děkuji za reakci. Tady je log (snad jsem dala vše správně, myslím, že mám 32 bitovou verzi windows)
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 28-06-2015 01
Ran by Ivet (administrator) on IVET-PC on 01-07-2015 09:11:35
Running from C:\Users\Ivet\Desktop
Loaded Profiles: Ivet (Available Profiles: Ivet)
Platform: Microsoft Windows 7 Ultimate (X86) OS Language: Čeština (Česká republika)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Cisco Systems, Inc.) C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
() C:\Program Files\Philips\Philips Songbird Resources\Autolauncher\PhilipsDeviceListener.exe
(Ask) C:\Program Files\Ask.com\Updater\Updater.exe
() C:\Windows\PLFSetI.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Adobe Systems Inc.) C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
(Sun Microsystems, Inc.) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(OLYMPUS IMAGING CORP.) C:\Program Files\Olympus\ib\olycamdetect.exe
(Microsoft Corporation) C:\Windows\System32\StikyNot.exe
(Nokia) C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe
() C:\Users\Ivet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe
() C:\Users\Ivet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe
(Nokia) C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
(Nokia) C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
(Nokia) C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
(Nero AG) C:\Program Files\Nero\Update\NASvc.exe
(Cisco Systems, Inc.) C:\Program Files\Cisco Systems\VPN Client\vpngui.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\WINWORD.EXE
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Ivet\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [MDS_Menu] => C:\Program Files\Olympus\ib\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
HKLM\...\Run: [Philips Device Listener] => C:\Program Files\Philips\Philips Songbird Resources\Autolauncher\PhilipsDeviceListener.exe [375296 2010-05-27] ()
HKLM\...\Run: [Media Codec Update Service] => C:\Program Files\Essentials Codec Pack\update.exe [303104 2007-04-08] (MediaCodec.Org)
HKLM\...\Run: [ApnUpdater] => C:\Program Files\Ask.com\Updater\Updater.exe [1391272 2012-01-03] (Ask)
HKLM\...\Run: [PLFSetI] => C:\Windows\PLFSetI.exe [200704 2008-07-29] ()
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems Incorporated)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\egui.exe [5110672 2013-09-12] (ESET)
HKLM\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [37232 2008-06-12] (Adobe Systems Incorporated)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [Acrobat Assistant 8.0] => C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [640376 2008-06-11] (Adobe Systems Inc.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254896 2012-09-17] (Sun Microsystems, Inc.)
HKLM\...\Run: [AutoKMS] => C:\Windows\AutoKMS.exe [615936 2014-12-02] ()
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\...\Run: [Olympus ib] => C:\Program Files\Olympus\ib\olycamdetect.exe [93376 2009-12-10] (OLYMPUS IMAGING CORP.)
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\...\Run: [Google Update] => C:\Users\Ivet\AppData\Local\Google\Update\GoogleUpdate.exe [107912 2014-10-18] (Google Inc.)
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [354304 2009-07-14] (Microsoft Corporation)
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\...\Run: [indeo] => c:\users\ivet\system_cray.exe [1377792 2012-07-30] ()
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3674320 2013-01-08] (DT Soft Ltd)
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\...\Run: [] => [X]
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\...\Run: [NokiaSuite.exe] => C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe [1090912 2013-10-02] (Nokia)
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\system32\Macromed\Flash\FlashUtil32_17_0_0_190_Plugin.exe [927920 2015-06-24] (Adobe Systems Incorporated)
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\...\MountPoints2: {bd0905cc-579a-11e0-96ae-00269e00141c} - F:\Startme.exe
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\GPhotos.scr [4558848 2014-01-06] (Google Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\VPN Client.lnk [2014-04-02]
ShortcutTarget: VPN Client.lnk -> C:\Windows\Installer\{1CE60928-8325-49A8-8B06-633E48DD2B67}\Icon3E5562ED7.ico ()
Startup: C:\Users\Ivet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe [2015-06-30] ()
Startup: C:\Users\Ivet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe [2015-06-30] ()
ShellIconOverlayIdentifiers: [Windows Codecs] -> {1EC23CFF-4C58-458f-924C-8519AEF61B32} => C:\ProgramData\Windows Codecs\MediaShellOverlays.dll No File
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\Software\Microsoft\Internet Explorer\Main,Search Page =
