 00000000 __SHD () C:\found.000
2014-10-16 14:47 - 2014-10-10 04:05 - 00507392 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-10-16 14:47 - 2014-10-10 04:05 - 00276480 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2014-10-16 14:47 - 2014-10-10 04:00 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-10-16 14:47 - 2014-09-29 02:58 - 03198976 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-10-16 14:47 - 2014-09-13 03:58 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\packager.dll
2014-10-16 14:47 - 2014-09-13 03:40 - 00067072 _____ (Microsoft Corporation) C:\windows\SysWOW64\packager.dll
2014-10-16 14:47 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDYAK.DLL
2014-10-16 14:47 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDTAT.DLL
2014-10-16 14:47 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDRU1.DLL
2014-10-16 14:47 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDBASH.DLL
2014-10-16 14:47 - 2014-07-09 04:03 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\KBDRU.DLL
2014-10-16 14:47 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDYAK.DLL
2014-10-16 14:47 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDTAT.DLL
2014-10-16 14:47 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU1.DLL
2014-10-16 14:47 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU.DLL
2014-10-16 14:47 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDBASH.DLL
2014-10-16 14:47 - 2014-07-09 00:38 - 00419992 _____ () C:\windows\system32\locale.nls
2014-10-16 14:47 - 2014-07-09 00:30 - 00419992 _____ () C:\windows\SysWOW64\locale.nls
2014-10-16 14:47 - 2014-06-19 00:23 - 01943696 _____ (Microsoft Corporation) C:\windows\system32\dfshim.dll
2014-10-16 14:47 - 2014-06-19 00:23 - 01131664 _____ (Microsoft Corporation) C:\windows\SysWOW64\dfshim.dll
2014-10-16 14:47 - 2014-06-19 00:23 - 00156824 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscorier.dll
2014-10-16 14:47 - 2014-06-19 00:23 - 00156312 _____ (Microsoft Corporation) C:\windows\system32\mscorier.dll
2014-10-16 14:47 - 2014-06-19 00:23 - 00081560 _____ (Microsoft Corporation) C:\windows\SysWOW64\mscories.dll
2014-10-16 14:47 - 2014-06-19 00:23 - 00073880 _____ (Microsoft Corporation) C:\windows\system32\mscories.dll
2014-10-16 14:46 - 2014-10-07 04:54 - 00378552 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-10-16 14:46 - 2014-10-07 04:04 - 00331448 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-10-16 14:46 - 2014-09-26 00:50 - 13619200 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-10-16 14:46 - 2014-09-26 00:46 - 00365056 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-10-16 14:46 - 2014-09-26 00:46 - 00243200 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-10-16 14:46 - 2014-09-26 00:46 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-10-16 14:46 - 2014-09-26 00:43 - 11807232 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-10-16 14:46 - 2014-09-26 00:32 - 02017280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-10-16 14:46 - 2014-09-26 00:31 - 02108416 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-10-16 14:46 - 2014-09-19 04:25 - 23631360 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-10-16 14:46 - 2014-09-19 03:56 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-10-16 14:46 - 2014-09-19 03:55 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-10-16 14:46 - 2014-09-19 03:44 - 17484800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-10-16 14:46 - 2014-09-19 03:41 - 02796032 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-10-16 14:46 - 2014-09-19 03:40 - 00547328 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-10-16 14:46 - 2014-09-19 03:40 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-10-16 14:46 - 2014-09-19 03:39 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-10-16 14:46 - 2014-09-19 03:38 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-10-16 14:46 - 2014-09-19 03:36 - 05829632 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-10-16 14:46 - 2014-09-19 03:31 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-10-16 14:46 - 2014-09-19 03:30 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-10-16 14:46 - 2014-09-19 03:27 - 00595968 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-10-16 14:46 - 2014-09-19 03:26 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-10-16 14:46 - 2014-09-19 03:25 - 04201472 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-10-16 14:46 - 2014-09-19 03:25 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-10-16 14:46 - 2014-09-19 03:25 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-10-16 14:46 - 2014-09-19 03:18 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-10-16 14:46 - 2014-09-19 03:14 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-10-16 14:46 - 2014-09-19 03:14 - 00446464 