Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o kontrolu logu, pocitac je v hroznem stavu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
jointsmouka
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 24 úno 2015 15:44

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#31 Příspěvek od jointsmouka »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-02-2015 01
Ran by jointsmouka (administrator) on JOINTSMOUKA-PC on 26-02-2015 09:52:51
Running from C:\Users\jointsmouka\Desktop
Loaded Profiles: jointsmouka (Available profiles: jointsmouka)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Logitech Inc.) C:\Program Files (x86)\Logitech\Vid HD\Vid.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Logitech Inc.) C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Desktop.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(forum.viry.cz) C:\Users\jointsmouka\Desktop\FRST-OlderVersion\frstlauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [LWS] => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [205336 2011-11-11] (Logitech Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-02-25] (AVAST Software)
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\...\Run: [Logitech Vid] => C:\Program Files (x86)\Logitech\Vid HD\Vid.exe [6129496 2011-01-13] (Logitech Inc.)
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\Steam.exe [2874048 2015-02-19] (Valve Corporation)
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\jointsmouka\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-883375831-3728679416-1811525376-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-883375831-3728679416-1811525376-1001 -> {BE0E22DF-7D17-4686-B73C-6DC95375082B} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_14875
SearchScopes: HKU\S-1-5-21-883375831-3728679416-1811525376-1001 -> {C04B0473-4653-4FCA-8B5D-4B44A4B15F00} URL = http://www.mapy.cz/?query={searchTerms} ... arch_14875
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{878EC04A-E66B-447C-BB01-A651764F78C1}: [NameServer] 8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8,8.8.8.8

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_269.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_269.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-883375831-3728679416-1811525376-1001: @tools.google.com/Google Update;version=3 -> C:\Users\jointsmouka\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll No File
FF Plugin HKU\S-1-5-21-883375831-3728679416-1811525376-1001: @tools.google.com/Google Update;version=9 -> C:\Users\jointsmouka\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll No File
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-02-25]