http://search.qip.ru
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\Software\Microsoft\Internet Explorer\Main,Start Page =
http://qip.ru
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://qip.ru
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://search.qip.ru
HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://search.qip.ru/ie
URLSearchHook: HKLM - BitTorrentBar2 Toolbar - {656461ef-40f6-4115-9ff1-bced9812ccbb} - C:\Program Files\BitTorrentBar2\prxtbBitT.dll No File
URLSearchHook: HKU\S-1-5-21-2720506068-2641747075-1808002333-1001 - Default Value = {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}
URLSearchHook: HKU\S-1-5-21-2720506068-2641747075-1808002333-1001 - QIPBHO Class - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Users\Ivet\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
URLSearchHook: HKU\S-1-5-21-2720506068-2641747075-1808002333-1001 - BitTorrentBar2 Toolbar - {656461ef-40f6-4115-9ff1-bced9812ccbb} - C:\Program Files\BitTorrentBar2\prxtbBitT.dll No File
SearchScopes: HKLM -> DefaultScope {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} URL =
SearchScopes: HKLM -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL =
http://search.conduit.com/ResultsExt.as ... =CT3045275
SearchScopes: HKU\S-1-5-21-2720506068-2641747075-1808002333-1001 -> DefaultScope {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} URL =
http://search.qip.ru/search?query={searchTerms}&from=IE
SearchScopes: HKU\S-1-5-21-2720506068-2641747075-1808002333-1001 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL =
http://search.babylon.com/?q={searchTer ... 215dc3c5a6
SearchScopes: HKU\S-1-5-21-2720506068-2641747075-1808002333-1001 -> {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} URL =
http://search.qip.ru/search?query={searchTerms}&from=IE
SearchScopes: HKU\S-1-5-21-2720506068-2641747075-1808002333-1001 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL =
http://search.conduit.com/ResultsExt.as ... =CT3045275
SearchScopes: HKU\S-1-5-21-2720506068-2641747075-1808002333-1001 -> {FFEBBF0A-C22C-4172-89FF-45215A135AC8} URL =
http://search.icq.com/search/results.ph ... h_mode=web
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated)
BHO: BitTorrentBar2 Toolbar -> {656461ef-40f6-4115-9ff1-bced9812ccbb} -> C:\Program Files\BitTorrentBar2\prxtbBitT.dll No File
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre6\bin\ssv.dll [2014-04-02] (Sun Microsystems, Inc.)
BHO: QIPBHO Class -> {95289393-33EA-4F8D-B952-483415B9C955} -> C:\Users\Ivet\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2010-09-01] (qip.ru)
BHO: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11] (Adobe Systems Incorporated)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO: Nero Toolbar -> {D4027C7F-154A-4066-A1AD-4243D8127440} -> C:\Program Files\Ask.com\GenericAskToolbar.dll [2012-01-03] (Ask)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll [2014-04-02] (Sun Microsystems, Inc.)
BHO: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11] (Adobe Systems Incorporated)
Toolbar: HKLM - Nero Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll [2012-01-03] (Ask)
Toolbar: HKLM - BitTorrentBar2 Toolbar - {656461ef-40f6-4115-9ff1-bced9812ccbb} - C:\Program Files\BitTorrentBar2\prxtbBitT.dll No File
Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11] (Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-2720506068-2641747075-1808002333-1001 -> Nero Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll [2012-01-03] (Ask)
Toolbar: HKU\S-1-5-21-2720506068-2641747075-1808002333-1001 -> Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11] (Adobe Systems Incorporated)
Toolbar: HKU\S-1-5-21-2720506068-2641747075-1808002333-1001 -> BitTorrentBar2 Toolbar - {656461EF-40F6-4115-9FF1-BCED9812CCBB} - C:\Program Files\BitTorrentBar2\prxtbBitT.dll No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0043-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{E35A56A5-476E-4ECE-B5FD-92118073974F}: [NameServer] 10.3.1.20,10.2.1.80
Tcpip\..\Interfaces\{F42CA1E7-B663-400E-B2AF-A02EA0CE8718}: [DhcpNameServer] 213.46.172.37 213.46.172.36
FireFox:
========
FF ProfilePath: C:\Users\Ivet\AppData\Roaming\Mozilla\Firefox\Profiles\0s5hxvz6.default
FF NewTab: hxxp://search.babylon.com/?affID=112564&tt=3612_8&babsrc=NT_ss&mntrId=ec74d56700000000000000215dc3c5a6
FF SearchEngineOrder.1: Search the web (Babylon)
FF SelectedSearchEngine: Google
FF Homepage:
www.seznam.cz
FF Keyword.URL: hxxp://trovi.com/ResultsExt.aspx?ctid=CT3045275&SearchSource=2&CUI=UN95167873434473936&UM=&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_190.dll [2015-06-24] ()
FF Plugin: @caminova.com/DjVuPlugin -> C:\Program Files\Caminova\Document Express DjVu Plug-in\npdjvu.dll [2013-06-03] (Caminova, Inc.)