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-10-16 14:46 - 2014-09-19 03:06 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-10-16 14:46 - 2014-09-19 03:02 - 00454656 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-10-16 14:46 - 2014-09-19 03:01 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-10-16 14:46 - 2014-09-19 03:01 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-10-16 14:46 - 2014-09-19 03:01 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-10-16 14:46 - 2014-09-19 03:00 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-10-16 14:46 - 2014-09-19 02:59 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-10-16 14:46 - 2014-09-19 02:58 - 00289280 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-10-16 14:46 - 2014-09-19 02:55 - 02187264 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-10-16 14:46 - 2014-09-19 02:54 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-10-16 14:46 - 2014-09-19 02:53 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-10-16 14:46 - 2014-09-19 02:51 - 00440320 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-10-16 14:46 - 2014-09-19 02:50 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-10-16 14:46 - 2014-09-19 02:49 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-10-16 14:46 - 2014-09-19 02:42 - 00731136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-10-16 14:46 - 2014-09-19 02:42 - 00710656 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-10-16 14:46 - 2014-09-19 02:40 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-10-16 14:46 - 2014-09-19 02:36 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-10-16 14:46 - 2014-09-19 02:33 - 02309632 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-10-16 14:46 - 2014-09-19 02:32 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-10-16 14:46 - 2014-09-19 02:20 - 00607744 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-10-16 14:46 - 2014-09-19 02:18 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-10-16 14:46 - 2014-09-19 02:14 - 01447936 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-10-16 14:46 - 2014-09-19 01:59 - 01810944 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-10-16 14:46 - 2014-09-19 01:59 - 00775168 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-10-16 14:46 - 2014-09-19 01:53 - 01190400 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-10-16 14:46 - 2014-09-19 01:52 - 00678400 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-10-16 14:46 - 2014-09-18 04:00 - 03241472 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-10-16 14:46 - 2014-09-18 03:32 - 02363904 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2014-10-16 14:45 - 2014-09-04 07:23 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\rastls.dll
2014-10-16 14:45 - 2014-09-04 07:04 - 00372736 _____ (Microsoft Corporation) C:\windows\SysWOW64\rastls.dll
2014-10-16 14:45 - 2014-07-17 04:07 - 03722240 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2014-10-16 14:45 - 2014-07-17 04:07 - 01118720 _____ (Microsoft Corporation) C:\windows\system32\mstsc.exe
2014-10-16 14:45 - 2014-07-17 04:07 - 00681984 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2014-10-16 14:45 - 2014-07-17 04:07 - 00455168 _____ (Microsoft Corporation) C:\windows\system32\winlogon.exe
2014-10-16 14:45 - 2014-07-17 04:07 - 00235520 _____ (Microsoft Corporation) C:\windows\system32\winsta.dll
2014-10-16 14:45 - 2014-07-17 04:07 - 00150528 _____ (Microsoft Corporation) C:\windows\system32\rdpcorekmts.dll
2014-10-16 14:45 - 2014-07-17 04:07 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2014-10-16 14:45 - 2014-07-17 04:07 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2014-10-16 14:45 - 2014-07-17 03:40 - 00157696 _____ (Microsoft Corporation) C:\windows\SysWOW64\winsta.dll
2014-10-16 14:45 - 2014-07-17 03:39 - 03221504 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2014-10-16 14:45 - 2014-07-17 03:39 - 01051136 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstsc.exe
2014-10-16 14:45 - 2014-07-17 03:39 - 00131584 _____ (Microsoft Corporation) C:\windows\SysWOW64\aaclient.dll
2014-10-16 14:45 - 2014-07-17 03:39 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2014-10-16 14:45 - 2014-07-17 03:39 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2014-10-16 14:45 - 2014-07-17 03:21 - 00212480 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpwd.sys
2014-10-16 14:45 - 2014-07-17 03:21 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys
2014-10-15 17:37 - 2014-10-15 19:57 - 00000000 ____D () C:\Users\rekoj 666\Downloads\The Grand Budapest Hotel (2014) [1080p]
2014-10-14 21:20 - 2014-10-14 21:20 - 00028147 _____ () C:\Users\rekoj 666\Downloads\The.Big.Bang.Theory.S08E05.720p.HDTV.X264-DIMENSION.srt
2014-10-14 14:44 - 2014-10-14 14:48 - 123953373 _____ () C:\Users\rekoj 666\Downloads\The.Big.Bang.Theory.S08E05.HDTV.x264-LOL.mp4
