
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Zaseknutí počítače při načítání obrazovky
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zaseknutí počítače při načítání obrazovky
Ahoj, včera jsem odinstalovával jednu aplikaci, ale jelikož jsem vůl, tak sem si k té odinstalaci zapnul i stream a takovéto blbosti, počítač se zaseknul, vypnul a teď když ho chci zapnout, se strašně dlouho dopracovává k tomu jak tam musím zadat heslo, když tedy zadám heslo, načítá se obrazovka, ta se buď načte, ale nereaguje, prostě nelze na nic klikat, ani ikony tam nemám, nebo se nenačte vůbec (černá obrazovka). Prosím o pomoc!
RSIT : Logfile of random's system information tool 1.10 (written by random/random)
Run by Petr at 2015-01-02 10:34:00
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 333 GB (72%) free of 461 GB
Total RAM: 3835 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:34:05, on 2.1.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17496)
Boot mode: Safe mode with network support
Running processes:
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Petr.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Petr\Downloads\RSIT.exe
C:\Program Files (x86)\trend micro\Petr.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Petr\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AMD Reservation Manager - Advanced Micro Devices - C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
O23 - Service: Atheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP Auto (HPAuto) - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: XobniService - Xobni Corporation - C:\Program Files (x86)\Xobni\XobniService.exe
--
End of file - 11320 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\HPCeeScheduleForPetr.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForPetr (null)
=========Mozilla firefox=========
ProfilePath - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\faqsxm5w.default
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@t.garena.com/garenatalk]
"Description"=Garena Talk Plugin
"Path"=C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0]
"Description"=WildTangent Games App Presence Detector Plugin
"Path"=C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-04-13 60576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-01 1089288]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-01 1089288]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-04 336384]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2011-02-01 656920]
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-03-05 578944]
"HPOSD"=C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [2011-08-19 379960]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Spotify Web Helper"=C:\Users\Petr\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-11-16 1514040]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
"vidc.tscc"=C:\Windows\SysWOW64\tsccvid.dll
"vidc.tsc2"=C:\Windows\SysWOW64\tsc2_codec32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-01-02 10:34:00 ----D---- C:\Program Files (x86)\trend micro
2015-01-02 10:19:25 ----D---- C:\rsit
2015-01-02 10:10:34 ----A---- C:\Windows\ntbtlog.txt
2015-01-01 20:41:45 ----D---- C:\Program Files (x86)\VS Revo Group
2015-01-01 20:22:41 ----D---- C:\Windows\pss
2014-12-29 19:43:00 ----D---- C:\Users\Petr\AppData\Roaming\Curse Client
2014-12-29 19:41:53 ----D---- C:\Users\Petr\AppData\Roaming\Curse
2014-12-29 10:52:36 ----D---- C:\Users\Petr\AppData\Roaming\Curse Advertising
2014-12-25 10:14:22 ----D---- C:\Program Files (x86)\Rusted Klient 1.8.1
2014-12-20 13:32:08 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-12-18 21:23:40 ----D---- C:\Program Files (x86)\Cok Software
2014-12-18 13:37:53 ----A---- C:\Windows\SysWOW64\ieUnatt.exe
2014-12-16 21:50:37 ----D---- C:\Games
2014-12-16 14:22:19 ----D---- C:\Gramblr
2014-12-16 13:43:38 ----D---- C:\Users\Petr\AppData\Roaming\PhotoScape
2014-12-16 13:43:14 ----D---- C:\Program Files (x86)\PhotoScape
2014-12-14 15:59:29 ----D---- C:\Program Files (x86)\Common Files\Java
2014-12-14 15:59:11 ----A---- C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-12-14 15:57:00 ----D---- C:\ProgramData\Oracle
2014-12-10 16:15:56 ----D---- C:\Users\Petr\AppData\Roaming\Unity
2014-12-10 15:38:13 ----A---- C:\Windows\SysWOW64\rrinstaller.exe
2014-12-10 15:38:13 ----A---- C:\Windows\SysWOW64\mfpmp.exe
2014-12-10 15:38:13 ----A---- C:\Windows\SysWOW64\mferror.dll
2014-12-10 15:38:12 ----A---- C:\Windows\SysWOW64\mfps.dll
2014-12-10 15:38:12 ----A---- C:\Windows\SysWOW64\mf.dll
2014-12-10 14:09:20 ----A---- C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-10 14:09:09 ----A---- C:\Windows\SysWOW64\iernonce.dll
2014-12-10 14:09:09 ----A---- C:\Windows\SysWOW64\ieetwproxystub.dll
2014-12-10 14:09:08 ----A---- C:\Windows\SysWOW64\urlmon.dll
2014-12-10 14:09:08 ----A---- C:\Windows\SysWOW64\mshtmled.dll
2014-12-10 14:09:08 ----A---- C:\Windows\SysWOW64\msfeeds.dll
2014-12-10 14:09:08 ----A---- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-12-10 14:09:08 ----A---- C:\Windows\SysWOW64\iedkcs32.dll
2014-12-10 14:09:08 ----A---- C:\Windows\SysWOW64\dxtrans.dll
2014-12-10 14:09:07 ----A---- C:\Windows\SysWOW64\mshtml.dll
2014-12-10 14:09:06 ----A---- C:\Windows\SysWOW64\iesetup.dll
2014-12-10 14:09:06 ----A---- C:\Windows\SysWOW64\ieapfltr.dll
2014-12-10 14:09:05 ----A---- C:\Windows\SysWOW64\jsproxy.dll
2014-12-10 14:09:05 ----A---- C:\Windows\SysWOW64\jscript9diag.dll
2014-12-10 14:09:05 ----A---- C:\Windows\SysWOW64\iertutil.dll
2014-12-10 14:09:04 ----A---- C:\Windows\SysWOW64\ieui.dll
2014-12-10 14:09:04 ----A---- C:\Windows\SysWOW64\ieframe.dll
2014-12-10 14:09:04 ----A---- C:\Windows\SysWOW64\dxtmsft.dll
2014-12-10 14:09:01 ----A---- C:\Windows\SysWOW64\wininet.dll
2014-12-10 14:09:01 ----A---- C:\Windows\SysWOW64\vbscript.dll
2014-12-10 14:09:01 ----A---- C:\Windows\SysWOW64\mshtmlmedia.dll
2014-12-10 14:09:01 ----A---- C:\Windows\SysWOW64\jscript9.dll
2014-12-10 14:09:00 ----A---- C:\Windows\SysWOW64\msrating.dll
2014-12-10 14:09:00 ----A---- C:\Windows\SysWOW64\MshtmlDac.dll
2014-12-10 14:08:27 ----A---- C:\Windows\SysWOW64\charmap.exe
2014-12-10 14:08:26 ----A---- C:\Windows\SysWOW64\WsmWmiPl.dll
2014-12-10 14:08:26 ----A---- C:\Windows\SysWOW64\WsmSvc.dll
2014-12-10 14:08:26 ----A---- C:\Windows\SysWOW64\WsmAuto.dll
2014-12-10 14:08:26 ----A---- C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2014-12-10 14:08:26 ----A---- C:\Windows\SysWOW64\WSManHTTPConfig.exe
2014-12-10 14:08:21 ----A---- C:\Windows\SysWOW64\tzres.dll
2014-12-07 11:47:52 ----D---- C:\Users\Petr\AppData\Roaming\Awesomium
2014-12-07 11:46:35 ----D---- C:\ProgramData\Hi-Rez Studios
2014-12-07 11:46:02 ----D---- C:\Program Files (x86)\Hi-Rez Studios
======List of files/folders modified in the last 1 month======
2015-01-02 10:34:00 ----RD---- C:\Program Files (x86)
2015-01-02 10:19:26 ----RD---- C:\Program Files
2015-01-02 10:10:34 ----D---- C:\Windows
2015-01-02 10:07:31 ----D---- C:\Windows\Temp
2015-01-02 10:07:13 ----D---- C:\ProgramData\PDFC
2015-01-02 10:07:04 ----D---- C:\Windows\Prefetch
2015-01-02 09:56:59 ----D---- C:\Windows\Tasks
2015-01-02 09:56:57 ----D---- C:\Windows\inf
2015-01-02 09:56:56 ----D---- C:\Program Files (x86)\Steam
2015-01-02 09:56:37 ----D---- C:\Windows\registration
2015-01-01 20:44:49 ----SHD---- C:\System Volume Information
2015-01-01 20:24:56 ----D---- C:\Users\Petr\AppData\Roaming\TS3Client
2014-12-29 19:43:09 ----SHD---- C:\Windows\Installer
2014-12-29 19:43:09 ----SHD---- C:\Config.Msi
2014-12-29 19:43:04 ----SD---- C:\Users\Petr\AppData\Roaming\Microsoft
2014-12-25 10:17:47 ----D---- C:\Windows\SysWOW64
2014-12-25 10:17:16 ----D---- C:\ProgramData\Package Cache
2014-12-24 23:01:24 ----D---- C:\Windows\winsxs
2014-12-24 22:31:22 ----D---- C:\Windows\rescache
2014-12-24 22:29:53 ----SD---- C:\ProgramData\Microsoft
2014-12-24 22:21:55 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-12-24 22:21:53 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-12-24 22:21:53 ----D---- C:\Program Files (x86)\Windows Media Player
2014-12-24 22:21:53 ----D---- C:\Program Files (x86)\Windows Mail
2014-12-24 22:21:53 ----D---- C:\Program Files (x86)\Common Files\System
2014-12-24 22:21:51 ----D---- C:\Windows\servicing
2014-12-24 22:21:51 ----D---- C:\Program Files (x86)\Windows Defender
2014-12-24 22:21:50 ----D---- C:\Windows\SysWOW64\winrm
2014-12-24 22:21:50 ----D---- C:\Windows\SysWOW64\slmgr
2014-12-24 22:21:50 ----D---- C:\Windows\SysWOW64\sk-SK
2014-12-24 22:21:50 ----D---- C:\Windows\SysWOW64\migwiz
2014-12-24 22:21:50 ----D---- C:\Windows\SysWOW64\en
2014-12-24 22:21:50 ----D---- C:\Windows\ehome
2014-12-24 22:21:25 ----D---- C:\Windows\SysWOW64\drivers
2014-12-24 22:21:24 ----D---- C:\Windows\SysWOW64\drivers\en-US
2014-12-24 22:21:23 ----D---- C:\Windows\SysWOW64\en-US
2014-12-24 22:21:00 ----D---- C:\Windows\SysWOW64\DriverStore
2014-12-24 22:20:59 ----D---- C:\Windows\SysWOW64\WCN
2014-12-24 22:20:59 ----D---- C:\Windows\SysWOW64\Printing_Admin_Scripts
2014-12-24 22:20:59 ----D---- C:\Windows\SysWOW64\Dism
2014-12-24 22:20:55 ----D---- C:\Windows\en-US
2014-12-24 22:17:07 ----D---- C:\Windows\Speech
2014-12-24 11:16:57 ----D---- C:\Windows\Logs
2014-12-20 13:14:50 ----D---- C:\Users\Petr\AppData\Roaming\uTorrent
2014-12-18 15:21:33 ----D---- C:\Windows\System32
2014-12-16 19:49:30 ----D---- C:\Users\Petr\AppData\Roaming\GarenaPlus
2014-12-16 19:49:29 ----D---- C:\ProgramData\GarenaMessenger
2014-12-16 14:50:18 ----D---- C:\ProgramData\Origin
2014-12-16 14:49:57 ----D---- C:\Program Files (x86)\Origin
2014-12-16 12:04:29 ----D---- C:\Users\Petr\AppData\Roaming\Spotify
2014-12-14 16:02:56 ----HD---- C:\ProgramData
2014-12-14 16:02:43 ----D---- C:\Program Files (x86)\Java
2014-12-14 16:02:30 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-12-14 15:59:29 ----D---- C:\Program Files (x86)\Common Files
2014-12-14 15:57:28 ----A---- C:\Windows\SysWOW64\javaws.exe
2014-12-14 15:57:28 ----A---- C:\Windows\SysWOW64\javaw.exe
2014-12-14 15:57:28 ----A---- C:\Windows\SysWOW64\java.exe
2014-12-13 21:24:54 ----D---- C:\Windows\Minidump
2014-12-13 13:35:14 ----RSD---- C:\Windows\assembly
2014-12-13 08:53:33 ----A---- C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-12 13:42:11 ----D---- C:\Windows\SysWOW64\cs-CZ
2014-12-10 15:48:30 ----D---- C:\Windows\AppCompat
2014-12-10 15:48:15 ----D---- C:\Windows\PolicyDefinitions
2014-12-10 15:48:09 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-10 15:40:27 ----D---- C:\Windows\debug
2014-12-07 11:46:00 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-06 13:42:53 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-12-05 20:14:44 ----D---- C:\Program Files (x86)\Google
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys []
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys []
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie64.sys []
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys []
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys []
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys []
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys []
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys []
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys []
S1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys []
S1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys []
S2 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2014-10-08 122072]
S2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys []
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys []
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys []
S3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys []
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys []
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys []
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys []
S3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys []
S3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys []
S3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys []
S3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys []
S3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys []
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys []
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys []
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys []
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys []
S3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys []
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys []
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys []
S3 RSPCIESTOR;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys []
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys []
S3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys []
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS []
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS []
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys []
S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%; C:\Windows\system32\drivers\TsUsbGD.sys []
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys []
S3 xhunter1;xhunter1; \??\C:\Windows\xhunter1.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
S2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
S2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe []
S2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-03-04 354304]
S2 AMD Reservation Manager;AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [2010-06-17 194496]
S2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-04-13 146592]
S2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2011-04-13 77984]
S2 BstHdAndroidSvc;BlueStacks Android Service; C:\Program Files (x86)\BlueStacks\HD-Service.exe [2014-10-08 409304]
S2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2014-10-08 388824]
S2 BstHdUpdaterSvc;BlueStacks Updater Service; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [2014-10-08 782040]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2014-10-01 1349576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-05 107912]
S2 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2014-12-15 9216]
S2 HP Health Check Service;HP Health Check Service; C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [2010-12-01 126520]
S2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-07-21 103992]
S2 HPAuto;HP Auto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [2011-02-16 682040]
S2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-09-01 227896]
S2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-03-05 35200]
S2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2010-12-28 1817088]
S2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-11-21 1871160]
S2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-02-01 1127448]
S2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2014-11-09 75136]
S2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-02-25 249648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-13 267440]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-01 183560]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-05 107912]
S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2011-09-01 991288]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe /V []
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-10-28 114288]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2014-12-16 1900400]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-11-18 833728]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
RSIT : Logfile of random's system information tool 1.10 (written by random/random)
Run by Petr at 2015-01-02 10:34:00
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 333 GB (72%) free of 461 GB
Total RAM: 3835 MB (73% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:34:05, on 2.1.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17496)
Boot mode: Safe mode with network support
Running processes:
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Petr.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Petr\Downloads\RSIT.exe
C:\Program Files (x86)\trend micro\Petr.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
O4 - HKLM\..\Run: [HPOSD] C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
O4 - HKCU\..\Run: [Spotify Web Helper] "C:\Users\Petr\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AMD Reservation Manager - Advanced Micro Devices - C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
O23 - Service: Atheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: HP Wireless Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
O23 - Service: HP Auto (HPAuto) - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe
O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HPWMISVC - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: XobniService - Xobni Corporation - C:\Program Files (x86)\Xobni\XobniService.exe
--
End of file - 11320 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\HPCeeScheduleForPetr.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForPetr (null)
=========Mozilla firefox=========
ProfilePath - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\faqsxm5w.default
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.235 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@esn/npbattlelog,version=2.5.1]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@t.garena.com/garenatalk]
"Description"=Garena Talk Plugin
"Path"=C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0]
"Description"=WildTangent Games App Presence Detector Plugin
"Path"=C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-04-13 60576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Bing Bar Helper - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-01 1089288]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8dcb7100-df86-4384-8842-8fa844297b3f} - Bing Bar - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-01 1089288]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-04 336384]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2011-02-01 656920]
"HP Quick Launch"=C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [2012-03-05 578944]