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.9.2 -> C:\Windows\system32\npDeployJava1.dll [2013-12-09] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll [2014-04-02] (Sun Microsystems, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [2013-09-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: @nokia.com/EnablerPlugin -> C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll [2013-10-02] ( )
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-09-23] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2720506068-2641747075-1808002333-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\Ivet\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-04-17] (Google)
FF Plugin HKU\S-1-5-21-2720506068-2641747075-1808002333-1001: @talk.google.com/O1DPlugin -> C:\Users\Ivet\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-04-17] (Google)
FF Plugin HKU\S-1-5-21-2720506068-2641747075-1808002333-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Ivet\AppData\Local\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin HKU\S-1-5-21-2720506068-2641747075-1808002333-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Ivet\AppData\Local\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-17] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll [2007-04-10] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2008-06-11] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\Ivet\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-04-17] (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Ivet\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-04-17] (Google)
FF SearchPlugin: C:\Users\Ivet\AppData\Roaming\Mozilla\Firefox\Profiles\0s5hxvz6.default\searchplugins\icq.xml [2013-04-09]
FF SearchPlugin: C:\Users\Ivet\AppData\Roaming\Mozilla\Firefox\Profiles\0s5hxvz6.default\searchplugins\qip-search.xml [2013-04-09]
FF Extension: Nero Toolbar - C:\Users\Ivet\AppData\Roaming\Mozilla\Firefox\Profiles\0s5hxvz6.default\Extensions\
toolbar@ask.com [2011-09-05]
FF Extension: QipAuthorizer - C:\Users\Ivet\AppData\Roaming\Mozilla\Firefox\Profiles\0s5hxvz6.default\Extensions\{32a1fd71-835e-4b11-8e54-886fda0b4c89} [2013-04-09]
FF Extension: BitTorrentBar2 - C:\Users\Ivet\AppData\Roaming\Mozilla\Firefox\Profiles\0s5hxvz6.default\Extensions\{656461ef-40f6-4115-9ff1-bced9812ccbb} [2014-08-04]
FF Extension: Java Console - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBA} [2015-06-06]
FF HKLM\...\Thunderbird\Extensions: [
eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2013-11-13]
Chrome:
=======
CHR Profile: C:\Users\Ivet\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Angry Birds) - C:\Users\Ivet\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2012-01-20]
CHR Extension: (YouTube) - C:\Users\Ivet\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-01-20]
CHR Extension: (Google Search) - C:\Users\Ivet\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-01-20]
CHR Extension: (Plná Peněženka Lištička) - C:\Users\Ivet\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecmgkhgjmodembdmiimbacpjgcdimiek [2015-05-20]
CHR Extension: (MagicScroll eBook Reader) - C:\Users\Ivet\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgnmgfdoiplfmhgghbmlphanpfmjble [2013-10-07]
CHR Extension: (Google Wallet) - C:\Users\Ivet\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22]
CHR Extension: (Gmail) - C:\Users\Ivet\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-01-20]
CHR HKLM\...\Chrome\Extension: [ngmmcbedgcbfghamlghhpbpifnbhhpik] - C:\Users\Ivet\AppData\Local\CRE\ngmmcbedgcbfghamlghhpbpifnbhhpik.crx [2012-06-13]
CHR HKU\S-1-5-21-2720506068-2641747075-1808002333-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ngmmcbedgcbfghamlghhpbpifnbhhpik] - C:\Users\Ivet\AppData\Local\CRE\ngmmcbedgcbfghamlghhpbpifnbhhpik.crx [2012-06-13]
StartMenuInternet: Google Chrome - C:\Users\Ivet\AppData\Local\Google\Chrome\Application\chrome.exe
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 CVPND; C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe [1528616 2010-09-27] (Cisco Systems, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1337752 2013-09-12] (ESET)
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [651720 2013-12-18] (Macrovision Europe Ltd.) [File not signed]
R2 NAUpdate; C:\Program Files\Nero\Update\NASvc.exe [503080 2010-05-04] (Nero AG)
S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv.exe [14848 2011-12-15] () [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2009-07-14] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 CVirtA; C:\Windows\System32\DRIVERS\CVirtA.sys [5275 2007-01-18] (Cisco Systems, Inc.)