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-12-21]
CHR Extension: (Google Docs) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-12-21]
CHR Extension: (Google Drive) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-21]
CHR Extension: (YouTube) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-12-21]
CHR Extension: (Google Search) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-12-21]
CHR Extension: (Google Sheets) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-12-21]
CHR Extension: (Google Wallet) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-24]
CHR Extension: (Gmail) - C:\Users\jointsmouka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-12-21]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-02-25]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-02-25] (AVAST Software)
S3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2015-02-25] (Avast Software)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148744 2014-10-04] (NVIDIA Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1795912 2014-10-04] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19439944 2014-10-04] (NVIDIA Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5436176 2015-02-17] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-02-25] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [87912 2015-02-25] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-02-25] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-02-25] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-02-25] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-02-25] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-02-25] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-02-25] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-11-17] (Disc Soft Ltd)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19272 2014-10-04] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38048 2014-09-04] (NVIDIA Corporation)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2015-02-25] (Avast Software)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 cpuz134; \??\C:\Users\JOINTS~1\AppData\Local\Temp\cpuz134\cpuz134_x64.sys [X]
S3 lmimirr; system32\DRIVERS\lmimirr.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-26 09:52 - 2015-02-26 09:52 - 00000000 ____D () C:\Users\jointsmouka\Desktop\FRST-OlderVersion
2015-02-26 09:48 - 2015-02-04 01:00 - 00608072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-02-26 09:46 - 2015-02-26 09:47 - 00000000 ____D () C:\Windows\LastGood
2015-02-26 09:45 - 2015-02-04 04:56 - 31515280 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 24198856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 22993224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 18634072 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 17559432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 16128576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 15294280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 13916280 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 13828032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 12894024 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-02-26 09:45 - 2015-02-04 04:56 - 11272240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 11209192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 04244680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 03987600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 02823992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 01907400 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434144.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 01555656 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434144.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 00944328 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 00907464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 00902344 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-02-26 09:45 - 2015-02-04 04:56 - 00870032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-02-26 03:17 - 2015-02-26 03:17 - 00000318 _____ () C:\Windows\PFRO.log
2015-02-26 03:00 - 2015-01-09 00:44 - 00419936 _____ () C:\Windows\SysWOW64\locale.nls
2015-02-26 03:00 - 2015-01-09 00:43 - 00419936 _____ () C:\Windows\system32\locale.nls
2015-02-25 23:34 - 2015-02-25 23:34 - 00000247 _____ () C:\Windows\system32\2015-02-25-22-34-56.020-aswFe.exe-2700.log
2015-02-25 23:17 - 2015-02-25 23:34 - 00000247 _____ () C:\Windows\system32\2015-02-25-22-17-03.080-aswFe.exe-3084.log
2015-02-25 23:16 - 2015-02-25 23:16 - 00000197 _____ () C:\Windows\system32\2015-02-25-22-16-43.018-AvastVBoxSVC.exe-4236.log
2015-02-25 22:20 - 2015-02-26 03:17 - 00000168 _____ () C:\Windows\setupact.log
2015-02-25 22:20 - 2015-02-25 22:20 - 00000000 _____ () C:\Windows\setuperr.log
2015-02-25 20:53 - 2015-02-25 20:53 - 00000247 _____ () C:\Windows\system32\2015-02-25-19-53-05.072-aswFe.exe-5896.log
2015-02-25 20:48 - 2015-02-25 20:52 - 00000247 _____ () C:\Windows\system32\2015-02-25-19-48-23.070-aswFe.exe-4576.log
2015-02-25 20:48 - 2015-02-25 20:48 - 00000197 _____ () C:\Windows\system32\2015-02-25-19-48-21.001-AvastVBoxSVC.exe-740.log
2015-02-25 17:40 - 2015-02-25 17:40 - 00000197 _____ () C:\Windows\system32\2015-02-25-16-40-20.018-AvastVBoxSVC.exe-3424.log
2015-02-25 17:40 - 2015-02-25 17:40 - 00000020 _____ () C:\Users\jointsmouka\AppData\Roaming\appdataFr3.bin
2015-02-25 16:54 - 2015-02-25 15:54 - 00024064 _____ () C:\Windows\zoek-delete.exe
2015-02-25 15:57 - 2015-02-25 14:47 - 00002022 _____ () C:\zoek-results2015-02-25-134743.log
2015-02-25 15:52 - 2015-02-25 15:52 - 00000197 _____ () C:\Windows\system32\2015-02-25-14-52-12.021-AvastVBoxSVC.exe-4020.log
2015-02-25 14:44 - 2015-02-25 17:37 - 00085745 _____ () C:\zoek-results.log
2015-02-25 14:43 - 2015-02-25 16:51 - 00000000 ____D () C:\zoek_backup
2015-02-25 14:42 - 2015-02-25 14:42 - 01304576 _____ () C:\Users\jointsmouka\Desktop\zoek.exe
2015-02-25 14:33 - 2015-02-25 14:33 - 00033796 _____ () C:\Users\jointsmouka\Documents\cc_20150225_143310.reg
2015-02-25 14:28 - 2015-02-25 14:28 - 00000000 ____D () C:\Windows\pss
2015-02-25 14:26 - 2015-02-25 14:26 - 00002784 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-02-25 14:26 - 2015-02-25 14:26 - 00000981 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2015-02-25 14:26 - 2015-02-25 14:26 - 00000000 ____D () C:\Program Files\CCleaner
2015-02-25 14:25 - 2015-02-25 14:25 - 05325696 _____ (Piriform Ltd) C:\Users\jointsmouka\Downloads\ccsetup503.exe
2015-02-25 12:23 - 2015-02-25 12:23 - 00000247 _____ () C:\Windows\system32\2015-02-25-11-23-37.091-aswFe.exe-3936.log
2015-02-25 12:18 - 2015-02-25 12:23 - 00000247 _____ () C:\Windows\system32\2015-02-25-11-18-34.072-aswFe.exe-5764.log
2015-02-25 12:18 - 2015-02-25 12:18 - 00000197 _____ () C:\Windows\system32\2015-02-25-11-18-30.084-AvastVBoxSVC.exe-4200.log
2015-02-25 12:13 - 2015-02-25 12:14 - 00000000 ____D () C:\Windows\SysWOW64\vbox
2015-02-25 12:13 - 2015-02-25 12:14 - 00000000 ____D () C:\Windows\system32\vbox
2015-02-25 12:13 - 2015-02-25 12:13 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-02-25 12:13 - 2015-02-25 12:13 - 00001970 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-02-25 12:13 - 2015-02-25 12:13 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\AVAST Software
2015-02-25 12:13 - 2015-02-25 12:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-02-25 12:12 - 2015-02-25 12:13 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2015-02-25 12:12 - 2015-02-25 12:13 - 00087912 _____ (AVAST Software) C:\Windows\system32\Drivers\aswmonflt.sys
2015-02-25 12:12 - 2015-02-25 12:12 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2015-02-25 12:12 - 2015-02-25 12:12 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2015-02-25 12:12 - 2015-02-25 12:12 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-02-25 12:12 - 2015-02-25 12:12 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2015-02-25 12:12 - 2015-02-25 12:12 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2015-02-25 12:12 - 2015-02-25 12:12 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-02-25 12:12 - 2015-02-25 12:12 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2015-02-25 12:12 - 2015-02-25 12:12 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2015-02-25 12:12 - 2015-02-25 12:12 - 00000000 ____D () C:\Program Files\AVAST Software
2015-02-25 12:09 - 2015-02-25 12:12 - 00000000 ____D () C:\ProgramData\AVAST Software
2015-02-25 12:09 - 2015-02-25 12:09 - 05006864 _____ (AVAST Software) C:\Users\jointsmouka\Downloads\avast_free_antivirus_setup_online.exe
2015-02-25 00:21 - 2015-02-25 00:21 - 00012177 _____ () C:\Users\jointsmouka\Downloads\The.Big.Bang.Theory.S08E09.HDTV.x264-LOL.torrent
2015-02-25 00:20 - 2015-02-25 00:20 - 00011130 _____ () C:\Users\jointsmouka\Downloads\The.Big.Bang.Theory.S08E08.HDTV.x264-LOL.torrent
2015-02-24 23:56 - 2015-02-24 23:56 - 00001730 _____ () C:\Users\Public\Desktop\Defraggler.lnk
2015-02-24 23:56 - 2015-02-24 23:56 - 00000000 ____D () C:\Program Files\Defraggler
2015-02-24 23:54 - 2015-02-24 23:55 - 04362512 _____ (Piriform Ltd) C:\Users\jointsmouka\Downloads\dfsetup218.exe
2015-02-24 23:17 - 2015-02-24 23:40 - 01224704 _____ () C:\Users\jointsmouka\Documents\Database1.accdb
2015-02-24 22:46 - 2015-02-24 22:46 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-02-24 22:45 - 2015-02-24 22:46 - 16502728 _____ (Malwarebytes Corp.) C:\Users\jointsmouka\Downloads\mbar-1.09.1.1004.exe
2015-02-24 22:42 - 2015-02-24 23:40 - 00000000 ____D () C:\Users\jointsmouka\Desktop\mbar
2015-02-24 22:41 - 2015-02-24 22:42 - 16466552 _____ (Malwarebytes Corp.) C:\Users\jointsmouka\Downloads\mbar-1.08.3.1004.exe
2015-02-24 22:05 - 2015-02-24 21:37 - 00009109 _____ () C:\Users\jointsmouka\Desktop\AdwCleaner[S0].txt
2015-02-24 22:00 - 2015-02-26 09:53 - 00016279 _____ () C:\Users\jointsmouka\Desktop\FRST.txt
2015-02-24 21:32 - 2015-02-24 21:40 - 00000000 ____D () C:\AdwCleaner
2015-02-24 21:14 - 2015-02-24 21:14 - 00036772 _____ () C:\Users\jointsmouka\Desktop\Fixlog.rar
2015-02-24 21:10 - 2015-02-26 09:15 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-24 21:10 - 2015-02-26 03:18 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-24 21:09 - 2015-02-25 12:01 - 00000496 _____ () C:\Windows\Tasks\Ad-Aware Update (Daily).job
2015-02-24 19:52 - 2015-02-24 19:52 - 00037638 _____ () C:\ComboFix.txt
2015-02-24 17:47 - 2015-02-25 07:32 - 01605632 _____ () C:\Users\jointsmouka\Downloads\autobazar_relace.accdb
2015-02-24 17:47 - 2015-02-24 17:47 - 00145408 _____ () C:\Users\jointsmouka\Downloads\db1-2 upr.ppt
2015-02-24 17:47 - 2015-02-24 17:47 - 00013820 _____ () C:\Users\jointsmouka\Downloads\Test tvorba tabulek a relace.xlsx