2014-10-13 14:50 - 2014-10-13 14:52 - 74044999 _____ () C:\Users\rekoj 666\Downloads\Family.Guy.S13E02.HDTV.x264-LOL.mp4
2014-10-13 14:00 - 2014-10-13 14:13 - 00000000 ____D () C:\Users\rekoj 666\Downloads\Family Guy S13E01 HDTV x264-2HD[ettv]
2014-10-12 20:00 - 2014-10-12 20:36 - 00000000 ____D () C:\Users\rekoj 666\Downloads\Gone Girl 2014 480p FIRST HDCAM ENGLISH x264 Pimp4003
2014-10-12 14:00 - 2014-10-12 14:00 - 00000000 ____D () C:\Users\rekoj 666\AppData\Local\FUJIFILM
2014-10-09 00:21 - 2014-10-09 12:59 - 00000000 ____D () C:\Users\rekoj 666\Downloads\Suicide Club 2001 DVDRip Xvid LKRG
2014-10-09 00:20 - 2014-10-09 00:33 - 00000000 ____D () C:\Users\rekoj 666\Downloads\The Big Bang Theory S08E04 HDTV x264-LOL[ettv]
2014-10-08 16:35 - 2014-10-08 16:42 - 00000000 ____D () C:\Users\rekoj 666\Downloads\The Big Bang Theory S08E03 HDTV x264-LOL[ettv]
2014-10-07 17:41 - 2014-10-07 17:43 - 120390990 _____ () C:\Users\rekoj 666\Downloads\The.Big.Bang.Theory.S08E02.HDTV.x264-LOL.mp4
2014-10-07 16:58 - 2014-10-07 16:58 - 00032535 _____ () C:\Users\rekoj 666\Downloads\The.Big.Bang.Theory.S08E01.720p.HDTV.X264-DIMENSION.srt
2014-10-07 16:56 - 2014-10-07 16:58 - 139488547 _____ () C:\Users\rekoj 666\Downloads\The.Big.Bang.Theory.S08E01.HDTV.x264-LOL.mp4
2014-10-07 14:37 - 2014-10-07 14:37 - 00000000 ____D () C:\windows\CheckSur
2014-10-06 01:27 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll
2014-10-06 01:27 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll
2014-10-06 01:25 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\windows\system32\icardres.dll
2014-10-06 01:25 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardres.dll
2014-10-06 01:25 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\windows\system32\icardagt.exe
2014-10-06 01:25 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\windows\system32\infocardapi.dll
2014-10-06 01:25 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardagt.exe
2014-10-06 01:25 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\windows\SysWOW64\infocardapi.dll
2014-10-06 01:24 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2014-10-06 01:24 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2014-10-05 22:08 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll
2014-10-05 22:08 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll
2014-10-05 22:08 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2014-10-05 22:04 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2014-10-05 22:04 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2014-10-05 22:04 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2014-10-05 22:04 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2014-10-05 22:04 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2014-10-05 22:04 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2014-10-05 22:04 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2014-10-05 22:04 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2014-10-05 21:53 - 2014-10-18 12:14 - 00001910 _____ () C:\windows\setupact.log
2014-10-05 21:53 - 2014-10-05 21:53 - 00000000 _____ () C:\windows\setuperr.log
2014-10-05 21:50 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2014-10-05 21:50 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2014-10-05 21:50 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2014-10-05 21:50 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2014-10-05 21:50 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2014-10-05 20:49 - 2014-10-05 20:49 - 17903792 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerInstaller.exe
2014-10-05 20:22 - 2014-10-05 21:33 - 00000000 ____D () C:\Users\rekoj 666\Downloads\Wedding Crashers (2005)
2014-10-05 20:18 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2014-10-05 20:18 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2014-10-05 20:16 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll
2014-10-05 20:16 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSWorkspace.dll
2014-10-05 20:15 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2014-10-05 20:15 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2014-10-05 20:15 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2014-10-05 20:15 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2014-10-05 20:15 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2014-10-05 20:15 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2014-10-05 20:15 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2014-10-05 20:14 - 2014-09-25 04:08 - 00371712 _____ (Microsoft Corporation) C:\windows\system32\qdvd.dll
2014-10-05 20:14 - 2014-09-25 03:40 - 00519680 _____ (Microsoft Corporation) C:\windows\SysWOW64\qdvd.dll
