
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Scan z aviry
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Scan z aviry
Dobry chcel by som vediet ze co su tie hiden objeck naslo ich 5 a vypisane su tam 4 ze ci tam nieje daka havet viry ani ostne podozrive subory nenaslo ale tie hiden ze co su to zac dakujem za odpoved pripajam log
co sa tyka winu pc je uz domaci
Free Antivirus
Report file date: 1. mája 2015 16:32
The program is running as an unrestricted full version.
Online services are available.
Licensee : Avira Antivirus Free
Serial number : 0000149996-AVHOE-0000001
Platform : Windows 7 Enterprise
Windows version : (Service Pack 1) [6.1.7601]
Boot mode : Normally booted
Username : SYSTEM
Computer name : ASUS_P41S_03
Version information:
BUILD.DAT : 15.0.9.504 94784 Bytes 24. 3. 2015 14:59:00
AVSCAN.EXE : 15.0.9.504 1027528 Bytes 24. 3. 2015 12:59:28
AVSCANRC.DLL : 15.0.9.460 54064 Bytes 24. 3. 2015 12:59:28
LUKE.DLL : 15.0.9.460 60664 Bytes 24. 3. 2015 12:59:30
AVSCPLR.DLL : 15.0.9.460 95536 Bytes 24. 3. 2015 12:59:28
REPAIR.DLL : 15.0.9.504 374064 Bytes 24. 3. 2015 12:59:28
REPAIR.RDF : 1.0.7.58 881292 Bytes 1. 5. 2015 14:21:24
AVREG.DLL : 15.0.9.460 273712 Bytes 24. 3. 2015 12:59:28
AVLODE.DLL : 15.0.9.504 596272 Bytes 24. 3. 2015 12:59:26
AVLODE.RDF : 14.0.4.64 79226 Bytes 1. 5. 2015 14:21:07
XBV00019.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00020.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00021.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00022.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00023.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00024.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00025.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00026.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00027.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00028.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00029.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00030.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00031.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00032.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00033.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00034.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00035.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00036.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00037.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00038.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00039.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00040.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00041.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00118.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00119.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00120.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00121.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00122.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00123.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00124.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00125.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00126.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00127.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00128.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00129.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00130.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00131.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00132.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00133.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00134.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00135.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00136.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00137.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00138.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00139.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00140.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00141.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00142.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00143.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00144.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00145.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00146.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00147.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00148.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00149.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00150.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00151.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00152.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00153.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00154.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00155.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00156.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00157.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00158.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00159.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00160.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00161.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00162.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00163.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00164.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00165.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00166.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00167.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00168.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00169.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00170.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00171.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00172.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00173.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00174.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00175.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00176.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00177.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00178.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00179.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00180.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00181.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00182.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00183.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00184.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00185.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00186.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00187.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00188.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00189.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00190.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00191.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00192.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00193.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00194.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00195.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00196.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00197.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00198.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00199.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00200.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00201.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00202.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00203.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00204.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00205.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00206.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00207.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00208.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00209.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00210.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00211.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00212.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00213.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00214.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00215.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00216.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00217.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00218.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00219.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00220.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00221.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00222.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00223.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00224.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00225.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00226.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00227.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00228.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00229.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00230.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00231.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00232.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00233.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00234.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00235.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00236.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00237.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00238.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00239.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00240.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00241.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00242.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00243.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00244.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00245.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00246.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00247.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00248.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00249.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00250.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00251.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00252.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00253.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00254.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00255.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00000.VDF : 7.11.70.0 66736640 Bytes 4. 4. 2013 12:59:31
XBV00001.VDF : 7.11.74.226 2201600 Bytes 30. 4. 2013 12:59:31
XBV00002.VDF : 7.11.80.60 2751488 Bytes 28. 5. 2013 12:59:31
XBV00003.VDF : 7.11.85.214 2162688 Bytes 21. 6. 2013 12:59:31
XBV00004.VDF : 7.11.91.176 3903488 Bytes 23. 7. 2013 12:59:31
XBV00005.VDF : 7.11.98.186 6822912 Bytes 29. 8. 2013 12:59:31
XBV00006.VDF : 7.11.139.38 15708672 Bytes 27. 3. 2014 12:59:31
XBV00007.VDF : 7.11.152.100 4193792 Bytes 2. 6. 2014 12:59:31
XBV00008.VDF : 8.11.165.192 4251136 Bytes 7. 8. 2014 12:59:31
XBV00009.VDF : 8.11.172.30 2094080 Bytes 15. 9. 2014 12:59:31
XBV00010.VDF : 8.11.178.32 1581056 Bytes 14. 10. 2014 12:59:31
XBV00011.VDF : 8.11.184.50 2178560 Bytes 11. 11. 2014 12:59:31
XBV00012.VDF : 8.11.190.32 1876992 Bytes 3. 12. 2014 12:59:31
XBV00013.VDF : 8.11.201.28 2973696 Bytes 14. 1. 2015 12:59:31
XBV00014.VDF : 8.11.206.252 2695680 Bytes 4. 2. 2015 12:59:31
XBV00015.VDF : 8.11.213.84 3175936 Bytes 3. 3. 2015 12:59:31
XBV00016.VDF : 8.11.213.176 212480 Bytes 5. 3. 2015 12:59:31
XBV00017.VDF : 8.11.219.166 2033664 Bytes 25. 3. 2015 14:21:07
XBV00018.VDF : 8.11.225.88 2367488 Bytes 22. 4. 2015 14:21:07
XBV00042.VDF : 8.11.225.112 23040 Bytes 22. 4. 2015 14:21:07
XBV00043.VDF : 8.11.225.138 2048 Bytes 22. 4. 2015 14:21:07
XBV00044.VDF : 8.11.225.164 43520 Bytes 22. 4. 2015 14:21:08
XBV00045.VDF : 8.11.225.188 27136 Bytes 22. 4. 2015 14:21:08
XBV00046.VDF : 8.11.225.190 2048 Bytes 22. 4. 2015 14:21:08
XBV00047.VDF : 8.11.225.192 24064 Bytes 22. 4. 2015 14:21:08
XBV00048.VDF : 8.11.225.196 35328 Bytes 23. 4. 2015 14:21:08
XBV00049.VDF : 8.11.225.198 14848 Bytes 23. 4. 2015 14:21:08
XBV00050.VDF : 8.11.225.202 2048 Bytes 23. 4. 2015 14:21:08
XBV00051.VDF : 8.11.225.224 30208 Bytes 23. 4. 2015 14:21:08
XBV00052.VDF : 8.11.225.244 2048 Bytes 23. 4. 2015 14:21:08
XBV00053.VDF : 8.11.226.8 21504 Bytes 23. 4. 2015 14:21:08
XBV00054.VDF : 8.11.226.30 35328 Bytes 23. 4. 2015 14:21:08
XBV00055.VDF : 8.11.226.34 2048 Bytes 24. 4. 2015 14:21:08
XBV00056.VDF : 8.11.226.42 32256 Bytes 24. 4. 2015 14:21:08
XBV00057.VDF : 8.11.226.44 39424 Bytes 24. 4. 2015 14:21:08
XBV00058.VDF : 8.11.226.46 7680 Bytes 24. 4. 2015 14:21:08
XBV00059.VDF : 8.11.226.48 6656 Bytes 24. 4. 2015 14:21:08
XBV00060.VDF : 8.11.226.68 14336 Bytes 24. 4. 2015 14:21:08
XBV00061.VDF : 8.11.226.88 19456 Bytes 24. 4. 2015 14:21:08
XBV00062.VDF : 8.11.226.112 24576 Bytes 24. 4. 2015 14:21:08
XBV00063.VDF : 8.11.226.134 55808 Bytes 25. 4. 2015 14:21:08
XBV00064.VDF : 8.11.226.136 2560 Bytes 25. 4. 2015 14:21:08
XBV00065.VDF : 8.11.226.138 9728 Bytes 25. 4. 2015 14:21:08
XBV00066.VDF : 8.11.226.140 12800 Bytes 25. 4. 2015 14:21:08
XBV00067.VDF : 8.11.226.160 94208 Bytes 26. 4. 2015 14:21:09
XBV00068.VDF : 8.11.226.178 10240 Bytes 26. 4. 2015 14:21:09
XBV00069.VDF : 8.11.226.196 10240 Bytes 26. 4. 2015 14:21:09
XBV00070.VDF : 8.11.226.214 7680 Bytes 26. 4. 2015 14:21:09
XBV00071.VDF : 8.11.226.216 59904 Bytes 27. 4. 2015 14:21:09
XBV00072.VDF : 8.11.226.220 7168 Bytes 27. 4. 2015 14:21:09
XBV00073.VDF : 8.11.226.222 10752 Bytes 27. 4. 2015 14:21:14
XBV00074.VDF : 8.11.226.242 10752 Bytes 27. 4. 2015 14:21:14
XBV00075.VDF : 8.11.227.4 23040 Bytes 27. 4. 2015 14:21:14
XBV00076.VDF : 8.11.227.6 2048 Bytes 27. 4. 2015 14:21:14
XBV00077.VDF : 8.11.227.28 52736 Bytes 27. 4. 2015 14:21:14
XBV00078.VDF : 8.11.227.46 9216 Bytes 27. 4. 2015 14:21:14
XBV00079.VDF : 8.11.227.52 11264 Bytes 27. 4. 2015 14:21:14
XBV00080.VDF : 8.11.227.54 6656 Bytes 28. 4. 2015 14:21:14
XBV00081.VDF : 8.11.227.56 5120 Bytes 28. 4. 2015 14:21:14
XBV00082.VDF : 8.11.227.58 26112 Bytes 28. 4. 2015 14:21:14
XBV00083.VDF : 8.11.227.78 6144 Bytes 28. 4. 2015 14:21:14
XBV00084.VDF : 8.11.227.94 6656 Bytes 28. 4. 2015 14:21:14
XBV00085.VDF : 8.11.227.110 5632 Bytes 28. 4. 2015 14:21:14
XBV00086.VDF : 8.11.227.126 15872 Bytes 28. 4. 2015 14:21:14
XBV00087.VDF : 8.11.227.130 41984 Bytes 28. 4. 2015 14:21:14
XBV00088.VDF : 8.11.227.132 7168 Bytes 28. 4. 2015 14:21:15
XBV00089.VDF : 8.11.227.134 17408 Bytes 28. 4. 2015 14:21:15
XBV00090.VDF : 8.11.227.136 7168 Bytes 28. 4. 2015 14:21:15
XBV00091.VDF : 8.11.227.138 11776 Bytes 28. 4. 2015 14:21:15
XBV00092.VDF : 8.11.227.140 19456 Bytes 29. 4. 2015 14:21:15
XBV00093.VDF : 8.11.227.156 32256 Bytes 29. 4. 2015 14:21:15
XBV00094.VDF : 8.11.227.172 7168 Bytes 29. 4. 2015 14:21:15
XBV00095.VDF : 8.11.227.188 7680 Bytes 29. 4. 2015 14:21:15
XBV00096.VDF : 8.11.227.190 2048 Bytes 29. 4. 2015 14:21:15
XBV00097.VDF : 8.11.227.206 23040 Bytes 29. 4. 2015 14:21:15
XBV00098.VDF : 8.11.227.208 2048 Bytes 29. 4. 2015 14:21:15
XBV00099.VDF : 8.11.227.212 55808 Bytes 29. 4. 2015 14:21:15
XBV00100.VDF : 8.11.227.216 2560 Bytes 29. 4. 2015 14:21:15
XBV00101.VDF : 8.11.227.232 13824 Bytes 29. 4. 2015 14:21:15
XBV00102.VDF : 8.11.227.246 7680 Bytes 29. 4. 2015 14:21:15
XBV00103.VDF : 8.11.228.6 30208 Bytes 30. 4. 2015 14:21:15
XBV00104.VDF : 8.11.228.8 2048 Bytes 30. 4. 2015 14:21:15
XBV00105.VDF : 8.11.228.22 2048 Bytes 30. 4. 2015 14:21:15
XBV00106.VDF : 8.11.228.36 15360 Bytes 30. 4. 2015 14:21:15
XBV00107.VDF : 8.11.228.38 6656 Bytes 30. 4. 2015 14:21:15
XBV00108.VDF : 8.11.228.40 2048 Bytes 30. 4. 2015 14:21:15
XBV00109.VDF : 8.11.228.42 8704 Bytes 30. 4. 2015 14:21:15
XBV00110.VDF : 8.11.228.44 8192 Bytes 30. 4. 2015 14:21:15
XBV00111.VDF : 8.11.228.46 23040 Bytes 30. 4. 2015 14:21:15
XBV00112.VDF : 8.11.228.50 46080 Bytes 30. 4. 2015 14:21:15
XBV00113.VDF : 8.11.228.52 6656 Bytes 30. 4. 2015 14:21:15
XBV00114.VDF : 8.11.228.66 32256 Bytes 1. 5. 2015 14:21:15
XBV00115.VDF : 8.11.228.80 16896 Bytes 1. 5. 2015 14:21:15
XBV00116.VDF : 8.11.228.94 2048 Bytes 1. 5. 2015 14:21:16
XBV00117.VDF : 8.11.228.108 17920 Bytes 1. 5. 2015 14:21:16
Engine version : 8.3.30.28
AEVDF.DLL : 8.3.1.6 133992 Bytes 24. 3. 2015 12:59:23
AESCRIPT.DLL : 8.2.2.62 567208 Bytes 1. 5. 2015 14:21:06
AESCN.DLL : 8.3.2.2 139456 Bytes 24. 3. 2015 12:59:23
AESBX.DLL : 8.2.20.34 1615784 Bytes 24. 3. 2015 12:59:23
AERDL.DLL : 8.2.1.20 731040 Bytes 24. 3. 2015 12:59:23
AEPACK.DLL : 8.4.0.62 793456 Bytes 24. 3. 2015 12:59:23
AEOFFICE.DLL : 8.3.1.22 363376 Bytes 1. 5. 2015 14:21:05
AEMOBILE.DLL : 8.1.7.2 281720 Bytes 1. 5. 2015 14:21:06
AEHEUR.DLL : 8.1.4.1668 8289136 Bytes 1. 5. 2015 14:21:05
AEHELP.DLL : 8.3.2.0 281456 Bytes 24. 3. 2015 12:59:23
AEGEN.DLL : 8.1.7.40 456608 Bytes 24. 3. 2015 12:59:23
AEEXP.DLL : 8.4.2.82 260968 Bytes 1. 5. 2015 14:21:06
AEEMU.DLL : 8.1.3.4 399264 Bytes 24. 3. 2015 12:59:23
AEDROID.DLL : 8.4.3.116 1050536 Bytes 24. 3. 2015 12:59:23
AECORE.DLL : 8.3.4.0 243624 Bytes 24. 3. 2015 12:59:23
AEBB.DLL : 8.1.2.0 60448 Bytes 24. 3. 2015 12:59:23
AVWINLL.DLL : 15.0.9.460 26872 Bytes 24. 3. 2015 12:59:29
AVPREF.DLL : 15.0.9.460 52984 Bytes 24. 3. 2015 12:59:28
AVREP.DLL : 15.0.9.460 220464 Bytes 24. 3. 2015 12:59:28
AVARKT.DLL : 15.0.9.460 228088 Bytes 24. 3. 2015 12:59:24
AVEVTLOG.DLL : 15.0.9.460 193328 Bytes 24. 3. 2015 12:59:25
SQLITE3.DLL : 15.0.9.460 455472 Bytes 24. 3. 2015 12:59:31
AVSMTP.DLL : 15.0.9.460 79096 Bytes 24. 3. 2015 12:59:28
NETNT.DLL : 15.0.9.460 15152 Bytes 24. 3. 2015 12:59:30
CommonImageRc.dll: 15.0.9.460 4355376 Bytes 24. 3. 2015 12:59:30
CommonTextRc.DLL: 15.0.9.476 71416 Bytes 24. 3. 2015 12:59:30
Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: C:\Program Files (x86)\Avira\Antivirus\sysscan.avp
Reporting...........................: default
Primary action......................: Interactive
Secondary action....................: Ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:, D:,
Process scan........................: on
Extended process scan...............: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Limit recursion depth...............: 20
Smart extensions....................: on
Macrovirus heuristic................: on
File heuristic......................: extended
Start of the scan: 1. mája 2015 16:32
Start scanning boot sectors:
Boot sector 'HDD0(C:, D:)'
[INFO] No virus was found!
Starting search for hidden objects.
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\mbam.exe
[NOTE] The registry entry is invisible.
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_NvStreamNetworkS_66b791336e597ab5dc21e23648c19a025a43_cab_15392a88
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows Media Player NSS\3.0\Events\{7221D4ED-68BC-420C-B3A5-08197215EE14}
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes Anti-Malware_is1
[NOTE] The registry entry is invisible.