2015-02-24 16:54 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-02-24 16:54 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-02-24 16:54 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2015-02-24 16:54 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2015-02-24 16:53 - 2015-02-24 19:52 - 00000000 ____D () C:\Qoobox
2015-02-24 16:53 - 2015-02-24 19:40 - 00000000 ____D () C:\Windows\erdnt
2015-02-24 16:51 - 2015-02-24 16:52 - 05611903 ____R (Swearware) C:\Users\jointsmouka\Desktop\ComboFix.exe
2015-02-24 16:37 - 2015-02-24 16:39 - 00004084 _____ () C:\Users\jointsmouka\Desktop\Rkill.txt
2015-02-24 16:35 - 2015-02-24 16:35 - 01943800 _____ (Bleeping Computer, LLC) C:\Users\jointsmouka\Desktop\rkill.exe
2015-02-24 16:20 - 2015-02-26 09:52 - 00000000 ____D () C:\FRST
2015-02-24 16:17 - 2015-02-26 09:52 - 02087936 _____ (Farbar) C:\Users\jointsmouka\Desktop\FRST64.exe
2015-02-24 15:38 - 2015-02-24 15:39 - 00000000 ____D () C:\Program Files\trend micro
2015-02-24 15:37 - 2015-02-24 15:37 - 01222144 _____ () C:\Users\jointsmouka\Downloads\RSITx64.exe
2015-02-24 15:16 - 2015-02-25 14:30 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\TeamViewer
2015-02-24 15:16 - 2015-02-24 15:16 - 00001049 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-02-24 15:15 - 2015-02-24 15:15 - 07826296 _____ (TeamViewer GmbH) C:\Users\jointsmouka\Downloads\TeamViewer_Setup_cs-iuu.exe
2015-02-24 10:25 - 2015-02-24 10:25 - 00000000 ____D () C:\Users\jointsmouka\AppData\Local\Steam
2015-02-23 22:30 - 2015-02-23 22:30 - 00000165 ____H () C:\Users\jointsmouka\Downloads\~$využití-radionuklidu.pptx
2015-02-23 22:29 - 2015-02-23 22:29 - 00088372 _____ () C:\Users\jointsmouka\Downloads\využití-radionuklidu.pptx
2015-02-21 17:08 - 2015-02-21 19:30 - 1276074610 _____ () C:\Users\jointsmouka\Downloads\Padesát-odstínů-šedi---Fifty-Shades-of-Grey-2015-[CAM.XviD]-tit.CZ-v-obraze.avi
2015-02-20 21:38 - 2015-02-20 21:38 - 00696556 _____ () C:\Users\jointsmouka\Downloads\Vzorník (1).pptx
2015-02-15 15:33 - 2015-02-15 15:33 - 00230094 _____ () C:\Users\jointsmouka\Downloads\tam1.bmp
2015-02-12 14:10 - 2015-01-23 05:42 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-02-12 14:10 - 2015-01-23 05:41 - 06041600 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-12 14:10 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-02-12 14:10 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-02-11 14:35 - 2015-01-15 09:14 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-02-11 14:35 - 2015-01-15 09:14 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-02-11 14:35 - 2015-01-15 09:09 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-11 14:35 - 2015-01-15 09:09 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-02-11 14:35 - 2015-01-15 09:09 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-02-11 14:35 - 2015-01-15 09:09 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-02-11 14:35 - 2015-01-15 09:09 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-02-11 14:35 - 2015-01-15 09:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-02-11 14:35 - 2015-01-15 09:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-02-11 14:35 - 2015-01-15 09:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-02-11 14:35 - 2015-01-15 09:04 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-11 14:35 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-02-11 14:35 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-02-11 14:35 - 2015-01-15 08:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-02-11 14:35 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-02-11 14:35 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-02-11 14:35 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-02-11 14:35 - 2015-01-15 05:22 - 00458824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-11 14:35 - 2015-01-13 04:10 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-02-11 14:35 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-02-11 14:35 - 2014-10-04 03:10 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-02-11 14:35 - 2014-10-04 02:42 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-02-11 14:35 - 2014-10-04 02:42 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-02-11 14:34 - 2015-02-04 04:16 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-02-11 14:34 - 2015-02-04 04:13 - 01098752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-02-11 14:34 - 2015-01-28 00:36 - 01239720 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2015-02-11 14:34 - 2015-01-14 07:09 - 05554112 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-11 14:34 - 2015-01-14 07:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-02-11 14:34 - 2015-01-14 07:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-02-11 14:34 - 2015-01-14 07:04 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-02-11 14:34 - 2015-01-14 06:47 - 00389808 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-02-11 14:34 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-02-11 14:34 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-02-11 14:34 - 2015-01-14 06:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-02-11 14:34 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-02-11 14:34 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-11 14:34 - 2015-01-12 04:05 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-02-11 14:34 - 2015-01-12 04:05 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-02-11 14:34 - 2015-01-12 03:49 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-02-11 14:34 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-11 14:34 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-11 14:34 - 2015-01-12 03:48 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-02-11 14:34 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-02-11 14:34 - 2015-01-12 03:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-02-11 14:34 - 2015-01-12 03:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-02-11 14:34 - 2015-01-12 03:36 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-02-11 14:34 - 2015-01-12 03:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-02-11 14:34 - 2015-01-12 03:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-02-11 14:34 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-02-11 14:34 - 2015-01-12 03:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-11 14:34 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-02-11 14:34 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-11 14:34 - 2015-01-12 03:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-11 14:34 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-02-11 14:34 - 2015-01-12 03:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-02-11 14:34 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-02-11 14:34 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-02-11 14:34 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-02-11 14:34 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-02-11 14:34 - 2015-01-12 03:04 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-02-11 14:34 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-02-11 14:34 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-02-11 14:34 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-02-11 14:34 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-02-11 14:34 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-02-11 14:34 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-11 14:34 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-02-11 14:34 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-11 14:34 - 2015-01-12 02:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-02-11 14:34 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-02-11 14:34 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-11 14:34 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-02-11 14:34 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-02-11 14:34 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-02-11 14:34 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-02-11 14:34 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-11 14:34 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-02-11 14:34 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-02-11 14:34 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-02-11 14:34 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-02-11 14:34 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-11 14:34 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-02-11 14:34 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-02-11 14:34 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-02-11 14:34 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-02-11 14:34 - 2015-01-10 07:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-02-11 14:34 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-02-11 14:30 - 2014-12-12 06:31 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-02-11 14:30 - 2014-12-12 06:07 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-02-11 14:29 - 2014-11-26 04:53 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-11 14:29 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-02-11 14:28 - 2015-01-09 03:03 - 03201536 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-11 14:28 - 2014-12-08 04:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-11 14:28 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-02-10 21:10 - 2015-02-10 21:10 - 00792942 _____ () C:\Users\jointsmouka\Downloads\Vzorník2.pptx
2015-02-09 14:06 - 2015-02-09 14:07 - 00014776 _____ () C:\Users\jointsmouka\Downloads\kalkulačka-Brusta.xlsm
2015-02-05 22:59 - 2015-02-05 23:00 - 00764401 _____ () C:\Users\jointsmouka\Downloads\Vzorník.pptx
2015-02-03 19:32 - 2015-02-03 19:32 - 00031720 _____ () C:\Users\jointsmouka\Downloads\2 Vzorce matematika.xlsx
2015-02-03 19:32 - 2015-02-03 19:32 - 00028672 _____ () C:\Users\jointsmouka\Downloads\1 A vzorce.xls
2015-02-03 19:32 - 2015-02-03 19:32 - 00019456 _____ () C:\Users\jointsmouka\Downloads\3 Funkce a grafy.xls
2015-02-03 19:32 - 2015-02-03 19:32 - 00014848 _____ () C:\Users\jointsmouka\Downloads\5 Data byty.xls
2015-02-03 19:31 - 2015-02-03 19:32 - 00026848 _____ () C:\Users\jointsmouka\Downloads\opakování.xlsm
2015-02-02 19:46 - 2015-02-02 19:46 - 00036559 _____ () C:\Users\jointsmouka\Downloads\The.Big.Bang.Theory.S08E13.720p.HDTV.X264-DIMENSION.torrent
2015-01-30 02:49 - 2015-01-30 02:50 - 00040395 _____ () C:\Users\jointsmouka\Downloads\The.Hobbit.2014.Battle.Of.The.Five.Armies.DVDScr.XVID.AC3.HQ.Hive-CM8.torrent
2015-01-27 22:28 - 2015-01-27 22:28 - 00063953 _____ () C:\Users\jointsmouka\Downloads\The.Big.Bang.Theory.S03.HDTV.XviD-TL.torrent