R2 CVPNDRVA; C:\Windows\system32\Drivers\CVPNDRVA.sys [308859 2010-09-27] (Cisco Systems, Inc.) [File not signed]
R3 DNE; C:\Windows\System32\DRIVERS\dne2000.sys [131984 2008-11-16] (Deterministic Networks, Inc.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2013-03-02] (DT Soft Ltd)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [188808 2013-09-17] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [134248 2013-09-17] (ESET)
R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [174400 2013-09-17] (ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [37416 2013-09-17] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [49240 2013-09-17] (ESET)
S3 OlyCamComm; C:\Windows\System32\DRIVERS\OlyCamComm.sys [21648 2009-09-14] (OLYMPUS IMAGING CORP.)
R3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [26624 2011-12-15] (The OpenVPN Project)
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [48128 2009-07-14] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-01 09:11 - 2015-07-01 09:12 - 00023907 _____ C:\Users\Ivet\Desktop\FRST.txt
2015-07-01 09:11 - 2015-07-01 09:11 - 00000000 ____D C:\FRST
2015-07-01 09:07 - 2015-07-01 09:07 - 00112640 _____ (forum.viry.cz) C:\Users\Ivet\Desktop\FRSTLauncher.exe
2015-07-01 08:40 - 2015-07-01 08:40 - 01636352 _____ (Farbar) C:\Users\Ivet\Desktop\FRST.exe
2015-07-01 08:23 - 2015-07-01 08:24 - 00005505 _____ C:\Users\Ivet\Downloads\red.web3.cz.jnlp
2015-06-30 21:36 - 2015-06-30 21:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2015-06-30 21:36 - 2015-06-30 21:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-06-30 21:35 - 2015-06-30 21:35 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services
2015-06-30 21:35 - 2015-06-30 21:35 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2015-06-30 21:34 - 2015-06-30 21:34 - 00000000 ____D C:\Windows\PCHEALTH
2015-06-30 21:34 - 2015-06-30 21:34 - 00000000 ____D C:\Program Files\Microsoft.NET
2015-06-30 21:34 - 2015-06-30 21:34 - 00000000 ____D C:\Program Files\Microsoft Sync Framework
2015-06-30 21:34 - 2015-06-30 21:34 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2015-06-30 21:33 - 2015-06-30 21:33 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 8
2015-06-30 21:32 - 2015-06-30 21:32 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2015-06-30 21:31 - 2015-06-30 21:31 - 00000000 __RHD C:\MSOCache
2015-06-30 20:39 - 2015-06-30 21:25 - 00000000 ____D C:\Program Files\NirSoft
2015-06-27 19:32 - 2015-06-27 19:32 - 00040534 _____ C:\Users\Ivet\Downloads\Pretty.Little.Liars.S06E04.720p.HDTV.X264-DIMENSION.srt
2015-06-27 19:31 - 2015-06-27 21:47 - 00000000 ____D C:\Users\Ivet\Downloads\Pretty.Little.Liars.S06E02.720p.HDTV.X264-DIMENSION [GloDLS]
2015-06-27 19:31 - 2015-06-27 20:07 - 729499586 _____ C:\Users\Ivet\Downloads\Pretty.Little.Liars.S06E02.720p.HDTV.X264-DIMENSION.mkv
2015-06-27 19:31 - 2015-06-27 19:41 - 827256688 _____ C:\Users\Ivet\Downloads\Pretty.Little.Liars.S06E04.720p.HDTV.X264-DIMENSION.mkv
2015-06-27 19:31 - 2015-06-27 19:31 - 00042461 _____ C:\Users\Ivet\Downloads\Pretty.Little.Liars.S06E03.720p.HDTV.X264-DIMENSION.srt
2015-06-27 19:31 - 2015-06-27 19:31 - 00038079 _____ C:\Users\Ivet\Downloads\Pretty.Little.Liars.S06E02.720p.HDTV.X264-DIMENSION.srt
2015-06-27 19:30 - 2015-06-27 19:38 - 719896971 _____ C:\Users\Ivet\Downloads\Pretty.Little.Liars.S06E03.720p.HDTV.X264-DIMENSION.mkv
2015-06-25 18:17 - 2015-06-25 18:31 - 1373304983 _____ C:\Users\Ivet\Downloads\The.Knick.S01E06.720p.HDTV.x264-KILLERS.mkv