The scan of running processes will be started:
Scan process 'svchost.exe' - '52' Module(s) have been scanned
Scan process 'TrueSuite.Service.exe' - '27' Module(s) have been scanned
Scan process 'nvvsvc.exe' - '35' Module(s) have been scanned
Scan process 'svchost.exe' - '36' Module(s) have been scanned
Scan process 'svchost.exe' - '73' Module(s) have been scanned
Scan process 'svchost.exe' - '113' Module(s) have been scanned
Scan process 'svchost.exe' - '82' Module(s) have been scanned
Scan process 'svchost.exe' - '161' Module(s) have been scanned
Scan process 'svchost.exe' - '86' Module(s) have been scanned
Scan process 'FBAgent.exe' - '42' Module(s) have been scanned
Scan process 'ASLDRSrv.exe' - '27' Module(s) have been scanned
Scan process 'nvxdsync.exe' - '54' Module(s) have been scanned
Scan process 'nvvsvc.exe' - '67' Module(s) have been scanned
Scan process 'smartlogon.exe' - '53' Module(s) have been scanned
Scan process 'GFNEXSrv.exe' - '14' Module(s) have been scanned
Scan process 'TrueSuite.TouchControl.exe' - '100' Module(s) have been scanned
Scan process 'Dwm.exe' - '34' Module(s) have been scanned
Scan process 'Explorer.EXE' - '216' Module(s) have been scanned
Scan process 'spoolsv.exe' - '98' Module(s) have been scanned
Scan process 'taskhost.exe' - '71' Module(s) have been scanned
Scan process 'svchost.exe' - '47' Module(s) have been scanned
Scan process 'sched.exe' - '77' Module(s) have been scanned
Scan process 'taskeng.exe' - '30' Module(s) have been scanned
Scan process 'svchost.exe' - '65' Module(s) have been scanned
Scan process 'taskeng.exe' - '28' Module(s) have been scanned
Scan process 'ADDEL.exe' - '23' Module(s) have been scanned
Scan process 'taskeng.exe' - '34' Module(s) have been scanned
Scan process 'sensorsrv.exe' - '39' Module(s) have been scanned
Scan process 'GoogleUpdate.exe' - '63' Module(s) have been scanned
Scan process 'igfxtray.exe' - '32' Module(s) have been scanned
Scan process 'avguard.exe' - '147' Module(s) have been scanned
Scan process 'hkcmd.exe' - '31' Module(s) have been scanned
Scan process 'ATKOSD2.exe' - '39' Module(s) have been scanned
Scan process 'igfxpers.exe' - '51' Module(s) have been scanned
Scan process 'BatteryLife.exe' - '55' Module(s) have been scanned
Scan process 'ACMON.exe' - '43' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '70' Module(s) have been scanned
Scan process 'AmIcoSinglun64.exe' - '31' Module(s) have been scanned
Scan process 'SynTPEnh.exe' - '67' Module(s) have been scanned
Scan process 'HControl.exe' - '57' Module(s) have been scanned
Scan process 'RAVBg64.exe' - '56' Module(s) have been scanned
Scan process 'TrueSuite.ClientAppLogonExe.exe' - '27' Module(s) have been scanned
Scan process 'TrueSuite.ClientAppLogonExe.exe' - '40' Module(s) have been scanned
Scan process 'BtvStack.exe' - '62' Module(s) have been scanned
Scan process 'AthBtTray.exe' - '44' Module(s) have been scanned
Scan process 'NvBackend.exe' - '78' Module(s) have been scanned
Scan process 'Ath_CoexAgent.exe' - '41' Module(s) have been scanned
Scan process 'soffice.exe' - '34' Module(s) have been scanned
Scan process 'soffice.bin' - '101' Module(s) have been scanned
Scan process 'DMedia.exe' - '40' Module(s) have been scanned
Scan process 'adminservice.exe' - '30' Module(s) have been scanned
Scan process 'HControlUser.exe' - '37' Module(s) have been scanned
Scan process 'wcourier.exe' - '50' Module(s) have been scanned
Scan process 'VAWinAgent.exe' - '37' Module(s) have been scanned
Scan process 'hppusg.exe' - '96' Module(s) have been scanned
Scan process 'mDNSResponder.exe' - '35' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '84' Module(s) have been scanned
Scan process 'Avira.OE.Systray.exe' - '69' Module(s) have been scanned
Scan process 'avgnt.exe' - '132' Module(s) have been scanned
Scan process 'SkypeC2CAutoUpdateSvc.exe' - '33' Module(s) have been scanned
Scan process 'SkypeC2CPNRSvc.exe' - '27' Module(s) have been scanned
Scan process 'CnxDIAS.exe' - '35' Module(s) have been scanned
Scan process 'ekrn.exe' - '71' Module(s) have been scanned
Scan process 'GfExperienceService.exe' - '55' Module(s) have been scanned
Scan process 'svchost.exe' - '21' Module(s) have been scanned
Scan process 'NvNetworkService.exe' - '64' Module(s) have been scanned
Scan process 'nvtray.exe' - '55' Module(s) have been scanned
Scan process 'nvstreamsvc.exe' - '63' Module(s) have been scanned
Scan process 'svchost.exe' - '21' Module(s) have been scanned
Scan process 'svchost.exe' - '35' Module(s) have been scanned
Scan process 'TurboBoost.exe' - '24' Module(s) have been scanned
Scan process 'VAWinService.exe' - '62' Module(s) have been scanned
Scan process 'WLIDSVC.EXE' - '62' Module(s) have been scanned
Scan process 'WLIDSvcM.exe' - '17' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '33' Module(s) have been scanned
Scan process 'ATKOSD.exe' - '31' Module(s) have been scanned
Scan process 'KBFiltr.exe' - '32' Module(s) have been scanned
Scan process 'WDC.exe' - '38' Module(s) have been scanned
Scan process 'ACEngSvr.exe' - '32' Module(s) have been scanned
Scan process 'avshadow.exe' - '29' Module(s) have been scanned
Scan process 'RAVCpl64.exe' - '49' Module(s) have been scanned
Scan process 'iPodService.exe' - '33' Module(s) have been scanned
Scan process 'svchost.exe' - '49' Module(s) have been scanned
Scan process 'SearchIndexer.exe' - '59' Module(s) have been scanned
Scan process 'svchost.exe' - '37' Module(s) have been scanned
Scan process 'NvStreamNetworkService.exe' - '54' Module(s) have been scanned
Scan process 'SynTPHelper.exe' - '17' Module(s) have been scanned
Scan process 'nvstreamsvc.exe' - '72' Module(s) have been scanned
Scan process 'conhost.exe' - '20' Module(s) have been scanned
Scan process 'conhost.exe' - '14' Module(s) have been scanned
Scan process 'LMS.exe' - '35' Module(s) have been scanned
Scan process 'wmpnetwk.exe' - '121' Module(s) have been scanned
Scan process 'UNS.exe' - '46' Module(s) have been scanned
Scan process 'avcenter.exe' - '131' Module(s) have been scanned
Scan process 'avscan.exe' - '123' Module(s) have been scanned
Scan process 'vssvc.exe' - '47' Module(s) have been scanned
Scan process 'svchost.exe' - '34' Module(s) have been scanned
Scan process 'smss.exe' - '2' Module(s) have been scanned
Scan process 'csrss.exe' - '18' Module(s) have been scanned
Scan process 'wininit.exe' - '26' Module(s) have been scanned
Scan process 'csrss.exe' - '18' Module(s) have been scanned
Scan process 'services.exe' - '33' Module(s) have been scanned
Scan process 'lsass.exe' - '68' Module(s) have been scanned
Scan process 'lsm.exe' - '16' Module(s) have been scanned
Scan process 'winlogon.exe' - '31' Module(s) have been scanned
Starting to scan executable files (registry):
The registry was scanned ( '2478' files ).
Starting the file scan:
Begin scan in 'C:\'
Begin scan in 'D:\'
End of the scan: 1. mája 2015 17:53
Used time: 1:20:59 Hour(s)
The scan has been done completely.
31064 Scanned directories
1385816 Files were scanned
0 Viruses and/or unwanted programs were found
0 Files were classified as suspicious
0 Files were deleted
0 Viruses and unwanted programs were repaired
0 Files were moved to quarantine
0 Files were renamed
0 Files cannot be scanned
1385816 Files not concerned
9569 Archives were scanned
0 Warnings
4 Notes
843485 Objects were scanned with rootkit scan
5 Hidden objects were found
co sa tyka winu pc je uz domaci
Free Antivirus
Report file date: 1. mája 2015 16:32
The program is running as an unrestricted full version.
Online services are available.
Licensee : Avira Antivirus Free
Serial number : 0000149996-AVHOE-0000001
Platform : Windows 7 Enterprise
Windows version : (Service Pack 1) [6.1.7601]
Boot mode : Normally booted
Username : SYSTEM
Computer name : ASUS_P41S_03
Version information:
BUILD.DAT : 15.0.9.504 94784 Bytes 24. 3. 2015 14:59:00
AVSCAN.EXE : 15.0.9.504 1027528 Bytes 24. 3. 2015 12:59:28
AVSCANRC.DLL : 15.0.9.460 54064 Bytes 24. 3. 2015 12:59:28
LUKE.DLL : 15.0.9.460 60664 Bytes 24. 3. 2015 12:59:30
AVSCPLR.DLL : 15.0.9.460 95536 Bytes 24. 3. 2015 12:59:28
REPAIR.DLL : 15.0.9.504 374064 Bytes 24. 3. 2015 12:59:28
REPAIR.RDF : 1.0.7.58 881292 Bytes 1. 5. 2015 14:21:24
AVREG.DLL : 15.0.9.460 273712 Bytes 24. 3. 2015 12:59:28
AVLODE.DLL : 15.0.9.504 596272 Bytes 24. 3. 2015 12:59:26
AVLODE.RDF : 14.0.4.64 79226 Bytes 1. 5. 2015 14:21:07
XBV00019.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00020.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00021.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00022.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00023.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00024.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00025.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00026.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00027.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00028.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00029.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00030.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00031.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00032.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00033.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00034.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00035.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00036.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00037.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00038.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00039.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00040.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00041.VDF : 8.11.165.190 2048 Bytes 7. 8. 2014 12:59:31
XBV00118.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00119.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00120.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00121.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00122.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00123.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00124.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00125.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00126.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00127.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00128.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00129.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00130.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00131.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00132.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00133.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00134.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00135.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00136.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00137.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00138.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00139.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00140.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00141.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00142.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00143.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00144.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00145.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00146.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00147.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:16
XBV00148.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00149.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00150.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00151.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00152.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00153.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00154.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00155.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00156.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00157.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00158.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00159.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00160.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00161.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00162.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00163.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00164.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00165.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00166.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00167.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00168.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00169.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00170.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00171.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00172.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00173.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00174.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00175.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00176.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00177.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00178.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00179.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00180.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:17
XBV00181.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00182.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00183.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00184.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00185.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00186.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00187.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00188.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00189.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00190.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00191.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00192.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00193.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00194.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00195.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00196.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00197.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00198.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00199.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00200.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00201.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00202.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00203.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00204.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00205.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00206.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00207.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00208.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00209.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00210.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00211.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00212.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:18
XBV00213.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00214.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00215.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00216.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00217.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00218.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00219.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00220.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00221.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00222.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00223.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00224.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00225.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00226.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00227.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00228.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00229.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00230.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00231.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00232.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00233.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00234.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00235.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00236.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00237.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00238.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00239.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00240.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00241.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00242.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00243.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00244.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00245.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00246.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:19