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-26 09:48 - 2014-06-07 15:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-02-26 09:48 - 2014-06-07 15:19 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-02-26 09:27 - 2013-01-26 09:39 - 01658257 _____ () C:\Windows\WindowsUpdate.log
2015-02-26 08:58 - 2013-06-11 19:06 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-02-26 03:25 - 2009-07-14 05:45 - 00035312 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-02-26 03:25 - 2009-07-14 05:45 - 00035312 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-02-26 03:17 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-02-25 22:19 - 2013-01-26 18:13 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\Skype
2015-02-25 16:49 - 2014-06-26 09:50 - 00000000 ____D () C:\Users\LogMeInRemoteUser\AppData\Local\Google
2015-02-25 16:49 - 2014-06-26 09:50 - 00000000 ____D () C:\Users\LogMeInRemoteUser\AppData\Local\Comodo
2015-02-25 16:49 - 2014-06-26 09:50 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google
2015-02-25 16:49 - 2014-06-26 09:50 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo
2015-02-25 16:49 - 2014-06-26 09:50 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2015-02-25 16:49 - 2014-06-26 09:50 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2015-02-25 16:49 - 2014-06-26 09:50 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2015-02-25 16:49 - 2014-06-26 09:50 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2015-02-25 16:49 - 2013-01-26 10:12 - 00000000 ____D () C:\Users\jointsmouka\AppData\Local\Google
2015-02-25 16:48 - 2013-01-26 10:02 - 00000000 ____D () C:\Users\jointsmouka
2015-02-25 16:48 - 2009-07-14 04:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2015-02-25 16:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy
2015-02-25 14:34 - 2014-07-22 20:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvisoft
2015-02-25 14:30 - 2014-01-01 14:35 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\DAEMON Tools Lite
2015-02-25 14:30 - 2013-02-11 11:41 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\BitTorrent
2015-02-25 14:30 - 2013-01-26 18:49 - 00000000 ____D () C:\Windows\Minidump
2015-02-25 12:01 - 2013-01-26 18:13 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-02-25 11:59 - 2014-08-03 11:21 - 00000000 ___RD () C:\Users\jointsmouka\Dropbox
2015-02-25 11:55 - 2014-08-03 11:20 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\Dropbox
2015-02-25 11:50 - 2014-08-04 11:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2015-02-25 11:46 - 2013-01-27 03:33 - 00000000 ____D () C:\kb
2015-02-25 07:33 - 2013-01-26 18:12 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\vlc
2015-02-25 00:20 - 2013-01-26 10:11 - 00109672 _____ () C:\Users\jointsmouka\AppData\Local\GDIPFONTCACHEV1.DAT
2015-02-24 23:42 - 2015-01-10 07:00 - 00006044 _____ () C:\aaw7boot.log
2015-02-24 23:30 - 2013-03-13 20:59 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-02-24 22:47 - 2014-05-01 08:55 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-02-24 22:47 - 2014-05-01 08:54 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-24 21:10 - 2014-12-21 17:02 - 00003948 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-02-24 21:10 - 2014-12-21 17:02 - 00003696 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-02-24 21:09 - 2014-08-04 11:02 - 00003246 _____ () C:\Windows\System32\Tasks\Ad-Aware Update (Daily)
2015-02-24 21:08 - 2014-01-30 23:58 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2015-02-24 19:43 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini
2015-02-24 19:41 - 2009-07-14 03:34 - 76668928 _____ () C:\Windows\system32\config\software.bak
2015-02-24 19:41 - 2009-07-14 03:34 - 16252928 _____ () C:\Windows\system32\config\system.bak
2015-02-24 19:41 - 2009-07-14 03:34 - 06434816 _____ () C:\Windows\system32\config\default.bak
2015-02-24 19:41 - 2009-07-14 03:34 - 00028672 _____ () C:\Windows\system32\config\security.bak
2015-02-24 19:41 - 2009-07-14 03:34 - 00028672 _____ () C:\Windows\system32\config\sam.bak
2015-02-24 18:02 - 2015-01-07 20:44 - 00006691 _____ () C:\Windows\system32\ScanResults.xml
2015-02-24 17:58 - 2015-01-07 20:41 - 00000464 _____ () C:\Windows\system32\ScannerSettings
2015-02-24 17:16 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default
2015-02-24 17:13 - 2009-07-14 06:13 - 00806776 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-02-24 17:11 - 2014-01-01 14:36 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\Seznam.cz
2015-02-24 17:08 - 2014-07-18 04:33 - 00015899 _____ () C:\Users\jointsmouka\rgmnr
2015-02-24 17:05 - 2009-07-14 05:45 - 00417576 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-24 15:58 - 2014-08-30 09:04 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2015-02-24 09:06 - 2013-01-26 18:13 - 00000000 ____D () C:\ProgramData\Skype
2015-02-23 02:39 - 2011-04-12 09:28 - 00000000 ___RD () C:\Users\Public\Recorded TV
2015-02-23 02:39 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2015-02-22 18:01 - 2014-08-03 11:21 - 00000000 ____D () C:\Users\jointsmouka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-02-16 17:59 - 2014-12-20 09:59 - 00000761 _____ () C:\Windows\system32\Drivers\etc\hosts.txt
2015-02-13 08:09 - 2014-04-10 02:55 - 00000000 ____D () C:\Windows\rescache
2015-02-12 14:21 - 2013-08-15 11:01 - 00000000 ____D () C:\Windows\system32\MRT
2015-02-12 04:18 - 2014-12-11 13:15 - 00000000 ____D () C:\Windows\system32\appraiser
2015-02-12 04:18 - 2014-05-06 23:05 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-02-12 04:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-02-12 03:45 - 2009-07-14 03:34 - 00000678 _____ () C:\Windows\win.ini
2015-02-12 03:10 - 2013-01-26 10:58 - 116773704 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-02-04 04:56 - 2014-10-09 14:34 - 14497568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-02-04 04:56 - 2014-10-09 14:34 - 03209736 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-02-04 04:56 - 2014-06-07 15:18 - 00072904 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-02-04 04:56 - 2014-06-07 15:18 - 00059592 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-02-04 04:56 - 2014-03-20 22:02 - 00026155 _____ () C:\Windows\system32\nvinfo.pb
2015-02-04 03:21 - 2014-06-07 15:18 - 06782152 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-02-04 03:21 - 2014-06-07 15:18 - 03522376 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-02-04 03:21 - 2014-06-07 15:18 - 02558792 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-02-04 03:21 - 2014-06-07 15:18 - 00932040 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-02-04 03:21 - 2014-06-07 15:18 - 00384200 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-02-04 03:21 - 2014-06-07 15:18 - 00062792 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-02-03 17:18 - 2014-10-09 14:36 - 04229086 _____ () C:\Windows\system32\nvcoproc.bin