"HPOSD"=C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [2011-08-19 379960]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Spotify Web Helper"=C:\Users\Petr\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-11-16 1514040]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\SysWOW64\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"mixer2"=wdmaud.drv
"midi2"=wdmaud.drv
"vidc.tscc"=C:\Windows\SysWOW64\tsccvid.dll
"vidc.tsc2"=C:\Windows\SysWOW64\tsc2_codec32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2015-01-02 10:34:00 ----D---- C:\Program Files (x86)\trend micro
2015-01-02 10:19:25 ----D---- C:\rsit
2015-01-02 10:10:34 ----A---- C:\Windows\ntbtlog.txt
2015-01-01 20:41:45 ----D---- C:\Program Files (x86)\VS Revo Group
2015-01-01 20:22:41 ----D---- C:\Windows\pss
2014-12-29 19:43:00 ----D---- C:\Users\Petr\AppData\Roaming\Curse Client
2014-12-29 19:41:53 ----D---- C:\Users\Petr\AppData\Roaming\Curse
2014-12-29 10:52:36 ----D---- C:\Users\Petr\AppData\Roaming\Curse Advertising
2014-12-25 10:14:22 ----D---- C:\Program Files (x86)\Rusted Klient 1.8.1
2014-12-20 13:32:08 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2014-12-18 21:23:40 ----D---- C:\Program Files (x86)\Cok Software
2014-12-18 13:37:53 ----A---- C:\Windows\SysWOW64\ieUnatt.exe
2014-12-16 21:50:37 ----D---- C:\Games
2014-12-16 14:22:19 ----D---- C:\Gramblr
2014-12-16 13:43:38 ----D---- C:\Users\Petr\AppData\Roaming\PhotoScape
2014-12-16 13:43:14 ----D---- C:\Program Files (x86)\PhotoScape
2014-12-14 15:59:29 ----D---- C:\Program Files (x86)\Common Files\Java
2014-12-14 15:59:11 ----A---- C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-12-14 15:57:00 ----D---- C:\ProgramData\Oracle
2014-12-10 16:15:56 ----D---- C:\Users\Petr\AppData\Roaming\Unity
2014-12-10 15:38:13 ----A---- C:\Windows\SysWOW64\rrinstaller.exe
2014-12-10 15:38:13 ----A---- C:\Windows\SysWOW64\mfpmp.exe
2014-12-10 15:38:13 ----A---- C:\Windows\SysWOW64\mferror.dll
2014-12-10 15:38:12 ----A---- C:\Windows\SysWOW64\mfps.dll
2014-12-10 15:38:12 ----A---- C:\Windows\SysWOW64\mf.dll
2014-12-10 14:09:20 ----A---- C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-10 14:09:09 ----A---- C:\Windows\SysWOW64\iernonce.dll
2014-12-10 14:09:09 ----A---- C:\Windows\SysWOW64\ieetwproxystub.dll
2014-12-10 14:09:08 ----A---- C:\Windows\SysWOW64\urlmon.dll
2014-12-10 14:09:08 ----A---- C:\Windows\SysWOW64\mshtmled.dll
2014-12-10 14:09:08 ----A---- C:\Windows\SysWOW64\msfeeds.dll
2014-12-10 14:09:08 ----A---- C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-12-10 14:09:08 ----A---- C:\Windows\SysWOW64\iedkcs32.dll
2014-12-10 14:09:08 ----A---- C:\Windows\SysWOW64\dxtrans.dll
2014-12-10 14:09:07 ----A---- C:\Windows\SysWOW64\mshtml.dll
2014-12-10 14:09:06 ----A---- C:\Windows\SysWOW64\iesetup.dll
2014-12-10 14:09:06 ----A---- C:\Windows\SysWOW64\ieapfltr.dll
2014-12-10 14:09:05 ----A---- C:\Windows\SysWOW64\jsproxy.dll
2014-12-10 14:09:05 ----A---- C:\Windows\SysWOW64\jscript9diag.dll
2014-12-10 14:09:05 ----A---- C:\Windows\SysWOW64\iertutil.dll
2014-12-10 14:09:04 ----A---- C:\Windows\SysWOW64\ieui.dll
2014-12-10 14:09:04 ----A---- C:\Windows\SysWOW64\ieframe.dll
2014-12-10 14:09:04 ----A---- C:\Windows\SysWOW64\dxtmsft.dll
2014-12-10 14:09:01 ----A---- C:\Windows\SysWOW64\wininet.dll
2014-12-10 14:09:01 ----A---- C:\Windows\SysWOW64\vbscript.dll
2014-12-10 14:09:01 ----A---- C:\Windows\SysWOW64\mshtmlmedia.dll
2014-12-10 14:09:01 ----A---- C:\Windows\SysWOW64\jscript9.dll
2014-12-10 14:09:00 ----A---- C:\Windows\SysWOW64\msrating.dll
2014-12-10 14:09:00 ----A---- C:\Windows\SysWOW64\MshtmlDac.dll
2014-12-10 14:08:27 ----A---- C:\Windows\SysWOW64\charmap.exe
2014-12-10 14:08:26 ----A---- C:\Windows\SysWOW64\WsmWmiPl.dll
2014-12-10 14:08:26 ----A---- C:\Windows\SysWOW64\WsmSvc.dll
2014-12-10 14:08:26 ----A---- C:\Windows\SysWOW64\WsmAuto.dll
2014-12-10 14:08:26 ----A---- C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2014-12-10 14:08:26 ----A---- C:\Windows\SysWOW64\WSManHTTPConfig.exe
2014-12-10 14:08:21 ----A---- C:\Windows\SysWOW64\tzres.dll
2014-12-07 11:47:52 ----D---- C:\Users\Petr\AppData\Roaming\Awesomium
2014-12-07 11:46:35 ----D---- C:\ProgramData\Hi-Rez Studios
2014-12-07 11:46:02 ----D---- C:\Program Files (x86)\Hi-Rez Studios
======List of files/folders modified in the last 1 month======
2015-01-02 10:34:00 ----RD---- C:\Program Files (x86)
2015-01-02 10:19:26 ----RD---- C:\Program Files
2015-01-02 10:10:34 ----D---- C:\Windows
2015-01-02 10:07:31 ----D---- C:\Windows\Temp
2015-01-02 10:07:13 ----D---- C:\ProgramData\PDFC
2015-01-02 10:07:04 ----D---- C:\Windows\Prefetch
2015-01-02 09:56:59 ----D---- C:\Windows\Tasks
2015-01-02 09:56:57 ----D---- C:\Windows\inf
2015-01-02 09:56:56 ----D---- C:\Program Files (x86)\Steam
2015-01-02 09:56:37 ----D---- C:\Windows\registration
2015-01-01 20:44:49 ----SHD---- C:\System Volume Information
2015-01-01 20:24:56 ----D---- C:\Users\Petr\AppData\Roaming\TS3Client
2014-12-29 19:43:09 ----SHD---- C:\Windows\Installer
2014-12-29 19:43:09 ----SHD---- C:\Config.Msi
2014-12-29 19:43:04 ----SD---- C:\Users\Petr\AppData\Roaming\Microsoft
2014-12-25 10:17:47 ----D---- C:\Windows\SysWOW64
2014-12-25 10:17:16 ----D---- C:\ProgramData\Package Cache
2014-12-24 23:01:24 ----D---- C:\Windows\winsxs
2014-12-24 22:31:22 ----D---- C:\Windows\rescache
2014-12-24 22:29:53 ----SD---- C:\ProgramData\Microsoft
2014-12-24 22:21:55 ----D---- C:\Program Files (x86)\Windows Sidebar
2014-12-24 22:21:53 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2014-12-24 22:21:53 ----D---- C:\Program Files (x86)\Windows Media Player
2014-12-24 22:21:53 ----D---- C:\Program Files (x86)\Windows Mail
2014-12-24 22:21:53 ----D---- C:\Program Files (x86)\Common Files\System
2014-12-24 22:21:51 ----D---- C:\Windows\servicing
2014-12-24 22:21:51 ----D---- C:\Program Files (x86)\Windows Defender
2014-12-24 22:21:50 ----D---- C:\Windows\SysWOW64\winrm
2014-12-24 22:21:50 ----D---- C:\Windows\SysWOW64\slmgr
2014-12-24 22:21:50 ----D---- C:\Windows\SysWOW64\sk-SK
2014-12-24 22:21:50 ----D---- C:\Windows\SysWOW64\migwiz
2014-12-24 22:21:50 ----D---- C:\Windows\SysWOW64\en
2014-12-24 22:21:50 ----D---- C:\Windows\ehome
2014-12-24 22:21:25 ----D---- C:\Windows\SysWOW64\drivers
2014-12-24 22:21:24 ----D---- C:\Windows\SysWOW64\drivers\en-US
2014-12-24 22:21:23 ----D---- C:\Windows\SysWOW64\en-US
2014-12-24 22:21:00 ----D---- C:\Windows\SysWOW64\DriverStore
2014-12-24 22:20:59 ----D---- C:\Windows\SysWOW64\WCN
2014-12-24 22:20:59 ----D---- C:\Windows\SysWOW64\Printing_Admin_Scripts
2014-12-24 22:20:59 ----D---- C:\Windows\SysWOW64\Dism
2014-12-24 22:20:55 ----D---- C:\Windows\en-US
2014-12-24 22:17:07 ----D---- C:\Windows\Speech
2014-12-24 11:16:57 ----D---- C:\Windows\Logs
2014-12-20 13:14:50 ----D---- C:\Users\Petr\AppData\Roaming\uTorrent
2014-12-18 15:21:33 ----D---- C:\Windows\System32
2014-12-16 19:49:30 ----D---- C:\Users\Petr\AppData\Roaming\GarenaPlus
2014-12-16 19:49:29 ----D---- C:\ProgramData\GarenaMessenger
2014-12-16 14:50:18 ----D---- C:\ProgramData\Origin
2014-12-16 14:49:57 ----D---- C:\Program Files (x86)\Origin
2014-12-16 12:04:29 ----D---- C:\Users\Petr\AppData\Roaming\Spotify
2014-12-14 16:02:56 ----HD---- C:\ProgramData
2014-12-14 16:02:43 ----D---- C:\Program Files (x86)\Java
2014-12-14 16:02:30 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-12-14 15:59:29 ----D---- C:\Program Files (x86)\Common Files
2014-12-14 15:57:28 ----A---- C:\Windows\SysWOW64\javaws.exe
2014-12-14 15:57:28 ----A---- C:\Windows\SysWOW64\javaw.exe
2014-12-14 15:57:28 ----A---- C:\Windows\SysWOW64\java.exe
2014-12-13 21:24:54 ----D---- C:\Windows\Minidump
2014-12-13 13:35:14 ----RSD---- C:\Windows\assembly
2014-12-13 08:53:33 ----A---- C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-12 13:42:11 ----D---- C:\Windows\SysWOW64\cs-CZ
2014-12-10 15:48:30 ----D---- C:\Windows\AppCompat
2014-12-10 15:48:15 ----D---- C:\Windows\PolicyDefinitions
2014-12-10 15:48:09 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-10 15:40:27 ----D---- C:\Windows\debug
2014-12-07 11:46:00 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-06 13:42:53 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-12-05 20:14:44 ----D---- C:\Program Files (x86)\Google
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys []
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys []
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie64.sys []
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys []
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys []
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys []
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys []
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys []
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys []
S1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys []
S1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys []
S2 BstHdDrv;BlueStacks Hypervisor; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [2014-10-08 122072]
S2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys []
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys []
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys []
S3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys []
S3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys []
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys []
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl664.sys []
S3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys []
S3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys []
S3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys []
S3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys []
S3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys []
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys []
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys []
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys []
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys []
S3 clwvd;CyberLink WebCam Virtual Driver; C:\Windows\system32\DRIVERS\clwvd.sys []
S3 EagleX64;EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys []
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x64.sys []
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys []
S3 RSPCIESTOR;Realtek PCIE CardReader Driver; C:\Windows\system32\DRIVERS\RtsPStor.sys []
S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys []
S3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys []
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL6.SYS []
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV6.SYS []
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT6.SYS []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys []
S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%; C:\Windows\system32\drivers\TsUsbGD.sys []
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys []
S3 xhunter1;xhunter1; \??\C:\Windows\xhunter1.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
S2 AERTFilters;Andrea RT Filters Service; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2009-11-18 98208]
S2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe []
S2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-03-04 354304]
S2 AMD Reservation Manager;AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [2010-06-17 194496]
S2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-04-13 146592]
S2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2011-04-13 77984]
S2 BstHdAndroidSvc;BlueStacks Android Service; C:\Program Files (x86)\BlueStacks\HD-Service.exe [2014-10-08 409304]
S2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [2014-10-08 388824]
S2 BstHdUpdaterSvc;BlueStacks Updater Service; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [2014-10-08 782040]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2014-10-01 1349576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-05 107912]
S2 HiPatchService;Hi-Rez Studios Authenticate and Update Service; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2014-12-15 9216]
S2 HP Health Check Service;HP Health Check Service; C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [2010-12-01 126520]
S2 HP Wireless Assistant Service;HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-07-21 103992]
S2 HPAuto;HP Auto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [2011-02-16 682040]
S2 HPDrvMntSvc.exe;HP Quick Synchronization Service; C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-09-01 227896]
S2 HPWMISVC;HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2012-03-05 35200]
S2 IconMan_R;IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2010-12-28 1817088]
S2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-11-21 1871160]
S2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2011-02-01 1127448]
S2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2014-11-09 75136]
S2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE [2011-02-25 249648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-04-03 315008]
S2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-13 267440]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S3 BBSvc;Bing Bar Update Service; C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-01 183560]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-05 107912]
S3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2011-09-01 991288]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe /V []
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2014-10-28 114288]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2014-12-16 1900400]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2014-11-18 833728]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
-----------------EOF-----------------
Re: Zaseknutí počítače při načítání obrazovky
ahoj,
najjednoduchsie bude cez obnovu systemu vratit spat o den-dva
najjednoduchsie bude cez obnovu systemu vratit spat o den-dva
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Zaseknutí počítače při načítání obrazovky
Chvilku počítač fungoval ale na počítači se vůbec nedalo pracovat jak moc byl zasekaný ( po té obnově) Po restartu zase stejný problém, černá obrazovka.
Re: Zaseknutí počítače při načítání obrazovky
vloz log FRST
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Zaseknutí počítače při načítání obrazovky
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-01-2015
Ran by Petr (administrator) on PETR-HP on 02-01-2015 12:21:55
Running from C:\Users\Petr\Desktop
Loaded Profile: Petr (Available profiles: Petr)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Safe Mode (with Networking)
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6602856 2011-01-11] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2480936 2010-12-21] (Synaptics Incorporated)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [627360 2011-04-13] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-04-13] (Atheros Commnucations)
HKLM\...\Run: [HPWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-07-21] (Hewlett-Packard Company)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5595336 2014-10-01] (ESET)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [656920 2011-02-01] (PDF Complete Inc)
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM\...\RunOnce: [NCPluginUpdater] => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\NCPluginUpdater.exe [21720 2014-12-16] (Hewlett-Packard)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\...\Run: [Spotify Web Helper] => C:\Users\Petr\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-11-16] (Spotify Ltd)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
HKU\S-1-5-21-1573231078-231515164-428938053-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
SearchScopes: HKLM -> DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKLM -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKLM-x32 -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKU\S-1-5-21-1573231078-231515164-428938053-1001 -> DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKU\S-1-5-21-1573231078-231515164-428938053-1001 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKU\S-1-5-21-1573231078-231515164-428938053-1001 -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKU\S-1-5-21-1573231078-231515164-428938053-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Tcpip\Parameters: [DhcpNameServer] 94.74.192.252 94.74.192.244
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\faqsxm5w.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\new_plugin\npjp2.dll No File
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll ( Garena)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin HKU\S-1-5-21-1573231078-231515164-428938053-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Petr\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Extension: Adblock Plus - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\faqsxm5w.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-12-05]
Chrome:
=======
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-05]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-12-05]
CHR Extension: (Adblock Plus) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-12-05]
CHR Extension: (Vyhledávání Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-12-05]
CHR Extension: (TastyPlug) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\faccgibalfdoihmenknhpfhldkmgaang [2014-12-05]
CHR Extension: (AdBlock Plus for Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcobmjifdimfbihnbnafhcpmifgmjlka [2014-12-05]
CHR Extension: (Peněženka Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-05]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-12-05]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [354304 2011-03-04] (Advanced Micro Devices, Inc.) [File not signed]
S2 AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [194496 2010-06-17] (Advanced Micro Devices)
S2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [146592 2011-04-13] (Atheros) [File not signed]
S2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [77984 2011-04-13] (Atheros Commnucations) [File not signed]
S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [409304 2014-10-08] (BlueStack Systems, Inc.)
S2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [388824 2014-10-08] (BlueStack Systems, Inc.)
S2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [782040 2014-10-08] (BlueStack Systems, Inc.)