XBV00247.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00248.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00249.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00250.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00251.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00252.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00253.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00254.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00255.VDF : 8.11.225.88 2048 Bytes 22. 4. 2015 14:21:20
XBV00000.VDF : 7.11.70.0 66736640 Bytes 4. 4. 2013 12:59:31
XBV00001.VDF : 7.11.74.226 2201600 Bytes 30. 4. 2013 12:59:31
XBV00002.VDF : 7.11.80.60 2751488 Bytes 28. 5. 2013 12:59:31
XBV00003.VDF : 7.11.85.214 2162688 Bytes 21. 6. 2013 12:59:31
XBV00004.VDF : 7.11.91.176 3903488 Bytes 23. 7. 2013 12:59:31
XBV00005.VDF : 7.11.98.186 6822912 Bytes 29. 8. 2013 12:59:31
XBV00006.VDF : 7.11.139.38 15708672 Bytes 27. 3. 2014 12:59:31
XBV00007.VDF : 7.11.152.100 4193792 Bytes 2. 6. 2014 12:59:31
XBV00008.VDF : 8.11.165.192 4251136 Bytes 7. 8. 2014 12:59:31
XBV00009.VDF : 8.11.172.30 2094080 Bytes 15. 9. 2014 12:59:31
XBV00010.VDF : 8.11.178.32 1581056 Bytes 14. 10. 2014 12:59:31
XBV00011.VDF : 8.11.184.50 2178560 Bytes 11. 11. 2014 12:59:31
XBV00012.VDF : 8.11.190.32 1876992 Bytes 3. 12. 2014 12:59:31
XBV00013.VDF : 8.11.201.28 2973696 Bytes 14. 1. 2015 12:59:31
XBV00014.VDF : 8.11.206.252 2695680 Bytes 4. 2. 2015 12:59:31
XBV00015.VDF : 8.11.213.84 3175936 Bytes 3. 3. 2015 12:59:31
XBV00016.VDF : 8.11.213.176 212480 Bytes 5. 3. 2015 12:59:31
XBV00017.VDF : 8.11.219.166 2033664 Bytes 25. 3. 2015 14:21:07
XBV00018.VDF : 8.11.225.88 2367488 Bytes 22. 4. 2015 14:21:07
XBV00042.VDF : 8.11.225.112 23040 Bytes 22. 4. 2015 14:21:07
XBV00043.VDF : 8.11.225.138 2048 Bytes 22. 4. 2015 14:21:07
XBV00044.VDF : 8.11.225.164 43520 Bytes 22. 4. 2015 14:21:08
XBV00045.VDF : 8.11.225.188 27136 Bytes 22. 4. 2015 14:21:08
XBV00046.VDF : 8.11.225.190 2048 Bytes 22. 4. 2015 14:21:08
XBV00047.VDF : 8.11.225.192 24064 Bytes 22. 4. 2015 14:21:08
XBV00048.VDF : 8.11.225.196 35328 Bytes 23. 4. 2015 14:21:08
XBV00049.VDF : 8.11.225.198 14848 Bytes 23. 4. 2015 14:21:08
XBV00050.VDF : 8.11.225.202 2048 Bytes 23. 4. 2015 14:21:08
XBV00051.VDF : 8.11.225.224 30208 Bytes 23. 4. 2015 14:21:08
XBV00052.VDF : 8.11.225.244 2048 Bytes 23. 4. 2015 14:21:08
XBV00053.VDF : 8.11.226.8 21504 Bytes 23. 4. 2015 14:21:08
XBV00054.VDF : 8.11.226.30 35328 Bytes 23. 4. 2015 14:21:08
XBV00055.VDF : 8.11.226.34 2048 Bytes 24. 4. 2015 14:21:08
XBV00056.VDF : 8.11.226.42 32256 Bytes 24. 4. 2015 14:21:08
XBV00057.VDF : 8.11.226.44 39424 Bytes 24. 4. 2015 14:21:08
XBV00058.VDF : 8.11.226.46 7680 Bytes 24. 4. 2015 14:21:08
XBV00059.VDF : 8.11.226.48 6656 Bytes 24. 4. 2015 14:21:08
XBV00060.VDF : 8.11.226.68 14336 Bytes 24. 4. 2015 14:21:08
XBV00061.VDF : 8.11.226.88 19456 Bytes 24. 4. 2015 14:21:08
XBV00062.VDF : 8.11.226.112 24576 Bytes 24. 4. 2015 14:21:08
XBV00063.VDF : 8.11.226.134 55808 Bytes 25. 4. 2015 14:21:08
XBV00064.VDF : 8.11.226.136 2560 Bytes 25. 4. 2015 14:21:08
XBV00065.VDF : 8.11.226.138 9728 Bytes 25. 4. 2015 14:21:08
XBV00066.VDF : 8.11.226.140 12800 Bytes 25. 4. 2015 14:21:08
XBV00067.VDF : 8.11.226.160 94208 Bytes 26. 4. 2015 14:21:09
XBV00068.VDF : 8.11.226.178 10240 Bytes 26. 4. 2015 14:21:09
XBV00069.VDF : 8.11.226.196 10240 Bytes 26. 4. 2015 14:21:09
XBV00070.VDF : 8.11.226.214 7680 Bytes 26. 4. 2015 14:21:09
XBV00071.VDF : 8.11.226.216 59904 Bytes 27. 4. 2015 14:21:09
XBV00072.VDF : 8.11.226.220 7168 Bytes 27. 4. 2015 14:21:09
XBV00073.VDF : 8.11.226.222 10752 Bytes 27. 4. 2015 14:21:14
XBV00074.VDF : 8.11.226.242 10752 Bytes 27. 4. 2015 14:21:14
XBV00075.VDF : 8.11.227.4 23040 Bytes 27. 4. 2015 14:21:14
XBV00076.VDF : 8.11.227.6 2048 Bytes 27. 4. 2015 14:21:14
XBV00077.VDF : 8.11.227.28 52736 Bytes 27. 4. 2015 14:21:14
XBV00078.VDF : 8.11.227.46 9216 Bytes 27. 4. 2015 14:21:14
XBV00079.VDF : 8.11.227.52 11264 Bytes 27. 4. 2015 14:21:14
XBV00080.VDF : 8.11.227.54 6656 Bytes 28. 4. 2015 14:21:14
XBV00081.VDF : 8.11.227.56 5120 Bytes 28. 4. 2015 14:21:14
XBV00082.VDF : 8.11.227.58 26112 Bytes 28. 4. 2015 14:21:14
XBV00083.VDF : 8.11.227.78 6144 Bytes 28. 4. 2015 14:21:14
XBV00084.VDF : 8.11.227.94 6656 Bytes 28. 4. 2015 14:21:14
XBV00085.VDF : 8.11.227.110 5632 Bytes 28. 4. 2015 14:21:14
XBV00086.VDF : 8.11.227.126 15872 Bytes 28. 4. 2015 14:21:14
XBV00087.VDF : 8.11.227.130 41984 Bytes 28. 4. 2015 14:21:14
XBV00088.VDF : 8.11.227.132 7168 Bytes 28. 4. 2015 14:21:15
XBV00089.VDF : 8.11.227.134 17408 Bytes 28. 4. 2015 14:21:15
XBV00090.VDF : 8.11.227.136 7168 Bytes 28. 4. 2015 14:21:15
XBV00091.VDF : 8.11.227.138 11776 Bytes 28. 4. 2015 14:21:15
XBV00092.VDF : 8.11.227.140 19456 Bytes 29. 4. 2015 14:21:15
XBV00093.VDF : 8.11.227.156 32256 Bytes 29. 4. 2015 14:21:15
XBV00094.VDF : 8.11.227.172 7168 Bytes 29. 4. 2015 14:21:15
XBV00095.VDF : 8.11.227.188 7680 Bytes 29. 4. 2015 14:21:15
XBV00096.VDF : 8.11.227.190 2048 Bytes 29. 4. 2015 14:21:15
XBV00097.VDF : 8.11.227.206 23040 Bytes 29. 4. 2015 14:21:15
XBV00098.VDF : 8.11.227.208 2048 Bytes 29. 4. 2015 14:21:15
XBV00099.VDF : 8.11.227.212 55808 Bytes 29. 4. 2015 14:21:15
XBV00100.VDF : 8.11.227.216 2560 Bytes 29. 4. 2015 14:21:15
XBV00101.VDF : 8.11.227.232 13824 Bytes 29. 4. 2015 14:21:15
XBV00102.VDF : 8.11.227.246 7680 Bytes 29. 4. 2015 14:21:15
XBV00103.VDF : 8.11.228.6 30208 Bytes 30. 4. 2015 14:21:15
XBV00104.VDF : 8.11.228.8 2048 Bytes 30. 4. 2015 14:21:15
XBV00105.VDF : 8.11.228.22 2048 Bytes 30. 4. 2015 14:21:15
XBV00106.VDF : 8.11.228.36 15360 Bytes 30. 4. 2015 14:21:15
XBV00107.VDF : 8.11.228.38 6656 Bytes 30. 4. 2015 14:21:15
XBV00108.VDF : 8.11.228.40 2048 Bytes 30. 4. 2015 14:21:15
XBV00109.VDF : 8.11.228.42 8704 Bytes 30. 4. 2015 14:21:15
XBV00110.VDF : 8.11.228.44 8192 Bytes 30. 4. 2015 14:21:15
XBV00111.VDF : 8.11.228.46 23040 Bytes 30. 4. 2015 14:21:15
XBV00112.VDF : 8.11.228.50 46080 Bytes 30. 4. 2015 14:21:15
XBV00113.VDF : 8.11.228.52 6656 Bytes 30. 4. 2015 14:21:15
XBV00114.VDF : 8.11.228.66 32256 Bytes 1. 5. 2015 14:21:15
XBV00115.VDF : 8.11.228.80 16896 Bytes 1. 5. 2015 14:21:15
XBV00116.VDF : 8.11.228.94 2048 Bytes 1. 5. 2015 14:21:16
XBV00117.VDF : 8.11.228.108 17920 Bytes 1. 5. 2015 14:21:16
Engine version : 8.3.30.28
AEVDF.DLL : 8.3.1.6 133992 Bytes 24. 3. 2015 12:59:23
AESCRIPT.DLL : 8.2.2.62 567208 Bytes 1. 5. 2015 14:21:06
AESCN.DLL : 8.3.2.2 139456 Bytes 24. 3. 2015 12:59:23
AESBX.DLL : 8.2.20.34 1615784 Bytes 24. 3. 2015 12:59:23
AERDL.DLL : 8.2.1.20 731040 Bytes 24. 3. 2015 12:59:23
AEPACK.DLL : 8.4.0.62 793456 Bytes 24. 3. 2015 12:59:23
AEOFFICE.DLL : 8.3.1.22 363376 Bytes 1. 5. 2015 14:21:05
AEMOBILE.DLL : 8.1.7.2 281720 Bytes 1. 5. 2015 14:21:06
AEHEUR.DLL : 8.1.4.1668 8289136 Bytes 1. 5. 2015 14:21:05
AEHELP.DLL : 8.3.2.0 281456 Bytes 24. 3. 2015 12:59:23
AEGEN.DLL : 8.1.7.40 456608 Bytes 24. 3. 2015 12:59:23
AEEXP.DLL : 8.4.2.82 260968 Bytes 1. 5. 2015 14:21:06
AEEMU.DLL : 8.1.3.4 399264 Bytes 24. 3. 2015 12:59:23
AEDROID.DLL : 8.4.3.116 1050536 Bytes 24. 3. 2015 12:59:23
AECORE.DLL : 8.3.4.0 243624 Bytes 24. 3. 2015 12:59:23
AEBB.DLL : 8.1.2.0 60448 Bytes 24. 3. 2015 12:59:23
AVWINLL.DLL : 15.0.9.460 26872 Bytes 24. 3. 2015 12:59:29
AVPREF.DLL : 15.0.9.460 52984 Bytes 24. 3. 2015 12:59:28
AVREP.DLL : 15.0.9.460 220464 Bytes 24. 3. 2015 12:59:28
AVARKT.DLL : 15.0.9.460 228088 Bytes 24. 3. 2015 12:59:24
AVEVTLOG.DLL : 15.0.9.460 193328 Bytes 24. 3. 2015 12:59:25
SQLITE3.DLL : 15.0.9.460 455472 Bytes 24. 3. 2015 12:59:31
AVSMTP.DLL : 15.0.9.460 79096 Bytes 24. 3. 2015 12:59:28
NETNT.DLL : 15.0.9.460 15152 Bytes 24. 3. 2015 12:59:30
CommonImageRc.dll: 15.0.9.460 4355376 Bytes 24. 3. 2015 12:59:30
CommonTextRc.DLL: 15.0.9.476 71416 Bytes 24. 3. 2015 12:59:30
Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: C:\Program Files (x86)\Avira\Antivirus\sysscan.avp
Reporting...........................: default
Primary action......................: Interactive
Secondary action....................: Ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:, D:,
Process scan........................: on
Extended process scan...............: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Limit recursion depth...............: 20
Smart extensions....................: on
Macrovirus heuristic................: on
File heuristic......................: extended
Start of the scan: 1. mája 2015 16:32
Start scanning boot sectors:
Boot sector 'HDD0(C:, D:)'
[INFO] No virus was found!
Starting search for hidden objects.
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\mbam.exe
[NOTE] The registry entry is invisible.
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_NvStreamNetworkS_66b791336e597ab5dc21e23648c19a025a43_cab_15392a88
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows Media Player NSS\3.0\Events\{7221D4ED-68BC-420C-B3A5-08197215EE14}
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes Anti-Malware_is1
[NOTE] The registry entry is invisible.
The scan of running processes will be started:
Scan process 'svchost.exe' - '52' Module(s) have been scanned
Scan process 'TrueSuite.Service.exe' - '27' Module(s) have been scanned
Scan process 'nvvsvc.exe' - '35' Module(s) have been scanned
Scan process 'svchost.exe' - '36' Module(s) have been scanned
Scan process 'svchost.exe' - '73' Module(s) have been scanned
Scan process 'svchost.exe' - '113' Module(s) have been scanned
Scan process 'svchost.exe' - '82' Module(s) have been scanned
Scan process 'svchost.exe' - '161' Module(s) have been scanned
Scan process 'svchost.exe' - '86' Module(s) have been scanned
Scan process 'FBAgent.exe' - '42' Module(s) have been scanned
Scan process 'ASLDRSrv.exe' - '27' Module(s) have been scanned
Scan process 'nvxdsync.exe' - '54' Module(s) have been scanned
Scan process 'nvvsvc.exe' - '67' Module(s) have been scanned
Scan process 'smartlogon.exe' - '53' Module(s) have been scanned
Scan process 'GFNEXSrv.exe' - '14' Module(s) have been scanned
Scan process 'TrueSuite.TouchControl.exe' - '100' Module(s) have been scanned
Scan process 'Dwm.exe' - '34' Module(s) have been scanned
Scan process 'Explorer.EXE' - '216' Module(s) have been scanned
Scan process 'spoolsv.exe' - '98' Module(s) have been scanned
Scan process 'taskhost.exe' - '71' Module(s) have been scanned
Scan process 'svchost.exe' - '47' Module(s) have been scanned
Scan process 'sched.exe' - '77' Module(s) have been scanned
Scan process 'taskeng.exe' - '30' Module(s) have been scanned
Scan process 'svchost.exe' - '65' Module(s) have been scanned
Scan process 'taskeng.exe' - '28' Module(s) have been scanned
Scan process 'ADDEL.exe' - '23' Module(s) have been scanned
Scan process 'taskeng.exe' - '34' Module(s) have been scanned
Scan process 'sensorsrv.exe' - '39' Module(s) have been scanned
Scan process 'GoogleUpdate.exe' - '63' Module(s) have been scanned
Scan process 'igfxtray.exe' - '32' Module(s) have been scanned
Scan process 'avguard.exe' - '147' Module(s) have been scanned
Scan process 'hkcmd.exe' - '31' Module(s) have been scanned
Scan process 'ATKOSD2.exe' - '39' Module(s) have been scanned
Scan process 'igfxpers.exe' - '51' Module(s) have been scanned
Scan process 'BatteryLife.exe' - '55' Module(s) have been scanned
Scan process 'ACMON.exe' - '43' Module(s) have been scanned
Scan process 'AppleMobileDeviceService.exe' - '70' Module(s) have been scanned
Scan process 'AmIcoSinglun64.exe' - '31' Module(s) have been scanned
Scan process 'SynTPEnh.exe' - '67' Module(s) have been scanned
Scan process 'HControl.exe' - '57' Module(s) have been scanned
Scan process 'RAVBg64.exe' - '56' Module(s) have been scanned
Scan process 'TrueSuite.ClientAppLogonExe.exe' - '27' Module(s) have been scanned
Scan process 'TrueSuite.ClientAppLogonExe.exe' - '40' Module(s) have been scanned
Scan process 'BtvStack.exe' - '62' Module(s) have been scanned
Scan process 'AthBtTray.exe' - '44' Module(s) have been scanned
Scan process 'NvBackend.exe' - '78' Module(s) have been scanned
Scan process 'Ath_CoexAgent.exe' - '41' Module(s) have been scanned
Scan process 'soffice.exe' - '34' Module(s) have been scanned
Scan process 'soffice.bin' - '101' Module(s) have been scanned
Scan process 'DMedia.exe' - '40' Module(s) have been scanned
Scan process 'adminservice.exe' - '30' Module(s) have been scanned
Scan process 'HControlUser.exe' - '37' Module(s) have been scanned
Scan process 'wcourier.exe' - '50' Module(s) have been scanned
Scan process 'VAWinAgent.exe' - '37' Module(s) have been scanned
Scan process 'hppusg.exe' - '96' Module(s) have been scanned
Scan process 'mDNSResponder.exe' - '35' Module(s) have been scanned
Scan process 'iTunesHelper.exe' - '84' Module(s) have been scanned
Scan process 'Avira.OE.Systray.exe' - '69' Module(s) have been scanned
Scan process 'avgnt.exe' - '132' Module(s) have been scanned
Scan process 'SkypeC2CAutoUpdateSvc.exe' - '33' Module(s) have been scanned
Scan process 'SkypeC2CPNRSvc.exe' - '27' Module(s) have been scanned
Scan process 'CnxDIAS.exe' - '35' Module(s) have been scanned
Scan process 'ekrn.exe' - '71' Module(s) have been scanned
Scan process 'GfExperienceService.exe' - '55' Module(s) have been scanned
Scan process 'svchost.exe' - '21' Module(s) have been scanned
Scan process 'NvNetworkService.exe' - '64' Module(s) have been scanned
Scan process 'nvtray.exe' - '55' Module(s) have been scanned
Scan process 'nvstreamsvc.exe' - '63' Module(s) have been scanned
Scan process 'svchost.exe' - '21' Module(s) have been scanned
Scan process 'svchost.exe' - '35' Module(s) have been scanned
Scan process 'TurboBoost.exe' - '24' Module(s) have been scanned
Scan process 'VAWinService.exe' - '62' Module(s) have been scanned
Scan process 'WLIDSVC.EXE' - '62' Module(s) have been scanned
Scan process 'WLIDSvcM.exe' - '17' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '33' Module(s) have been scanned
Scan process 'ATKOSD.exe' - '31' Module(s) have been scanned
Scan process 'KBFiltr.exe' - '32' Module(s) have been scanned
Scan process 'WDC.exe' - '38' Module(s) have been scanned
Scan process 'ACEngSvr.exe' - '32' Module(s) have been scanned
Scan process 'avshadow.exe' - '29' Module(s) have been scanned
Scan process 'RAVCpl64.exe' - '49' Module(s) have been scanned
Scan process 'iPodService.exe' - '33' Module(s) have been scanned
Scan process 'svchost.exe' - '49' Module(s) have been scanned
Scan process 'SearchIndexer.exe' - '59' Module(s) have been scanned
Scan process 'svchost.exe' - '37' Module(s) have been scanned
Scan process 'NvStreamNetworkService.exe' - '54' Module(s) have been scanned
Scan process 'SynTPHelper.exe' - '17' Module(s) have been scanned
Scan process 'nvstreamsvc.exe' - '72' Module(s) have been scanned
Scan process 'conhost.exe' - '20' Module(s) have been scanned
Scan process 'conhost.exe' - '14' Module(s) have been scanned
Scan process 'LMS.exe' - '35' Module(s) have been scanned
Scan process 'wmpnetwk.exe' - '121' Module(s) have been scanned
Scan process 'UNS.exe' - '46' Module(s) have been scanned
Scan process 'avcenter.exe' - '131' Module(s) have been scanned
Scan process 'avscan.exe' - '123' Module(s) have been scanned
Scan process 'vssvc.exe' - '47' Module(s) have been scanned
Scan process 'svchost.exe' - '34' Module(s) have been scanned
Scan process 'smss.exe' - '2' Module(s) have been scanned
Scan process 'csrss.exe' - '18' Module(s) have been scanned
Scan process 'wininit.exe' - '26' Module(s) have been scanned
Scan process 'csrss.exe' - '18' Module(s) have been scanned
Scan process 'services.exe' - '33' Module(s) have been scanned
Scan process 'lsass.exe' - '68' Module(s) have been scanned
Scan process 'lsm.exe' - '16' Module(s) have been scanned
Scan process 'winlogon.exe' - '31' Module(s) have been scanned
Starting to scan executable files (registry):
The registry was scanned ( '2478' files ).
Starting the file scan:
Begin scan in 'C:\'
Begin scan in 'D:\'
End of the scan: 1. mája 2015 17:53
Used time: 1:20:59 Hour(s)
The scan has been done completely.
31064 Scanned directories
1385816 Files were scanned
0 Viruses and/or unwanted programs were found
0 Files were classified as suspicious
0 Files were deleted
0 Viruses and unwanted programs were repaired
0 Files were moved to quarantine
0 Files were renamed
0 Files cannot be scanned
1385816 Files not concerned
9569 Archives were scanned
0 Warnings
4 Notes
843485 Objects were scanned with rootkit scan
5 Hidden objects were found
- Rudy
- Site Admin
- Příspěvky: 119359
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Scan z aviry
Zdravím!
Jak mám vědět, co jsou zač ty skryté objekty?