2015-06-25 17:18 - 2015-06-25 17:18 - 00047168 _____ C:\Users\Ivet\Downloads\The-Knick-S01E10(0000244105).srt
2015-06-25 17:18 - 2015-06-25 17:18 - 00029487 _____ C:\Users\Ivet\Downloads\The-Knick-S01E09(0000243750).srt
2015-06-25 17:17 - 2015-06-25 17:17 - 00048863 _____ C:\Users\Ivet\Downloads\The-Knick-S01E08(0000243289).srt
2015-06-25 17:17 - 2015-06-25 17:17 - 00039186 _____ C:\Users\Ivet\Downloads\The-Knick-S01E07(0000242863).srt
2015-06-25 17:16 - 2015-06-25 17:17 - 00054736 _____ C:\Users\Ivet\Downloads\The.Knick.S01E06.720p.HDTV.x264-KILLERS.srt
2015-06-24 09:47 - 2015-06-24 09:55 - 00000000 ____D C:\Users\Ivet\AppData\Roaming\PhotoFiltre 7
2015-06-24 09:47 - 2015-06-24 09:47 - 00001024 _____ C:\Users\Ivet\Desktop\PhotoFiltre 7.lnk
2015-06-24 09:47 - 2015-06-24 09:47 - 00000000 ____D C:\Users\Ivet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
2015-06-24 09:47 - 2015-06-24 09:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
2015-06-24 09:47 - 2015-06-24 09:47 - 00000000 ____D C:\Program Files\PhotoFiltre 7
2015-06-07 11:54 - 2015-06-07 12:03 - 711306487 _____ C:\Users\Ivet\Downloads\Supernatural.S10E04.720p.HDTV.X264-DIMENSION.mkv
2015-06-07 11:54 - 2015-06-07 11:54 - 00044280 _____ C:\Users\Ivet\Downloads\Supernatural.S10E04.720p.HDTV.X264-DIMENSION.srt
2015-06-06 18:17 - 2015-06-08 08:02 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-06-06 18:10 - 2015-06-06 18:10 - 00057834 _____ C:\Users\Ivet\Downloads\Elementary.S03E24.720p.HDTV.X264-DIMENSION.srt
2015-06-06 18:02 - 2015-06-06 18:02 - 00036606 _____ C:\Users\Ivet\Downloads\Supernatural.S10E03.720p.HDTV.X264-DIMENSION.srt
2015-06-06 18:00 - 2015-06-06 18:22 - 760777592 _____ C:\Users\Ivet\Downloads\Supernatural.S10E03.720p.HDTV.X264-DIMENSION.mkv
2015-06-06 17:59 - 2015-06-06 18:28 - 1502815029 _____ C:\Users\Ivet\Downloads\Glee.S06E13.INTERNAL.720p.HDTV.x264-BATV.mkv
2015-06-06 17:57 - 2015-06-06 18:21 - 880279625 _____ C:\Users\Ivet\Downloads\Elementary.S03E24.720p.HDTV.X264-DIMENSION.mkv
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-01 08:47 - 2015-05-17 08:42 - 00000958 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2720506068-2641747075-1808002333-1001UA1d0906ca00de76c.job
2015-07-01 08:47 - 2015-05-17 08:42 - 00000906 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2720506068-2641747075-1808002333-1001Core1d0906c9f65e526.job
2015-07-01 08:47 - 2015-02-07 14:36 - 00000906 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2720506068-2641747075-1808002333-1001Core1d042d2bb7abc9f.job
2015-07-01 08:47 - 2014-02-20 08:43 - 00000958 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2720506068-2641747075-1808002333-1001UA1cf2e07ff99fcd.job
2015-07-01 08:44 - 2009-07-14 06:34 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-01 08:44 - 2009-07-14 06:34 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-01 08:40 - 2012-06-15 08:17 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-07-01 07:48 - 2010-08-19 09:00 - 02685677 _____ C:\Windows\WindowsUpdate.log
2015-07-01 07:17 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Microsoft.NET
2015-07-01 07:07 - 2009-07-14 06:33 - 03770056 _____ C:\Windows\system32\FNTCACHE.DAT
2015-07-01 07:06 - 2013-10-11 23:47 - 00024444 _____ C:\Windows\PFRO.log
2015-07-01 07:06 - 2013-09-17 13:14 - 00097799 _____ C:\Windows\setupact.log
2015-07-01 07:06 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-06-30 21:39 - 2010-08-19 17:17 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-06-30 21:39 - 2010-08-19 12:39 - 00110688 _____ C:\Users\Ivet\AppData\Local\GDIPFONTCACHEV1.DAT