S2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1349576 2014-10-01] (ESET)
S2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2014-12-15] (Hi-Rez Studios) [File not signed]
S2 HPAuto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [682040 2011-02-16] (Hewlett-Packard)
S2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [1817088 2010-12-28] (Realsil Microelectronics Inc.) [File not signed]
S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1900400 2014-12-16] (Electronic Arts)
S2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1127448 2011-02-01] (PDF Complete Inc)
S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-11-09] ()
S2 XobniService; C:\Program Files (x86)\Xobni\XobniService.exe [62184 2011-02-25] (Xobni Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [122072 2014-10-08] (BlueStack Systems)
S1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [243440 2014-10-10] (ESET)
U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [241368 2014-10-10] (ESET)
S1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [169280 2014-10-10] (ESET)
S2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [158968 2014-10-10] (ESET)
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1866080 2012-11-28] ()
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-02 12:21 - 2015-01-02 12:22 - 00013677 _____ () C:\Users\Petr\Desktop\FRST.txt
2015-01-02 12:21 - 2015-01-02 12:21 - 02123264 _____ (Farbar) C:\Users\Petr\Downloads\FRST64.exe
2015-01-02 12:21 - 2015-01-02 12:21 - 02123264 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2015-01-02 12:21 - 2015-01-02 12:21 - 00015327 _____ () C:\Users\Petr\Desktop\LM.bat
2015-01-02 12:20 - 2015-01-02 12:21 - 00000000 ____D () C:\FRST
2015-01-02 12:17 - 2015-01-02 12:21 - 00029696 _____ () C:\Users\Petr\AppData\Local\MSGBOX.EXE
2015-01-02 12:17 - 2015-01-02 12:17 - 00112640 _____ (forum.viry.cz) C:\Users\Petr\Downloads\FRSTLauncher.exe
2015-01-02 12:17 - 2015-01-02 12:17 - 00112640 _____ (forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
2015-01-02 10:34 - 2015-01-02 11:02 - 00000000 ____D () C:\Program Files (x86)\trend micro
2015-01-02 10:19 - 2015-01-02 11:02 - 00000000 ____D () C:\Program Files\trend micro
2015-01-02 10:19 - 2015-01-02 10:34 - 00000000 ____D () C:\rsit
2015-01-01 20:41 - 2015-01-01 20:41 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-12-29 21:28 - 2014-12-29 21:28 - 00951768 _____ () C:\Users\Petr\Downloads\CrackedMinecraftLauncherWindows.rar
2014-12-29 21:26 - 2014-12-29 21:26 - 01893151 _____ () C:\Users\Petr\Downloads\minecraft.jar
2014-12-29 19:43 - 2014-12-31 10:13 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Curse Client
2014-12-29 19:41 - 2014-12-29 19:41 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Curse
2014-12-29 10:52 - 2015-01-02 11:01 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse
2014-12-29 10:52 - 2014-12-29 10:54 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Curse Advertising
2014-12-25 10:21 - 2014-12-25 10:21 - 00000000 ___SH () C:\Users\Petr\AppData\Local\LumaEmu
2014-12-25 10:16 - 2014-12-25 10:16 - 00001956 _____ () C:\Users\Petr\Desktop\Rusted Klient 1.8.1.lnk
2014-12-25 10:16 - 2014-12-25 10:16 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rusted.cz
2014-12-25 10:14 - 2015-01-02 11:02 - 00000000 ____D () C:\Program Files (x86)\Rusted Klient 1.8.1
2014-12-25 10:12 - 2014-12-25 10:13 - 445805476 _____ (Rusted.cz ) C:\Users\Petr\Downloads\Rusted Klient 1.8.1.exe
2014-12-21 14:59 - 2014-12-21 14:59 - 00307983 _____ (Cok Software ) C:\Users\Petr\Downloads\autoclicker_setup (1).exe
2014-12-21 13:03 - 2014-12-21 13:03 - 00001854 _____ () C:\Users\Petr\AppData\Roaming\GhostObjGAFix.xml
2014-12-20 17:18 - 2014-12-20 17:19 - 00021198 _____ () C:\Users\Petr\Documents\Nixx_000000.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000009.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000008.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000007.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000006.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000005.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000004.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000003.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000002.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000001.jpeg
2014-12-20 17:16 - 2014-12-20 17:17 - 00021044 _____ () C:\Users\Petr\Documents\frosty_000000.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000006.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000005.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000004.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000003.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000002.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000001.jpeg
2014-12-20 15:42 - 2014-12-20 15:43 - 00021380 _____ () C:\Users\Petr\Documents\Koprix_000000.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000013.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000012.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000011.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000010.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000009.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000008.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000007.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000006.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000005.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000004.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000003.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000002.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000001.jpeg
2014-12-20 15:36 - 2014-12-20 15:39 - 00021080 _____ () C:\Users\Petr\Documents\Nix0ne_000000.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000013.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000012.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000011.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000010.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000009.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000008.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000007.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000006.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000005.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000004.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000003.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000002.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000001.jpeg
2014-12-20 13:35 - 2014-12-20 14:17 - 386667480 _____ () C:\Users\Petr\Downloads\Mafia-II-čeština-100%-funkční---deadman93.rar
2014-12-20 13:33 - 2014-12-20 13:33 - 00000000 ____D () C:\Users\Petr\AppData\Local\SKIDROW
2014-12-20 13:32 - 2014-12-20 13:32 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-12-20 13:29 - 2014-12-20 13:30 - 35648512 _____ () C:\Users\Petr\Downloads\PhysX-9.12.0613-SystemSoftware.msi
2014-12-20 13:28 - 2014-12-20 13:28 - 00002255 _____ () C:\Users\Petr\Desktop\Mafia 2.lnk
2014-12-20 13:28 - 2014-12-20 13:28 - 00000000 ____D () C:\Users\Petr\AppData\Local\2K Games
2014-12-20 12:23 - 2014-12-20 13:28 - 00000000 ____D () C:\Users\Petr\Downloads\Mafia II + 3 DLCS full game PC ^^nosTEAM^^
2014-12-20 12:20 - 2014-12-20 12:22 - 05304887 _____ () C:\Users\Petr\Downloads\Mafia2.exe
2014-12-19 17:02 - 2014-12-21 19:10 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka
2014-12-18 21:23 - 2014-12-18 21:23 - 00307983 _____ (Cok Software ) C:\Users\Petr\Downloads\autoclicker_setup.exe
2014-12-18 21:23 - 2014-12-18 21:23 - 00002208 _____ () C:\Users\Petr\Desktop\Cok Free Auto Clicker.lnk
2014-12-18 21:23 - 2014-12-18 21:23 - 00000000 ____D () C:\Program Files (x86)\Cok Software
2014-12-18 13:37 - 2014-12-13 06:09 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-12-18 13:37 - 2014-12-13 04:33 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-12-16 22:02 - 2015-01-02 11:02 - 00000000 ____D () C:\Users\Petr\Documents\FIFA 14
2014-12-16 21:59 - 2014-12-16 21:59 - 00001680 _____ () C:\Users\Petr\Desktop\Play FIFA 14 nosTEAM.lnk
2014-12-16 21:50 - 2014-12-16 21:59 - 00000000 ____D () C:\Games
2014-12-16 20:58 - 2014-12-16 21:02 - 00000000 ____D () C:\Users\Petr\Downloads\FIFA 14 PC full game v1.4.0.0 ^^nosTEAM^^
2014-12-16 20:53 - 2014-12-16 20:55 - 08093511 _____ () C:\Users\Petr\Downloads\F1FA-14.exe
2014-12-16 14:22 - 2014-12-16 14:22 - 00000654 _____ () C:\Users\Petr\Desktop\Gramblr.lnk
2014-12-16 14:22 - 2014-12-16 14:22 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gramblr
2014-12-16 14:22 - 2014-12-16 14:22 - 00000000 ____D () C:\Gramblr
2014-12-16 14:11 - 2014-12-16 14:12 - 28516777 _____ () C:\Users\Petr\Downloads\gramblr.zip
2014-12-16 13:46 - 2014-12-16 13:46 - 00000000 ____D () C:\Users\Petr\Documents\Originals
2014-12-16 13:45 - 2014-12-16 13:45 - 00056320 ____H () C:\Users\Petr\Documents\photothumb.db
2014-12-16 13:43 - 2015-01-02 12:09 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\PhotoScape
2014-12-16 13:43 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoScape
2014-12-16 13:43 - 2014-12-16 13:43 - 00001031 _____ () C:\Users\Petr\Desktop\PhotoScape.lnk
2014-12-16 13:43 - 2014-12-16 13:43 - 00000000 ____D () C:\Program Files (x86)\PhotoScape
2014-12-16 13:42 - 2014-12-16 13:42 - 21360800 _____ (Mooii) C:\Users\Petr\Downloads\PhotoScape_V3.7.exe
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000009.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000008.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000007.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000006.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000005.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000004.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000003.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000002.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000001.jpeg
2014-12-14 15:59 - 2014-12-14 15:57 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-12-14 15:58 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-12-14 15:57 - 2014-12-14 15:57 - 00000000 ____D () C:\ProgramData\Oracle
2014-12-14 15:50 - 2014-12-14 15:50 - 00638888 _____ (Oracle Corporation) C:\Users\Petr\Downloads\chromeinstall-8u25.exe
2014-12-13 14:55 - 2014-12-13 14:55 - 02400045 _____ () C:\Users\Petr\Downloads\Technic-Launcher-2013-WAREZ.jar
2014-12-13 14:54 - 2014-12-13 14:55 - 30519279 _____ () C:\Users\Petr\Downloads\CDSSK 1.9.9.zip
2014-12-13 14:48 - 2014-12-13 14:48 - 30412012 _____ () C:\Users\Petr\Downloads\CDSSK 1.8.0.zip
2014-12-13 13:36 - 2014-12-13 13:36 - 00000000 ____D () C:\Users\Petr\Documents\Shiner
2014-12-10 16:15 - 2014-12-10 16:15 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Unity
2014-12-10 15:48 - 2014-12-10 15:48 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-10 15:38 - 2014-10-18 03:05 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-12-10 15:38 - 2014-10-18 02:33 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2014-12-10 15:38 - 2014-07-07 03:06 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2014-12-10 15:38 - 2014-07-07 03:06 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2014-12-10 15:38 - 2014-07-07 03:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2014-12-10 15:38 - 2014-07-07 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2014-12-10 15:38 - 2014-07-07 02:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2014-12-10 15:38 - 2014-07-07 02:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2014-12-10 15:38 - 2014-07-07 02:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2014-12-10 15:38 - 2014-07-07 02:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00830976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-10 14:09 - 2014-12-04 03:44 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-10 14:09 - 2014-12-02 00:28 - 01232040 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2014-12-10 14:09 - 2014-11-27 02:43 - 00389296 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-10 14:09 - 2014-11-27 02:10 - 00342200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-12-10 14:09 - 2014-11-22 04:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-12-10 14:09 - 2014-11-22 04:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-12-10 14:09 - 2014-11-22 03:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-12-10 14:09 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-10 14:09 - 2014-11-22 03:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-12-10 14:09 - 2014-11-22 03:41 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-12-10 14:09 - 2014-11-22 03:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-12-10 14:09 - 2014-11-22 03:37 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-12-10 14:09 - 2014-11-22 03:35 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-12-10 14:09 - 2014-11-22 03:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-12-10 14:09 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-12-10 14:09 - 2014-11-22 03:22 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-12-10 14:09 - 2014-11-22 03:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-12-10 14:09 - 2014-11-22 03:14 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-12-10 14:09 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-12-10 14:09 - 2014-11-22 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-12-10 14:09 - 2014-11-22 03:06 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-12-10 14:09 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-10 14:09 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-12-10 14:09 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-12-10 14:09 - 2014-11-22 02:59 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-12-10 14:09 - 2014-11-22 02:58 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-12-10 14:09 - 2014-11-22 02:56 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-12-10 14:09 - 2014-11-22 02:54 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-12-10 14:09 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-10 14:09 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-10 14:09 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-10 14:09 - 2014-11-22 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-12-10 14:09 - 2014-11-22 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-12-10 14:09 - 2014-11-22 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-12-10 14:09 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-12-10 14:09 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-12-10 14:09 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-12-10 14:09 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-12-10 14:09 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-12-10 14:09 - 2014-11-22 02:21 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-12-10 14:09 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-10 14:09 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-12-10 14:09 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-10 14:09 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-12-10 14:09 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-12-10 14:09 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-12-10 14:09 - 2014-11-11 04:09 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-10 14:09 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-10 14:09 - 2014-11-11 02:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2014-12-10 14:08 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-10 14:08 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-10 14:08 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-10 14:08 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-10 14:08 - 2014-11-22 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-12-10 14:08 - 2014-11-22 03:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-12-10 14:08 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-10 14:08 - 2014-11-22 02:47 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-12-10 14:08 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-10 14:08 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-10 14:08 - 2014-11-08 04:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-12-10 14:08 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-12-10 14:08 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2014-12-10 14:08 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2014-12-10 14:08 - 2014-10-03 03:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-12-10 14:08 - 2014-10-03 03:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2014-12-10 14:08 - 2014-10-03 03:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2014-12-10 14:08 - 2014-10-03 03:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2014-12-10 14:08 - 2014-10-03 03:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2014-12-10 14:08 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2014-12-10 14:08 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2014-12-10 14:08 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2014-12-10 14:08 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2014-12-10 14:08 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2014-12-09 12:40 - 2010-02-03 23:45 - 00245788 _____ () C:\Users\Petr\Desktop\v_hegrenade.mdl
2014-12-08 18:35 - 2015-01-02 11:01 - 00000000 ____D () C:\Users\Petr\Documents\My Games
2014-12-07 11:47 - 2014-12-07 11:47 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Awesomium
2014-12-07 11:46 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
2014-12-07 11:46 - 2014-12-07 11:46 - 00002033 _____ () C:\Users\Public\Desktop\Hi-Rez Diagnostics and Support.lnk
2014-12-07 11:46 - 2014-12-07 11:46 - 00002024 _____ () C:\Users\Public\Desktop\Smite.lnk
2014-12-07 11:46 - 2014-12-07 11:46 - 00000000 ____D () C:\ProgramData\Hi-Rez Studios
2014-12-07 11:46 - 2014-12-07 11:46 - 00000000 ____D () C:\Program Files (x86)\Hi-Rez Studios
2014-12-07 11:43 - 2014-12-07 11:44 - 46860733 _____ (Hi-Rez Studios) C:\Users\Petr\Downloads\InstallHiRezGamesEnglish.exe
2014-12-06 08:53 - 2014-12-06 08:55 - 37602760 _____ (Hewlett-Packard ) C:\Users\Petr\Downloads\sp68201.exe
2014-12-05 20:17 - 2014-12-05 20:17 - 00002309 _____ () C:\Users\Petr\Desktop\Spouštěč aplikací Chrome.lnk
2014-12-05 20:17 - 2014-12-05 20:17 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-12-05 20:17 - 2014-12-05 20:17 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome
2014-12-05 20:14 - 2015-01-02 12:05 - 00000944 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-05 20:14 - 2015-01-02 11:28 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-05 20:14 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-12-05 20:14 - 2014-12-12 13:01 - 00002183 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-12-05 20:14 - 2014-12-05 20:14 - 00003944 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-12-05 20:14 - 2014-12-05 20:14 - 00003692 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-12-05 20:13 - 2014-12-31 10:13 - 00000000 ____D () C:\Users\Petr\AppData\Local\Deployment
2014-12-05 20:13 - 2014-12-05 20:14 - 00880784 _____ (Google Inc.) C:\Users\Petr\Downloads\ChromeSetup.exe
2014-12-05 20:13 - 2014-12-05 20:13 - 00000000 ____D () C:\Users\Petr\AppData\Local\Apps\2.0
2014-12-05 20:12 - 2014-12-05 20:12 - 00000000 __SHD () C:\Users\Petr\AppData\Local\EmieBrowserModeList
2014-12-04 20:07 - 2014-12-07 12:44 - 00012868 _____ () C:\Users\Petr\Documents\Igniseriino_000001.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000009.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000008.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000007.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000006.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000005.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000004.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000003.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000002.jpeg
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-02 12:09 - 2014-11-20 13:36 - 00000000 ____D () C:\Windows\Minidump
2015-01-02 12:09 - 2014-10-30 15:42 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\uTorrent
2015-01-02 12:09 - 2014-10-26 06:52 - 00000000 ____D () C:\Users\Petr\AppData\Local\CrashDumps
2015-01-02 12:09 - 2014-10-25 11:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\TS3Client
2015-01-02 12:05 - 2014-10-29 19:42 - 00003496 _____ () C:\Windows\System32\Tasks\gg_uac_daemon_Petr
2015-01-02 12:05 - 2011-05-03 12:18 - 00000000 ____D () C:\ProgramData\PDFC
2015-01-02 12:04 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-02 11:50 - 2014-10-25 11:41 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-01-02 11:47 - 2014-11-07 21:54 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-02 11:31 - 2014-10-26 13:30 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2015-01-02 11:04 - 2014-10-25 11:14 - 00000000 ____D () C:\Users\Petr
2015-01-02 11:03 - 2014-10-25 19:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2015-01-02 11:02 - 2014-11-30 09:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-01-02 11:02 - 2014-11-22 08:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-01-02 11:02 - 2014-11-22 08:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2015-01-02 11:02 - 2014-11-19 21:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-01-02 11:02 - 2014-11-19 16:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magic Bullet Looks
2015-01-02 11:02 - 2014-11-19 16:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Giant