2014-10-05 20:14 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2014-10-05 20:14 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2014-10-05 20:14 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2014-10-05 20:14 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2014-10-05 20:14 - 2014-06-16 04:10 - 00985536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2014-10-05 19:55 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2014-10-05 19:55 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2014-10-05 19:55 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2014-10-05 19:55 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2014-10-05 19:54 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2014-10-05 19:54 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2014-10-05 19:54 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2014-10-05 19:54 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2014-10-05 19:54 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2014-10-05 19:54 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2014-10-05 19:53 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2014-10-05 19:53 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2014-10-05 19:53 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2014-10-05 19:53 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe
2014-10-05 19:37 - 2014-10-05 19:37 - 00000000 ____D () C:\Program Files (x86)\GUM690E.tmp
2014-10-05 19:30 - 2014-07-25 12:49 - 00272808 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2014-10-05 19:29 - 2014-07-25 12:55 - 00098216 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2014-10-05 19:29 - 2014-07-25 12:49 - 00175528 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2014-10-05 19:29 - 2014-07-25 12:49 - 00175528 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2014-10-05 19:27 - 2014-10-05 19:29 - 00004489 _____ () C:\windows\SysWOW64\jupdate-1.7.0_67-b01.log
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-10-19 17:49 - 2012-04-15 19:54 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-10-19 17:34 - 2014-05-06 08:18 - 00000978 _____ () C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA1cf68f3e85eebb.job
2014-10-19 16:00 - 2010-05-26 20:03 - 00674178 _____ () C:\windows\system32\perfh005.dat
2014-10-19 16:00 - 2010-05-26 20:03 - 00143694 _____ () C:\windows\system32\perfc005.dat
2014-10-19 16:00 - 2009-07-14 07:13 - 01593214 _____ () C:\windows\system32\PerfStringBackup.INI
2014-10-19 15:47 - 2014-01-07 10:42 - 00000944 _____ () C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA.job
2014-10-19 14:32 - 2010-10-22 13:43 - 00003998 _____ () C:\windows\System32\Tasks\User_Feed_Synchronization-{D1CDD196-A96A-410C-9962-084742CF4139}
2014-10-19 13:14 - 2010-08-27 17:29 - 01866905 _____ () C:\windows\WindowsUpdate.log
2014-10-19 12:20 - 2014-07-06 19:28 - 00000926 _____ () C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core1cf993fbf7366da.job
2014-10-19 12:19 - 2014-01-07 10:42 - 00000922 _____ () C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core.job
2014-10-18 12:24 - 2009-07-14 06:45 - 00025648 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-18 12:24 - 2009-07-14 06:45 - 00025648 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-18 12:15 - 2012-11-27 01:35 - 00000374 _____ () C:\windows\system32\Drivers\etc\hosts.ics
2014-10-18 12:15 - 2010-05-26 19:44 - 00000000 ____D () C:\ProgramData\HPQLOG
2014-10-18 12:14 - 2009-07-14 07:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-10-18 11:19 - 2010-05-26 19:49 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-10-17 09:14 - 2009-07-14 06:45 - 05018256 _____ () C:\windows\system32\FNTCACHE.DAT
2014-10-17 09:12 - 2014-05-06 17:01 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-10-17 00:40 - 2013-08-15 01:39 - 00000000 ____D () C:\windows\system32\MRT
2014-10-17 00:16 - 2010-09-18 20:31 - 103265616 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-10-15 23:34 - 2010-09-18 18:16 - 00000000 ____D () C:\Users\rekoj 666\AppData\Roaming\uTorrent
2014-10-14 21:03 - 2011-10-28 17:53 - 00000000 _____ () C:\windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-10-14 21:03 - 2010-09-23 14:27 - 00000052 _____ () C:\windows\SysWOW64\DOErrors.log
2014-10-14 16:56 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\LiveKernelReports
2014-10-14 14:50 - 2014-05-16 12:45 - 00000000 ____D () C:\Users\rekoj 666\Downloads\Subs
2014-10-12 18:32 - 2014-02-04 17:03 - 00000000 ____D () C:\Users\rekoj 666\AppData\Roaming\vlc
2014-10-12 14:11 - 2014-05-13 08:09 - 00000000 ____D () C:\Users\rekoj 666\Desktop\Foto
2014-10-09 10:37 - 2011-07-08 12:22 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2014-10-07 18:51 - 2009-07-27 18:14 - 00000000 ____D () C:\swsetup
2014-10-07 15:39 - 2012-06-23 14:51 - 00000000 ____D () C:\Users\rekoj 666\AppData\Local\Macromedia