2015-06-30 21:36 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\ShellNew
2015-06-30 21:36 - 2009-07-14 06:52 - 00000000 ____D C:\Program Files\MSBuild
2015-06-30 21:36 - 2009-07-14 04:37 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-06-30 21:34 - 2010-08-19 17:17 - 00000000 ____D C:\Program Files\Microsoft Office
2015-06-30 21:32 - 2009-07-14 04:37 - 00000000 ____D C:\Program Files\Common Files\System
2015-06-30 21:32 - 2009-07-14 04:04 - 00000478 _____ C:\Windows\win.ini
2015-06-30 20:06 - 2010-09-27 17:21 - 00000000 ____D C:\Users\Ivet\AppData\Roaming\Skype
2015-06-30 13:41 - 2011-07-25 17:29 - 00000906 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2720506068-2641747075-1808002333-1001Core.job
2015-06-30 07:52 - 2014-08-24 11:45 - 00000000 ____D C:\Users\Ivet\AppData\Local\CrashDumps
2015-06-28 10:46 - 2010-08-19 09:10 - 01445734 _____ C:\Windows\system32\PerfStringBackup.INI
2015-06-27 20:08 - 2011-11-16 10:25 - 00000000 ____D C:\Users\Ivet\AppData\Roaming\BitTorrent
2015-06-24 15:40 - 2012-06-15 08:17 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-06-24 15:40 - 2012-01-19 20:40 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-06-23 18:35 - 2013-03-22 13:12 - 00000000 ____D C:\Users\Ivet\Desktop\Recepty
2015-06-23 07:48 - 2012-01-20 10:02 - 00002362 _____ C:\Users\Ivet\Desktop\Google Chrome.lnk
2015-06-12 10:19 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system32\NDF
2015-06-08 08:54 - 2010-09-27 17:21 - 00000000 ____D C:\ProgramData\Skype
2015-06-08 08:02 - 2012-04-27 09:16 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-06-03 20:36 - 2014-12-10 15:50 - 00001454 _____ C:\Users\Ivet\Desktop\Zástupce - to_do_nový.lnk
==================== Files in the root of some directories =======
2013-12-18 11:41 - 2013-12-21 09:21 - 0001714 _____ () C:\Users\Ivet\AppData\Roaming\msgmjiju.dat
2013-12-18 11:41 - 2014-01-07 09:18 - 0000027 _____ () C:\Users\Ivet\AppData\Roaming\mswhrdft.dat
2010-08-19 11:56 - 2010-08-21 13:33 - 0000600 _____ () C:\Users\Ivet\AppData\Roaming\winscp.rnd
2010-09-27 17:32 - 2010-09-27 17:32 - 0000056 ____H () C:\ProgramData\ezsidmv.dat
Files to move or delete:
====================
C:\Users\Ivet\go_ex.exe
C:\Users\Ivet\system_cray.exe
Some files in TEMP:
====================
C:\Users\Ivet\AppData\Local\Temp\NOSEventMessages.dll
C:\Users\Ivet\AppData\Local\Temp\ose00000.exe
C:\Users\Ivet\AppData\Local\Temp\setup.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2720506068-2641747075-1808002333-1001Core.job => C:\Users\Ivet\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2720506068-2641747075-1808002333-1001Core1d042d2bb7abc9f.job => C:\Users\Ivet\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2720506068-2641747075-1808002333-1001Core1d0906c9f65e526.job => C:\Users\Ivet\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2720506068-2641747075-1808002333-1001UA1cf2e07ff99fcd.job => C:\Users\Ivet\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2720506068-2641747075-1808002333-1001UA1d0906ca00de76c.job => C:\Users\Ivet\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: ESET Smart Security 6.0 (Enabled - Up to date) {77DEAFED-8149-104B-25A1-21771CA47CD1}
AS: ESET Smart Security 6.0 (Enabled - Up to date) {CCBF4E09-A773-1FC5-1F11-1A056723366C}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET personal firewall (Enabled) {4FE52EC8-CB26-1113-0EFE-8842E2773BAA}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Ivet\Desktop" je 22920 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================