2015-01-02 11:02 - 2014-11-09 12:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3
2015-01-02 11:02 - 2014-11-09 10:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2015-01-02 11:02 - 2014-11-06 16:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
2015-01-02 11:02 - 2014-10-31 13:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-01-02 11:02 - 2014-10-29 19:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garena
2015-01-02 11:02 - 2014-10-29 16:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-01-02 11:02 - 2014-10-27 08:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
2015-01-02 11:02 - 2014-10-27 08:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2015-01-02 11:02 - 2014-10-25 15:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
2015-01-02 11:02 - 2014-10-25 11:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-01-02 11:02 - 2014-10-25 11:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2015-01-02 11:02 - 2014-10-25 11:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2015-01-02 11:02 - 2013-07-30 12:29 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam
2015-01-02 11:02 - 2013-07-30 12:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Energy Star
2015-01-02 11:02 - 2013-07-30 12:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
2015-01-02 11:02 - 2011-05-03 12:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xobni
2015-01-02 11:02 - 2011-05-03 12:19 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services
2015-01-02 11:02 - 2011-05-03 12:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Complete
2015-01-02 11:02 - 2011-05-03 12:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Manager
2015-01-02 11:02 - 2011-05-03 12:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2015-01-02 11:02 - 2011-05-03 12:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote
2015-01-02 11:02 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-01-02 11:02 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-02 11:02 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-02 11:02 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-01-02 11:01 - 2014-10-25 11:49 - 00000000 ____D () C:\Users\Petr\Desktop\Counter-Strike Global Offensive
2015-01-02 11:01 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2015-01-02 11:00 - 2014-11-19 16:18 - 00000000 ____D () C:\ProgramData\Package Cache
2015-01-02 11:00 - 2014-11-11 17:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nem's Tools
2015-01-01 20:27 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-01 20:27 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-25 10:22 - 2014-10-25 11:15 - 00000000 ____D () C:\Users\Petr\AppData\Local\VirtualStore
2014-12-24 22:31 - 2014-11-22 08:43 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-12-24 22:31 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-12-24 22:22 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-12-24 22:21 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\winrm
2014-12-24 22:21 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\slmgr
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\DVD Maker
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\sk-SK
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\servicing
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\WCN
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\winrm
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\slmgr
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sk-SK
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\oobe
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\migwiz
2014-12-24 22:19 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\WCN
2014-12-24 22:19 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts
2014-12-24 22:19 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Dism
2014-12-24 22:17 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Speech
2014-12-24 09:07 - 2014-10-25 11:20 - 00003962 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{ABA55054-A17B-4303-8183-9C9C519DB5AD}
2014-12-23 14:15 - 2014-11-02 15:07 - 00003180 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForPetr
2014-12-23 14:15 - 2014-11-02 15:07 - 00000328 _____ () C:\Windows\Tasks\HPCeeScheduleForPetr.job
2014-12-22 17:00 - 2014-10-25 11:20 - 00000000 ____D () C:\Users\Petr\Documents\Bluetooth Folder
2014-12-16 19:49 - 2014-10-29 19:43 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\GarenaPlus
2014-12-16 19:49 - 2014-10-29 19:40 - 00000000 ____D () C:\ProgramData\GarenaMessenger
2014-12-16 14:50 - 2014-11-09 10:23 - 00000000 ____D () C:\ProgramData\Origin
2014-12-16 14:49 - 2014-11-09 10:23 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-12-16 13:40 - 2014-11-19 16:29 - 00000000 ____D () C:\Users\Petr\AppData\Local\LooksBuilder
2014-12-16 12:04 - 2014-11-16 10:23 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Spotify
2014-12-14 21:09 - 2014-11-16 10:24 - 00000000 ____D () C:\Users\Petr\AppData\Local\Spotify
2014-12-14 16:02 - 2014-11-05 07:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-14 16:02 - 2011-05-03 12:24 - 00000000 ____D () C:\Program Files (x86)\Java
2014-12-14 15:57 - 2011-05-03 12:24 - 00272296 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-12-14 15:57 - 2011-05-03 12:24 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-12-14 15:57 - 2011-05-03 12:24 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-12-13 13:22 - 2014-10-25 11:49 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-13 08:54 - 2014-11-07 21:53 - 00000000 ____D () C:\Users\Petr\AppData\Local\Adobe
2014-12-13 08:53 - 2014-11-07 21:54 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-13 08:53 - 2014-11-07 21:54 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-13 08:53 - 2014-11-07 21:54 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-10 15:48 - 2014-10-27 15:09 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-10 15:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-10 15:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat
2014-12-10 15:45 - 2014-10-27 08:16 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-10 15:40 - 2014-10-27 08:15 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-07 11:46 - 2011-05-03 12:15 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-12-06 13:42 - 2014-11-22 08:43 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-12-06 13:42 - 2014-11-22 08:37 - 00001102 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-12-05 20:15 - 2014-10-25 11:35 - 00000000 ____D () C:\Users\Petr\AppData\Local\Google
2014-12-05 20:14 - 2014-10-25 11:35 - 00000000 ____D () C:\Program Files (x86)\Google
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-24 19:56
==================== End Of Log ============================
Ran by Petr (administrator) on PETR-HP on 02-01-2015 12:21:55
Running from C:\Users\Petr\Desktop
Loaded Profile: Petr (Available profiles: Petr)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Safe Mode (with Networking)
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6602856 2011-01-11] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2480936 2010-12-21] (Synaptics Incorporated)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [627360 2011-04-13] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-04-13] (Atheros Commnucations)
HKLM\...\Run: [HPWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-07-21] (Hewlett-Packard Company)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5595336 2014-10-01] (ESET)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [656920 2011-02-01] (PDF Complete Inc)
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM\...\RunOnce: [NCPluginUpdater] => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\NCPluginUpdater.exe [21720 2014-12-16] (Hewlett-Packard)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\...\Run: [Spotify Web Helper] => C:\Users\Petr\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-11-16] (Spotify Ltd)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
HKU\S-1-5-21-1573231078-231515164-428938053-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
SearchScopes: HKLM -> DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKLM -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKLM-x32 -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKU\S-1-5-21-1573231078-231515164-428938053-1001 -> DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKU\S-1-5-21-1573231078-231515164-428938053-1001 -> {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKU\S-1-5-21-1573231078-231515164-428938053-1001 -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKU\S-1-5-21-1573231078-231515164-428938053-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Tcpip\Parameters: [DhcpNameServer] 94.74.192.252 94.74.192.244
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\faqsxm5w.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\new_plugin\npjp2.dll No File
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll ( Garena)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin HKU\S-1-5-21-1573231078-231515164-428938053-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Petr\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Extension: Adblock Plus - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\faqsxm5w.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-12-05]
Chrome:
=======
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-05]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-12-05]
CHR Extension: (Adblock Plus) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-12-05]
CHR Extension: (Vyhledávání Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-12-05]
CHR Extension: (TastyPlug) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\faccgibalfdoihmenknhpfhldkmgaang [2014-12-05]
CHR Extension: (AdBlock Plus for Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcobmjifdimfbihnbnafhcpmifgmjlka [2014-12-05]
CHR Extension: (Peněženka Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-05]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-12-05]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [354304 2011-03-04] (Advanced Micro Devices, Inc.) [File not signed]
S2 AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [194496 2010-06-17] (Advanced Micro Devices)
S2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [146592 2011-04-13] (Atheros) [File not signed]
S2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [77984 2011-04-13] (Atheros Commnucations) [File not signed]
S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [409304 2014-10-08] (BlueStack Systems, Inc.)
S2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [388824 2014-10-08] (BlueStack Systems, Inc.)
S2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [782040 2014-10-08] (BlueStack Systems, Inc.)
S2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1349576 2014-10-01] (ESET)
S2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2014-12-15] (Hi-Rez Studios) [File not signed]
S2 HPAuto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [682040 2011-02-16] (Hewlett-Packard)
S2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [1817088 2010-12-28] (Realsil Microelectronics Inc.) [File not signed]
S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1900400 2014-12-16] (Electronic Arts)
S2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1127448 2011-02-01] (PDF Complete Inc)
S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-11-09] ()
S2 XobniService; C:\Program Files (x86)\Xobni\XobniService.exe [62184 2011-02-25] (Xobni Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [122072 2014-10-08] (BlueStack Systems)
S1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [243440 2014-10-10] (ESET)
U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [241368 2014-10-10] (ESET)
S1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [169280 2014-10-10] (ESET)
S2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [158968 2014-10-10] (ESET)
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1866080 2012-11-28] ()
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-02 12:21 - 2015-01-02 12:22 - 00013677 _____ () C:\Users\Petr\Desktop\FRST.txt
2015-01-02 12:21 - 2015-01-02 12:21 - 02123264 _____ (Farbar) C:\Users\Petr\Downloads\FRST64.exe
2015-01-02 12:21 - 2015-01-02 12:21 - 02123264 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2015-01-02 12:21 - 2015-01-02 12:21 - 00015327 _____ () C:\Users\Petr\Desktop\LM.bat
2015-01-02 12:20 - 2015-01-02 12:21 - 00000000 ____D () C:\FRST
2015-01-02 12:17 - 2015-01-02 12:21 - 00029696 _____ () C:\Users\Petr\AppData\Local\MSGBOX.EXE
2015-01-02 12:17 - 2015-01-02 12:17 - 00112640 _____ (forum.viry.cz) C:\Users\Petr\Downloads\FRSTLauncher.exe
2015-01-02 12:17 - 2015-01-02 12:17 - 00112640 _____ (forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
2015-01-02 10:34 - 2015-01-02 11:02 - 00000000 ____D () C:\Program Files (x86)\trend micro
2015-01-02 10:19 - 2015-01-02 11:02 - 00000000 ____D () C:\Program Files\trend micro
2015-01-02 10:19 - 2015-01-02 10:34 - 00000000 ____D () C:\rsit
2015-01-01 20:41 - 2015-01-01 20:41 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-12-29 21:28 - 2014-12-29 21:28 - 00951768 _____ () C:\Users\Petr\Downloads\CrackedMinecraftLauncherWindows.rar
2014-12-29 21:26 - 2014-12-29 21:26 - 01893151 _____ () C:\Users\Petr\Downloads\minecraft.jar
2014-12-29 19:43 - 2014-12-31 10:13 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Curse Client
2014-12-29 19:41 - 2014-12-29 19:41 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Curse
2014-12-29 10:52 - 2015-01-02 11:01 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse
2014-12-29 10:52 - 2014-12-29 10:54 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Curse Advertising
2014-12-25 10:21 - 2014-12-25 10:21 - 00000000 ___SH () C:\Users\Petr\AppData\Local\LumaEmu
2014-12-25 10:16 - 2014-12-25 10:16 - 00001956 _____ () C:\Users\Petr\Desktop\Rusted Klient 1.8.1.lnk
2014-12-25 10:16 - 2014-12-25 10:16 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rusted.cz
2014-12-25 10:14 - 2015-01-02 11:02 - 00000000 ____D () C:\Program Files (x86)\Rusted Klient 1.8.1
2014-12-25 10:12 - 2014-12-25 10:13 - 445805476 _____ (Rusted.cz ) C:\Users\Petr\Downloads\Rusted Klient 1.8.1.exe
2014-12-21 14:59 - 2014-12-21 14:59 - 00307983 _____ (Cok Software ) C:\Users\Petr\Downloads\autoclicker_setup (1).exe
2014-12-21 13:03 - 2014-12-21 13:03 - 00001854 _____ () C:\Users\Petr\AppData\Roaming\GhostObjGAFix.xml
2014-12-20 17:18 - 2014-12-20 17:19 - 00021198 _____ () C:\Users\Petr\Documents\Nixx_000000.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000009.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000008.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000007.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000006.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000005.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000004.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000003.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000002.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000001.jpeg
2014-12-20 17:16 - 2014-12-20 17:17 - 00021044 _____ () C:\Users\Petr\Documents\frosty_000000.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000006.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000005.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000004.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000003.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000002.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000001.jpeg
2014-12-20 15:42 - 2014-12-20 15:43 - 00021380 _____ () C:\Users\Petr\Documents\Koprix_000000.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000013.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000012.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000011.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000010.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000009.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000008.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000007.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000006.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000005.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000004.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000003.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000002.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000001.jpeg
2014-12-20 15:36 - 2014-12-20 15:39 - 00021080 _____ () C:\Users\Petr\Documents\Nix0ne_000000.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000013.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000012.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000011.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000010.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000009.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000008.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000007.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000006.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000005.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000004.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000003.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000002.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000001.jpeg
2014-12-20 13:35 - 2014-12-20 14:17 - 386667480 _____ () C:\Users\Petr\Downloads\Mafia-II-čeština-100%-funkční---deadman93.rar
2014-12-20 13:33 - 2014-12-20 13:33 - 00000000 ____D () C:\Users\Petr\AppData\Local\SKIDROW
2014-12-20 13:32 - 2014-12-20 13:32 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-12-20 13:29 - 2014-12-20 13:30 - 35648512 _____ () C:\Users\Petr\Downloads\PhysX-9.12.0613-SystemSoftware.msi
2014-12-20 13:28 - 2014-12-20 13:28 - 00002255 _____ () C:\Users\Petr\Desktop\Mafia 2.lnk
2014-12-20 13:28 - 2014-12-20 13:28 - 00000000 ____D () C:\Users\Petr\AppData\Local\2K Games
2014-12-20 12:23 - 2014-12-20 13:28 - 00000000 ____D () C:\Users\Petr\Downloads\Mafia II + 3 DLCS full game PC ^^nosTEAM^^
2014-12-20 12:20 - 2014-12-20 12:22 - 05304887 _____ () C:\Users\Petr\Downloads\Mafia2.exe
2014-12-19 17:02 - 2014-12-21 19:10 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka
2014-12-18 21:23 - 2014-12-18 21:23 - 00307983 _____ (Cok Software ) C:\Users\Petr\Downloads\autoclicker_setup.exe
2014-12-18 21:23 - 2014-12-18 21:23 - 00002208 _____ () C:\Users\Petr\Desktop\Cok Free Auto Clicker.lnk
2014-12-18 21:23 - 2014-12-18 21:23 - 00000000 ____D () C:\Program Files (x86)\Cok Software
2014-12-18 13:37 - 2014-12-13 06:09 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-12-18 13:37 - 2014-12-13 04:33 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-12-16 22:02 - 2015-01-02 11:02 - 00000000 ____D () C:\Users\Petr\Documents\FIFA 14
2014-12-16 21:59 - 2014-12-16 21:59 - 00001680 _____ () C:\Users\Petr\Desktop\Play FIFA 14 nosTEAM.lnk
2014-12-16 21:50 - 2014-12-16 21:59 - 00000000 ____D () C:\Games
2014-12-16 20:58 - 2014-12-16 21:02 - 00000000 ____D () C:\Users\Petr\Downloads\FIFA 14 PC full game v1.4.0.0 ^^nosTEAM^^
2014-12-16 20:53 - 2014-12-16 20:55 - 08093511 _____ () C:\Users\Petr\Downloads\F1FA-14.exe
2014-12-16 14:22 - 2014-12-16 14:22 - 00000654 _____ () C:\Users\Petr\Desktop\Gramblr.lnk
2014-12-16 14:22 - 2014-12-16 14:22 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gramblr
2014-12-16 14:22 - 2014-12-16 14:22 - 00000000 ____D () C:\Gramblr
2014-12-16 14:11 - 2014-12-16 14:12 - 28516777 _____ () C:\Users\Petr\Downloads\gramblr.zip
2014-12-16 13:46 - 2014-12-16 13:46 - 00000000 ____D () C:\Users\Petr\Documents\Originals
2014-12-16 13:45 - 2014-12-16 13:45 - 00056320 ____H () C:\Users\Petr\Documents\photothumb.db
2014-12-16 13:43 - 2015-01-02 12:09 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\PhotoScape
2014-12-16 13:43 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoScape
2014-12-16 13:43 - 2014-12-16 13:43 - 00001031 _____ () C:\Users\Petr\Desktop\PhotoScape.lnk
2014-12-16 13:43 - 2014-12-16 13:43 - 00000000 ____D () C:\Program Files (x86)\PhotoScape
2014-12-16 13:42 - 2014-12-16 13:42 - 21360800 _____ (Mooii) C:\Users\Petr\Downloads\PhotoScape_V3.7.exe
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000009.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000008.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000007.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000006.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000005.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000004.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000003.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000002.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000001.jpeg
2014-12-14 15:59 - 2014-12-14 15:57 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-12-14 15:58 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-12-14 15:57 - 2014-12-14 15:57 - 00000000 ____D () C:\ProgramData\Oracle
2014-12-14 15:50 - 2014-12-14 15:50 - 00638888 _____ (Oracle Corporation) C:\Users\Petr\Downloads\chromeinstall-8u25.exe
2014-12-13 14:55 - 2014-12-13 14:55 - 02400045 _____ () C:\Users\Petr\Downloads\Technic-Launcher-2013-WAREZ.jar
2014-12-13 14:54 - 2014-12-13 14:55 - 30519279 _____ () C:\Users\Petr\Downloads\CDSSK 1.9.9.zip
2014-12-13 14:48 - 2014-12-13 14:48 - 30412012 _____ () C:\Users\Petr\Downloads\CDSSK 1.8.0.zip
2014-12-13 13:36 - 2014-12-13 13:36 - 00000000 ____D () C:\Users\Petr\Documents\Shiner
2014-12-10 16:15 - 2014-12-10 16:15 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Unity