2014-10-06 16:52 - 2010-09-16 03:07 - 00000000 ____D () C:\windows\rescache
2014-10-06 10:43 - 2010-09-15 19:29 - 00000000 ___RD () C:\Users\rekoj 666\Virtual Machines
2014-10-06 10:18 - 2009-07-27 16:36 - 00000000 ____D () C:\Program Files\Windows Journal
2014-10-06 10:18 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\SysWOW64\Dism
2014-10-06 10:18 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\system32\Dism
2014-10-06 10:18 - 2009-07-14 05:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-10-06 02:04 - 2011-08-10 15:25 - 01572596 _____ () C:\windows\SysWOW64\PerfStringBackup.INI
2014-10-06 02:01 - 2012-05-19 00:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-10-06 02:00 - 2012-05-19 00:34 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-10-06 02:00 - 2012-05-19 00:34 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-10-05 22:02 - 2010-09-15 19:14 - 00000000 ____D () C:\Users\rekoj 666\AppData\Roaming\hpqLog
2014-10-05 21:39 - 2010-09-21 18:25 - 00000000 ____D () C:\Users\rekoj 666\AppData\Local\CrashDumps
2014-10-05 20:49 - 2012-04-15 19:54 - 00701104 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-10-05 20:49 - 2012-04-15 19:54 - 00003852 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2014-10-05 20:49 - 2011-08-03 18:10 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-10-05 19:30 - 2013-10-16 09:49 - 00000000 ____D () C:\ProgramData\Oracle
2014-10-05 19:29 - 2011-02-07 12:19 - 00000000 ____D () C:\Program Files (x86)\Java
Some content of TEMP:
====================
C:\Users\rekoj 666\AppData\Local\Temp\Extract.exe
C:\Users\rekoj 666\AppData\Local\Temp\SP50030.exe
C:\Users\rekoj 666\AppData\Local\Temp\SP63944.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
Folder Size 2.6.0.0 (HKLM-x32\...\{2DFA85ED-588F-4CE3-A175-29E52C3804A8}_is1) (Version: 2.6.0.0 - MindGems, Inc.)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core.job => C:\Users\rekoj 666\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA.job => C:\Users\rekoj 666\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core1cf993fbf7366da.job => C:\Users\rekoj 666\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA1cf68f3e85eebb.job => C:\Users\rekoj 666\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: ESET NOD32 Antivirus 6.0 (Enabled - Up to date) {77DEAFED-8149-104B-25A1-21771CA47CD1}
AS: ESET NOD32 Antivirus 6.0 (Enabled - Up to date) {CCBF4E09-A773-1FC5-1F11-1A056723366C}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\rekoj 666\Desktop" je 125695 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001
==================== End Of Log ==============================
- Přílohy
-
- Addition.rar
- (9.83 KiB) Staženo 76 x
- Rudy
- Site Admin
- Příspěvky: 119547
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Nelze odinstalovat ani opravit office 2010
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [Facebook Update] => C:\Users\rekoj 666\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-01-07] (Facebook Inc.)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [System-boot] => C:\Windows\inf\SYSTEM-x32.exe [454144 2014-10-15] ()
URLSearchHook: HKCU - (No Name) - {95289393-33EA-4F8D-B952-483415B9C955} - No File
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
C:\Program Files (x86)\GUM690E.tmp
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA1cf68f3e85eebb.job
C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA.job
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core1cf993fbf7366da.job
C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core.job
C:\Users\rekoj 666\AppData\Local\Temp
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Nelze odinstalovat ani opravit office 2010
přikládám avizovaný fixlog:
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 19-10-2014
Ran by rekoj 666 at 2014-10-19 21:32:48 Run:1
Running from C:\Users\rekoj 666\Desktop
Loaded Profile: rekoj 666 (Available profiles: rekoj 666 & Nouzák & Guest)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [Facebook Update] => C:\Users\rekoj 666\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-01-07] (Facebook Inc.)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [System-boot] => C:\Windows\inf\SYSTEM-x32.exe [454144 2014-10-15] ()
URLSearchHook: HKCU - (No Name) - {95289393-33EA-4F8D-B952-483415B9C955} - No File
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
C:\Program Files (x86)\GUM690E.tmp
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA1cf68f3e85eebb.job
C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA.job
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core1cf993fbf7366da.job
C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core.job
C:\Users\rekoj 666\AppData\Local\Temp
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\Software\Microsoft\Windows\CurrentVersion\Run\\Facebook Update => value deleted successfully.