==================== Files in the root of some directories =======

2015-02-25 17:40 - 2015-02-25 17:40 - 0000020 _____ () C:\Users\jointsmouka\AppData\Roaming\appdataFr3.bin
2014-07-22 12:15 - 2014-07-22 12:15 - 0007644 _____ () C:\Users\jointsmouka\AppData\Local\Resmon.ResmonCfg

Some content of TEMP:
====================
C:\Users\jointsmouka\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\jointsmouka\AppData\Local\Temp\nvStInst.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-25 21:22




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (system) (Fixed) (Total:150 GB) (Free:30.89 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (data) (Fixed) (Total:295.76 GB) (Free:51.47 GB) NTFS

Available physical RAM: 2530.98 MB
Total physical RAM: 4094.49 MB
Percentage of memory in use: 38%

==================== MBR and Partition Table ==================

TreeSize Professional V6.0.3 (64 bit) (HKLM\...\TreeSize Professional_is1) (Version: 6.0.3 - JAM Software)
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 95BB83A1)
Partition 2: (Active) - (Size=150 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=295.8 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\Ad-Aware Update (Daily).job => C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\jointsmouka\Desktop" je 44 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^jointsmouka^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk
C:\Users\JOINTS~1\AppData\Roaming\Dropbox\bin\Dropbox.exe


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Přílohy
Addition.rar
(6.61 KiB) Staženo 27 x

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#32 Příspěvek od altrok »

  • Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
  • ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
  • znovu spustte FRST a kliknete na Fix
  • po restartu na Vas vyskoci fixlog (pripadne bude ulozen na Plose), jehoz obsah mi vlozte do pristi odpovedi

    Kód: Vybrat vše

    Start
    CloseProcesses:
    HKU\S-1-5-21-883375831-3728679416-1811525376-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd)
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    2015-02-26 09:52 - 2015-02-26 09:52 - 00000000 ____D () C:\Users\jointsmouka\Desktop\FRST-OlderVersion
    2015-02-25 16:54 - 2015-02-25 15:54 - 00024064 _____ () C:\Windows\zoek-delete.exe
    2015-02-25 15:57 - 2015-02-25 14:47 - 00002022 _____ () C:\zoek-results2015-02-25-134743.log
    2015-02-25 14:44 - 2015-02-25 17:37 - 00085745 _____ () C:\zoek-results.log
    2015-02-25 14:43 - 2015-02-25 16:51 - 00000000 ____D () C:\zoek_backup
    2015-02-25 14:42 - 2015-02-25 14:42 - 01304576 _____ () C:\Users\jointsmouka\Desktop\zoek.exe
    2015-02-25 14:25 - 2015-02-25 14:25 - 05325696 _____ (Piriform Ltd) C:\Users\jointsmouka\Downloads\ccsetup503.exe
    2015-02-24 22:45 - 2015-02-24 22:46 - 16502728 _____ (Malwarebytes Corp.) C:\Users\jointsmouka\Downloads\mbar-1.09.1.1004.exe
    2015-02-24 22:42 - 2015-02-24 23:40 - 00000000 ____D () C:\Users\jointsmouka\Desktop\mbar
    2015-02-24 22:41 - 2015-02-24 22:42 - 16466552 _____ (Malwarebytes Corp.) C:\Users\jointsmouka\Downloads\mbar-1.08.3.1004.exe
    2015-02-24 22:05 - 2015-02-24 21:37 - 00009109 _____ () C:\Users\jointsmouka\Desktop\AdwCleaner[S0].txt
    2015-02-24 22:00 - 2015-02-26 09:53 - 00016279 _____ () C:\Users\jointsmouka\Desktop\FRST.txt
    2015-02-24 21:32 - 2015-02-24 21:40 - 00000000 ____D () C:\AdwCleaner
    2015-02-24 21:14 - 2015-02-24 21:14 - 00036772 _____ () C:\Users\jointsmouka\Desktop\Fixlog.rar
    2015-02-24 21:10 - 2015-02-26 09:15 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
    2015-02-24 21:10 - 2015-02-26 03:18 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
    2015-02-24 21:09 - 2015-02-25 12:01 - 00000496 _____ () C:\Windows\Tasks\Ad-Aware Update (Daily).job
    2015-02-24 15:38 - 2015-02-24 15:39 - 00000000 ____D () C:\Program Files\trend micro
    2015-02-24 15:37 - 2015-02-24 15:37 - 01222144 _____ () C:\Users\jointsmouka\Downloads\RSITx64.exe
    2015-02-24 17:08 - 2014-07-18 04:33 - 00015899 _____ () C:\Users\jointsmouka\rgmnr
    
    Task: {7DF96D5B-A274-4F00-92E5-DD80E53E11A7} - System32\Tasks\Ad-Aware Update (Daily) => C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
    Task: {8CC142A6-072C-4AF2-ADB3-466ECE303B6E} - System32\Tasks\Security Center Update - 3595630534 => C:\Users\jointsmouka\AppData\Roaming\Exizumb\dyesfi.exe <==== ATTENTION
    C:\Users\jointsmouka\AppData\Roaming\Exizumb
    Task: {C4CDCD9B-85AA-459C-9C8E-87EB9F658ECA} - System32\Tasks\{35271754-3B37-4FFE-AD09-5A638C5A944E} => pcalua.exe -a "C:\Program Files (x86)\ffdshow\uninstall.exe"
    C:\Users\jointsmouka\AppData\Local\Temp\
    CMD: dir "C:\PROGRA~1"
    CMD: dir "C:\PROGRA~2"
    CMD: dir "C:\PROGRA~3"
    CMD: dir "%localappdata%"
    CMD: dir "%appdata%"
    End
    
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

jointsmouka
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 24 úno 2015 15:44