2014-12-10 15:48 - 2014-12-10 15:48 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-10 15:38 - 2014-10-18 03:05 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-12-10 15:38 - 2014-10-18 02:33 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2014-12-10 15:38 - 2014-07-07 03:06 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2014-12-10 15:38 - 2014-07-07 03:06 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2014-12-10 15:38 - 2014-07-07 03:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2014-12-10 15:38 - 2014-07-07 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2014-12-10 15:38 - 2014-07-07 02:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2014-12-10 15:38 - 2014-07-07 02:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2014-12-10 15:38 - 2014-07-07 02:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2014-12-10 15:38 - 2014-07-07 02:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00830976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-10 14:09 - 2014-12-04 03:44 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-10 14:09 - 2014-12-02 00:28 - 01232040 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2014-12-10 14:09 - 2014-11-27 02:43 - 00389296 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-10 14:09 - 2014-11-27 02:10 - 00342200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-12-10 14:09 - 2014-11-22 04:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-12-10 14:09 - 2014-11-22 04:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-12-10 14:09 - 2014-11-22 03:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-12-10 14:09 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-10 14:09 - 2014-11-22 03:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-12-10 14:09 - 2014-11-22 03:41 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-12-10 14:09 - 2014-11-22 03:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-12-10 14:09 - 2014-11-22 03:37 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-12-10 14:09 - 2014-11-22 03:35 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-12-10 14:09 - 2014-11-22 03:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-12-10 14:09 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-12-10 14:09 - 2014-11-22 03:22 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-12-10 14:09 - 2014-11-22 03:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-12-10 14:09 - 2014-11-22 03:14 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-12-10 14:09 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-12-10 14:09 - 2014-11-22 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-12-10 14:09 - 2014-11-22 03:06 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-12-10 14:09 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-10 14:09 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-12-10 14:09 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-12-10 14:09 - 2014-11-22 02:59 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-12-10 14:09 - 2014-11-22 02:58 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-12-10 14:09 - 2014-11-22 02:56 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-12-10 14:09 - 2014-11-22 02:54 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-12-10 14:09 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-10 14:09 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-10 14:09 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-10 14:09 - 2014-11-22 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-12-10 14:09 - 2014-11-22 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-12-10 14:09 - 2014-11-22 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-12-10 14:09 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-12-10 14:09 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-12-10 14:09 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-12-10 14:09 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-12-10 14:09 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-12-10 14:09 - 2014-11-22 02:21 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-12-10 14:09 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-10 14:09 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-12-10 14:09 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-10 14:09 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-12-10 14:09 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-12-10 14:09 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-12-10 14:09 - 2014-11-11 04:09 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-10 14:09 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-10 14:09 - 2014-11-11 02:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2014-12-10 14:08 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-10 14:08 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-10 14:08 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-10 14:08 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-10 14:08 - 2014-11-22 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-12-10 14:08 - 2014-11-22 03:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-12-10 14:08 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-10 14:08 - 2014-11-22 02:47 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-12-10 14:08 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-10 14:08 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-10 14:08 - 2014-11-08 04:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-12-10 14:08 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-12-10 14:08 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2014-12-10 14:08 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2014-12-10 14:08 - 2014-10-03 03:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-12-10 14:08 - 2014-10-03 03:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2014-12-10 14:08 - 2014-10-03 03:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2014-12-10 14:08 - 2014-10-03 03:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2014-12-10 14:08 - 2014-10-03 03:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2014-12-10 14:08 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2014-12-10 14:08 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2014-12-10 14:08 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2014-12-10 14:08 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2014-12-10 14:08 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2014-12-09 12:40 - 2010-02-03 23:45 - 00245788 _____ () C:\Users\Petr\Desktop\v_hegrenade.mdl
2014-12-08 18:35 - 2015-01-02 11:01 - 00000000 ____D () C:\Users\Petr\Documents\My Games
2014-12-07 11:47 - 2014-12-07 11:47 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Awesomium
2014-12-07 11:46 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
2014-12-07 11:46 - 2014-12-07 11:46 - 00002033 _____ () C:\Users\Public\Desktop\Hi-Rez Diagnostics and Support.lnk
2014-12-07 11:46 - 2014-12-07 11:46 - 00002024 _____ () C:\Users\Public\Desktop\Smite.lnk
2014-12-07 11:46 - 2014-12-07 11:46 - 00000000 ____D () C:\ProgramData\Hi-Rez Studios
2014-12-07 11:46 - 2014-12-07 11:46 - 00000000 ____D () C:\Program Files (x86)\Hi-Rez Studios
2014-12-07 11:43 - 2014-12-07 11:44 - 46860733 _____ (Hi-Rez Studios) C:\Users\Petr\Downloads\InstallHiRezGamesEnglish.exe
2014-12-06 08:53 - 2014-12-06 08:55 - 37602760 _____ (Hewlett-Packard ) C:\Users\Petr\Downloads\sp68201.exe
2014-12-05 20:17 - 2014-12-05 20:17 - 00002309 _____ () C:\Users\Petr\Desktop\Spouštěč aplikací Chrome.lnk
2014-12-05 20:17 - 2014-12-05 20:17 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-12-05 20:17 - 2014-12-05 20:17 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome
2014-12-05 20:14 - 2015-01-02 12:05 - 00000944 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-05 20:14 - 2015-01-02 11:28 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-05 20:14 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-12-05 20:14 - 2014-12-12 13:01 - 00002183 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-12-05 20:14 - 2014-12-05 20:14 - 00003944 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-12-05 20:14 - 2014-12-05 20:14 - 00003692 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-12-05 20:13 - 2014-12-31 10:13 - 00000000 ____D () C:\Users\Petr\AppData\Local\Deployment
2014-12-05 20:13 - 2014-12-05 20:14 - 00880784 _____ (Google Inc.) C:\Users\Petr\Downloads\ChromeSetup.exe
2014-12-05 20:13 - 2014-12-05 20:13 - 00000000 ____D () C:\Users\Petr\AppData\Local\Apps\2.0
2014-12-05 20:12 - 2014-12-05 20:12 - 00000000 __SHD () C:\Users\Petr\AppData\Local\EmieBrowserModeList
2014-12-04 20:07 - 2014-12-07 12:44 - 00012868 _____ () C:\Users\Petr\Documents\Igniseriino_000001.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000009.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000008.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000007.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000006.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000005.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000004.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000003.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000002.jpeg
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-02 12:09 - 2014-11-20 13:36 - 00000000 ____D () C:\Windows\Minidump
2015-01-02 12:09 - 2014-10-30 15:42 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\uTorrent
2015-01-02 12:09 - 2014-10-26 06:52 - 00000000 ____D () C:\Users\Petr\AppData\Local\CrashDumps
2015-01-02 12:09 - 2014-10-25 11:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\TS3Client
2015-01-02 12:05 - 2014-10-29 19:42 - 00003496 _____ () C:\Windows\System32\Tasks\gg_uac_daemon_Petr
2015-01-02 12:05 - 2011-05-03 12:18 - 00000000 ____D () C:\ProgramData\PDFC
2015-01-02 12:04 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-02 11:50 - 2014-10-25 11:41 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-01-02 11:47 - 2014-11-07 21:54 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-02 11:31 - 2014-10-26 13:30 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2015-01-02 11:04 - 2014-10-25 11:14 - 00000000 ____D () C:\Users\Petr
2015-01-02 11:03 - 2014-10-25 19:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2015-01-02 11:02 - 2014-11-30 09:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-01-02 11:02 - 2014-11-22 08:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-01-02 11:02 - 2014-11-22 08:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2015-01-02 11:02 - 2014-11-19 21:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-01-02 11:02 - 2014-11-19 16:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magic Bullet Looks
2015-01-02 11:02 - 2014-11-19 16:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Giant
2015-01-02 11:02 - 2014-11-09 12:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3
2015-01-02 11:02 - 2014-11-09 10:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2015-01-02 11:02 - 2014-11-06 16:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
2015-01-02 11:02 - 2014-10-31 13:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-01-02 11:02 - 2014-10-29 19:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garena
2015-01-02 11:02 - 2014-10-29 16:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-01-02 11:02 - 2014-10-27 08:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
2015-01-02 11:02 - 2014-10-27 08:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2015-01-02 11:02 - 2014-10-25 15:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
2015-01-02 11:02 - 2014-10-25 11:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-01-02 11:02 - 2014-10-25 11:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2015-01-02 11:02 - 2014-10-25 11:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2015-01-02 11:02 - 2013-07-30 12:29 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam
2015-01-02 11:02 - 2013-07-30 12:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Energy Star
2015-01-02 11:02 - 2013-07-30 12:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
2015-01-02 11:02 - 2011-05-03 12:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xobni
2015-01-02 11:02 - 2011-05-03 12:19 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services
2015-01-02 11:02 - 2011-05-03 12:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Complete
2015-01-02 11:02 - 2011-05-03 12:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Manager
2015-01-02 11:02 - 2011-05-03 12:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2015-01-02 11:02 - 2011-05-03 12:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote
2015-01-02 11:02 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-01-02 11:02 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-02 11:02 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-02 11:02 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-01-02 11:01 - 2014-10-25 11:49 - 00000000 ____D () C:\Users\Petr\Desktop\Counter-Strike Global Offensive
2015-01-02 11:01 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2015-01-02 11:00 - 2014-11-19 16:18 - 00000000 ____D () C:\ProgramData\Package Cache
2015-01-02 11:00 - 2014-11-11 17:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nem's Tools
2015-01-01 20:27 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-01 20:27 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-25 10:22 - 2014-10-25 11:15 - 00000000 ____D () C:\Users\Petr\AppData\Local\VirtualStore
2014-12-24 22:31 - 2014-11-22 08:43 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-12-24 22:31 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-12-24 22:22 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-12-24 22:21 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\winrm
2014-12-24 22:21 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\slmgr
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\DVD Maker
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\sk-SK
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\servicing
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\WCN
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\winrm
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\slmgr
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sk-SK
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\oobe
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\migwiz
2014-12-24 22:19 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\WCN
2014-12-24 22:19 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts
2014-12-24 22:19 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Dism
2014-12-24 22:17 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Speech
2014-12-24 09:07 - 2014-10-25 11:20 - 00003962 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{ABA55054-A17B-4303-8183-9C9C519DB5AD}
2014-12-23 14:15 - 2014-11-02 15:07 - 00003180 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForPetr
2014-12-23 14:15 - 2014-11-02 15:07 - 00000328 _____ () C:\Windows\Tasks\HPCeeScheduleForPetr.job
2014-12-22 17:00 - 2014-10-25 11:20 - 00000000 ____D () C:\Users\Petr\Documents\Bluetooth Folder
2014-12-16 19:49 - 2014-10-29 19:43 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\GarenaPlus
2014-12-16 19:49 - 2014-10-29 19:40 - 00000000 ____D () C:\ProgramData\GarenaMessenger
2014-12-16 14:50 - 2014-11-09 10:23 - 00000000 ____D () C:\ProgramData\Origin
2014-12-16 14:49 - 2014-11-09 10:23 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-12-16 13:40 - 2014-11-19 16:29 - 00000000 ____D () C:\Users\Petr\AppData\Local\LooksBuilder
2014-12-16 12:04 - 2014-11-16 10:23 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Spotify
2014-12-14 21:09 - 2014-11-16 10:24 - 00000000 ____D () C:\Users\Petr\AppData\Local\Spotify
2014-12-14 16:02 - 2014-11-05 07:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-14 16:02 - 2011-05-03 12:24 - 00000000 ____D () C:\Program Files (x86)\Java
2014-12-14 15:57 - 2011-05-03 12:24 - 00272296 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-12-14 15:57 - 2011-05-03 12:24 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-12-14 15:57 - 2011-05-03 12:24 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-12-13 13:22 - 2014-10-25 11:49 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-13 08:54 - 2014-11-07 21:53 - 00000000 ____D () C:\Users\Petr\AppData\Local\Adobe
2014-12-13 08:53 - 2014-11-07 21:54 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-13 08:53 - 2014-11-07 21:54 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-13 08:53 - 2014-11-07 21:54 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-10 15:48 - 2014-10-27 15:09 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-10 15:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-10 15:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat
2014-12-10 15:45 - 2014-10-27 08:16 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-10 15:40 - 2014-10-27 08:15 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-07 11:46 - 2011-05-03 12:15 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-12-06 13:42 - 2014-11-22 08:43 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-12-06 13:42 - 2014-11-22 08:37 - 00001102 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-12-05 20:15 - 2014-10-25 11:35 - 00000000 ____D () C:\Users\Petr\AppData\Local\Google
2014-12-05 20:14 - 2014-10-25 11:35 - 00000000 ____D () C:\Program Files (x86)\Google
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-24 19:56
==================== End Of Log ============================
Re: Zaseknutí počítače při načítání obrazovky
odinstaluj MBAM + vycisti s ADWCleanerom + log po cisteni FRST
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Zaseknutí počítače při načítání obrazovky
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-01-2015
Ran by Petr (administrator) on PETR-HP on 02-01-2015 12:40:54
Running from C:\Users\Petr\Desktop
Loaded Profile: Petr (Available profiles: Petr)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Safe Mode (with Networking)
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6602856 2011-01-11] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2480936 2010-12-21] (Synaptics Incorporated)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [627360 2011-04-13] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-04-13] (Atheros Commnucations)
HKLM\...\Run: [HPWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-07-21] (Hewlett-Packard Company)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5595336 2014-10-01] (ESET)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [656920 2011-02-01] (PDF Complete Inc)
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM\...\RunOnce: [NCPluginUpdater] => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\NCPluginUpdater.exe [21720 2014-12-16] (Hewlett-Packard)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\...\Run: [Spotify Web Helper] => C:\Users\Petr\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-11-16] (Spotify Ltd)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\...\RunOnce: [Report] => C:\AdwCleaner\AdwCleaner[S0].txt [2390 2015-01-02] ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
HKU\S-1-5-21-1573231078-231515164-428938053-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
SearchScopes: HKLM-x32 -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
Toolbar: HKU\S-1-5-21-1573231078-231515164-428938053-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Tcpip\Parameters: [DhcpNameServer] 94.74.192.252 94.74.192.244
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\faqsxm5w.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\new_plugin\npjp2.dll No File
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll ( Garena)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin HKU\S-1-5-21-1573231078-231515164-428938053-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Petr\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Extension: Adblock Plus - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\faqsxm5w.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-12-05]
Chrome:
=======
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-05]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-12-05]
CHR Extension: (Adblock Plus) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-12-05]
CHR Extension: (Vyhledávání Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-12-05]
CHR Extension: (TastyPlug) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\faccgibalfdoihmenknhpfhldkmgaang [2014-12-05]
CHR Extension: (AdBlock Plus for Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcobmjifdimfbihnbnafhcpmifgmjlka [2014-12-05]
CHR Extension: (Peněženka Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-05]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-12-05]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [354304 2011-03-04] (Advanced Micro Devices, Inc.) [File not signed]
S2 AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [194496 2010-06-17] (Advanced Micro Devices)
S2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [146592 2011-04-13] (Atheros) [File not signed]
S2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [77984 2011-04-13] (Atheros Commnucations) [File not signed]
S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [409304 2014-10-08] (BlueStack Systems, Inc.)
S2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [388824 2014-10-08] (BlueStack Systems, Inc.)
S2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [782040 2014-10-08] (BlueStack Systems, Inc.)