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\Software\Microsoft\Windows\CurrentVersion\Run\\System-boot => value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{95289393-33EA-4F8D-B952-483415B9C955} => value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
"HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\ToolbarSearchProviderProgress => value deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => value deleted successfully.
"HKCR\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}" => Key not found.
"HKCR\PROTOCOLS\Handler\skype-ie-addon-data" => Key deleted successfully.
"HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => Key not found.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
C:\Program Files (x86)\GUM690E.tmp => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA1cf68f3e85eebb.job => Moved successfully.
C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core1cf993fbf7366da.job => Moved successfully.
C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core.job => Moved successfully.
"C:\Users\rekoj 666\AppData\Local\Temp" directory move:
C:\Users\rekoj 666\AppData\Local\Temp\AdobeARM.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\au-descriptor-1.7.0_67-b01.xml => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\au-descriptor-1.7.0_71-b14.xml => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\AUCHECK_PARSER.txt => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\bcmwl.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\BrightnessDown.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\BrightnessUp.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\chrome_installer.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_7AZSYWywr5eDrYa => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_DOQ0g3NPuhrheTX => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_dScnyL4iwcgTkum => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_ihYUjYk2wIyLUvx => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_j3JA4Y4pHhhRVvb => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_mKBMEWVF9xhVWxd => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_mOL5g36LCkqcLNb => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_Ua8K4mq1f7U4aF4 => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_Ve8FlazryaFfipF => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_z7XasBVZVCYc4Xk => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_ZG24TB9jhtdk58f => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\Extract.exe => Moved successfully.
Could not move "C:\Users\rekoj 666\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => Scheduled to move on reboot.
C:\Users\rekoj 666\AppData\Local\Temp\HPHKS_BrightnessDown.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\HPHKS_BrightnessUp.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\HPHKS_Mute.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\HPHKS_VolumeHigh.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\HPHKS_VolumeLow.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\HPSAActionItems.xml => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\JAUReg.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\JavaDeployReg.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\java_install_reg.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\java_install_sp.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\jinstall.cfg => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\jusched.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\modules00 => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\modules11 => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\Mute.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\PDApp.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\RD3BA9.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\RDED79.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\RPR_Patch_Repair.txt => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SetupExe(20141017103948177C).log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SetupExe(20141018110233CBC).log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SetupExe(2014101811135417A4).log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SetupExe(20141019122440CA0).log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SetupExe(20141019122708A04).log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SP50030.exe => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SP63944.exe => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt260E.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt260F.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt2610.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt2611.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt2612.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt2613.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt4D43.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt4D44.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt4D45.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt4D46.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt4D47.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt4D48.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt5A86.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt5A87.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt5A88.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt5A89.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt5A8A.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt5A8B.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6085.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6086.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6087.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6088.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6089.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt608A.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6BED.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6BFD.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6BFE.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6BFF.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6C00.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6C01.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt76A6.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt76A7.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt76A8.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt76A9.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt76AA.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt76AB.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt7CB5.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt7CC5.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt7CC6.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt7CC7.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt7CC8.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt7CC9.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt818E.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt818F.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8190.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8191.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8192.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8193.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8C7D.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8C7E.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8C7F.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8C80.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8C81.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8C82.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt9063.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt9064.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt9065.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt9066.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt9067.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt9068.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttDE7C.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttDE7D.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttDE7E.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttDE7F.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttDE80.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttDE90.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttE94B.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttE94C.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttE94D.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttE95D.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttE95E.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttE95F.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttEDFA.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttEDFB.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttEDFC.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttEDFD.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttEDFE.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttEDFF.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttF9D2.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttF9D3.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttF9D4.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttF9D5.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttF9D6.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttF9E7.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\VolumeHigh.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\VolumeLow.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\~4030303741.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\~54C9.bat => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\~54C9.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\~600173341.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\~CE96.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\~DF3833E74A4FAA272D.TMP => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\{8DA4D558-FDA3-4DC2-837E-14DD5C9FBF7A}\Disk1\setup.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\{8DA4D558-FDA3-4DC2-837E-14DD5C9FBF7A}\Disk1\Win7\setup.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\_WOC\Reports.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\Setup0000177c\OSETUP.DLL => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\MATS-Temp\Results\Poradce při potížích s instalací či odinstalací programu_result.cab => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\HP Support Framework\HPSF_Config1.dll => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\6728_793\ChromeRecovery.exe => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\6728_793\GoogleUpdateSetup.exe => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\6728_793\manifest.fingerprint => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\6728_793\manifest.json => Moved successfully.