AV žádný virus nenašel a to je snad rozhodující. Můj AV je najde také a nic nenasvědčuje tomu, že bych měl zavirovaný PC. Pokud PC nevykazuje při chodu žádné anomálie, je vše v pořádku.
Jak mám vědět, co jsou zač ty skryté objekty?

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Scan z aviry
Dobry este otazocka mam pocit ze notas obcas na chvilku zasekne a pohuci pri starte chcel som este spustit utilitku gmer ale ked to dam a supnem scan zacne scanovat pomalsie a potom my hodi modru obrazovku a po chvilke sa samo resetne a a hodi potom ci chcem spustit v safe mode a lebo normal urobilo my to aj v nudzovom rezime
- Rudy
- Site Admin
- Příspěvky: 119359
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Scan z aviry
OK. Dejte log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Scan z aviry
Posielam log a dakujem za odpoved
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-04-2015 01
Ran by uzivatel (administrator) on ASUS_P41S_03 on 01-05-2015 23:42:15
Running from C:\Users\uzivatel\Downloads
Loaded Profiles: uzivatel (Available profiles: uzivatel)
Platform: Windows 7 Enterprise Service Pack 1 (X64) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AuthenTec, Inc) C:\Program Files\TrueSuite\TrueSuite.Service.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\smartlogon.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(AuthenTec Inc.) C:\Program Files\TrueSuite\TrueSuite.TouchControl.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
() C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(AuthenTec, Inc.) C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe
(AuthenTec, Inc.) C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
() C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
() C:\ExpressGateUtil\VAWinAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(CANON INC.) C:\Program Files\Canon\DIAS\CnxDIAS.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
() C:\ExpressGateUtil\VAWinService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Valve Corporation) D:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [324096 2010-08-11] (Alcor Micro Corp.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2712360 2011-03-04] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2188904 2011-01-18] (Realtek Semiconductor)
HKLM\...\Run: [SynAsusAcpi] => C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [97064 2011-03-04] (Synaptics Incorporated)
HKLM\...\Run: [ClientAppLogon] => C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe [420672 2010-11-12] (AuthenTec, Inc.)
HKLM\...\Run: [ClientAppLogon32] => C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe [307520 2010-11-12] (AuthenTec, Inc.)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [617120 2011-03-13] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-03-13] (Atheros Commnucations)
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2673296 2015-03-28] (NVIDIA Corporation)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUS)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-23] ()
HKLM-x32\...\Run: [VAWinAgent] => C:\ExpressGateUtil\VAWinAgent.exe [191304 2011-01-13] ()
HKLM-x32\...\Run: [HPUsageTrackingLEDM] => C:\Program Files (x86)\HP\HP UT LEDM\bin\hppusg.exe [30264 2009-08-04] (Hewlett-Packard Company)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [130048 2015-04-10] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [726320 2015-03-24] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [175880 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [175880 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs: , C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [175880 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\Windows\SysWOW64\nvinit.dll => c:\Windows\SysWOW64\nvinit.dll [154256 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [154256 2015-04-09] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk [2011-09-19]
ShortcutTarget: FancyStart daemon.lnk -> C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe ()
Startup: C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2014-03-01]
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
ShellIconOverlayIdentifiers: [TSFPLOlayIcon] -> {F4DD9208-8229-492D-BCBF-2955F7AC38F4} => C:\Program Files\TrueSuite\TrueSuite.FPLOlayIcon.dll [2010-11-12] (AuthenTec, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-2046514427-3509041855-1997376595-1002\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatche ... tbid=60747
SearchScopes: HKU\S-1-5-21-2046514427-3509041855-1997376595-1002 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2046514427-3509041855-1997376595-1002 -> {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} URL = http://www.crawler.com/search/dispatche ... tbid=60747
BHO: TrueSuite WebStore -> {5cb2b77d-c8ca-44db-af20-a7a4df462a12} -> C:\Windows\system32\mscoree.dll [2010-11-05] (Microsoft Corporation)
BHO: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\TrueSuite\TrueSuite.IEBHO.dll [2010-11-12] (AuthenTec Inc.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: TrueSuite WebStore -> {5cb2b77d-c8ca-44db-af20-a7a4df462a12} -> C:\Windows\SysWOW64\mscoree.dll [2010-11-05] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-10-08] (Oracle Corporation)
BHO-x32: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\TrueSuite\x86\TrueSuite.IEBHO.dll [2010-11-12] (AuthenTec Inc.)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-13] (Atheros Commnucations)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-10-08] (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF ProfilePath: C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\LMgMM5cK.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll [2013-11-02] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll [2013-11-02] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> D:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-18] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-04-02] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-04-02] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2013-10-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2013-10-08] (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-01] (Google Inc.)
FF Plugin HKU\S-1-5-21-2046514427-3509041855-1997376595-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\uzivatel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2013-11-25] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-2046514427-3509041855-1997376595-1002: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\crawlersrch.xml [2007-07-26]
FF Extension: Avira Browser Safety - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\LMgMM5cK.default\Extensions\abs@avira.com [2015-05-01]
FF Extension: TrueSuite Website Log On - C:\Program Files (x86)\Mozilla Firefox\extensions\websitelogon_toolbar@truesuite.com [2014-12-18]
FF Extension: TrueSuite WebStore - C:\Program Files (x86)\Mozilla Firefox\extensions\webstore@truesuite.com [2014-12-18]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2011-09-19]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\akmghomonnhljmlfemmifjblglkacfhg [2015-01-11]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-04]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-04]
CHR Extension: (Google Search) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-28]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-06]
CHR Extension: (Avira Browser Safety) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-05-01]
CHR Extension: (Bookmark Manager) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-11]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlkdblcdkgeeeiegonlgdiifmjnkejhh [2015-01-06]
CHR Extension: (Google Wallet) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-20]
CHR Extension: (Website Logon) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokdoppleiafjmfmggefbkghfblaplo [2014-12-20]
CHR Extension: (Gmail) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-04]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
CHR HKLM-x32\...\Chrome\Extension: [oiokdoppleiafjmfmggefbkghfblaplo] - C:\Program Files\TrueSuite\x86\tschrome.crx [2010-10-21]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AFBAgent; C:\Windows\system32\FBAgent.exe [377264 2010-09-30] (ASUSTeK Computer Inc.) [File not signed]
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [815920 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [434424 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [434424 2015-03-24] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1004280 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
S2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [205104 2015-04-10] (Avira Operations GmbH & Co. KG)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 Canon Driver Information Assist Service; C:\Program Files\Canon\DIAS\CnxDIAS.exe [5217168 2014-03-18] (CANON INC.)
S4 EhttpSrv; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [42360 2011-01-12] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [810144 2011-01-12] (ESET)
R2 FPLService; C:\Program Files\TrueSuite\TrueSuite.Service.exe [290112 2010-11-12] (AuthenTec, Inc)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152144 2015-03-28] (NVIDIA Corporation)
S2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [136704 2009-06-24] (HP) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [50688 2011-04-13] (Hewlett-Packard) [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1878672 2015-03-28] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22995600 2015-03-28] (NVIDIA Corporation)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [66048 2011-04-13] (Hewlett-Packard) [File not signed]
R2 VideAceWindowsService; C:\ExpressGateUtil\VAWinService.exe [91464 2011-01-12] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R0 assd; C:\Windows\System32\Drivers\assd.sys [27264 2010-04-28] (ASUS Corporation)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128536 2015-03-24] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132120 2015-03-24] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [44088 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [170640 2010-12-21] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [141264 2010-12-21] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [125296 2010-12-21] (ESET)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-03-28] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [37624 2015-03-01] ()
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-16] ()
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-01 23:42 - 2015-05-01 23:42 - 00024130 _____ () C:\Users\uzivatel\Downloads\FRST.txt
2015-05-01 23:41 - 2015-05-01 23:42 - 00000000 ____D () C:\FRST
2015-05-01 23:39 - 2015-05-01 23:39 - 02101248 _____ (Farbar) C:\Users\uzivatel\Downloads\FRST64.exe
2015-05-01 20:59 - 2015-05-01 20:59 - 00370610 _____ () C:\Users\uzivatel\Downloads\gmer.zip
2015-05-01 20:51 - 2015-05-01 20:51 - 00380416 _____ () C:\Users\uzivatel\Downloads\rv9drrh1.exe
2015-05-01 20:27 - 2015-05-01 20:29 - 41954352 _____ (Razer Inc. ) C:\Users\uzivatel\Downloads\RazerGameBoosterSetup_4.2.45.0.exe
2015-05-01 20:26 - 2015-05-01 20:26 - 04344120 _____ (IObit ) C:\Users\uzivatel\Downloads\gb3-setup.exe
2015-05-01 17:56 - 2015-05-01 17:56 - 00059562 _____ () C:\AVSCAN-20150501-163147-376EDA18.LOG
2015-05-01 16:21 - 2015-05-01 16:21 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Mozilla
2015-05-01 16:20 - 2015-05-01 16:20 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Avira
2015-05-01 16:16 - 2015-03-24 14:59 - 00132120 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-05-01 16:16 - 2015-03-24 14:59 - 00128536 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-05-01 16:16 - 2015-03-24 14:59 - 00044088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2015-05-01 16:16 - 2015-03-24 14:59 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2015-05-01 16:12 - 2015-05-01 16:12 - 00001207 _____ () C:\Users\Public\Desktop\Avira.lnk
2015-05-01 16:11 - 2015-05-01 16:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-05-01 16:11 - 2015-05-01 16:15 - 00000000 ____D () C:\ProgramData\Avira
2015-05-01 16:11 - 2015-05-01 16:15 - 00000000 ____D () C:\Program Files (x86)\Avira
2015-05-01 16:11 - 2015-05-01 16:11 - 04636584 _____ (Avira Operations GmbH & Co. KG) C:\Users\uzivatel\Downloads\avira_en_av_5543897625a21__ws.exe
2015-05-01 16:11 - 2015-05-01 16:11 - 00000000 ____D () C:\ProgramData\Package Cache
2015-05-01 16:09 - 2015-05-01 16:09 - 05499960 _____ (Avast Software s.r.o.) C:\Users\uzivatel\Downloads\avast_free_antivirus_setup_online.exe
2015-05-01 15:43 - 2015-05-01 21:23 - 00022816 ____N () C:\Windows\WindowsUpdate.log
2015-05-01 12:49 - 2015-05-01 12:49 - 00000000 __SHD () C:\found.000
2015-04-28 22:51 - 2015-04-28 22:51 - 00006704 ____N () C:\bootsqm.dat
2015-04-28 08:39 - 2015-04-28 08:39 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Runscanner.net
2015-04-28 07:52 - 2015-04-28 07:52 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2015-04-28 07:11 - 2015-04-28 07:11 - 00000000 _____ () C:\autoexec.bat
2015-04-27 11:21 - 2015-04-27 11:21 - 00000000 ____D () C:\Windows\SysWOW64\NV
2015-04-27 11:21 - 2015-04-27 11:21 - 00000000 ____D () C:\Windows\system32\NV
2015-04-27 10:50 - 2015-04-09 02:58 - 31570064 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 30397072 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 25375048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 24053576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 17176128 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 15818528 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 15716232 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 14617288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 14006752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 12852784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 11380728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 10423952 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-04-27 10:50 - 2015-04-09 02:58 - 02935416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 02896528 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 02573456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01895568 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435012.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435012.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01086424 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01047368 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01037640 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00970568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00962192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00175880 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00031376 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2015-04-27 10:50 - 2015-04-09 02:58 - 00029329 _____ () C:\Windows\system32\nvinfo.pb
2015-04-27 09:00 - 2015-04-27 09:00 - 00000000 ____D () C:\Users\uzivatel\Documents\Thief
2015-04-26 22:55 - 2015-04-26 22:55 - 00000222 _____ () C:\Users\uzivatel\Desktop\Thief.url
2015-04-25 20:30 - 2015-04-30 12:52 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\DVDVideoSoft
2015-04-18 13:23 - 2015-04-18 13:24 - 00000000 ____D () C:\Users\uzivatel\Documents\NBGI
2015-04-18 12:47 - 2015-05-01 15:33 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-04-18 10:23 - 2015-04-18 10:23 - 00000680 _____ () C:\Users\Public\Desktop\Steam.lnk
2015-04-18 10:23 - 2015-04-18 10:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-04-17 10:19 - 2015-04-17 11:23 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\uTorrent
2015-04-16 11:22 - 2015-04-16 11:22 - 00000000 ____D () C:\Users\uzivatel\AppData\Local\NBGI
2015-04-16 10:57 - 2015-04-16 10:57 - 00001338 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk
2015-04-14 20:43 - 2015-04-14 20:43 - 00048347 _____ () C:\Users\uzivatel\Downloads\ICV_Levoca.xlsx
2015-04-14 20:42 - 2015-04-14 20:42 - 00007914 _____ () C:\Users\uzivatel\Downloads\DPS_2012_2013 (1).ods
2015-04-14 20:41 - 2015-04-14 20:41 - 00007819 _____ () C:\Users\uzivatel\Downloads\DPS_2011_2012.ods
2015-04-14 20:40 - 2015-04-14 20:40 - 00012458 _____ () C:\Users\uzivatel\Downloads\DPS_2009_2010 (1).ods
2015-04-14 20:40 - 2015-04-14 20:40 - 00008224 _____ () C:\Users\uzivatel\Downloads\DPS_2010_2011 (1).ods
2015-04-14 20:36 - 2015-04-14 20:36 - 00214463 _____ () C:\Users\uzivatel\Downloads\ICV_2012_2013.xlsx
2015-04-14 20:36 - 2015-04-14 20:36 - 00009014 _____ () C:\Users\uzivatel\Downloads\ICV_2011_2012.ods
2015-04-14 20:35 - 2015-04-14 20:35 - 00007838 _____ () C:\Users\uzivatel\Downloads\ICV_2010_2011.ods
2015-04-14 20:34 - 2015-04-14 20:34 - 00007914 _____ () C:\Users\uzivatel\Downloads\DPS_2012_2013.ods
2015-04-14 20:33 - 2015-04-14 20:33 - 00007819 _____ () C:\Users\uzivatel\Downloads\DPS_2011_2010.ods
2015-04-14 20:32 - 2015-04-14 20:32 - 00008224 _____ () C:\Users\uzivatel\Downloads\DPS_2010_2011.ods
2015-04-14 20:31 - 2015-04-14 20:31 - 00012458 _____ () C:\Users\uzivatel\Downloads\DPS_2009_2010.ods
2015-04-11 15:34 - 2015-04-11 15:34 - 00000000 ____D () C:\Users\uzivatel\AppData\Local\Steam
2015-04-04 20:44 - 2015-04-04 20:44 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\DarkSoulsII
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-01 21:33 - 2009-07-14 06:45 - 00017120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-01 21:33 - 2009-07-14 06:45 - 00017120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-01 21:24 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-01 16:28 - 2011-09-19 19:22 - 00001995 _____ () C:\Windows\system32\ServiceFilter.ini
2015-05-01 16:27 - 2011-09-19 19:22 - 00002344 _____ () C:\Windows\system32\AutoRunFilter.ini
2015-05-01 15:40 - 2009-07-14 07:08 - 00032602 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-01 15:37 - 2015-03-13 19:32 - 00000000 ____D () C:\Users\uzivatel\AppData\Local\CrashDumps
2015-05-01 15:37 - 2014-08-31 21:24 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2015-05-01 15:37 - 2014-08-11 11:54 - 00000000 ____D () C:\Windows\Minidump
2015-05-01 15:12 - 2011-09-19 16:12 - 00045056 _____ () C:\Windows\system32\acovcnt.exe
2015-05-01 09:41 - 2014-12-18 15:17 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-04-30 22:45 - 2013-09-03 06:51 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Skype
2015-04-30 20:44 - 2009-07-14 07:13 - 00779306 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-30 07:44 - 2015-02-01 00:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KooBits
2015-04-28 12:14 - 2013-04-12 13:25 - 00000000 ____D () C:\Users\uzivatel\Documents\Bluetooth Folder
2015-04-28 07:53 - 2014-12-18 08:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-04-28 07:11 - 2011-10-07 13:07 - 00000000 ____D () C:\Users\uzivatel
2015-04-27 11:20 - 2011-09-19 19:07 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-04-27 11:12 - 2011-09-19 18:59 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-04-27 10:25 - 2014-05-22 09:22 - 00001381 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2015-04-27 08:49 - 2013-11-02 20:19 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\DAEMON Tools Lite
2015-04-26 21:44 - 2014-12-17 20:46 - 00014848 ___SH () C:\Users\uzivatel\Downloads\Thumbs.db
2015-04-18 09:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\tracing
2015-04-18 09:45 - 2014-03-28 13:44 - 00000000 ____D () C:\Users\uzivatel\Documents\My Games
2015-04-17 10:28 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-04-16 10:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-04-09 02:58 - 2015-03-15 23:38 - 12689592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-04-09 02:58 - 2014-05-22 09:18 - 00927440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-04-09 02:58 - 2011-09-19 19:02 - 03317344 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-04-09 02:58 - 2011-09-19 19:02 - 00154256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 01047696 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 00936264 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-04-08 23:30 - 2011-03-06 06:45 - 00385168 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 00075080 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-04-08 23:30 - 2011-03-06 06:44 - 06841488 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-04-08 23:30 - 2011-03-06 06:44 - 03478344 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-04-08 19:52 - 2011-03-06 06:45 - 04336074 _____ () C:\Windows\system32\nvcoproc.bin
2015-04-07 21:15 - 2014-09-14 23:46 - 00000000 ____D () C:\Users\Public\Recorded TV
2015-04-07 18:13 - 2009-07-14 10:41 - 00000000 ____D () C:\Windows\ShellNew
==================== Files in the root of some directories =======
2013-09-03 13:45 - 2014-06-04 08:53 - 0003738 _____ () C:\Program Files (x86)\Mozilla Firefoxsafeguard-secure-search.xml
2014-05-27 12:09 - 2015-02-08 12:10 - 0007597 _____ () C:\Users\uzivatel\AppData\Local\resmon.resmoncfg
2011-11-18 08:48 - 2011-11-18 09:34 - 0001112 _____ () C:\ProgramData\hpzinstall.log
Some content of TEMP:
====================
C:\Users\uzivatel\AppData\Local\Temp\avgnt.exe
Some zero byte size files/folders:
==========================
C:\Windows\SysWOW64\gcapi_dll.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-04-27 11:54
==================== End Of Log ============================
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-04-2015 01
Ran by uzivatel (administrator) on ASUS_P41S_03 on 01-05-2015 23:42:15
Running from C:\Users\uzivatel\Downloads
Loaded Profiles: uzivatel (Available profiles: uzivatel)
Platform: Windows 7 Enterprise Service Pack 1 (X64) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AuthenTec, Inc) C:\Program Files\TrueSuite\TrueSuite.Service.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\smartlogon.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(AuthenTec Inc.) C:\Program Files\TrueSuite\TrueSuite.TouchControl.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
() C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(AuthenTec, Inc.) C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe
(AuthenTec, Inc.) C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
() C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
() C:\ExpressGateUtil\VAWinAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(CANON INC.) C:\Program Files\Canon\DIAS\CnxDIAS.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
() C:\ExpressGateUtil\VAWinService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Valve Corporation) D:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [324096 2010-08-11] (Alcor Micro Corp.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2712360 2011-03-04] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2188904 2011-01-18] (Realtek Semiconductor)
HKLM\...\Run: [SynAsusAcpi] => C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [97064 2011-03-04] (Synaptics Incorporated)
HKLM\...\Run: [ClientAppLogon] => C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe [420672 2010-11-12] (AuthenTec, Inc.)