S2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1349576 2014-10-01] (ESET)
S2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2014-12-15] (Hi-Rez Studios) [File not signed]
S2 HPAuto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [682040 2011-02-16] (Hewlett-Packard)
S2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [1817088 2010-12-28] (Realsil Microelectronics Inc.) [File not signed]
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1900400 2014-12-16] (Electronic Arts)
S2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1127448 2011-02-01] (PDF Complete Inc)
S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-11-09] ()
S2 XobniService; C:\Program Files (x86)\Xobni\XobniService.exe [62184 2011-02-25] (Xobni Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [122072 2014-10-08] (BlueStack Systems)
S1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [243440 2014-10-10] (ESET)
U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [241368 2014-10-10] (ESET)
S1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [169280 2014-10-10] (ESET)
S2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [158968 2014-10-10] (ESET)
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1866080 2012-11-28] ()
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-02 12:40 - 2015-01-02 12:40 - 00029696 _____ () C:\Users\Petr\AppData\Local\MSGBOX.EXE
2015-01-02 12:40 - 2015-01-02 12:40 - 00015327 _____ () C:\Users\Petr\Desktop\LM.bat
2015-01-02 12:37 - 2015-01-02 12:37 - 00000056 _____ () C:\Windows\setupact.log
2015-01-02 12:37 - 2015-01-02 12:37 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-02 12:36 - 2015-01-02 12:37 - 00000850 _____ () C:\Windows\PFRO.log
2015-01-02 12:33 - 2015-01-02 12:35 - 00000000 ____D () C:\AdwCleaner
2015-01-02 12:33 - 2015-01-02 12:33 - 02173952 _____ () C:\Users\Petr\Downloads\adwcleaner_4.106.exe
2015-01-02 12:21 - 2015-01-02 12:42 - 00011623 _____ () C:\Users\Petr\Desktop\FRST.txt
2015-01-02 12:21 - 2015-01-02 12:21 - 02123264 _____ (Farbar) C:\Users\Petr\Downloads\FRST64.exe
2015-01-02 12:21 - 2015-01-02 12:21 - 02123264 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2015-01-02 12:20 - 2015-01-02 12:40 - 00000000 ____D () C:\FRST
2015-01-02 12:17 - 2015-01-02 12:17 - 00112640 _____ (forum.viry.cz) C:\Users\Petr\Downloads\FRSTLauncher.exe
2015-01-02 12:17 - 2015-01-02 12:17 - 00112640 _____ (forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
2015-01-02 10:34 - 2015-01-02 11:02 - 00000000 ____D () C:\Program Files (x86)\trend micro
2015-01-02 10:19 - 2015-01-02 11:02 - 00000000 ____D () C:\Program Files\trend micro
2015-01-02 10:19 - 2015-01-02 10:34 - 00000000 ____D () C:\rsit
2015-01-01 20:41 - 2015-01-01 20:41 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-12-29 21:28 - 2014-12-29 21:28 - 00951768 _____ () C:\Users\Petr\Downloads\CrackedMinecraftLauncherWindows.rar
2014-12-29 21:26 - 2014-12-29 21:26 - 01893151 _____ () C:\Users\Petr\Downloads\minecraft.jar
2014-12-29 19:43 - 2014-12-31 10:13 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Curse Client
2014-12-29 19:41 - 2014-12-29 19:41 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Curse
2014-12-29 10:52 - 2015-01-02 11:01 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse
2014-12-29 10:52 - 2014-12-29 10:54 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Curse Advertising
2014-12-25 10:21 - 2014-12-25 10:21 - 00000000 ___SH () C:\Users\Petr\AppData\Local\LumaEmu
2014-12-25 10:16 - 2014-12-25 10:16 - 00001956 _____ () C:\Users\Petr\Desktop\Rusted Klient 1.8.1.lnk
2014-12-25 10:16 - 2014-12-25 10:16 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rusted.cz
2014-12-25 10:14 - 2015-01-02 11:02 - 00000000 ____D () C:\Program Files (x86)\Rusted Klient 1.8.1
2014-12-25 10:12 - 2014-12-25 10:13 - 445805476 _____ (Rusted.cz ) C:\Users\Petr\Downloads\Rusted Klient 1.8.1.exe
2014-12-21 14:59 - 2014-12-21 14:59 - 00307983 _____ (Cok Software ) C:\Users\Petr\Downloads\autoclicker_setup (1).exe
2014-12-21 13:03 - 2014-12-21 13:03 - 00001854 _____ () C:\Users\Petr\AppData\Roaming\GhostObjGAFix.xml
2014-12-20 17:18 - 2014-12-20 17:19 - 00021198 _____ () C:\Users\Petr\Documents\Nixx_000000.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000009.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000008.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000007.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000006.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000005.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000004.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000003.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000002.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000001.jpeg
2014-12-20 17:16 - 2014-12-20 17:17 - 00021044 _____ () C:\Users\Petr\Documents\frosty_000000.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000006.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000005.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000004.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000003.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000002.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000001.jpeg
2014-12-20 15:42 - 2014-12-20 15:43 - 00021380 _____ () C:\Users\Petr\Documents\Koprix_000000.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000013.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000012.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000011.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000010.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000009.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000008.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000007.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000006.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000005.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000004.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000003.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000002.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000001.jpeg
2014-12-20 15:36 - 2014-12-20 15:39 - 00021080 _____ () C:\Users\Petr\Documents\Nix0ne_000000.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000013.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000012.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000011.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000010.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000009.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000008.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000007.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000006.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000005.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000004.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000003.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000002.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000001.jpeg
2014-12-20 13:35 - 2014-12-20 14:17 - 386667480 _____ () C:\Users\Petr\Downloads\Mafia-II-čeština-100%-funkční---deadman93.rar
2014-12-20 13:33 - 2014-12-20 13:33 - 00000000 ____D () C:\Users\Petr\AppData\Local\SKIDROW
2014-12-20 13:32 - 2014-12-20 13:32 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-12-20 13:29 - 2014-12-20 13:30 - 35648512 _____ () C:\Users\Petr\Downloads\PhysX-9.12.0613-SystemSoftware.msi
2014-12-20 13:28 - 2014-12-20 13:28 - 00002255 _____ () C:\Users\Petr\Desktop\Mafia 2.lnk
2014-12-20 13:28 - 2014-12-20 13:28 - 00000000 ____D () C:\Users\Petr\AppData\Local\2K Games
2014-12-20 12:23 - 2014-12-20 13:28 - 00000000 ____D () C:\Users\Petr\Downloads\Mafia II + 3 DLCS full game PC ^^nosTEAM^^
2014-12-20 12:20 - 2014-12-20 12:22 - 05304887 _____ () C:\Users\Petr\Downloads\Mafia2.exe
2014-12-19 17:02 - 2014-12-21 19:10 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka
2014-12-18 21:23 - 2014-12-18 21:23 - 00307983 _____ (Cok Software ) C:\Users\Petr\Downloads\autoclicker_setup.exe
2014-12-18 21:23 - 2014-12-18 21:23 - 00002208 _____ () C:\Users\Petr\Desktop\Cok Free Auto Clicker.lnk
2014-12-18 21:23 - 2014-12-18 21:23 - 00000000 ____D () C:\Program Files (x86)\Cok Software
2014-12-18 13:37 - 2014-12-13 06:09 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-12-18 13:37 - 2014-12-13 04:33 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-12-16 22:02 - 2015-01-02 11:02 - 00000000 ____D () C:\Users\Petr\Documents\FIFA 14
2014-12-16 21:59 - 2014-12-16 21:59 - 00001680 _____ () C:\Users\Petr\Desktop\Play FIFA 14 nosTEAM.lnk
2014-12-16 21:50 - 2014-12-16 21:59 - 00000000 ____D () C:\Games
2014-12-16 20:58 - 2014-12-16 21:02 - 00000000 ____D () C:\Users\Petr\Downloads\FIFA 14 PC full game v1.4.0.0 ^^nosTEAM^^
2014-12-16 20:53 - 2014-12-16 20:55 - 08093511 _____ () C:\Users\Petr\Downloads\F1FA-14.exe
2014-12-16 14:22 - 2014-12-16 14:22 - 00000654 _____ () C:\Users\Petr\Desktop\Gramblr.lnk
2014-12-16 14:22 - 2014-12-16 14:22 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gramblr
2014-12-16 14:22 - 2014-12-16 14:22 - 00000000 ____D () C:\Gramblr
2014-12-16 14:11 - 2014-12-16 14:12 - 28516777 _____ () C:\Users\Petr\Downloads\gramblr.zip
2014-12-16 13:46 - 2014-12-16 13:46 - 00000000 ____D () C:\Users\Petr\Documents\Originals
2014-12-16 13:45 - 2014-12-16 13:45 - 00056320 ____H () C:\Users\Petr\Documents\photothumb.db
2014-12-16 13:43 - 2015-01-02 12:09 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\PhotoScape
2014-12-16 13:43 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoScape
2014-12-16 13:43 - 2014-12-16 13:43 - 00001031 _____ () C:\Users\Petr\Desktop\PhotoScape.lnk
2014-12-16 13:43 - 2014-12-16 13:43 - 00000000 ____D () C:\Program Files (x86)\PhotoScape
2014-12-16 13:42 - 2014-12-16 13:42 - 21360800 _____ (Mooii) C:\Users\Petr\Downloads\PhotoScape_V3.7.exe
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000009.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000008.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000007.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000006.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000005.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000004.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000003.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000002.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000001.jpeg
2014-12-14 15:59 - 2014-12-14 15:57 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-12-14 15:58 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-12-14 15:57 - 2014-12-14 15:57 - 00000000 ____D () C:\ProgramData\Oracle
2014-12-14 15:50 - 2014-12-14 15:50 - 00638888 _____ (Oracle Corporation) C:\Users\Petr\Downloads\chromeinstall-8u25.exe
2014-12-13 14:55 - 2014-12-13 14:55 - 02400045 _____ () C:\Users\Petr\Downloads\Technic-Launcher-2013-WAREZ.jar
2014-12-13 14:54 - 2014-12-13 14:55 - 30519279 _____ () C:\Users\Petr\Downloads\CDSSK 1.9.9.zip
2014-12-13 14:48 - 2014-12-13 14:48 - 30412012 _____ () C:\Users\Petr\Downloads\CDSSK 1.8.0.zip
2014-12-13 13:36 - 2014-12-13 13:36 - 00000000 ____D () C:\Users\Petr\Documents\Shiner
2014-12-10 16:15 - 2014-12-10 16:15 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Unity
2014-12-10 15:48 - 2014-12-10 15:48 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-10 15:38 - 2014-10-18 03:05 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-12-10 15:38 - 2014-10-18 02:33 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2014-12-10 15:38 - 2014-07-07 03:06 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2014-12-10 15:38 - 2014-07-07 03:06 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2014-12-10 15:38 - 2014-07-07 03:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2014-12-10 15:38 - 2014-07-07 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2014-12-10 15:38 - 2014-07-07 02:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2014-12-10 15:38 - 2014-07-07 02:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2014-12-10 15:38 - 2014-07-07 02:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2014-12-10 15:38 - 2014-07-07 02:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00830976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-10 14:09 - 2014-12-04 03:44 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-10 14:09 - 2014-12-02 00:28 - 01232040 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2014-12-10 14:09 - 2014-11-27 02:43 - 00389296 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-10 14:09 - 2014-11-27 02:10 - 00342200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-12-10 14:09 - 2014-11-22 04:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-12-10 14:09 - 2014-11-22 04:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-12-10 14:09 - 2014-11-22 03:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-12-10 14:09 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-10 14:09 - 2014-11-22 03:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-12-10 14:09 - 2014-11-22 03:41 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-12-10 14:09 - 2014-11-22 03:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-12-10 14:09 - 2014-11-22 03:37 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-12-10 14:09 - 2014-11-22 03:35 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-12-10 14:09 - 2014-11-22 03:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-12-10 14:09 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-12-10 14:09 - 2014-11-22 03:22 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-12-10 14:09 - 2014-11-22 03:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-12-10 14:09 - 2014-11-22 03:14 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-12-10 14:09 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-12-10 14:09 - 2014-11-22 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-12-10 14:09 - 2014-11-22 03:06 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-12-10 14:09 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-10 14:09 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-12-10 14:09 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-12-10 14:09 - 2014-11-22 02:59 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-12-10 14:09 - 2014-11-22 02:58 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-12-10 14:09 - 2014-11-22 02:56 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-12-10 14:09 - 2014-11-22 02:54 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-12-10 14:09 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-10 14:09 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-10 14:09 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-10 14:09 - 2014-11-22 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-12-10 14:09 - 2014-11-22 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-12-10 14:09 - 2014-11-22 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-12-10 14:09 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-12-10 14:09 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-12-10 14:09 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-12-10 14:09 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-12-10 14:09 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-12-10 14:09 - 2014-11-22 02:21 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-12-10 14:09 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-10 14:09 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-12-10 14:09 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-10 14:09 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-12-10 14:09 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-12-10 14:09 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-12-10 14:09 - 2014-11-11 04:09 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-10 14:09 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-10 14:09 - 2014-11-11 02:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2014-12-10 14:08 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-10 14:08 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-10 14:08 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-10 14:08 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-10 14:08 - 2014-11-22 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-12-10 14:08 - 2014-11-22 03:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-12-10 14:08 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-10 14:08 - 2014-11-22 02:47 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-12-10 14:08 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-10 14:08 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-10 14:08 - 2014-11-08 04:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-12-10 14:08 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-12-10 14:08 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2014-12-10 14:08 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2014-12-10 14:08 - 2014-10-03 03:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-12-10 14:08 - 2014-10-03 03:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2014-12-10 14:08 - 2014-10-03 03:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2014-12-10 14:08 - 2014-10-03 03:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2014-12-10 14:08 - 2014-10-03 03:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2014-12-10 14:08 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2014-12-10 14:08 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2014-12-10 14:08 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2014-12-10 14:08 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2014-12-10 14:08 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2014-12-09 12:40 - 2010-02-03 23:45 - 00245788 _____ () C:\Users\Petr\Desktop\v_hegrenade.mdl
2014-12-08 18:35 - 2015-01-02 11:01 - 00000000 ____D () C:\Users\Petr\Documents\My Games
2014-12-07 11:47 - 2014-12-07 11:47 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Awesomium
2014-12-07 11:46 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
2014-12-07 11:46 - 2014-12-07 11:46 - 00002033 _____ () C:\Users\Public\Desktop\Hi-Rez Diagnostics and Support.lnk
2014-12-07 11:46 - 2014-12-07 11:46 - 00002024 _____ () C:\Users\Public\Desktop\Smite.lnk
2014-12-07 11:46 - 2014-12-07 11:46 - 00000000 ____D () C:\ProgramData\Hi-Rez Studios
2014-12-07 11:46 - 2014-12-07 11:46 - 00000000 ____D () C:\Program Files (x86)\Hi-Rez Studios
2014-12-07 11:43 - 2014-12-07 11:44 - 46860733 _____ (Hi-Rez Studios) C:\Users\Petr\Downloads\InstallHiRezGamesEnglish.exe
2014-12-06 08:53 - 2014-12-06 08:55 - 37602760 _____ (Hewlett-Packard ) C:\Users\Petr\Downloads\sp68201.exe
2014-12-05 20:17 - 2014-12-05 20:17 - 00002309 _____ () C:\Users\Petr\Desktop\Spouštěč aplikací Chrome.lnk
2014-12-05 20:17 - 2014-12-05 20:17 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-12-05 20:17 - 2014-12-05 20:17 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome
2014-12-05 20:14 - 2015-01-02 12:05 - 00000944 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-05 20:14 - 2015-01-02 11:28 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-05 20:14 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-12-05 20:14 - 2014-12-12 13:01 - 00002183 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-12-05 20:14 - 2014-12-05 20:14 - 00003944 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-12-05 20:14 - 2014-12-05 20:14 - 00003692 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-12-05 20:13 - 2014-12-31 10:13 - 00000000 ____D () C:\Users\Petr\AppData\Local\Deployment
2014-12-05 20:13 - 2014-12-05 20:14 - 00880784 _____ (Google Inc.) C:\Users\Petr\Downloads\ChromeSetup.exe
2014-12-05 20:13 - 2014-12-05 20:13 - 00000000 ____D () C:\Users\Petr\AppData\Local\Apps\2.0
2014-12-05 20:12 - 2014-12-05 20:12 - 00000000 __SHD () C:\Users\Petr\AppData\Local\EmieBrowserModeList
2014-12-04 20:07 - 2014-12-07 12:44 - 00012868 _____ () C:\Users\Petr\Documents\Igniseriino_000001.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000009.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000008.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000007.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000006.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000005.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000004.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000003.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000002.jpeg
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-02 12:32 - 2014-10-25 11:41 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-01-02 12:09 - 2014-11-20 13:36 - 00000000 ____D () C:\Windows\Minidump
2015-01-02 12:09 - 2014-10-30 15:42 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\uTorrent
2015-01-02 12:09 - 2014-10-26 06:52 - 00000000 ____D () C:\Users\Petr\AppData\Local\CrashDumps
2015-01-02 12:09 - 2014-10-25 11:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\TS3Client
2015-01-02 12:05 - 2014-10-29 19:42 - 00003496 _____ () C:\Windows\System32\Tasks\gg_uac_daemon_Petr