Could not move "C:\Users\rekoj 666\AppData\Local\Temp" directory. => Scheduled to move on reboot.
=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-10-19 21:36:37)<=
C:\Users\rekoj 666\AppData\Local\Temp\FXSAPIDebugLogFile.txt => Is moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp => Moved successfully.
==== End of Fixlog ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 19-10-2014
Ran by rekoj 666 at 2014-10-19 21:32:48 Run:1
Running from C:\Users\rekoj 666\Desktop
Loaded Profile: rekoj 666 (Available profiles: rekoj 666 & Nouzák & Guest)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [Facebook Update] => C:\Users\rekoj 666\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-01-07] (Facebook Inc.)
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\...\Run: [System-boot] => C:\Windows\inf\SYSTEM-x32.exe [454144 2014-10-15] ()
URLSearchHook: HKCU - (No Name) - {95289393-33EA-4F8D-B952-483415B9C955} - No File
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e}
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
C:\Program Files (x86)\GUM690E.tmp
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA1cf68f3e85eebb.job
C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA.job
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core1cf993fbf7366da.job
C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core.job
C:\Users\rekoj 666\AppData\Local\Temp
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\Software\Microsoft\Windows\CurrentVersion\Run\\Facebook Update => value deleted successfully.
HKU\S-1-5-21-3449663549-1643857791-2925034261-1002\Software\Microsoft\Windows\CurrentVersion\Run\\System-boot => value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{95289393-33EA-4F8D-B952-483415B9C955} => value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
"HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\ToolbarSearchProviderProgress => value deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => value deleted successfully.
"HKCR\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}" => Key not found.
"HKCR\PROTOCOLS\Handler\skype-ie-addon-data" => Key deleted successfully.
"HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => Key not found.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
C:\Program Files (x86)\GUM690E.tmp => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA1cf68f3e85eebb.job => Moved successfully.
C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002UA.job => Moved successfully.
C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core1cf993fbf7366da.job => Moved successfully.
C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3449663549-1643857791-2925034261-1002Core.job => Moved successfully.
"C:\Users\rekoj 666\AppData\Local\Temp" directory move:
C:\Users\rekoj 666\AppData\Local\Temp\AdobeARM.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\au-descriptor-1.7.0_67-b01.xml => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\au-descriptor-1.7.0_71-b14.xml => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\AUCHECK_PARSER.txt => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\bcmwl.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\BrightnessDown.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\BrightnessUp.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\chrome_installer.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_7AZSYWywr5eDrYa => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_DOQ0g3NPuhrheTX => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_dScnyL4iwcgTkum => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_ihYUjYk2wIyLUvx => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_j3JA4Y4pHhhRVvb => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_mKBMEWVF9xhVWxd => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_mOL5g36LCkqcLNb => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_Ua8K4mq1f7U4aF4 => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_Ve8FlazryaFfipF => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_z7XasBVZVCYc4Xk => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\etilqs_ZG24TB9jhtdk58f => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\Extract.exe => Moved successfully.
Could not move "C:\Users\rekoj 666\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => Scheduled to move on reboot.