HKLM\...\Run: [ClientAppLogon32] => C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe [307520 2010-11-12] (AuthenTec, Inc.)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [617120 2011-03-13] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-03-13] (Atheros Commnucations)
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2673296 2015-03-28] (NVIDIA Corporation)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUS)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-23] ()
HKLM-x32\...\Run: [VAWinAgent] => C:\ExpressGateUtil\VAWinAgent.exe [191304 2011-01-13] ()
HKLM-x32\...\Run: [HPUsageTrackingLEDM] => C:\Program Files (x86)\HP\HP UT LEDM\bin\hppusg.exe [30264 2009-08-04] (Hewlett-Packard Company)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [130048 2015-04-10] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [726320 2015-03-24] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [175880 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [175880 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs: , C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [175880 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\Windows\SysWOW64\nvinit.dll => c:\Windows\SysWOW64\nvinit.dll [154256 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [154256 2015-04-09] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk [2011-09-19]
ShortcutTarget: FancyStart daemon.lnk -> C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe ()
Startup: C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2014-03-01]
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
ShellIconOverlayIdentifiers: [TSFPLOlayIcon] -> {F4DD9208-8229-492D-BCBF-2955F7AC38F4} => C:\Program Files\TrueSuite\TrueSuite.FPLOlayIcon.dll [2010-11-12] (AuthenTec, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-2046514427-3509041855-1997376595-1002\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatche ... tbid=60747
SearchScopes: HKU\S-1-5-21-2046514427-3509041855-1997376595-1002 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2046514427-3509041855-1997376595-1002 -> {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} URL = http://www.crawler.com/search/dispatche ... tbid=60747
BHO: TrueSuite WebStore -> {5cb2b77d-c8ca-44db-af20-a7a4df462a12} -> C:\Windows\system32\mscoree.dll [2010-11-05] (Microsoft Corporation)
BHO: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\TrueSuite\TrueSuite.IEBHO.dll [2010-11-12] (AuthenTec Inc.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: TrueSuite WebStore -> {5cb2b77d-c8ca-44db-af20-a7a4df462a12} -> C:\Windows\SysWOW64\mscoree.dll [2010-11-05] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-10-08] (Oracle Corporation)
BHO-x32: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\TrueSuite\x86\TrueSuite.IEBHO.dll [2010-11-12] (AuthenTec Inc.)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-13] (Atheros Commnucations)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-10-08] (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF ProfilePath: C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\LMgMM5cK.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll [2013-11-02] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll [2013-11-02] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> D:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-18] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-04-02] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-04-02] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2013-10-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2013-10-08] (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-01] (Google Inc.)
FF Plugin HKU\S-1-5-21-2046514427-3509041855-1997376595-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\uzivatel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2013-11-25] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-2046514427-3509041855-1997376595-1002: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\crawlersrch.xml [2007-07-26]
FF Extension: Avira Browser Safety - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\LMgMM5cK.default\Extensions\abs@avira.com [2015-05-01]
FF Extension: TrueSuite Website Log On - C:\Program Files (x86)\Mozilla Firefox\extensions\websitelogon_toolbar@truesuite.com [2014-12-18]
FF Extension: TrueSuite WebStore - C:\Program Files (x86)\Mozilla Firefox\extensions\webstore@truesuite.com [2014-12-18]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2011-09-19]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\akmghomonnhljmlfemmifjblglkacfhg [2015-01-11]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-04]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-04]
CHR Extension: (Google Search) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-28]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-06]
CHR Extension: (Avira Browser Safety) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-05-01]
CHR Extension: (Bookmark Manager) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-11]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlkdblcdkgeeeiegonlgdiifmjnkejhh [2015-01-06]
CHR Extension: (Google Wallet) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-20]
CHR Extension: (Website Logon) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokdoppleiafjmfmggefbkghfblaplo [2014-12-20]
CHR Extension: (Gmail) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-04]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
CHR HKLM-x32\...\Chrome\Extension: [oiokdoppleiafjmfmggefbkghfblaplo] - C:\Program Files\TrueSuite\x86\tschrome.crx [2010-10-21]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AFBAgent; C:\Windows\system32\FBAgent.exe [377264 2010-09-30] (ASUSTeK Computer Inc.) [File not signed]
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [815920 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [434424 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [434424 2015-03-24] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1004280 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
S2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [205104 2015-04-10] (Avira Operations GmbH & Co. KG)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 Canon Driver Information Assist Service; C:\Program Files\Canon\DIAS\CnxDIAS.exe [5217168 2014-03-18] (CANON INC.)
S4 EhttpSrv; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [42360 2011-01-12] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [810144 2011-01-12] (ESET)
R2 FPLService; C:\Program Files\TrueSuite\TrueSuite.Service.exe [290112 2010-11-12] (AuthenTec, Inc)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152144 2015-03-28] (NVIDIA Corporation)
S2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [136704 2009-06-24] (HP) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [50688 2011-04-13] (Hewlett-Packard) [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1878672 2015-03-28] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22995600 2015-03-28] (NVIDIA Corporation)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [66048 2011-04-13] (Hewlett-Packard) [File not signed]
R2 VideAceWindowsService; C:\ExpressGateUtil\VAWinService.exe [91464 2011-01-12] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R0 assd; C:\Windows\System32\Drivers\assd.sys [27264 2010-04-28] (ASUS Corporation)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128536 2015-03-24] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132120 2015-03-24] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [44088 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [170640 2010-12-21] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [141264 2010-12-21] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [125296 2010-12-21] (ESET)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-03-28] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [37624 2015-03-01] ()
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-16] ()
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-01 23:42 - 2015-05-01 23:42 - 00024130 _____ () C:\Users\uzivatel\Downloads\FRST.txt
2015-05-01 23:41 - 2015-05-01 23:42 - 00000000 ____D () C:\FRST
2015-05-01 23:39 - 2015-05-01 23:39 - 02101248 _____ (Farbar) C:\Users\uzivatel\Downloads\FRST64.exe
2015-05-01 20:59 - 2015-05-01 20:59 - 00370610 _____ () C:\Users\uzivatel\Downloads\gmer.zip
2015-05-01 20:51 - 2015-05-01 20:51 - 00380416 _____ () C:\Users\uzivatel\Downloads\rv9drrh1.exe
2015-05-01 20:27 - 2015-05-01 20:29 - 41954352 _____ (Razer Inc. ) C:\Users\uzivatel\Downloads\RazerGameBoosterSetup_4.2.45.0.exe
2015-05-01 20:26 - 2015-05-01 20:26 - 04344120 _____ (IObit ) C:\Users\uzivatel\Downloads\gb3-setup.exe
2015-05-01 17:56 - 2015-05-01 17:56 - 00059562 _____ () C:\AVSCAN-20150501-163147-376EDA18.LOG
2015-05-01 16:21 - 2015-05-01 16:21 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Mozilla
2015-05-01 16:20 - 2015-05-01 16:20 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Avira
2015-05-01 16:16 - 2015-03-24 14:59 - 00132120 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-05-01 16:16 - 2015-03-24 14:59 - 00128536 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-05-01 16:16 - 2015-03-24 14:59 - 00044088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2015-05-01 16:16 - 2015-03-24 14:59 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2015-05-01 16:12 - 2015-05-01 16:12 - 00001207 _____ () C:\Users\Public\Desktop\Avira.lnk
2015-05-01 16:11 - 2015-05-01 16:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-05-01 16:11 - 2015-05-01 16:15 - 00000000 ____D () C:\ProgramData\Avira
2015-05-01 16:11 - 2015-05-01 16:15 - 00000000 ____D () C:\Program Files (x86)\Avira
2015-05-01 16:11 - 2015-05-01 16:11 - 04636584 _____ (Avira Operations GmbH & Co. KG) C:\Users\uzivatel\Downloads\avira_en_av_5543897625a21__ws.exe
2015-05-01 16:11 - 2015-05-01 16:11 - 00000000 ____D () C:\ProgramData\Package Cache
2015-05-01 16:09 - 2015-05-01 16:09 - 05499960 _____ (Avast Software s.r.o.) C:\Users\uzivatel\Downloads\avast_free_antivirus_setup_online.exe
2015-05-01 15:43 - 2015-05-01 21:23 - 00022816 ____N () C:\Windows\WindowsUpdate.log
2015-05-01 12:49 - 2015-05-01 12:49 - 00000000 __SHD () C:\found.000
2015-04-28 22:51 - 2015-04-28 22:51 - 00006704 ____N () C:\bootsqm.dat
2015-04-28 08:39 - 2015-04-28 08:39 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Runscanner.net
2015-04-28 07:52 - 2015-04-28 07:52 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2015-04-28 07:11 - 2015-04-28 07:11 - 00000000 _____ () C:\autoexec.bat
2015-04-27 11:21 - 2015-04-27 11:21 - 00000000 ____D () C:\Windows\SysWOW64\NV
2015-04-27 11:21 - 2015-04-27 11:21 - 00000000 ____D () C:\Windows\system32\NV
2015-04-27 10:50 - 2015-04-09 02:58 - 31570064 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 30397072 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 25375048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 24053576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 17176128 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 15818528 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 15716232 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 14617288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 14006752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 12852784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 11380728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 10423952 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-04-27 10:50 - 2015-04-09 02:58 - 02935416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 02896528 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 02573456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01895568 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435012.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435012.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01086424 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01047368 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01037640 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00970568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00962192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00175880 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00031376 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2015-04-27 10:50 - 2015-04-09 02:58 - 00029329 _____ () C:\Windows\system32\nvinfo.pb
2015-04-27 09:00 - 2015-04-27 09:00 - 00000000 ____D () C:\Users\uzivatel\Documents\Thief
2015-04-26 22:55 - 2015-04-26 22:55 - 00000222 _____ () C:\Users\uzivatel\Desktop\Thief.url
2015-04-25 20:30 - 2015-04-30 12:52 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\DVDVideoSoft
2015-04-18 13:23 - 2015-04-18 13:24 - 00000000 ____D () C:\Users\uzivatel\Documents\NBGI
2015-04-18 12:47 - 2015-05-01 15:33 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-04-18 10:23 - 2015-04-18 10:23 - 00000680 _____ () C:\Users\Public\Desktop\Steam.lnk
2015-04-18 10:23 - 2015-04-18 10:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-04-17 10:19 - 2015-04-17 11:23 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\uTorrent
2015-04-16 11:22 - 2015-04-16 11:22 - 00000000 ____D () C:\Users\uzivatel\AppData\Local\NBGI
2015-04-16 10:57 - 2015-04-16 10:57 - 00001338 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk
2015-04-14 20:43 - 2015-04-14 20:43 - 00048347 _____ () C:\Users\uzivatel\Downloads\ICV_Levoca.xlsx
2015-04-14 20:42 - 2015-04-14 20:42 - 00007914 _____ () C:\Users\uzivatel\Downloads\DPS_2012_2013 (1).ods
2015-04-14 20:41 - 2015-04-14 20:41 - 00007819 _____ () C:\Users\uzivatel\Downloads\DPS_2011_2012.ods
2015-04-14 20:40 - 2015-04-14 20:40 - 00012458 _____ () C:\Users\uzivatel\Downloads\DPS_2009_2010 (1).ods
2015-04-14 20:40 - 2015-04-14 20:40 - 00008224 _____ () C:\Users\uzivatel\Downloads\DPS_2010_2011 (1).ods
2015-04-14 20:36 - 2015-04-14 20:36 - 00214463 _____ () C:\Users\uzivatel\Downloads\ICV_2012_2013.xlsx
2015-04-14 20:36 - 2015-04-14 20:36 - 00009014 _____ () C:\Users\uzivatel\Downloads\ICV_2011_2012.ods
2015-04-14 20:35 - 2015-04-14 20:35 - 00007838 _____ () C:\Users\uzivatel\Downloads\ICV_2010_2011.ods
2015-04-14 20:34 - 2015-04-14 20:34 - 00007914 _____ () C:\Users\uzivatel\Downloads\DPS_2012_2013.ods
2015-04-14 20:33 - 2015-04-14 20:33 - 00007819 _____ () C:\Users\uzivatel\Downloads\DPS_2011_2010.ods
2015-04-14 20:32 - 2015-04-14 20:32 - 00008224 _____ () C:\Users\uzivatel\Downloads\DPS_2010_2011.ods
2015-04-14 20:31 - 2015-04-14 20:31 - 00012458 _____ () C:\Users\uzivatel\Downloads\DPS_2009_2010.ods
2015-04-11 15:34 - 2015-04-11 15:34 - 00000000 ____D () C:\Users\uzivatel\AppData\Local\Steam
2015-04-04 20:44 - 2015-04-04 20:44 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\DarkSoulsII
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-01 21:33 - 2009-07-14 06:45 - 00017120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-01 21:33 - 2009-07-14 06:45 - 00017120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-01 21:24 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-01 16:28 - 2011-09-19 19:22 - 00001995 _____ () C:\Windows\system32\ServiceFilter.ini
2015-05-01 16:27 - 2011-09-19 19:22 - 00002344 _____ () C:\Windows\system32\AutoRunFilter.ini
2015-05-01 15:40 - 2009-07-14 07:08 - 00032602 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-01 15:37 - 2015-03-13 19:32 - 00000000 ____D () C:\Users\uzivatel\AppData\Local\CrashDumps
2015-05-01 15:37 - 2014-08-31 21:24 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2015-05-01 15:37 - 2014-08-11 11:54 - 00000000 ____D () C:\Windows\Minidump