2015-01-02 12:05 - 2011-05-03 12:18 - 00000000 ____D () C:\ProgramData\PDFC
2015-01-02 12:04 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-02 11:47 - 2014-11-07 21:54 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-02 11:31 - 2014-10-26 13:30 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2015-01-02 11:04 - 2014-10-25 11:14 - 00000000 ____D () C:\Users\Petr
2015-01-02 11:03 - 2014-10-25 19:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2015-01-02 11:02 - 2014-11-30 09:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-01-02 11:02 - 2014-11-22 08:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2015-01-02 11:02 - 2014-11-19 21:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-01-02 11:02 - 2014-11-19 16:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magic Bullet Looks
2015-01-02 11:02 - 2014-11-19 16:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Giant
2015-01-02 11:02 - 2014-11-09 12:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3
2015-01-02 11:02 - 2014-11-09 10:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2015-01-02 11:02 - 2014-11-06 16:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
2015-01-02 11:02 - 2014-10-31 13:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-01-02 11:02 - 2014-10-29 19:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garena
2015-01-02 11:02 - 2014-10-29 16:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-01-02 11:02 - 2014-10-27 08:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
2015-01-02 11:02 - 2014-10-27 08:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2015-01-02 11:02 - 2014-10-25 15:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
2015-01-02 11:02 - 2014-10-25 11:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-01-02 11:02 - 2014-10-25 11:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2015-01-02 11:02 - 2014-10-25 11:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2015-01-02 11:02 - 2013-07-30 12:29 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam
2015-01-02 11:02 - 2013-07-30 12:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Energy Star
2015-01-02 11:02 - 2013-07-30 12:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
2015-01-02 11:02 - 2011-05-03 12:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xobni
2015-01-02 11:02 - 2011-05-03 12:19 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services
2015-01-02 11:02 - 2011-05-03 12:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Complete
2015-01-02 11:02 - 2011-05-03 12:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Manager
2015-01-02 11:02 - 2011-05-03 12:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2015-01-02 11:02 - 2011-05-03 12:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote
2015-01-02 11:02 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-01-02 11:02 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-02 11:02 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-02 11:02 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-01-02 11:01 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2015-01-02 11:00 - 2014-11-19 16:18 - 00000000 ____D () C:\ProgramData\Package Cache
2015-01-02 11:00 - 2014-11-11 17:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nem's Tools
2015-01-01 20:27 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-01 20:27 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-25 10:22 - 2014-10-25 11:15 - 00000000 ____D () C:\Users\Petr\AppData\Local\VirtualStore
2014-12-24 22:31 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-12-24 22:22 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-12-24 22:21 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\winrm
2014-12-24 22:21 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\slmgr
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\DVD Maker
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\sk-SK
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\servicing
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\WCN
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\winrm
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\slmgr
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sk-SK
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\oobe
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\migwiz
2014-12-24 22:19 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\WCN
2014-12-24 22:19 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts
2014-12-24 22:19 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Dism
2014-12-24 22:17 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Speech
2014-12-24 09:07 - 2014-10-25 11:20 - 00003962 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{ABA55054-A17B-4303-8183-9C9C519DB5AD}
2014-12-23 14:15 - 2014-11-02 15:07 - 00003180 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForPetr
2014-12-23 14:15 - 2014-11-02 15:07 - 00000328 _____ () C:\Windows\Tasks\HPCeeScheduleForPetr.job
2014-12-22 17:00 - 2014-10-25 11:20 - 00000000 ____D () C:\Users\Petr\Documents\Bluetooth Folder
2014-12-16 19:49 - 2014-10-29 19:43 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\GarenaPlus
2014-12-16 19:49 - 2014-10-29 19:40 - 00000000 ____D () C:\ProgramData\GarenaMessenger
2014-12-16 14:50 - 2014-11-09 10:23 - 00000000 ____D () C:\ProgramData\Origin
2014-12-16 14:49 - 2014-11-09 10:23 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-12-16 13:40 - 2014-11-19 16:29 - 00000000 ____D () C:\Users\Petr\AppData\Local\LooksBuilder
2014-12-16 12:04 - 2014-11-16 10:23 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Spotify
2014-12-14 21:09 - 2014-11-16 10:24 - 00000000 ____D () C:\Users\Petr\AppData\Local\Spotify
2014-12-14 16:02 - 2014-11-05 07:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-14 16:02 - 2011-05-03 12:24 - 00000000 ____D () C:\Program Files (x86)\Java
2014-12-14 15:57 - 2011-05-03 12:24 - 00272296 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-12-14 15:57 - 2011-05-03 12:24 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-12-14 15:57 - 2011-05-03 12:24 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-12-13 13:22 - 2014-10-25 11:49 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-13 08:54 - 2014-11-07 21:53 - 00000000 ____D () C:\Users\Petr\AppData\Local\Adobe
2014-12-13 08:53 - 2014-11-07 21:54 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-13 08:53 - 2014-11-07 21:54 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-13 08:53 - 2014-11-07 21:54 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-10 15:48 - 2014-10-27 15:09 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-10 15:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-10 15:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat
2014-12-10 15:45 - 2014-10-27 08:16 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-10 15:40 - 2014-10-27 08:15 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-07 11:46 - 2011-05-03 12:15 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-12-05 20:15 - 2014-10-25 11:35 - 00000000 ____D () C:\Users\Petr\AppData\Local\Google
2014-12-05 20:14 - 2014-10-25 11:35 - 00000000 ____D () C:\Program Files (x86)\Google
Some content of TEMP:
====================
C:\Users\Petr\AppData\Local\Temp\Quarantine.exe
C:\Users\Petr\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-24 19:56
==================== End Of Log ============================
Ran by Petr (administrator) on PETR-HP on 02-01-2015 12:40:54
Running from C:\Users\Petr\Desktop
Loaded Profile: Petr (Available profiles: Petr)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Safe Mode (with Networking)
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6602856 2011-01-11] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2480936 2010-12-21] (Synaptics Incorporated)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [627360 2011-04-13] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-04-13] (Atheros Commnucations)
HKLM\...\Run: [HPWirelessAssistant] => C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-07-21] (Hewlett-Packard Company)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5595336 2014-10-01] (ESET)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [656920 2011-02-01] (PDF Complete Inc)
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM\...\RunOnce: [NCPluginUpdater] => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\NCPluginUpdater.exe [21720 2014-12-16] (Hewlett-Packard)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\...\Run: [Spotify Web Helper] => C:\Users\Petr\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1514040 2014-11-16] (Spotify Ltd)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\...\RunOnce: [Report] => C:\AdwCleaner\AdwCleaner[S0].txt [2390 2015-01-02] ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1573231078-231515164-428938053-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
HKU\S-1-5-21-1573231078-231515164-428938053-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
SearchScopes: HKLM-x32 -> {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: No Name -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> No File
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
Toolbar: HKU\S-1-5-21-1573231078-231515164-428938053-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Tcpip\Parameters: [DhcpNameServer] 94.74.192.252 94.74.192.244
FireFox:
========
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\faqsxm5w.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\new_plugin\npjp2.dll No File
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll ( Garena)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin HKU\S-1-5-21-1573231078-231515164-428938053-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Petr\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Extension: Adblock Plus - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\faqsxm5w.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-12-05]
Chrome:
=======
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-05]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-12-05]
CHR Extension: (Adblock Plus) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-12-05]
CHR Extension: (Vyhledávání Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-12-05]
CHR Extension: (TastyPlug) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\faccgibalfdoihmenknhpfhldkmgaang [2014-12-05]
CHR Extension: (AdBlock Plus for Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\kcobmjifdimfbihnbnafhcpmifgmjlka [2014-12-05]
CHR Extension: (Peněženka Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-05]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-12-05]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [354304 2011-03-04] (Advanced Micro Devices, Inc.) [File not signed]
S2 AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [194496 2010-06-17] (Advanced Micro Devices)
S2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [146592 2011-04-13] (Atheros) [File not signed]
S2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [77984 2011-04-13] (Atheros Commnucations) [File not signed]
S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [409304 2014-10-08] (BlueStack Systems, Inc.)
S2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [388824 2014-10-08] (BlueStack Systems, Inc.)
S2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [782040 2014-10-08] (BlueStack Systems, Inc.)
S2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1349576 2014-10-01] (ESET)
S2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2014-12-15] (Hi-Rez Studios) [File not signed]
S2 HPAuto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [682040 2011-02-16] (Hewlett-Packard)
S2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [1817088 2010-12-28] (Realsil Microelectronics Inc.) [File not signed]
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1900400 2014-12-16] (Electronic Arts)
S2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1127448 2011-02-01] (PDF Complete Inc)
S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2014-11-09] ()
S2 XobniService; C:\Program Files (x86)\Xobni\XobniService.exe [62184 2011-02-25] (Xobni Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [122072 2014-10-08] (BlueStack Systems)
S1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [243440 2014-10-10] (ESET)
U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [241368 2014-10-10] (ESET)
S1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [169280 2014-10-10] (ESET)
S2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [158968 2014-10-10] (ESET)
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1866080 2012-11-28] ()
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-02 12:40 - 2015-01-02 12:40 - 00029696 _____ () C:\Users\Petr\AppData\Local\MSGBOX.EXE
2015-01-02 12:40 - 2015-01-02 12:40 - 00015327 _____ () C:\Users\Petr\Desktop\LM.bat
2015-01-02 12:37 - 2015-01-02 12:37 - 00000056 _____ () C:\Windows\setupact.log
2015-01-02 12:37 - 2015-01-02 12:37 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-02 12:36 - 2015-01-02 12:37 - 00000850 _____ () C:\Windows\PFRO.log
2015-01-02 12:33 - 2015-01-02 12:35 - 00000000 ____D () C:\AdwCleaner
2015-01-02 12:33 - 2015-01-02 12:33 - 02173952 _____ () C:\Users\Petr\Downloads\adwcleaner_4.106.exe
2015-01-02 12:21 - 2015-01-02 12:42 - 00011623 _____ () C:\Users\Petr\Desktop\FRST.txt
2015-01-02 12:21 - 2015-01-02 12:21 - 02123264 _____ (Farbar) C:\Users\Petr\Downloads\FRST64.exe
2015-01-02 12:21 - 2015-01-02 12:21 - 02123264 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2015-01-02 12:20 - 2015-01-02 12:40 - 00000000 ____D () C:\FRST
2015-01-02 12:17 - 2015-01-02 12:17 - 00112640 _____ (forum.viry.cz) C:\Users\Petr\Downloads\FRSTLauncher.exe
2015-01-02 12:17 - 2015-01-02 12:17 - 00112640 _____ (forum.viry.cz) C:\Users\Petr\Desktop\FRSTLauncher.exe
2015-01-02 10:34 - 2015-01-02 11:02 - 00000000 ____D () C:\Program Files (x86)\trend micro
2015-01-02 10:19 - 2015-01-02 11:02 - 00000000 ____D () C:\Program Files\trend micro
2015-01-02 10:19 - 2015-01-02 10:34 - 00000000 ____D () C:\rsit
2015-01-01 20:41 - 2015-01-01 20:41 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-12-29 21:28 - 2014-12-29 21:28 - 00951768 _____ () C:\Users\Petr\Downloads\CrackedMinecraftLauncherWindows.rar
2014-12-29 21:26 - 2014-12-29 21:26 - 01893151 _____ () C:\Users\Petr\Downloads\minecraft.jar
2014-12-29 19:43 - 2014-12-31 10:13 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Curse Client
2014-12-29 19:41 - 2014-12-29 19:41 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Curse
2014-12-29 10:52 - 2015-01-02 11:01 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse
2014-12-29 10:52 - 2014-12-29 10:54 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Curse Advertising
2014-12-25 10:21 - 2014-12-25 10:21 - 00000000 ___SH () C:\Users\Petr\AppData\Local\LumaEmu
2014-12-25 10:16 - 2014-12-25 10:16 - 00001956 _____ () C:\Users\Petr\Desktop\Rusted Klient 1.8.1.lnk
2014-12-25 10:16 - 2014-12-25 10:16 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rusted.cz
2014-12-25 10:14 - 2015-01-02 11:02 - 00000000 ____D () C:\Program Files (x86)\Rusted Klient 1.8.1
2014-12-25 10:12 - 2014-12-25 10:13 - 445805476 _____ (Rusted.cz ) C:\Users\Petr\Downloads\Rusted Klient 1.8.1.exe
2014-12-21 14:59 - 2014-12-21 14:59 - 00307983 _____ (Cok Software ) C:\Users\Petr\Downloads\autoclicker_setup (1).exe
2014-12-21 13:03 - 2014-12-21 13:03 - 00001854 _____ () C:\Users\Petr\AppData\Roaming\GhostObjGAFix.xml
2014-12-20 17:18 - 2014-12-20 17:19 - 00021198 _____ () C:\Users\Petr\Documents\Nixx_000000.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000009.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000008.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000007.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000006.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000005.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000004.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000003.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000002.jpeg
2014-12-20 17:18 - 2014-12-20 17:18 - 00374398 _____ () C:\Users\Petr\Documents\Nixx_000001.jpeg
2014-12-20 17:16 - 2014-12-20 17:17 - 00021044 _____ () C:\Users\Petr\Documents\frosty_000000.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000006.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000005.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000004.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000003.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000002.jpeg
2014-12-20 17:16 - 2014-12-20 17:16 - 00375961 _____ () C:\Users\Petr\Documents\frosty_000001.jpeg
2014-12-20 15:42 - 2014-12-20 15:43 - 00021380 _____ () C:\Users\Petr\Documents\Koprix_000000.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000013.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000012.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000011.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000010.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000009.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000008.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000007.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000006.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000005.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000004.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000003.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000002.jpeg
2014-12-20 15:42 - 2014-12-20 15:42 - 00344737 _____ () C:\Users\Petr\Documents\Koprix_000001.jpeg
2014-12-20 15:36 - 2014-12-20 15:39 - 00021080 _____ () C:\Users\Petr\Documents\Nix0ne_000000.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000013.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000012.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000011.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000010.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000009.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000008.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000007.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000006.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000005.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000004.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000003.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000002.jpeg
2014-12-20 15:36 - 2014-12-20 15:36 - 00341073 _____ () C:\Users\Petr\Documents\Nix0ne_000001.jpeg
2014-12-20 13:35 - 2014-12-20 14:17 - 386667480 _____ () C:\Users\Petr\Downloads\Mafia-II-čeština-100%-funkční---deadman93.rar
2014-12-20 13:33 - 2014-12-20 13:33 - 00000000 ____D () C:\Users\Petr\AppData\Local\SKIDROW
2014-12-20 13:32 - 2014-12-20 13:32 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-12-20 13:29 - 2014-12-20 13:30 - 35648512 _____ () C:\Users\Petr\Downloads\PhysX-9.12.0613-SystemSoftware.msi
2014-12-20 13:28 - 2014-12-20 13:28 - 00002255 _____ () C:\Users\Petr\Desktop\Mafia 2.lnk
2014-12-20 13:28 - 2014-12-20 13:28 - 00000000 ____D () C:\Users\Petr\AppData\Local\2K Games
2014-12-20 12:23 - 2014-12-20 13:28 - 00000000 ____D () C:\Users\Petr\Downloads\Mafia II + 3 DLCS full game PC ^^nosTEAM^^
2014-12-20 12:20 - 2014-12-20 12:22 - 05304887 _____ () C:\Users\Petr\Downloads\Mafia2.exe
2014-12-19 17:02 - 2014-12-21 19:10 - 00000000 ____D () C:\Users\Petr\Desktop\Nová složka
2014-12-18 21:23 - 2014-12-18 21:23 - 00307983 _____ (Cok Software ) C:\Users\Petr\Downloads\autoclicker_setup.exe
2014-12-18 21:23 - 2014-12-18 21:23 - 00002208 _____ () C:\Users\Petr\Desktop\Cok Free Auto Clicker.lnk
2014-12-18 21:23 - 2014-12-18 21:23 - 00000000 ____D () C:\Program Files (x86)\Cok Software
2014-12-18 13:37 - 2014-12-13 06:09 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-12-18 13:37 - 2014-12-13 04:33 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-12-16 22:02 - 2015-01-02 11:02 - 00000000 ____D () C:\Users\Petr\Documents\FIFA 14
2014-12-16 21:59 - 2014-12-16 21:59 - 00001680 _____ () C:\Users\Petr\Desktop\Play FIFA 14 nosTEAM.lnk
2014-12-16 21:50 - 2014-12-16 21:59 - 00000000 ____D () C:\Games
2014-12-16 20:58 - 2014-12-16 21:02 - 00000000 ____D () C:\Users\Petr\Downloads\FIFA 14 PC full game v1.4.0.0 ^^nosTEAM^^
2014-12-16 20:53 - 2014-12-16 20:55 - 08093511 _____ () C:\Users\Petr\Downloads\F1FA-14.exe
2014-12-16 14:22 - 2014-12-16 14:22 - 00000654 _____ () C:\Users\Petr\Desktop\Gramblr.lnk
2014-12-16 14:22 - 2014-12-16 14:22 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gramblr
2014-12-16 14:22 - 2014-12-16 14:22 - 00000000 ____D () C:\Gramblr
2014-12-16 14:11 - 2014-12-16 14:12 - 28516777 _____ () C:\Users\Petr\Downloads\gramblr.zip
2014-12-16 13:46 - 2014-12-16 13:46 - 00000000 ____D () C:\Users\Petr\Documents\Originals
2014-12-16 13:45 - 2014-12-16 13:45 - 00056320 ____H () C:\Users\Petr\Documents\photothumb.db
2014-12-16 13:43 - 2015-01-02 12:09 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\PhotoScape
2014-12-16 13:43 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoScape
2014-12-16 13:43 - 2014-12-16 13:43 - 00001031 _____ () C:\Users\Petr\Desktop\PhotoScape.lnk
2014-12-16 13:43 - 2014-12-16 13:43 - 00000000 ____D () C:\Program Files (x86)\PhotoScape
2014-12-16 13:42 - 2014-12-16 13:42 - 21360800 _____ (Mooii) C:\Users\Petr\Downloads\PhotoScape_V3.7.exe
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000009.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000008.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000007.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000006.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000005.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000004.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000003.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000002.jpeg
2014-12-16 13:41 - 2014-12-16 13:41 - 00128491 _____ () C:\Users\Petr\Documents\Foto_000001.jpeg
2014-12-14 15:59 - 2014-12-14 15:57 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-12-14 15:58 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-12-14 15:57 - 2014-12-14 15:57 - 00000000 ____D () C:\ProgramData\Oracle
2014-12-14 15:50 - 2014-12-14 15:50 - 00638888 _____ (Oracle Corporation) C:\Users\Petr\Downloads\chromeinstall-8u25.exe
2014-12-13 14:55 - 2014-12-13 14:55 - 02400045 _____ () C:\Users\Petr\Downloads\Technic-Launcher-2013-WAREZ.jar
2014-12-13 14:54 - 2014-12-13 14:55 - 30519279 _____ () C:\Users\Petr\Downloads\CDSSK 1.9.9.zip
2014-12-13 14:48 - 2014-12-13 14:48 - 30412012 _____ () C:\Users\Petr\Downloads\CDSSK 1.8.0.zip
2014-12-13 13:36 - 2014-12-13 13:36 - 00000000 ____D () C:\Users\Petr\Documents\Shiner
2014-12-10 16:15 - 2014-12-10 16:15 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Unity
2014-12-10 15:48 - 2014-12-10 15:48 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-10 15:38 - 2014-10-18 03:05 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-12-10 15:38 - 2014-10-18 02:33 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2014-12-10 15:38 - 2014-07-07 03:06 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2014-12-10 15:38 - 2014-07-07 03:06 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2014-12-10 15:38 - 2014-07-07 03:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2014-12-10 15:38 - 2014-07-07 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2014-12-10 15:38 - 2014-07-07 02:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2014-12-10 15:38 - 2014-07-07 02:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2014-12-10 15:38 - 2014-07-07 02:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2014-12-10 15:38 - 2014-07-07 02:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00830976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-10 14:09 - 2014-12-04 03:50 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-10 14:09 - 2014-12-04 03:44 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-10 14:09 - 2014-12-02 00:28 - 01232040 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2014-12-10 14:09 - 2014-11-27 02:43 - 00389296 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-10 14:09 - 2014-11-27 02:10 - 00342200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-12-10 14:09 - 2014-11-22 04:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-12-10 14:09 - 2014-11-22 04:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-12-10 14:09 - 2014-11-22 03:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-12-10 14:09 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-10 14:09 - 2014-11-22 03:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-12-10 14:09 - 2014-11-22 03:41 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-12-10 14:09 - 2014-11-22 03:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-12-10 14:09 - 2014-11-22 03:37 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-12-10 14:09 - 2014-11-22 03:35 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-12-10 14:09 - 2014-11-22 03:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-12-10 14:09 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-12-10 14:09 - 2014-11-22 03:22 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-12-10 14:09 - 2014-11-22 03:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-12-10 14:09 - 2014-11-22 03:14 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-12-10 14:09 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-12-10 14:09 - 2014-11-22 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-12-10 14:09 - 2014-11-22 03:06 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-12-10 14:09 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-10 14:09 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-12-10 14:09 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-12-10 14:09 - 2014-11-22 02:59 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-12-10 14:09 - 2014-11-22 02:58 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-12-10 14:09 - 2014-11-22 02:56 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-12-10 14:09 - 2014-11-22 02:54 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-12-10 14:09 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-10 14:09 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-10 14:09 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-10 14:09 - 2014-11-22 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-12-10 14:09 - 2014-11-22 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-12-10 14:09 - 2014-11-22 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-12-10 14:09 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-12-10 14:09 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-12-10 14:09 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-12-10 14:09 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-12-10 14:09 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-12-10 14:09 - 2014-11-22 02:21 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-12-10 14:09 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-10 14:09 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-12-10 14:09 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-10 14:09 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-12-10 14:09 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-12-10 14:09 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-12-10 14:09 - 2014-11-11 04:09 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-10 14:09 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-10 14:09 - 2014-11-11 02:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2014-12-10 14:08 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-10 14:08 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-10 14:08 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-10 14:08 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-10 14:08 - 2014-11-22 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-12-10 14:08 - 2014-11-22 03:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-12-10 14:08 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-10 14:08 - 2014-11-22 02:47 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-12-10 14:08 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-10 14:08 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-10 14:08 - 2014-11-08 04:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-12-10 14:08 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-12-10 14:08 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2014-12-10 14:08 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2014-12-10 14:08 - 2014-10-03 03:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-12-10 14:08 - 2014-10-03 03:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2014-12-10 14:08 - 2014-10-03 03:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2014-12-10 14:08 - 2014-10-03 03:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2014-12-10 14:08 - 2014-10-03 03:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2014-12-10 14:08 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2014-12-10 14:08 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2014-12-10 14:08 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2014-12-10 14:08 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2014-12-10 14:08 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2014-12-09 12:40 - 2010-02-03 23:45 - 00245788 _____ () C:\Users\Petr\Desktop\v_hegrenade.mdl
2014-12-08 18:35 - 2015-01-02 11:01 - 00000000 ____D () C:\Users\Petr\Documents\My Games
2014-12-07 11:47 - 2014-12-07 11:47 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Awesomium
2014-12-07 11:46 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
2014-12-07 11:46 - 2014-12-07 11:46 - 00002033 _____ () C:\Users\Public\Desktop\Hi-Rez Diagnostics and Support.lnk
2014-12-07 11:46 - 2014-12-07 11:46 - 00002024 _____ () C:\Users\Public\Desktop\Smite.lnk
2014-12-07 11:46 - 2014-12-07 11:46 - 00000000 ____D () C:\ProgramData\Hi-Rez Studios
2014-12-07 11:46 - 2014-12-07 11:46 - 00000000 ____D () C:\Program Files (x86)\Hi-Rez Studios
2014-12-07 11:43 - 2014-12-07 11:44 - 46860733 _____ (Hi-Rez Studios) C:\Users\Petr\Downloads\InstallHiRezGamesEnglish.exe
2014-12-06 08:53 - 2014-12-06 08:55 - 37602760 _____ (Hewlett-Packard ) C:\Users\Petr\Downloads\sp68201.exe
2014-12-05 20:17 - 2014-12-05 20:17 - 00002309 _____ () C:\Users\Petr\Desktop\Spouštěč aplikací Chrome.lnk
2014-12-05 20:17 - 2014-12-05 20:17 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-12-05 20:17 - 2014-12-05 20:17 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome
2014-12-05 20:14 - 2015-01-02 12:05 - 00000944 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-05 20:14 - 2015-01-02 11:28 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-05 20:14 - 2015-01-02 11:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-12-05 20:14 - 2014-12-12 13:01 - 00002183 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-12-05 20:14 - 2014-12-05 20:14 - 00003944 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-12-05 20:14 - 2014-12-05 20:14 - 00003692 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-12-05 20:13 - 2014-12-31 10:13 - 00000000 ____D () C:\Users\Petr\AppData\Local\Deployment
2014-12-05 20:13 - 2014-12-05 20:14 - 00880784 _____ (Google Inc.) C:\Users\Petr\Downloads\ChromeSetup.exe
2014-12-05 20:13 - 2014-12-05 20:13 - 00000000 ____D () C:\Users\Petr\AppData\Local\Apps\2.0
2014-12-05 20:12 - 2014-12-05 20:12 - 00000000 __SHD () C:\Users\Petr\AppData\Local\EmieBrowserModeList
2014-12-04 20:07 - 2014-12-07 12:44 - 00012868 _____ () C:\Users\Petr\Documents\Igniseriino_000001.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000009.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000008.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000007.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000006.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000005.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000004.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000003.jpeg
2014-12-04 20:07 - 2014-12-04 20:07 - 00203300 _____ () C:\Users\Petr\Documents\Igniseriino_000002.jpeg
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-02 12:32 - 2014-10-25 11:41 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-01-02 12:09 - 2014-11-20 13:36 - 00000000 ____D () C:\Windows\Minidump
2015-01-02 12:09 - 2014-10-30 15:42 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\uTorrent
2015-01-02 12:09 - 2014-10-26 06:52 - 00000000 ____D () C:\Users\Petr\AppData\Local\CrashDumps
2015-01-02 12:09 - 2014-10-25 11:38 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\TS3Client
2015-01-02 12:05 - 2014-10-29 19:42 - 00003496 _____ () C:\Windows\System32\Tasks\gg_uac_daemon_Petr
2015-01-02 12:05 - 2011-05-03 12:18 - 00000000 ____D () C:\ProgramData\PDFC
2015-01-02 12:04 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-02 11:47 - 2014-11-07 21:54 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-02 11:31 - 2014-10-26 13:30 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2015-01-02 11:04 - 2014-10-25 11:14 - 00000000 ____D () C:\Users\Petr
2015-01-02 11:03 - 2014-10-25 19:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2015-01-02 11:02 - 2014-11-30 09:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-01-02 11:02 - 2014-11-22 08:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2015-01-02 11:02 - 2014-11-19 21:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-01-02 11:02 - 2014-11-19 16:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Magic Bullet Looks
2015-01-02 11:02 - 2014-11-19 16:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Giant
2015-01-02 11:02 - 2014-11-09 12:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3
2015-01-02 11:02 - 2014-11-09 10:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2015-01-02 11:02 - 2014-11-06 16:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
2015-01-02 11:02 - 2014-10-31 13:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-01-02 11:02 - 2014-10-29 19:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garena
2015-01-02 11:02 - 2014-10-29 16:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-01-02 11:02 - 2014-10-27 08:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
2015-01-02 11:02 - 2014-10-27 08:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2015-01-02 11:02 - 2014-10-25 15:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
2015-01-02 11:02 - 2014-10-25 11:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-01-02 11:02 - 2014-10-25 11:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2015-01-02 11:02 - 2014-10-25 11:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2015-01-02 11:02 - 2013-07-30 12:29 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam
2015-01-02 11:02 - 2013-07-30 12:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Energy Star
2015-01-02 11:02 - 2013-07-30 12:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
2015-01-02 11:02 - 2011-05-03 12:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xobni
2015-01-02 11:02 - 2011-05-03 12:19 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services
2015-01-02 11:02 - 2011-05-03 12:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Complete
2015-01-02 11:02 - 2011-05-03 12:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Manager
2015-01-02 11:02 - 2011-05-03 12:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2015-01-02 11:02 - 2011-05-03 12:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote
2015-01-02 11:02 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-01-02 11:02 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-02 11:02 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-02 11:02 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-01-02 11:01 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2015-01-02 11:00 - 2014-11-19 16:18 - 00000000 ____D () C:\ProgramData\Package Cache
2015-01-02 11:00 - 2014-11-11 17:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nem's Tools
2015-01-01 20:27 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-01 20:27 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-25 10:22 - 2014-10-25 11:15 - 00000000 ____D () C:\Users\Petr\AppData\Local\VirtualStore
2014-12-24 22:31 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-12-24 22:22 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-12-24 22:21 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\winrm
2014-12-24 22:21 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\slmgr
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\DVD Maker
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2014-12-24 22:21 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\sk-SK
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\servicing
2014-12-24 22:21 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\WCN
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\winrm
2014-12-24 22:20 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\slmgr
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sk-SK
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\oobe
2014-12-24 22:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\migwiz
2014-12-24 22:19 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\WCN
2014-12-24 22:19 - 2010-11-21 08:06 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts
2014-12-24 22:19 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Dism
2014-12-24 22:17 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Speech
2014-12-24 09:07 - 2014-10-25 11:20 - 00003962 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{ABA55054-A17B-4303-8183-9C9C519DB5AD}
2014-12-23 14:15 - 2014-11-02 15:07 - 00003180 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForPetr
2014-12-23 14:15 - 2014-11-02 15:07 - 00000328 _____ () C:\Windows\Tasks\HPCeeScheduleForPetr.job
2014-12-22 17:00 - 2014-10-25 11:20 - 00000000 ____D () C:\Users\Petr\Documents\Bluetooth Folder
2014-12-16 19:49 - 2014-10-29 19:43 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\GarenaPlus
2014-12-16 19:49 - 2014-10-29 19:40 - 00000000 ____D () C:\ProgramData\GarenaMessenger
2014-12-16 14:50 - 2014-11-09 10:23 - 00000000 ____D () C:\ProgramData\Origin
2014-12-16 14:49 - 2014-11-09 10:23 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-12-16 13:40 - 2014-11-19 16:29 - 00000000 ____D () C:\Users\Petr\AppData\Local\LooksBuilder
2014-12-16 12:04 - 2014-11-16 10:23 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Spotify
2014-12-14 21:09 - 2014-11-16 10:24 - 00000000 ____D () C:\Users\Petr\AppData\Local\Spotify
2014-12-14 16:02 - 2014-11-05 07:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-14 16:02 - 2011-05-03 12:24 - 00000000 ____D () C:\Program Files (x86)\Java
2014-12-14 15:57 - 2011-05-03 12:24 - 00272296 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-12-14 15:57 - 2011-05-03 12:24 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-12-14 15:57 - 2011-05-03 12:24 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-12-13 13:22 - 2014-10-25 11:49 - 00000000 ____D () C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-13 08:54 - 2014-11-07 21:53 - 00000000 ____D () C:\Users\Petr\AppData\Local\Adobe
2014-12-13 08:53 - 2014-11-07 21:54 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-13 08:53 - 2014-11-07 21:54 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-13 08:53 - 2014-11-07 21:54 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-10 15:48 - 2014-10-27 15:09 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-10 15:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-10 15:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat
2014-12-10 15:45 - 2014-10-27 08:16 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-10 15:40 - 2014-10-27 08:15 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-07 11:46 - 2011-05-03 12:15 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-12-05 20:15 - 2014-10-25 11:35 - 00000000 ____D () C:\Users\Petr\AppData\Local\Google
2014-12-05 20:14 - 2014-10-25 11:35 - 00000000 ____D () C:\Program Files (x86)\Google
Some content of TEMP:
====================
C:\Users\Petr\AppData\Local\Temp\Quarantine.exe
C:\Users\Petr\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-24 19:56
==================== End Of Log ============================
Re: Zaseknutí počítače při načítání obrazovky
aka je velkost adresara C:\Users\Petr\Desktop 
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Zaseknutí počítače při načítání obrazovky
21,6 GB, btw systém jsem obnovil na datum 24.12 spouštěl jsem to sice asi 30 - 45 minut ale nakonec se to spustilo, vše zatím funguje ale počítač je zasekaný. Nejsem už v nouzovém režimu.
Re: Zaseknutí počítače při načítání obrazovky
nuz velkost adresara plochy by nemala byt vacsia ako 300MB
poupratuj a bude vsetko OK
poupratuj a bude vsetko OK
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Zaseknutí počítače při načítání obrazovky
Aha, měl jsem tam wowko který zabíralo 21,6 GB, už tam mám jen 26,1 MB
Re: Zaseknutí počítače při načítání obrazovky
kedze si este po cistemi s ADW sachoval s obnovou, tak zopakuj cistenie s ADWCleanerom a myslim, ze mame hotovo 
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Zaseknutí počítače při načítání obrazovky
Celkem se bojím, jelikož jesti dám ADW cleaner bude to chtít restart, bojím se, že po restartu to už nepujde.
Re: Zaseknutí počítače při načítání obrazovky
nuz keby si bol blizsie, tak by som stavil 5E, ze to bude OK 
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Zaseknutí počítače při načítání obrazovky
Dole v pravo se ukázalo Windows 7, Tato kopie Windowsu není pravá, je něco špatně?
Áha, takže další chyba, neukazuje mi to, že jsem administrátor, přitom jsem na administrátorském účtě, dole vlevo na ploše to ukazuje Sestavení 7601
Tato kopie systému windows není pravá.
Áha, takže další chyba, neukazuje mi to, že jsem administrátor, přitom jsem na administrátorském účtě, dole vlevo na ploše to ukazuje Sestavení 7601
Tato kopie systému windows není pravá.


Přispějete na provoz fóra?