C:\Users\rekoj 666\AppData\Local\Temp\HPHKS_BrightnessDown.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\HPHKS_BrightnessUp.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\HPHKS_Mute.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\HPHKS_VolumeHigh.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\HPHKS_VolumeLow.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\HPSAActionItems.xml => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\JAUReg.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\JavaDeployReg.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\java_install_reg.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\java_install_sp.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\jinstall.cfg => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\jusched.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\modules00 => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\modules11 => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\Mute.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\PDApp.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\RD3BA9.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\RDED79.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\RPR_Patch_Repair.txt => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SetupExe(20141017103948177C).log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SetupExe(20141018110233CBC).log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SetupExe(2014101811135417A4).log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SetupExe(20141019122440CA0).log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SetupExe(20141019122708A04).log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SP50030.exe => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\SP63944.exe => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt260E.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt260F.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt2610.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt2611.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt2612.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt2613.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt4D43.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt4D44.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt4D45.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt4D46.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt4D47.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt4D48.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt5A86.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt5A87.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt5A88.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt5A89.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt5A8A.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt5A8B.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6085.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6086.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6087.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6088.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6089.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt608A.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6BED.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6BFD.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6BFE.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6BFF.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6C00.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt6C01.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt76A6.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt76A7.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt76A8.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt76A9.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt76AA.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt76AB.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt7CB5.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt7CC5.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt7CC6.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt7CC7.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt7CC8.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt7CC9.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt818E.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt818F.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8190.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8191.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8192.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8193.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8C7D.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8C7E.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8C7F.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8C80.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8C81.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt8C82.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt9063.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt9064.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt9065.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt9066.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt9067.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\utt9068.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttDE7C.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttDE7D.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttDE7E.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttDE7F.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttDE80.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttDE90.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttE94B.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttE94C.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttE94D.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttE95D.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttE95E.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttE95F.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttEDFA.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttEDFB.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttEDFC.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttEDFD.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttEDFE.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttEDFF.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttF9D2.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttF9D3.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttF9D4.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttF9D5.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttF9D6.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\uttF9E7.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\VolumeHigh.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\VolumeLow.ico => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\~4030303741.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\~54C9.bat => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\~54C9.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\~600173341.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\~CE96.tmp => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\~DF3833E74A4FAA272D.TMP => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\{8DA4D558-FDA3-4DC2-837E-14DD5C9FBF7A}\Disk1\setup.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\{8DA4D558-FDA3-4DC2-837E-14DD5C9FBF7A}\Disk1\Win7\setup.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\_WOC\Reports.log => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\Setup0000177c\OSETUP.DLL => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\MATS-Temp\Results\Poradce při potížích s instalací či odinstalací programu_result.cab => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\HP Support Framework\HPSF_Config1.dll => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\6728_793\ChromeRecovery.exe => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\6728_793\GoogleUpdateSetup.exe => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\6728_793\manifest.fingerprint => Moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp\6728_793\manifest.json => Moved successfully.
Could not move "C:\Users\rekoj 666\AppData\Local\Temp" directory. => Scheduled to move on reboot.
=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-10-19 21:36:37)<=
C:\Users\rekoj 666\AppData\Local\Temp\FXSAPIDebugLogFile.txt => Is moved successfully.
C:\Users\rekoj 666\AppData\Local\Temp => Moved successfully.
==== End of Fixlog ====
- Rudy
- Site Admin
- Příspěvky: 119547
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Nelze odinstalovat ani opravit office 2010
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Nelze odinstalovat ani opravit office 2010
Bohužel se stále nedaří odinstalovat ten svazek s MS Office. Co je divné, že to stále píše, že probíhá nějaká update pro Microsoft Word 2010 pro 32bit systém, přitom mám 64bit a ve správci úloh nic takového vidět nejde. Už jsem z toho celkem zoufalý, jelikož bych ten office zítra chtěl využívat a nemůžu nic. Nový tam nenainstaluji a starý nemůžu odinstalovat. Nějaký nápad? Děkuji za něj předem.
- Rudy
- Site Admin
- Příspěvky: 119547
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Nelze odinstalovat ani opravit office 2010
Pak nezbude, nic jiného, než to, co jsem psal:
Možná by technická podpora MS mohla něco vědět. Po virové stránce je PC čistý.Rudy píše:Tak to není dobrá zpráva. Občas se stane, že odinstalátor nefunguje. Pokud tam nejsou office2010 dlouho, šlo by to vyřešit obnovou systému před datum instalace. Jinak bude nutné odmazat ručně z registry vše, co se jich týká. Návod: http://forum.viry.cz/viewtopic.php?f=46&t=2791 . Potom vymazat jejich adresář a zkusit novou instalaci. Můžeme se podívyt, co tam běží a případně vyčistit.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Nelze odinstalovat ani opravit office 2010
Děkuji za pomoc. Zkusím tedy kontaktovat podporu microsoftu a uvidím zdali budou schopni mi pomoci.
- Rudy
- Site Admin
- Příspěvky: 119547
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Nelze odinstalovat ani opravit office 2010
OK, nemáte zač! 

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.