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#33 Příspěvek od jointsmouka »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 25-02-2015 01
Ran by jointsmouka at 2015-02-26 11:23:12 Run:2
Running from C:\Users\jointsmouka\Desktop
Loaded Profiles: jointsmouka (Available profiles: jointsmouka)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd)
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
2015-02-26 09:52 - 2015-02-26 09:52 - 00000000 ____D () C:\Users\jointsmouka\Desktop\FRST-OlderVersion
2015-02-25 16:54 - 2015-02-25 15:54 - 00024064 _____ () C:\Windows\zoek-delete.exe
2015-02-25 15:57 - 2015-02-25 14:47 - 00002022 _____ () C:\zoek-results2015-02-25-134743.log
2015-02-25 14:44 - 2015-02-25 17:37 - 00085745 _____ () C:\zoek-results.log
2015-02-25 14:43 - 2015-02-25 16:51 - 00000000 ____D () C:\zoek_backup
2015-02-25 14:42 - 2015-02-25 14:42 - 01304576 _____ () C:\Users\jointsmouka\Desktop\zoek.exe
2015-02-25 14:25 - 2015-02-25 14:25 - 05325696 _____ (Piriform Ltd) C:\Users\jointsmouka\Downloads\ccsetup503.exe
2015-02-24 22:45 - 2015-02-24 22:46 - 16502728 _____ (Malwarebytes Corp.) C:\Users\jointsmouka\Downloads\mbar-1.09.1.1004.exe
2015-02-24 22:42 - 2015-02-24 23:40 - 00000000 ____D () C:\Users\jointsmouka\Desktop\mbar
2015-02-24 22:41 - 2015-02-24 22:42 - 16466552 _____ (Malwarebytes Corp.) C:\Users\jointsmouka\Downloads\mbar-1.08.3.1004.exe
2015-02-24 22:05 - 2015-02-24 21:37 - 00009109 _____ () C:\Users\jointsmouka\Desktop\AdwCleaner[S0].txt
2015-02-24 22:00 - 2015-02-26 09:53 - 00016279 _____ () C:\Users\jointsmouka\Desktop\FRST.txt
2015-02-24 21:32 - 2015-02-24 21:40 - 00000000 ____D () C:\AdwCleaner
2015-02-24 21:14 - 2015-02-24 21:14 - 00036772 _____ () C:\Users\jointsmouka\Desktop\Fixlog.rar
2015-02-24 21:10 - 2015-02-26 09:15 - 00000952 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-24 21:10 - 2015-02-26 03:18 - 00000948 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-24 21:09 - 2015-02-25 12:01 - 00000496 _____ () C:\Windows\Tasks\Ad-Aware Update (Daily).job
2015-02-24 15:38 - 2015-02-24 15:39 - 00000000 ____D () C:\Program Files\trend micro
2015-02-24 15:37 - 2015-02-24 15:37 - 01222144 _____ () C:\Users\jointsmouka\Downloads\RSITx64.exe
2015-02-24 17:08 - 2014-07-18 04:33 - 00015899 _____ () C:\Users\jointsmouka\rgmnr

Task: {7DF96D5B-A274-4F00-92E5-DD80E53E11A7} - System32\Tasks\Ad-Aware Update (Daily) => C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: {8CC142A6-072C-4AF2-ADB3-466ECE303B6E} - System32\Tasks\Security Center Update - 3595630534 => C:\Users\jointsmouka\AppData\Roaming\Exizumb\dyesfi.exe <==== ATTENTION
C:\Users\jointsmouka\AppData\Roaming\Exizumb
Task: {C4CDCD9B-85AA-459C-9C8E-87EB9F658ECA} - System32\Tasks\{35271754-3B37-4FFE-AD09-5A638C5A944E} => pcalua.exe -a "C:\Program Files (x86)\ffdshow\uninstall.exe"
C:\Users\jointsmouka\AppData\Local\Temp\
CMD: dir "C:\PROGRA~1"
CMD: dir "C:\PROGRA~2"
CMD: dir "C:\PROGRA~3"
CMD: dir "%localappdata%"
CMD: dir "%appdata%"
End
*****************

Processes closed successfully.
HKU\S-1-5-21-883375831-3728679416-1811525376-1001\Software\Microsoft\Windows\CurrentVersion\Run\\CCleaner Monitoring => value deleted successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
C:\Users\jointsmouka\Desktop\FRST-OlderVersion => Moved successfully.
C:\Windows\zoek-delete.exe => Moved successfully.
C:\zoek-results2015-02-25-134743.log => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\jointsmouka\Desktop\zoek.exe => Moved successfully.
C:\Users\jointsmouka\Downloads\ccsetup503.exe => Moved successfully.
C:\Users\jointsmouka\Downloads\mbar-1.09.1.1004.exe => Moved successfully.
C:\Users\jointsmouka\Desktop\mbar => Moved successfully.
C:\Users\jointsmouka\Downloads\mbar-1.08.3.1004.exe => Moved successfully.
C:\Users\jointsmouka\Desktop\AdwCleaner[S0].txt => Moved successfully.
"C:\Users\jointsmouka\Desktop\FRST.txt" => File/Directory not found.
C:\AdwCleaner => Moved successfully.
C:\Users\jointsmouka\Desktop\Fixlog.rar => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\Ad-Aware Update (Daily).job => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\Users\jointsmouka\Downloads\RSITx64.exe => Moved successfully.
C:\Users\jointsmouka\rgmnr => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7DF96D5B-A274-4F00-92E5-DD80E53E11A7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7DF96D5B-A274-4F00-92E5-DD80E53E11A7}" => Key deleted successfully.
C:\Windows\System32\Tasks\Ad-Aware Update (Daily) => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Ad-Aware Update (Daily)" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8CC142A6-072C-4AF2-ADB3-466ECE303B6E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8CC142A6-072C-4AF2-ADB3-466ECE303B6E}" => Key deleted successfully.
C:\Windows\System32\Tasks\Security Center Update - 3595630534 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Security Center Update - 3595630534" => Key deleted successfully.
"C:\Users\jointsmouka\AppData\Roaming\Exizumb" => File/Directory not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C4CDCD9B-85AA-459C-9C8E-87EB9F658ECA}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C4CDCD9B-85AA-459C-9C8E-87EB9F658ECA}" => Key deleted successfully.
C:\Windows\System32\Tasks\{35271754-3B37-4FFE-AD09-5A638C5A944E} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{35271754-3B37-4FFE-AD09-5A638C5A944E}" => Key deleted successfully.