2015-05-01 15:12 - 2011-09-19 16:12 - 00045056 _____ () C:\Windows\system32\acovcnt.exe
2015-05-01 09:41 - 2014-12-18 15:17 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-04-30 22:45 - 2013-09-03 06:51 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Skype
2015-04-30 20:44 - 2009-07-14 07:13 - 00779306 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-30 07:44 - 2015-02-01 00:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KooBits
2015-04-28 12:14 - 2013-04-12 13:25 - 00000000 ____D () C:\Users\uzivatel\Documents\Bluetooth Folder
2015-04-28 07:53 - 2014-12-18 08:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-04-28 07:11 - 2011-10-07 13:07 - 00000000 ____D () C:\Users\uzivatel
2015-04-27 11:20 - 2011-09-19 19:07 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-04-27 11:12 - 2011-09-19 18:59 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-04-27 10:25 - 2014-05-22 09:22 - 00001381 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2015-04-27 08:49 - 2013-11-02 20:19 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\DAEMON Tools Lite
2015-04-26 21:44 - 2014-12-17 20:46 - 00014848 ___SH () C:\Users\uzivatel\Downloads\Thumbs.db
2015-04-18 09:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\tracing
2015-04-18 09:45 - 2014-03-28 13:44 - 00000000 ____D () C:\Users\uzivatel\Documents\My Games
2015-04-17 10:28 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-04-16 10:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-04-09 02:58 - 2015-03-15 23:38 - 12689592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-04-09 02:58 - 2014-05-22 09:18 - 00927440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-04-09 02:58 - 2011-09-19 19:02 - 03317344 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-04-09 02:58 - 2011-09-19 19:02 - 00154256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 01047696 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 00936264 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-04-08 23:30 - 2011-03-06 06:45 - 00385168 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 00075080 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-04-08 23:30 - 2011-03-06 06:44 - 06841488 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-04-08 23:30 - 2011-03-06 06:44 - 03478344 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-04-08 19:52 - 2011-03-06 06:45 - 04336074 _____ () C:\Windows\system32\nvcoproc.bin
2015-04-07 21:15 - 2014-09-14 23:46 - 00000000 ____D () C:\Users\Public\Recorded TV
2015-04-07 18:13 - 2009-07-14 10:41 - 00000000 ____D () C:\Windows\ShellNew
==================== Files in the root of some directories =======
2013-09-03 13:45 - 2014-06-04 08:53 - 0003738 _____ () C:\Program Files (x86)\Mozilla Firefoxsafeguard-secure-search.xml
2014-05-27 12:09 - 2015-02-08 12:10 - 0007597 _____ () C:\Users\uzivatel\AppData\Local\resmon.resmoncfg
2011-11-18 08:48 - 2011-11-18 09:34 - 0001112 _____ () C:\ProgramData\hpzinstall.log
Some content of TEMP:
====================
C:\Users\uzivatel\AppData\Local\Temp\avgnt.exe
Some zero byte size files/folders:
==========================
C:\Windows\SysWOW64\gcapi_dll.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-04-27 11:54
==================== End Of Log ============================
- Rudy
- Site Admin
- Příspěvky: 119359
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Scan z aviry
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Scan z aviry
tu je log
# AdwCleaner v4.203 - Log vytvorený 02/05/2015 at 13:21:31
# Aktualizované 30/04/2015 by Xplode
# Databáza : 2015-04-30.2 [Server]
# Operačný systém : Windows 7 Enterprise Service Pack 1 (x64)
# Uživateľské meno : uzivatel - ASUS_P41S_03
# Spustené z : C:\Users\uzivatel\Desktop\adwcleaner_4.203.exe
# Nastavenia : Čistenie
***** [ Služby ] *****
***** [ Súbory / Priečinky ] *****
Súbor Zmazané : C:\Windows\System32\roboot64.exe
Súbor Zmazané : C:\Program Files (x86)\Mozilla Firefox\searchplugins\crawlersrch.xml
***** [ Naplánované úlohy ] *****
***** [ Zástupcovia ] *****
***** [ Registre ] *****
Kľúč registra Zmazané : HKLM\SOFTWARE\bf5b45ab-bafa-113b-417a-998bb8c807d4
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{01C78433-6FDF-4E5A-A82D-B535C32E03DF}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{41349826-5C7F-4BF0-8279-5DAF1DE6E9AE}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{604EA016-1EDE-41E6-A23E-76CF8F2A4808}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{B3BA5582-79A9-464D-A7FA-711C5888C6E9}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{E9BBD270-4B87-4EE2-912F-6635674986C0}
Kľúč registra Zmazané : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Kľúč registra Zmazané : HKCU\Software\Appscion
***** [ Webové prehliadače ] *****
-\\ Internet Explorer v11.0.9600.17239
Nastavenie Obnovené : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar]
Nastavenie Obnovené : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [SearchAssistant]
Nastavenie Obnovené : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [CustomizeSearch]
-\\ Mozilla Firefox v
-\\ Google Chrome v42.0.2311.135
[C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Zmazané [Extension] : fcfenmboojpjinhpgggodefccipikbpd
*************************
AdwCleaner[R0].txt - [3717 bajtov] - [02/05/2015 13:17:38]
AdwCleaner[S0].txt - [3131 bajtov] - [02/05/2015 13:21:31]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3191 bajtov] ##########
# AdwCleaner v4.203 - Log vytvorený 02/05/2015 at 13:21:31
# Aktualizované 30/04/2015 by Xplode
# Databáza : 2015-04-30.2 [Server]
# Operačný systém : Windows 7 Enterprise Service Pack 1 (x64)
# Uživateľské meno : uzivatel - ASUS_P41S_03
# Spustené z : C:\Users\uzivatel\Desktop\adwcleaner_4.203.exe
# Nastavenia : Čistenie
***** [ Služby ] *****
***** [ Súbory / Priečinky ] *****
Súbor Zmazané : C:\Windows\System32\roboot64.exe
Súbor Zmazané : C:\Program Files (x86)\Mozilla Firefox\searchplugins\crawlersrch.xml
***** [ Naplánované úlohy ] *****
***** [ Zástupcovia ] *****
***** [ Registre ] *****
Kľúč registra Zmazané : HKLM\SOFTWARE\bf5b45ab-bafa-113b-417a-998bb8c807d4
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{01C78433-6FDF-4E5A-A82D-B535C32E03DF}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{41349826-5C7F-4BF0-8279-5DAF1DE6E9AE}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{604EA016-1EDE-41E6-A23E-76CF8F2A4808}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{B3BA5582-79A9-464D-A7FA-711C5888C6E9}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{E9BBD270-4B87-4EE2-912F-6635674986C0}
Kľúč registra Zmazané : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Kľúč registra Zmazané : HKCU\Software\Appscion
***** [ Webové prehliadače ] *****
-\\ Internet Explorer v11.0.9600.17239
Nastavenie Obnovené : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar]
Nastavenie Obnovené : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [SearchAssistant]
Nastavenie Obnovené : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [CustomizeSearch]
-\\ Mozilla Firefox v
-\\ Google Chrome v42.0.2311.135
[C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Zmazané [Extension] : fcfenmboojpjinhpgggodefccipikbpd
*************************
AdwCleaner[R0].txt - [3717 bajtov] - [02/05/2015 13:17:38]
AdwCleaner[S0].txt - [3131 bajtov] - [02/05/2015 13:21:31]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3191 bajtov] ##########
- Rudy
- Site Admin
- Příspěvky: 119359
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Scan z aviry
Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Scan z aviry
Dobry tu je log chcem len informacne ze ci tam je daco alebo zatim OK inac pri tom spusteny obcas mu to trva a potom akoby obcas ked napr kliknem na preskumnika tak malo to dlhsiu odozvu trvalo dhhsie sa toci to kolecko
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-04-2015 01
Ran by uzivatel (administrator) on ASUS_P41S_03 on 02-05-2015 17:37:27
Running from C:\Users\uzivatel\Downloads
Loaded Profiles: uzivatel (Available profiles: uzivatel)
Platform: Windows 7 Enterprise Service Pack 1 (X64) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AuthenTec, Inc) C:\Program Files\TrueSuite\TrueSuite.Service.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\smartlogon.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(AuthenTec Inc.) C:\Program Files\TrueSuite\TrueSuite.TouchControl.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
() C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(CANON INC.) C:\Program Files\Canon\DIAS\CnxDIAS.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
() C:\ExpressGateUtil\VAWinService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(AuthenTec, Inc.) C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe
(AuthenTec, Inc.) C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
() C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
() C:\ExpressGateUtil\VAWinAgent.exe
(Hewlett-Packard Company) C:\Program Files (x86)\HP\HP UT LEDM\bin\hppusg.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [324096 2010-08-11] (Alcor Micro Corp.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2712360 2011-03-04] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2188904 2011-01-18] (Realtek Semiconductor)
HKLM\...\Run: [SynAsusAcpi] => C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [97064 2011-03-04] (Synaptics Incorporated)
HKLM\...\Run: [ClientAppLogon] => C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe [420672 2010-11-12] (AuthenTec, Inc.)
HKLM\...\Run: [ClientAppLogon32] => C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe [307520 2010-11-12] (AuthenTec, Inc.)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [617120 2011-03-13] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-03-13] (Atheros Commnucations)
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2673296 2015-03-28] (NVIDIA Corporation)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUS)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-23] ()
HKLM-x32\...\Run: [VAWinAgent] => C:\ExpressGateUtil\VAWinAgent.exe [191304 2011-01-13] ()
HKLM-x32\...\Run: [HPUsageTrackingLEDM] => C:\Program Files (x86)\HP\HP UT LEDM\bin\hppusg.exe [30264 2009-08-04] (Hewlett-Packard Company)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [130048 2015-04-10] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [726320 2015-03-24] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [175880 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [175880 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs: , C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [175880 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\Windows\SysWOW64\nvinit.dll => c:\Windows\SysWOW64\nvinit.dll [154256 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [154256 2015-04-09] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk [2011-09-19]
ShortcutTarget: FancyStart daemon.lnk -> C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe ()
Startup: C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2014-03-01]
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
ShellIconOverlayIdentifiers: [TSFPLOlayIcon] -> {F4DD9208-8229-492D-BCBF-2955F7AC38F4} => C:\Program Files\TrueSuite\TrueSuite.FPLOlayIcon.dll [2010-11-12] (AuthenTec, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2046514427-3509041855-1997376595-1002 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO: TrueSuite WebStore -> {5cb2b77d-c8ca-44db-af20-a7a4df462a12} -> C:\Windows\system32\mscoree.dll [2010-11-05] (Microsoft Corporation)
BHO: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\TrueSuite\TrueSuite.IEBHO.dll [2010-11-12] (AuthenTec Inc.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: TrueSuite WebStore -> {5cb2b77d-c8ca-44db-af20-a7a4df462a12} -> C:\Windows\SysWOW64\mscoree.dll [2010-11-05] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-10-08] (Oracle Corporation)
BHO-x32: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\TrueSuite\x86\TrueSuite.IEBHO.dll [2010-11-12] (AuthenTec Inc.)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-13] (Atheros Commnucations)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-10-08] (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF ProfilePath: C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\LMgMM5cK.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll [2013-11-02] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll [2013-11-02] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> D:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-18] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-04-02] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-04-02] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2013-10-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2013-10-08] (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-01] (Google Inc.)
FF Plugin HKU\S-1-5-21-2046514427-3509041855-1997376595-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\uzivatel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2013-11-25] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-2046514427-3509041855-1997376595-1002: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
FF Extension: Avira Browser Safety - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\LMgMM5cK.default\Extensions\abs@avira.com [2015-05-01]
FF Extension: TrueSuite Website Log On - C:\Program Files (x86)\Mozilla Firefox\extensions\websitelogon_toolbar@truesuite.com [2014-12-18]
FF Extension: TrueSuite WebStore - C:\Program Files (x86)\Mozilla Firefox\extensions\webstore@truesuite.com [2014-12-18]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2011-09-19]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\akmghomonnhljmlfemmifjblglkacfhg [2015-01-11]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-04]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-04]
CHR Extension: (Google Search) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-28]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-06]
CHR Extension: (Avira Browser Safety) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-05-01]
CHR Extension: (Bookmark Manager) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-11]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlkdblcdkgeeeiegonlgdiifmjnkejhh [2015-01-06]
CHR Extension: (Google Wallet) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-20]
CHR Extension: (Website Logon) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokdoppleiafjmfmggefbkghfblaplo [2014-12-20]
CHR Extension: (Gmail) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-04]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
CHR HKLM-x32\...\Chrome\Extension: [oiokdoppleiafjmfmggefbkghfblaplo] - C:\Program Files\TrueSuite\x86\tschrome.crx [2010-10-21]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AFBAgent; C:\Windows\system32\FBAgent.exe [377264 2010-09-30] (ASUSTeK Computer Inc.) [File not signed]
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [815920 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [434424 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [434424 2015-03-24] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1004280 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
S2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [205104 2015-04-10] (Avira Operations GmbH & Co. KG)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 Canon Driver Information Assist Service; C:\Program Files\Canon\DIAS\CnxDIAS.exe [5217168 2014-03-18] (CANON INC.)