"C:\Users\jointsmouka\AppData\Local\Temp" directory move:

C:\Users\jointsmouka\AppData\Local\Temp\AdobeARM.log => Moved successfully.
Could not move "C:\Users\jointsmouka\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => Scheduled to move on reboot.
C:\Users\jointsmouka\AppData\Local\Temp\INS_bc120c35.TMP => Moved successfully.
C:\Users\jointsmouka\AppData\Local\Temp\LuUpdater.log => Moved successfully.
C:\Users\jointsmouka\AppData\Local\Temp\MSNET-ee6a1671.NVX => Moved successfully.
C:\Users\jointsmouka\AppData\Local\Temp\nvSCPAPI.dll => Moved successfully.
C:\Users\jointsmouka\AppData\Local\Temp\nvStInst.exe => Moved successfully.
C:\Users\jointsmouka\AppData\Local\Temp\~2774.tmp => Moved successfully.
C:\Users\jointsmouka\AppData\Local\Temp\~F54F.bat => Moved successfully.
C:\Users\jointsmouka\AppData\Local\Temp\~F54F.tmp => Moved successfully.
C:\Users\jointsmouka\AppData\Local\Temp\avastBCLTMP\chrome\Default\Web Data => Moved successfully.
C:\Users\jointsmouka\AppData\Local\Temp\A707.tmp\temp.txt => Moved successfully.
C:\Users\jointsmouka\AppData\Local\Temp\A707.tmp\zoek-results.txt => Moved successfully.
Could not move "C:\Users\jointsmouka\AppData\Local\Temp" directory. => Scheduled to move on reboot.


========= dir "C:\PROGRA~1" =========

Volume in drive C is system
Volume Serial Number is F4CF-D448

Directory of C:\PROGRA~1

26.02.2015 11:23 <DIR> .
26.02.2015 11:23 <DIR> ..
25.02.2015 12:12 <DIR> AVAST Software
25.02.2015 14:26 <DIR> CCleaner
16.09.2014 02:06 <DIR> Common Files
24.02.2015 23:56 <DIR> Defraggler
12.04.2011 09:28 <DIR> DVD Maker
12.02.2015 04:18 <DIR> Internet Explorer
21.07.2014 20:31 <DIR> JAM Software
10.09.2014 06:29 <DIR> Microsoft Analysis Services
10.09.2014 06:31 <DIR> Microsoft Office
04.08.2014 10:44 <DIR> Microsoft Silverlight
10.09.2014 06:31 <DIR> Microsoft SQL Server Compact Edition
10.09.2014 06:31 <DIR> Microsoft Sync Framework
10.09.2014 06:32 <DIR> Microsoft Synchronization Services
14.07.2009 06:32 <DIR> MSBuild
09.10.2014 14:35 <DIR> NVIDIA Corporation
27.01.2013 02:23 <DIR> Realtek
14.07.2009 06:32 <DIR> Reference Assemblies
12.07.2013 11:26 <DIR> Windows Defender
10.07.2014 02:19 <DIR> Windows Journal
12.04.2011 09:17 <DIR> Windows Mail
16.10.2014 02:29 <DIR> Windows Media Player
14.07.2009 06:32 <DIR> Windows NT
12.04.2011 09:17 <DIR> Windows Photo Viewer
21.11.2010 04:31 <DIR> Windows Portable Devices
12.04.2011 09:17 <DIR> Windows Sidebar
0 File(s) 0 bytes
27 Dir(s) 33�187�909�632 bytes free

========= End of CMD: =========


========= dir "C:\PROGRA~2" =========

Volume in drive C is system
Volume Serial Number is F4CF-D448

Directory of C:\PROGRA~2

26.02.2015 10:31 <DIR> .
26.02.2015 10:31 <DIR> ..
12.10.2014 15:50 <DIR> Adobe
20.12.2014 15:15 <DIR> Battle.net
26.01.2013 10:41 <DIR> Codec Pack - All In 1
25.02.2015 16:48 <DIR> Common Files
28.06.2014 09:20 <DIR> Comodo
17.11.2014 12:33 <DIR> DAEMON Tools Lite
27.08.2014 06:47 <DIR> Diablo III
28.06.2014 09:21 <DIR> DivX
21.12.2014 17:03 <DIR> Google
27.10.2013 16:40 <DIR> Grinding Gear Games
19.10.2014 13:25 <DIR> Hearthstone
13.08.2014 23:07 <DIR> Heroes of Newerth
27.01.2013 02:22 <DIR> Intel
12.02.2015 04:18 <DIR> Internet Explorer
26.02.2015 10:31 <DIR> JAM Software
19.10.2014 13:55 <DIR> Java
28.03.2013 10:31 <DIR> Logitech
10.09.2014 06:29 <DIR> Microsoft Analysis Services
04.08.2014 21:19 <DIR> Microsoft CAPICOM 2.1.0.2
10.09.2014 06:28 <DIR> Microsoft Office
04.08.2014 10:44 <DIR> Microsoft Silverlight
10.09.2014 06:30 <DIR> Microsoft Visual Studio 8
10.09.2014 06:31 <DIR> Microsoft.NET
10.09.2014 06:32 <DIR> MSBuild
19.10.2014 14:11 <DIR> NVIDIA Corporation
27.01.2013 02:24 <DIR> Realtek
14.07.2009 06:32 <DIR> Reference Assemblies
22.07.2014 20:43 <DIR> Seznam.cz
25.02.2015 12:01 <DIR> Skype
26.02.2015 08:58 <DIR> Steam
24.02.2015 15:58 <DIR> TeamViewer
21.07.2014 21:12 <DIR> Valve
26.01.2013 18:12 <DIR> VideoLAN
04.12.2014 12:51 <DIR> WarThunder
28.04.2014 06:23 <DIR> Winamp
12.07.2013 11:26 <DIR> Windows Defender
12.04.2011 09:17 <DIR> Windows Mail
16.10.2014 02:29 <DIR> Windows Media Player
14.07.2009 06:32 <DIR> Windows NT
12.04.2011 09:17 <DIR> Windows Photo Viewer
21.11.2010 04:31 <DIR> Windows Portable Devices
12.04.2011 09:17 <DIR> Windows Sidebar
26.03.2013 20:31 <DIR> WinRAR
0 File(s) 0 bytes
45 Dir(s) 33�187�905�536 bytes free

========= End of CMD: =========


========= dir "C:\PROGRA~3" =========

Volume in drive C is system
Volume Serial Number is F4CF-D448

Directory of C:\PROGRA~3

25.02.2015 22:20 <DIR> .
25.02.2015 22:20 <DIR> ..
12.10.2014 15:52 <DIR> Adobe
12.11.2014 07:15 <DIR> Ads Remover
25.02.2015 12:12 <DIR> AVAST Software
28.01.2013 23:07 <DIR> Battle.net
29.01.2013 02:21 <DIR> Blizzard Entertainment
21.01.2015 18:00 <DIR> Block The Ads
01.01.2014 14:37 <DIR> DAEMON Tools Lite
04.08.2014 11:01 <DIR> Lavasoft
28.03.2013 10:30 <DIR> LogiShrd
28.03.2013 10:30 <DIR> Logitech
24.02.2015 22:47 <DIR> Malwarebytes
12.10.2014 15:50 <DIR> McAfee
24.02.2015 23:30 <DIR> Microsoft Help
21.07.2014 21:40 262�144 ntuser.dat
26.02.2015 09:48 <DIR> NVIDIA
09.10.2014 14:31 <DIR> NVIDIA Corporation
19.10.2014 13:56 <DIR> Oracle
24.02.2015 09:06 <DIR> Skype
27.01.2013 03:30 <DIR> Sun
28.03.2013 10:23 <DIR> TEMP
04.12.2014 14:25 <DIR> WarThunder
1 File(s) 262�144 bytes
22 Dir(s) 33�187�901�440 bytes free

========= End of CMD: =========


========= dir "%localappdata%" =========

Volume in drive C is system
Volume Serial Number is F4CF-D448

Directory of C:\Users\jointsmouka\AppData\Local

26.02.2015 11:22 <DIR> .
26.02.2015 11:22 <DIR> ..
18.08.2014 14:20 <DIR> Activision
12.10.2014 15:52 <DIR> Adobe
22.07.2014 21:28 <DIR> Anvisoft
26.01.2013 10:11 <DIR> Apps
20.12.2014 15:15 <DIR> Battle.net
23.01.2014 14:57 <DIR> Blizzard
20.11.2013 18:41 <DIR> Blizzard Entertainment
26.01.2013 10:12 <DIR> Deployment
31.08.2014 00:00 <DIR> ElevatedDiagnostics
07.06.2014 18:21 <DIR> Facebook
25.02.2015 00:20 109�672 GDIPFONTCACHEV1.DAT
04.03.2013 16:36 <DIR> GHISLER
25.02.2015 16:49 <DIR> Google
28.03.2013 10:32 <DIR> LogiShrd
28.03.2013 10:34 <DIR> LogitechR Webcam Software
30.07.2014 22:23 <DIR> Microsoft
13.03.2013 20:59 <DIR> Microsoft Help
08.04.2013 17:32 <DIR> Mozilla
26.02.2015 11:22 29�696 MSGBOX.EXE
11.07.2014 10:38 <DIR> NFS Underground 2
09.10.2014 14:31 <DIR> NVIDIA
09.10.2014 14:31 <DIR> NVIDIA Corporation
06.03.2014 17:33 <DIR> Packages
14.11.2013 22:42 <DIR> Programs
22.07.2014 12:15 7�644 Resmon.ResmonCfg
30.07.2014 22:22 <DIR> Skype
24.02.2015 10:25 <DIR> Steam
26.02.2015 11:23 <DIR> Temp
3 File(s) 147�012 bytes
27 Dir(s) 33�187�901�440 bytes free

========= End of CMD: =========


========= dir "%appdata%" =========

Volume in drive C is system
Volume Serial Number is F4CF-D448

Directory of C:\Users\jointsmouka\AppData\Roaming

25.02.2015 17:40 <DIR> .
25.02.2015 17:40 <DIR> ..
21.07.2014 19:41 <DIR> .minecraft
12.10.2014 15:52 <DIR> Adobe
25.02.2015 17:40 20 appdataFr3.bin
25.02.2015 12:13 <DIR> AVAST Software
23.06.2014 15:25 <DIR> Battle.net
25.02.2015 14:30 <DIR> BitTorrent
01.05.2014 08:41 <DIR> Comodo
25.02.2015 14:30 <DIR> DAEMON Tools Lite
06.10.2013 19:35 <DIR> Dev-Cpp
26.06.2014 10:04 <DIR> DivX
25.02.2015 11:55 <DIR> Dropbox
05.03.2014 17:31 <DIR> Flawless Technology
04.03.2013 16:36 <DIR> GHISLER
26.01.2013 10:03 <DIR> Identities
27.01.2013 02:22 <DIR> InstallShield
21.07.2014 20:31 <DIR> JAM Software
28.03.2013 10:31 <DIR> Leadertech
05.08.2013 22:06 <DIR> Macromedia
12.04.2011 09:28 <DIR> Media Center Programs
08.04.2013 17:32 <DIR> Mozilla
10.07.2014 22:17 <DIR> NFS Underground 2
07.06.2014 15:24 <DIR> NVIDIA
22.07.2014 20:39 <DIR> QuickScan
24.02.2015 17:11 <DIR> Seznam.cz
25.02.2015 22:19 <DIR> Skype
25.02.2015 14:30 <DIR> TeamViewer
25.02.2015 07:33 <DIR> vlc
26.01.2013 18:26 <DIR> Wargaming.net
28.04.2014 06:24 <DIR> Winamp
26.03.2013 20:31 <DIR> WinRAR
1 File(s) 20 bytes
31 Dir(s) 33�187�897�344 bytes free

========= End of CMD: =========


=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2015-02-26 11:24:45)<=

C:\Users\jointsmouka\AppData\Local\Temp\FXSAPIDebugLogFile.txt => Is moved successfully.
C:\Users\jointsmouka\AppData\Local\Temp => Moved successfully.

==== End of Fixlog 11:24:46 ====

jointsmouka
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 24 úno 2015 15:44

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#34 Příspěvek od jointsmouka »

tak me napadlo podivat se do chrome extensions, byla tam extension adblocker, odstranil jsem ji a prestaly vyskakovat reklamy, kdyz se podivat na ten obrazek, kde byla videt vyskakovaci reklama, bylo tam napsane ad by adblocker, achjo

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#35 Příspěvek od altrok »

:arrow: No vyborne :thumbsup: :D Takove rozsireni v logu neni a bezne tohle reseni nepomuze, tak me ani nenapadlo Vam o tom rict :D


Smazte jeste slozky:
C:\ProgramData\Ads Remover
C:\ProgramData\Block The Ads


Reklamy uz nevyskakuji, takze uklidime.
  • Prejmenujte ComboFix na Uninstall a spustte jako spravce
  • ComboFix se odinstaluje.
A pokud nejsou dotazy ci jine problemy, je to ode mne vse.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

jointsmouka
Návštěvník
Návštěvník
Příspěvky: 19
Registrován: 24 úno 2015 15:44

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#36 Příspěvek od jointsmouka »

Velmi Vam dekuji za pomoc a hlavne trpelivost. Tohle je PC meho bratra a matky, dostali ode me oba dva prednasku. Jen jeste prosim, podivejte se na obrazek v priloze, co to je? Mohu to smazat?
Přílohy
picture.rar
(70.41 KiB) Staženo 27 x

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosim o kontrolu logu, pocitac je v hroznem stavu

#37 Příspěvek od altrok »

Nemate zac, rad jsem pomohl ;)

Bal jsem se, ze spis budem dlouho patrat po zdroji haveti, ktery by ji neustale mnozil dal, protoze to bylo zablesene az na pudu, ale nakonec nejvic prace dalo rozsireni Chromu, na ktere jste kapnul sam :D

Slozku C:\FRST by mel smazat DelFix, ale muzete ji smaznout i rucne stejne jako jine pozustatky po cisticich nastrojich.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

Odpovědět