S4 EhttpSrv; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [42360 2011-01-12] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [810144 2011-01-12] (ESET)
R2 FPLService; C:\Program Files\TrueSuite\TrueSuite.Service.exe [290112 2010-11-12] (AuthenTec, Inc)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152144 2015-03-28] (NVIDIA Corporation)
S2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [136704 2009-06-24] (HP) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [50688 2011-04-13] (Hewlett-Packard) [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1878672 2015-03-28] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22995600 2015-03-28] (NVIDIA Corporation)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [66048 2011-04-13] (Hewlett-Packard) [File not signed]
R2 VideAceWindowsService; C:\ExpressGateUtil\VAWinService.exe [91464 2011-01-12] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R0 assd; C:\Windows\System32\Drivers\assd.sys [27264 2010-04-28] (ASUS Corporation)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128536 2015-03-24] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132120 2015-03-24] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [44088 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [170640 2010-12-21] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [141264 2010-12-21] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [125296 2010-12-21] (ESET)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-03-28] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [37624 2015-03-01] ()
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-16] ()
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-02 14:16 - 2015-05-02 14:24 - 270616500 _____ () C:\Users\uzivatel\Downloads\Horná-Dolná-1.-Volby.avi...avi
2015-05-02 13:59 - 2015-05-02 14:13 - 538957306 _____ () C:\Users\uzivatel\Downloads\Horná-Dolná-2.-Kamión.avi...avi
2015-05-02 13:17 - 2015-05-02 13:21 - 00000000 ____D () C:\AdwCleaner
2015-05-02 13:02 - 2015-05-02 13:04 - 02204160 _____ () C:\Users\uzivatel\Desktop\adwcleaner_4.203.exe
2015-05-02 08:11 - 2015-05-02 17:34 - 00002072 _____ () C:\Windows\setupact.log
2015-05-02 08:11 - 2015-05-02 17:29 - 00422064 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-02 08:11 - 2015-05-02 08:11 - 00104360 _____ () C:\Users\uzivatel\AppData\Local\GDIPFONTCACHEV1.DAT
2015-05-02 08:11 - 2015-05-02 08:11 - 00000000 _____ () C:\Windows\setuperr.log
2015-05-01 23:42 - 2015-05-02 17:37 - 00023208 _____ () C:\Users\uzivatel\Downloads\FRST.txt
2015-05-01 23:42 - 2015-05-01 23:43 - 00042268 _____ () C:\Users\uzivatel\Downloads\Addition.txt
2015-05-01 23:41 - 2015-05-02 17:37 - 00000000 ____D () C:\FRST
2015-05-01 23:39 - 2015-05-01 23:39 - 02101248 _____ (Farbar) C:\Users\uzivatel\Downloads\FRST64.exe
2015-05-01 20:59 - 2015-05-01 20:59 - 00370610 _____ () C:\Users\uzivatel\Downloads\gmer.zip
2015-05-01 20:51 - 2015-05-01 20:51 - 00380416 _____ () C:\Users\uzivatel\Downloads\rv9drrh1.exe
2015-05-01 20:27 - 2015-05-01 20:29 - 41954352 _____ (Razer Inc. ) C:\Users\uzivatel\Downloads\RazerGameBoosterSetup_4.2.45.0.exe
2015-05-01 20:26 - 2015-05-01 20:26 - 04344120 _____ (IObit ) C:\Users\uzivatel\Downloads\gb3-setup.exe
2015-05-01 17:56 - 2015-05-01 17:56 - 00059562 _____ () C:\AVSCAN-20150501-163147-376EDA18.LOG
2015-05-01 16:21 - 2015-05-01 16:21 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Mozilla
2015-05-01 16:20 - 2015-05-01 16:20 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Avira
2015-05-01 16:16 - 2015-03-24 14:59 - 00132120 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-05-01 16:16 - 2015-03-24 14:59 - 00128536 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-05-01 16:16 - 2015-03-24 14:59 - 00044088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2015-05-01 16:16 - 2015-03-24 14:59 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2015-05-01 16:12 - 2015-05-01 16:12 - 00001207 _____ () C:\Users\Public\Desktop\Avira.lnk
2015-05-01 16:11 - 2015-05-01 16:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-05-01 16:11 - 2015-05-01 16:15 - 00000000 ____D () C:\ProgramData\Avira
2015-05-01 16:11 - 2015-05-01 16:15 - 00000000 ____D () C:\Program Files (x86)\Avira
2015-05-01 16:11 - 2015-05-01 16:11 - 04636584 _____ (Avira Operations GmbH & Co. KG) C:\Users\uzivatel\Downloads\avira_en_av_5543897625a21__ws.exe
2015-05-01 16:11 - 2015-05-01 16:11 - 00000000 ____D () C:\ProgramData\Package Cache
2015-05-01 16:09 - 2015-05-01 16:09 - 05499960 _____ (Avast Software s.r.o.) C:\Users\uzivatel\Downloads\avast_free_antivirus_setup_online.exe
2015-05-01 15:43 - 2015-05-02 16:02 - 00053378 _____ () C:\Windows\WindowsUpdate.log
2015-05-01 12:49 - 2015-05-01 12:49 - 00000000 __SHD () C:\found.000
2015-04-28 22:51 - 2015-04-28 22:51 - 00006704 ____N () C:\bootsqm.dat
2015-04-28 08:39 - 2015-04-28 08:39 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Runscanner.net
2015-04-28 07:52 - 2015-04-28 07:52 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2015-04-28 07:11 - 2015-04-28 07:11 - 00000000 _____ () C:\autoexec.bat
2015-04-27 11:21 - 2015-04-27 11:21 - 00000000 ____D () C:\Windows\SysWOW64\NV
2015-04-27 11:21 - 2015-04-27 11:21 - 00000000 ____D () C:\Windows\system32\NV
2015-04-27 10:50 - 2015-04-09 02:58 - 31570064 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 30397072 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 25375048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 24053576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 17176128 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 15818528 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 15716232 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 14617288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 14006752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 12852784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 11380728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 10423952 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-04-27 10:50 - 2015-04-09 02:58 - 02935416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 02896528 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 02573456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01895568 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435012.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435012.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01086424 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01047368 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01037640 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00970568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00962192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00175880 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00031376 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2015-04-27 10:50 - 2015-04-09 02:58 - 00029329 _____ () C:\Windows\system32\nvinfo.pb
2015-04-27 09:00 - 2015-04-27 09:00 - 00000000 ____D () C:\Users\uzivatel\Documents\Thief
2015-04-26 22:55 - 2015-04-26 22:55 - 00000222 _____ () C:\Users\uzivatel\Desktop\Thief.url
2015-04-25 20:30 - 2015-04-30 12:52 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\DVDVideoSoft
2015-04-18 13:23 - 2015-04-18 13:24 - 00000000 ____D () C:\Users\uzivatel\Documents\NBGI
2015-04-18 12:47 - 2015-05-01 15:33 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-04-18 10:23 - 2015-04-18 10:23 - 00000680 _____ () C:\Users\Public\Desktop\Steam.lnk
2015-04-18 10:23 - 2015-04-18 10:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-04-17 10:19 - 2015-04-17 11:23 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\uTorrent
2015-04-16 11:22 - 2015-04-16 11:22 - 00000000 ____D () C:\Users\uzivatel\AppData\Local\NBGI
2015-04-16 10:57 - 2015-04-16 10:57 - 00001338 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk
2015-04-14 20:43 - 2015-04-14 20:43 - 00048347 _____ () C:\Users\uzivatel\Downloads\ICV_Levoca.xlsx
2015-04-14 20:42 - 2015-04-14 20:42 - 00007914 _____ () C:\Users\uzivatel\Downloads\DPS_2012_2013 (1).ods
2015-04-14 20:41 - 2015-04-14 20:41 - 00007819 _____ () C:\Users\uzivatel\Downloads\DPS_2011_2012.ods
2015-04-14 20:40 - 2015-04-14 20:40 - 00012458 _____ () C:\Users\uzivatel\Downloads\DPS_2009_2010 (1).ods
2015-04-14 20:40 - 2015-04-14 20:40 - 00008224 _____ () C:\Users\uzivatel\Downloads\DPS_2010_2011 (1).ods
2015-04-14 20:36 - 2015-04-14 20:36 - 00214463 _____ () C:\Users\uzivatel\Downloads\ICV_2012_2013.xlsx
2015-04-14 20:36 - 2015-04-14 20:36 - 00009014 _____ () C:\Users\uzivatel\Downloads\ICV_2011_2012.ods
2015-04-14 20:35 - 2015-04-14 20:35 - 00007838 _____ () C:\Users\uzivatel\Downloads\ICV_2010_2011.ods
2015-04-14 20:34 - 2015-04-14 20:34 - 00007914 _____ () C:\Users\uzivatel\Downloads\DPS_2012_2013.ods
2015-04-14 20:33 - 2015-04-14 20:33 - 00007819 _____ () C:\Users\uzivatel\Downloads\DPS_2011_2010.ods
2015-04-14 20:32 - 2015-04-14 20:32 - 00008224 _____ () C:\Users\uzivatel\Downloads\DPS_2010_2011.ods
2015-04-14 20:31 - 2015-04-14 20:31 - 00012458 _____ () C:\Users\uzivatel\Downloads\DPS_2009_2010.ods
2015-04-11 15:34 - 2015-04-11 15:34 - 00000000 ____D () C:\Users\uzivatel\AppData\Local\Steam
2015-04-04 20:44 - 2015-04-04 20:44 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\DarkSoulsII
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-02 17:34 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-02 17:33 - 2009-07-14 06:45 - 00017120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-02 17:33 - 2009-07-14 06:45 - 00017120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-01 16:28 - 2011-09-19 19:22 - 00001995 _____ () C:\Windows\system32\ServiceFilter.ini
2015-05-01 16:27 - 2011-09-19 19:22 - 00002344 _____ () C:\Windows\system32\AutoRunFilter.ini
2015-05-01 15:40 - 2009-07-14 07:08 - 00032602 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-01 15:37 - 2015-03-13 19:32 - 00000000 ____D () C:\Users\uzivatel\AppData\Local\CrashDumps
2015-05-01 15:37 - 2014-08-31 21:24 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2015-05-01 15:37 - 2014-08-11 11:54 - 00000000 ____D () C:\Windows\Minidump
2015-05-01 15:12 - 2011-09-19 16:12 - 00045056 _____ () C:\Windows\system32\acovcnt.exe
2015-05-01 09:41 - 2014-12-18 15:17 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-04-30 22:45 - 2013-09-03 06:51 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Skype
2015-04-30 20:44 - 2009-07-14 07:13 - 00779306 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-30 07:44 - 2015-02-01 00:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KooBits
2015-04-28 12:14 - 2013-04-12 13:25 - 00000000 ____D () C:\Users\uzivatel\Documents\Bluetooth Folder
2015-04-28 07:53 - 2014-12-18 08:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-04-28 07:11 - 2011-10-07 13:07 - 00000000 ____D () C:\Users\uzivatel
2015-04-27 11:20 - 2011-09-19 19:07 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-04-27 11:12 - 2011-09-19 18:59 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-04-27 10:25 - 2014-05-22 09:22 - 00001381 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2015-04-27 08:49 - 2013-11-02 20:19 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\DAEMON Tools Lite
2015-04-26 21:44 - 2014-12-17 20:46 - 00014848 ___SH () C:\Users\uzivatel\Downloads\Thumbs.db
2015-04-18 09:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\tracing
2015-04-18 09:45 - 2014-03-28 13:44 - 00000000 ____D () C:\Users\uzivatel\Documents\My Games
2015-04-17 10:28 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-04-16 10:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-04-09 02:58 - 2015-03-15 23:38 - 12689592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-04-09 02:58 - 2014-05-22 09:18 - 00927440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-04-09 02:58 - 2011-09-19 19:02 - 03317344 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-04-09 02:58 - 2011-09-19 19:02 - 00154256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 01047696 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 00936264 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-04-08 23:30 - 2011-03-06 06:45 - 00385168 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 00075080 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-04-08 23:30 - 2011-03-06 06:44 - 06841488 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-04-08 23:30 - 2011-03-06 06:44 - 03478344 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-04-08 19:52 - 2011-03-06 06:45 - 04336074 _____ () C:\Windows\system32\nvcoproc.bin
2015-04-07 21:15 - 2014-09-14 23:46 - 00000000 ____D () C:\Users\Public\Recorded TV
2015-04-07 18:13 - 2009-07-14 10:41 - 00000000 ____D () C:\Windows\ShellNew
==================== Files in the root of some directories =======
2013-09-03 13:45 - 2014-06-04 08:53 - 0003738 _____ () C:\Program Files (x86)\Mozilla Firefoxsafeguard-secure-search.xml
2014-05-27 12:09 - 2015-02-08 12:10 - 0007597 _____ () C:\Users\uzivatel\AppData\Local\resmon.resmoncfg
2011-11-18 08:48 - 2011-11-18 09:34 - 0001112 _____ () C:\ProgramData\hpzinstall.log
Some content of TEMP:
====================
C:\Users\uzivatel\AppData\Local\Temp\avgnt.exe
C:\Users\uzivatel\AppData\Local\Temp\Quarantine.exe
C:\Users\uzivatel\AppData\Local\Temp\sqlite3.dll
Some zero byte size files/folders:
==========================
C:\Windows\SysWOW64\gcapi_dll.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-04-27 11:54
==================== End Of Log ============================
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-04-2015 01
Ran by uzivatel (administrator) on ASUS_P41S_03 on 02-05-2015 17:37:27
Running from C:\Users\uzivatel\Downloads
Loaded Profiles: uzivatel (Available profiles: uzivatel)
Platform: Windows 7 Enterprise Service Pack 1 (X64) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AuthenTec, Inc) C:\Program Files\TrueSuite\TrueSuite.Service.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\smartlogon.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(AuthenTec Inc.) C:\Program Files\TrueSuite\TrueSuite.TouchControl.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
() C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(CANON INC.) C:\Program Files\Canon\DIAS\CnxDIAS.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
() C:\ExpressGateUtil\VAWinService.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(AuthenTec, Inc.) C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe
(AuthenTec, Inc.) C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
() C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
() C:\ExpressGateUtil\VAWinAgent.exe
(Hewlett-Packard Company) C:\Program Files (x86)\HP\HP UT LEDM\bin\hppusg.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [324096 2010-08-11] (Alcor Micro Corp.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2712360 2011-03-04] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2188904 2011-01-18] (Realtek Semiconductor)
HKLM\...\Run: [SynAsusAcpi] => C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [97064 2011-03-04] (Synaptics Incorporated)
HKLM\...\Run: [ClientAppLogon] => C:\Program Files\TrueSuite\TrueSuite.ClientAppLogonExe.exe [420672 2010-11-12] (AuthenTec, Inc.)
HKLM\...\Run: [ClientAppLogon32] => C:\Program Files\TrueSuite\x86\TrueSuite.ClientAppLogonExe.exe [307520 2010-11-12] (AuthenTec, Inc.)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [617120 2011-03-13] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-03-13] (Atheros Commnucations)
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2673296 2015-03-28] (NVIDIA Corporation)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUS)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-23] ()
HKLM-x32\...\Run: [VAWinAgent] => C:\ExpressGateUtil\VAWinAgent.exe [191304 2011-01-13] ()
HKLM-x32\...\Run: [HPUsageTrackingLEDM] => C:\Program Files (x86)\HP\HP UT LEDM\bin\hppusg.exe [30264 2009-08-04] (Hewlett-Packard Company)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [130048 2015-04-10] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [726320 2015-03-24] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [175880 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [175880 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs: , C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [175880 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\Windows\SysWOW64\nvinit.dll => c:\Windows\SysWOW64\nvinit.dll [154256 2015-04-09] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [154256 2015-04-09] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk [2011-09-19]
ShortcutTarget: FancyStart daemon.lnk -> C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe ()
Startup: C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2014-03-01]
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
ShellIconOverlayIdentifiers: [TSFPLOlayIcon] -> {F4DD9208-8229-492D-BCBF-2955F7AC38F4} => C:\Program Files\TrueSuite\TrueSuite.FPLOlayIcon.dll [2010-11-12] (AuthenTec, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2046514427-3509041855-1997376595-1002 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO: TrueSuite WebStore -> {5cb2b77d-c8ca-44db-af20-a7a4df462a12} -> C:\Windows\system32\mscoree.dll [2010-11-05] (Microsoft Corporation)
BHO: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\TrueSuite\TrueSuite.IEBHO.dll [2010-11-12] (AuthenTec Inc.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: TrueSuite WebStore -> {5cb2b77d-c8ca-44db-af20-a7a4df462a12} -> C:\Windows\SysWOW64\mscoree.dll [2010-11-05] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-10-08] (Oracle Corporation)
BHO-x32: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files\TrueSuite\x86\TrueSuite.IEBHO.dll [2010-11-12] (AuthenTec Inc.)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-13] (Atheros Commnucations)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-10-08] (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF ProfilePath: C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\LMgMM5cK.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll [2013-11-02] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll [2013-11-02] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> D:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-18] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-04-02] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-04-02] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2013-10-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2013-10-08] (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-01] (Google Inc.)
FF Plugin HKU\S-1-5-21-2046514427-3509041855-1997376595-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\uzivatel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2013-11-25] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-2046514427-3509041855-1997376595-1002: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
FF Extension: Avira Browser Safety - C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\LMgMM5cK.default\Extensions\abs@avira.com [2015-05-01]
FF Extension: TrueSuite Website Log On - C:\Program Files (x86)\Mozilla Firefox\extensions\websitelogon_toolbar@truesuite.com [2014-12-18]
FF Extension: TrueSuite WebStore - C:\Program Files (x86)\Mozilla Firefox\extensions\webstore@truesuite.com [2014-12-18]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2011-09-19]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\akmghomonnhljmlfemmifjblglkacfhg [2015-01-11]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-04]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-04]
CHR Extension: (Google Search) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-28]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-06]
CHR Extension: (Avira Browser Safety) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-05-01]
CHR Extension: (Bookmark Manager) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-11]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlkdblcdkgeeeiegonlgdiifmjnkejhh [2015-01-06]
CHR Extension: (Google Wallet) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-20]
CHR Extension: (Website Logon) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokdoppleiafjmfmggefbkghfblaplo [2014-12-20]
CHR Extension: (Gmail) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-04]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
CHR HKLM-x32\...\Chrome\Extension: [oiokdoppleiafjmfmggefbkghfblaplo] - C:\Program Files\TrueSuite\x86\tschrome.crx [2010-10-21]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AFBAgent; C:\Windows\system32\FBAgent.exe [377264 2010-09-30] (ASUSTeK Computer Inc.) [File not signed]
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [815920 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [434424 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [434424 2015-03-24] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1004280 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
S2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [205104 2015-04-10] (Avira Operations GmbH & Co. KG)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 Canon Driver Information Assist Service; C:\Program Files\Canon\DIAS\CnxDIAS.exe [5217168 2014-03-18] (CANON INC.)
S4 EhttpSrv; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [42360 2011-01-12] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [810144 2011-01-12] (ESET)
R2 FPLService; C:\Program Files\TrueSuite\TrueSuite.Service.exe [290112 2010-11-12] (AuthenTec, Inc)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152144 2015-03-28] (NVIDIA Corporation)
S2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [136704 2009-06-24] (HP) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [50688 2011-04-13] (Hewlett-Packard) [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1878672 2015-03-28] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22995600 2015-03-28] (NVIDIA Corporation)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [66048 2011-04-13] (Hewlett-Packard) [File not signed]
R2 VideAceWindowsService; C:\ExpressGateUtil\VAWinService.exe [91464 2011-01-12] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R0 assd; C:\Windows\System32\Drivers\assd.sys [27264 2010-04-28] (ASUS Corporation)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128536 2015-03-24] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132120 2015-03-24] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [44088 2015-03-24] (Avira Operations GmbH & Co. KG)
R2 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [170640 2010-12-21] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [141264 2010-12-21] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [125296 2010-12-21] (ESET)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-03-28] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [37624 2015-03-01] ()
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-16] ()
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-02 14:16 - 2015-05-02 14:24 - 270616500 _____ () C:\Users\uzivatel\Downloads\Horná-Dolná-1.-Volby.avi...avi
2015-05-02 13:59 - 2015-05-02 14:13 - 538957306 _____ () C:\Users\uzivatel\Downloads\Horná-Dolná-2.-Kamión.avi...avi
2015-05-02 13:17 - 2015-05-02 13:21 - 00000000 ____D () C:\AdwCleaner
2015-05-02 13:02 - 2015-05-02 13:04 - 02204160 _____ () C:\Users\uzivatel\Desktop\adwcleaner_4.203.exe
2015-05-02 08:11 - 2015-05-02 17:34 - 00002072 _____ () C:\Windows\setupact.log
2015-05-02 08:11 - 2015-05-02 17:29 - 00422064 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-02 08:11 - 2015-05-02 08:11 - 00104360 _____ () C:\Users\uzivatel\AppData\Local\GDIPFONTCACHEV1.DAT
2015-05-02 08:11 - 2015-05-02 08:11 - 00000000 _____ () C:\Windows\setuperr.log
2015-05-01 23:42 - 2015-05-02 17:37 - 00023208 _____ () C:\Users\uzivatel\Downloads\FRST.txt
2015-05-01 23:42 - 2015-05-01 23:43 - 00042268 _____ () C:\Users\uzivatel\Downloads\Addition.txt
2015-05-01 23:41 - 2015-05-02 17:37 - 00000000 ____D () C:\FRST
2015-05-01 23:39 - 2015-05-01 23:39 - 02101248 _____ (Farbar) C:\Users\uzivatel\Downloads\FRST64.exe
2015-05-01 20:59 - 2015-05-01 20:59 - 00370610 _____ () C:\Users\uzivatel\Downloads\gmer.zip
2015-05-01 20:51 - 2015-05-01 20:51 - 00380416 _____ () C:\Users\uzivatel\Downloads\rv9drrh1.exe
2015-05-01 20:27 - 2015-05-01 20:29 - 41954352 _____ (Razer Inc. ) C:\Users\uzivatel\Downloads\RazerGameBoosterSetup_4.2.45.0.exe
2015-05-01 20:26 - 2015-05-01 20:26 - 04344120 _____ (IObit ) C:\Users\uzivatel\Downloads\gb3-setup.exe
2015-05-01 17:56 - 2015-05-01 17:56 - 00059562 _____ () C:\AVSCAN-20150501-163147-376EDA18.LOG
2015-05-01 16:21 - 2015-05-01 16:21 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Mozilla
2015-05-01 16:20 - 2015-05-01 16:20 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Avira
2015-05-01 16:16 - 2015-03-24 14:59 - 00132120 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-05-01 16:16 - 2015-03-24 14:59 - 00128536 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-05-01 16:16 - 2015-03-24 14:59 - 00044088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2015-05-01 16:16 - 2015-03-24 14:59 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2015-05-01 16:12 - 2015-05-01 16:12 - 00001207 _____ () C:\Users\Public\Desktop\Avira.lnk
2015-05-01 16:11 - 2015-05-01 16:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-05-01 16:11 - 2015-05-01 16:15 - 00000000 ____D () C:\ProgramData\Avira
2015-05-01 16:11 - 2015-05-01 16:15 - 00000000 ____D () C:\Program Files (x86)\Avira
2015-05-01 16:11 - 2015-05-01 16:11 - 04636584 _____ (Avira Operations GmbH & Co. KG) C:\Users\uzivatel\Downloads\avira_en_av_5543897625a21__ws.exe
2015-05-01 16:11 - 2015-05-01 16:11 - 00000000 ____D () C:\ProgramData\Package Cache
2015-05-01 16:09 - 2015-05-01 16:09 - 05499960 _____ (Avast Software s.r.o.) C:\Users\uzivatel\Downloads\avast_free_antivirus_setup_online.exe
2015-05-01 15:43 - 2015-05-02 16:02 - 00053378 _____ () C:\Windows\WindowsUpdate.log
2015-05-01 12:49 - 2015-05-01 12:49 - 00000000 __SHD () C:\found.000
2015-04-28 22:51 - 2015-04-28 22:51 - 00006704 ____N () C:\bootsqm.dat
2015-04-28 08:39 - 2015-04-28 08:39 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Runscanner.net
2015-04-28 07:52 - 2015-04-28 07:52 - 00051496 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\stflt.sys
2015-04-28 07:11 - 2015-04-28 07:11 - 00000000 _____ () C:\autoexec.bat
2015-04-27 11:21 - 2015-04-27 11:21 - 00000000 ____D () C:\Windows\SysWOW64\NV
2015-04-27 11:21 - 2015-04-27 11:21 - 00000000 ____D () C:\Windows\system32\NV
2015-04-27 10:50 - 2015-04-09 02:58 - 31570064 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 30397072 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 25375048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 24053576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 17176128 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 15818528 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 15716232 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 14617288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 14006752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 12852784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 11380728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 10423952 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-04-27 10:50 - 2015-04-09 02:58 - 02935416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 02896528 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 02573456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01895568 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435012.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435012.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01086424 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01047368 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 01037640 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00970568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00962192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00175880 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-04-27 10:50 - 2015-04-09 02:58 - 00031376 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2015-04-27 10:50 - 2015-04-09 02:58 - 00029329 _____ () C:\Windows\system32\nvinfo.pb
2015-04-27 09:00 - 2015-04-27 09:00 - 00000000 ____D () C:\Users\uzivatel\Documents\Thief
2015-04-26 22:55 - 2015-04-26 22:55 - 00000222 _____ () C:\Users\uzivatel\Desktop\Thief.url
2015-04-25 20:30 - 2015-04-30 12:52 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\DVDVideoSoft
2015-04-18 13:23 - 2015-04-18 13:24 - 00000000 ____D () C:\Users\uzivatel\Documents\NBGI
2015-04-18 12:47 - 2015-05-01 15:33 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-04-18 10:23 - 2015-04-18 10:23 - 00000680 _____ () C:\Users\Public\Desktop\Steam.lnk
2015-04-18 10:23 - 2015-04-18 10:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-04-17 10:19 - 2015-04-17 11:23 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\uTorrent
2015-04-16 11:22 - 2015-04-16 11:22 - 00000000 ____D () C:\Users\uzivatel\AppData\Local\NBGI
2015-04-16 10:57 - 2015-04-16 10:57 - 00001338 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk
2015-04-14 20:43 - 2015-04-14 20:43 - 00048347 _____ () C:\Users\uzivatel\Downloads\ICV_Levoca.xlsx
2015-04-14 20:42 - 2015-04-14 20:42 - 00007914 _____ () C:\Users\uzivatel\Downloads\DPS_2012_2013 (1).ods
2015-04-14 20:41 - 2015-04-14 20:41 - 00007819 _____ () C:\Users\uzivatel\Downloads\DPS_2011_2012.ods
2015-04-14 20:40 - 2015-04-14 20:40 - 00012458 _____ () C:\Users\uzivatel\Downloads\DPS_2009_2010 (1).ods
2015-04-14 20:40 - 2015-04-14 20:40 - 00008224 _____ () C:\Users\uzivatel\Downloads\DPS_2010_2011 (1).ods
2015-04-14 20:36 - 2015-04-14 20:36 - 00214463 _____ () C:\Users\uzivatel\Downloads\ICV_2012_2013.xlsx
2015-04-14 20:36 - 2015-04-14 20:36 - 00009014 _____ () C:\Users\uzivatel\Downloads\ICV_2011_2012.ods
2015-04-14 20:35 - 2015-04-14 20:35 - 00007838 _____ () C:\Users\uzivatel\Downloads\ICV_2010_2011.ods
2015-04-14 20:34 - 2015-04-14 20:34 - 00007914 _____ () C:\Users\uzivatel\Downloads\DPS_2012_2013.ods
2015-04-14 20:33 - 2015-04-14 20:33 - 00007819 _____ () C:\Users\uzivatel\Downloads\DPS_2011_2010.ods
2015-04-14 20:32 - 2015-04-14 20:32 - 00008224 _____ () C:\Users\uzivatel\Downloads\DPS_2010_2011.ods
2015-04-14 20:31 - 2015-04-14 20:31 - 00012458 _____ () C:\Users\uzivatel\Downloads\DPS_2009_2010.ods
2015-04-11 15:34 - 2015-04-11 15:34 - 00000000 ____D () C:\Users\uzivatel\AppData\Local\Steam
2015-04-04 20:44 - 2015-04-04 20:44 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\DarkSoulsII
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-02 17:34 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-02 17:33 - 2009-07-14 06:45 - 00017120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-02 17:33 - 2009-07-14 06:45 - 00017120 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-01 16:28 - 2011-09-19 19:22 - 00001995 _____ () C:\Windows\system32\ServiceFilter.ini
2015-05-01 16:27 - 2011-09-19 19:22 - 00002344 _____ () C:\Windows\system32\AutoRunFilter.ini
2015-05-01 15:40 - 2009-07-14 07:08 - 00032602 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-01 15:37 - 2015-03-13 19:32 - 00000000 ____D () C:\Users\uzivatel\AppData\Local\CrashDumps
2015-05-01 15:37 - 2014-08-31 21:24 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2015-05-01 15:37 - 2014-08-11 11:54 - 00000000 ____D () C:\Windows\Minidump
2015-05-01 15:12 - 2011-09-19 16:12 - 00045056 _____ () C:\Windows\system32\acovcnt.exe
2015-05-01 09:41 - 2014-12-18 15:17 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-04-30 22:45 - 2013-09-03 06:51 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\Skype
2015-04-30 20:44 - 2009-07-14 07:13 - 00779306 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-30 07:44 - 2015-02-01 00:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KooBits
2015-04-28 12:14 - 2013-04-12 13:25 - 00000000 ____D () C:\Users\uzivatel\Documents\Bluetooth Folder
2015-04-28 07:53 - 2014-12-18 08:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-04-28 07:11 - 2011-10-07 13:07 - 00000000 ____D () C:\Users\uzivatel
2015-04-27 11:20 - 2011-09-19 19:07 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-04-27 11:12 - 2011-09-19 18:59 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-04-27 10:25 - 2014-05-22 09:22 - 00001381 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2015-04-27 08:49 - 2013-11-02 20:19 - 00000000 ____D () C:\Users\uzivatel\AppData\Roaming\DAEMON Tools Lite
2015-04-26 21:44 - 2014-12-17 20:46 - 00014848 ___SH () C:\Users\uzivatel\Downloads\Thumbs.db
2015-04-18 09:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\tracing
2015-04-18 09:45 - 2014-03-28 13:44 - 00000000 ____D () C:\Users\uzivatel\Documents\My Games
2015-04-17 10:28 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-04-16 10:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2015-04-09 02:58 - 2015-03-15 23:38 - 12689592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-04-09 02:58 - 2014-05-22 09:18 - 00927440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-04-09 02:58 - 2011-09-19 19:02 - 03317344 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-04-09 02:58 - 2011-09-19 19:02 - 00154256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 01047696 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 00936264 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-04-08 23:30 - 2011-03-06 06:45 - 00385168 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 00075080 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2015-04-08 23:30 - 2011-03-06 06:45 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-04-08 23:30 - 2011-03-06 06:44 - 06841488 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-04-08 23:30 - 2011-03-06 06:44 - 03478344 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-04-08 19:52 - 2011-03-06 06:45 - 04336074 _____ () C:\Windows\system32\nvcoproc.bin
2015-04-07 21:15 - 2014-09-14 23:46 - 00000000 ____D () C:\Users\Public\Recorded TV
2015-04-07 18:13 - 2009-07-14 10:41 - 00000000 ____D () C:\Windows\ShellNew
==================== Files in the root of some directories =======
2013-09-03 13:45 - 2014-06-04 08:53 - 0003738 _____ () C:\Program Files (x86)\Mozilla Firefoxsafeguard-secure-search.xml
2014-05-27 12:09 - 2015-02-08 12:10 - 0007597 _____ () C:\Users\uzivatel\AppData\Local\resmon.resmoncfg
2011-11-18 08:48 - 2011-11-18 09:34 - 0001112 _____ () C:\ProgramData\hpzinstall.log
Some content of TEMP:
====================
C:\Users\uzivatel\AppData\Local\Temp\avgnt.exe
C:\Users\uzivatel\AppData\Local\Temp\Quarantine.exe
C:\Users\uzivatel\AppData\Local\Temp\sqlite3.dll
Some zero byte size files/folders:
==========================
C:\Windows\SysWOW64\gcapi_dll.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-04-27 11:54
==================== End Of Log ============================
- Rudy
- Site Admin
- Příspěvky: 119359
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Scan z aviry
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
C:\Program Files (x86)\Skype\Toolbars
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\akmghomonnhljmlfemmifjblglkacfhg [2015-01-11]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-04]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-04]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlkdblcdkgeeeiegonlgdiifmjnkejhh [2015-01-06]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
C:\Windows\system32\acovcnt.exe
C:\Users\uzivatel\AppData\Local\Temp
C:\Windows\SysWOW64\gcapi_dll.dll
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Scan z aviry
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 29-04-2015 01
Ran by uzivatel at 2015-05-02 18:55:47 Run:1
Running from C:\Users\uzivatel\Desktop
Loaded Profiles: uzivatel (Available profiles: uzivatel)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
C:\Program Files (x86)\Skype\Toolbars
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\akmghomonnhljmlfemmifjblglkacfhg [2015-01-11]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-04]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-04]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlkdblcdkgeeeiegonlgdiifmjnkejhh [2015-01-06]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
C:\Windows\system32\acovcnt.exe
C:\Users\uzivatel\AppData\Local\Temp
C:\Windows\SysWOW64\gcapi_dll.dll
End
*****************
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
"HKCR\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
C:\Program Files (x86)\Skype\Toolbars => Moved successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
"HKCR\PROTOCOLS\Handler\skypec2c" => Key deleted successfully.
"HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => Key deleted successfully.
HKCR\Wow6432Node\PROTOCOLS\Handler\skypec2c => Key not found.
"HKCR\Wow6432Node\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => Key deleted successfully.
CHR dev: Chrome dev build detected! <======= ATTENTION => Error: No automatic fix found for this entry.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek => Moved successfully.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\akmghomonnhljmlfemmifjblglkacfhg => Moved successfully.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake => Moved successfully.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf => Moved successfully.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo => Moved successfully.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap => Moved successfully.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlkdblcdkgeeeiegonlgdiifmjnkejhh => Moved successfully.
c2cautoupdatesvc => Service stopped successfully.
c2cautoupdatesvc => Service deleted successfully.
c2cpnrsvc => Service stopped successfully.
c2cpnrsvc => Service deleted successfully.
C:\Windows\system32\acovcnt.exe => Moved successfully.
"C:\Users\uzivatel\AppData\Local\Temp" directory move:
Could not move "C:\Users\uzivatel\AppData\Local\Temp" directory. => Scheduled to move on reboot.
C:\Windows\SysWOW64\gcapi_dll.dll => Moved successfully.
=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2015-05-02 18:59:24)<=
C:\Users\uzivatel\AppData\Local\Temp => Moved successfully.
==== End of Fixlog 18:59:24 ====
Ran by uzivatel at 2015-05-02 18:55:47 Run:1
Running from C:\Users\uzivatel\Desktop
Loaded Profiles: uzivatel (Available profiles: uzivatel)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
C:\Program Files (x86)\Skype\Toolbars
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14] (Microsoft Corporation)
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\akmghomonnhljmlfemmifjblglkacfhg [2015-01-11]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-04]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-04]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-06]
CHR Extension: (No Name) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlkdblcdkgeeeiegonlgdiifmjnkejhh [2015-01-06]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
C:\Windows\system32\acovcnt.exe
C:\Users\uzivatel\AppData\Local\Temp
C:\Windows\SysWOW64\gcapi_dll.dll
End
*****************
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
"HKCR\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
C:\Program Files (x86)\Skype\Toolbars => Moved successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => Key deleted successfully.
"HKCR\PROTOCOLS\Handler\skypec2c" => Key deleted successfully.
"HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => Key deleted successfully.
HKCR\Wow6432Node\PROTOCOLS\Handler\skypec2c => Key not found.
"HKCR\Wow6432Node\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => Key deleted successfully.
CHR dev: Chrome dev build detected! <======= ATTENTION => Error: No automatic fix found for this entry.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek => Moved successfully.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\akmghomonnhljmlfemmifjblglkacfhg => Moved successfully.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake => Moved successfully.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf => Moved successfully.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo => Moved successfully.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap => Moved successfully.
C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlkdblcdkgeeeiegonlgdiifmjnkejhh => Moved successfully.
c2cautoupdatesvc => Service stopped successfully.
c2cautoupdatesvc => Service deleted successfully.
c2cpnrsvc => Service stopped successfully.
c2cpnrsvc => Service deleted successfully.
C:\Windows\system32\acovcnt.exe => Moved successfully.
"C:\Users\uzivatel\AppData\Local\Temp" directory move:
Could not move "C:\Users\uzivatel\AppData\Local\Temp" directory. => Scheduled to move on reboot.
C:\Windows\SysWOW64\gcapi_dll.dll => Moved successfully.
=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2015-05-02 18:59:24)<=
C:\Users\uzivatel\AppData\Local\Temp => Moved successfully.
==== End of Fixlog 18:59:24 ====
- Rudy
- Site Admin
- Příspěvky: 119359
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Scan z aviry
Vše smazáno, PC by již měl být čistý. Pokud jeho chod žádné anomálie nevykazuje, je vše v pořádku.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Scan z aviry
Tak uvidim ako sa to bude spravat dnes a zajtra dakujem za pomoc a co sa tyka dakej havete tak tam by to malo byt OK dam vediet zajtra po par restartoch ci to nabehne hned alebo bude haprovat ale zatial to vyzera na zlepsienie este raz dakujem pekne ale zatial temu neuzatvarajte
- Rudy
- Site Admin
- Příspěvky: 119359
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Scan z aviry
OK, nechám otevřené. Ozvěte se.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.