
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím o kontrolu logu
Dobrý den,
Prosím vás o kontrolu logu PC je synátora a prohlížet na něm internet je hrůza všude nevyžádaná reklama okna skáčou přes sebe vyhledávání úplně mimo. předem dik
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:11-07-2015
Ran by Lenovo (administrator) on LENOVO-PC on 12-07-2015 13:37:48
Running from C:\Users\Lenovo\Desktop
Loaded Profiles: Lenovo (Available Profiles: Lenovo)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
() C:\Program Files (x86)\YTDownloader\BrowserHelperSrv.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Goobzo) C:\Program Files (x86)\YTDownloader\BrowserHelper.exe
(Cinema PlusV08.07) C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-1-6.exe
(Cinema PlusV08.07) C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-10.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Webar) C:\Program Files (x86)\Ge-Force\16569258-46d8-4da5-b693-90f0d23de2ce-10.exe
(Speedchecker) C:\Program Files (x86)\Internet Speed Checker\7c995f65-2933-43c4-9447-2f1eadce4003-10.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(YTDownloader) C:\Program Files (x86)\YTDownloader\YTDownloader.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
() C:\Users\Lenovo\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Lenovo\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(YTDownloader) C:\Program Files (x86)\YTDownloader\DownloadHelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Lenovo\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [8079408 2015-02-14] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [6199128 2015-02-14] (Lenovo(beijing) Limited)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2015-02-05] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-01-27] (Intel Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227648 2015-03-30] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [YTDownloader] => C:\Program Files (x86)\YTDownloader\YTDownloader.exe [1988528 2015-07-08] (YTDownloader)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Lenovo\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Lenovo\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\Run: [YTDownloader] => C:\Program Files (x86)\YTDownloader\YTDownloader.exe [1988528 2015-07-08] (YTDownloader)
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\MountPoints2: {5051c6fd-18e7-11e5-865b-c0143dc679e0} - G:\Startme.exe
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\MountPoints2: {be945f2e-d3af-11e4-a608-c0143dc679e0} - D:\Setup.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-03-14] (Microsoft Corporation)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [177624 2015-02-05] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [164752 2015-02-05] (NVIDIA Corporation)
Lsa: [Notification Packages] scecli c:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2015-02-14]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-02-14] (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://do-search.com/?type=hp&ts=143245 ... 46DGGP46DX
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://do-search.com/?type=hp&ts=143245 ... 46DGGP46DX
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://do-search.com/?type=hp&ts=143245 ... 46DGGP46DX
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://do-search.com/?type=hp&ts=143245 ... 46DGGP46DX
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=16194
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://do-search.com/?type=hp&ts=143245 ... 46DGGP46DX
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {1F9C68E1-0B84-476D-9F25-21D3DFFC547A} URL = http://search.seznam.cz/?q={searchTerms ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {64592E63-645F-40B9-86C9-83C96AAE1F12} URL = http://www.novinky.cz/hledej?w={searchT ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {67DAB26F-6E48-4402-BDB0-11004D4EB26B} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {7F8D9D5F-0323-4A1C-B3EC-88000848752F} URL = http://encyklopedie.seznam.cz/search?q= ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {86E37279-F407-4B18-85CF-2F1318B78DCB} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {8FA5658A-8902-455D-8E43-55F65B773C44} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {B0A1A4C4-8EDB-4B54-B2B2-8DBBA552572F} URL = http://www.mapy.cz/?query={searchTerms} ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {D5444259-A29C-4027-BF00-9BE018BA05E1} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {E6340881-7E24-41FD-83AC-59F26BF1AFA3} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-02-14] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro64.dll [2015-07-09] (Goobzo Ltd.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-07-07] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-02-14] (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro.dll [2015-07-09] (Goobzo Ltd.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-07-07] (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{405A326B-5852-4376-A9DF-BF21BE31409D}: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.52 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2011-12-01] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2011-12-01] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-07-07] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-07-07] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll No File
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin HKU\S-1-5-21-2675591590-823612212-1287575946-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Lenovo\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-16] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-02-14]
Chrome:
=======
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-14]
CHR Extension: (Google Docs) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-14]
CHR Extension: (Google Drive) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-14]
CHR Extension: (YouTube) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-14]
CHR Extension: (Google Search) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-14]
CHR Extension: (Google Sheets) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-14]
CHR Extension: (Avast Online Security) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-02-14]
CHR Extension: (CinemaP-1.9cV08.07) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi [2015-07-11]
CHR Extension: (Google Wallet) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-14]
CHR Extension: (Gmail) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-14]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-02-14]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-02-14] (AVAST Software)
R2 BrsHelper; C:\Program Files (x86)\YTDownloader\BrowserHelperSrv.exe [112560 2015-07-08] ()
R2 btwdins; c:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [957216 2012-03-21] (Broadcom Corporation.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2015-02-05] (NVIDIA Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2011-12-16] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2011-12-16] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128 2015-02-05] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21833360 2015-02-05] (NVIDIA Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-02-14] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [87912 2015-02-14] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-02-14] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-02-14] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-02-14] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-02-14] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-02-14] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-02-14] ()
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [163368 2012-03-20] (Broadcom Corporation.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-02-05] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2015-02-05] (NVIDIA Corporation)
S3 PAC207; C:\Windows\System32\DRIVERS\PFC027.SYS [572416 2006-12-05] (PixArt Imaging Inc.)
R2 sbmntr; C:\Program Files (x86)\YTDownloader\sbmntr.sys [58528 2015-07-08] (YTDownloader)
R2 SPDRIVER_1.42.1.2096; C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2096\jsdrv.sys [52376 2015-07-09] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2015-03-26] () [File not signed]
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [952832 2011-12-06] (Vimicro Corporation)
U3 a7pol3o0; C:\Windows\System32\Drivers\a7pol3o0.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder)
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 L1C; system32\DRIVERS\L1C62x64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-12 13:37 - 2015-07-12 13:38 - 00024557 _____ C:\Users\Lenovo\Desktop\FRST.txt
2015-07-12 13:37 - 2015-07-12 13:37 - 00000000 ____D C:\FRST
2015-07-12 13:35 - 2015-07-12 13:35 - 00112640 _____ (forum.viry.cz) C:\Users\Lenovo\Desktop\FRSTLauncher.exe
2015-07-12 13:34 - 2015-07-12 13:34 - 00112640 _____ (forum.viry.cz) C:\Users\Lenovo\Downloads\Nepotvrzeno 55293.crdownload
2015-07-12 13:33 - 2015-07-12 13:33 - 02130944 _____ (Farbar) C:\Users\Lenovo\Desktop\FRST64.exe
2015-07-09 20:10 - 2015-07-09 22:14 - 00249792 _____ C:\Windows\PFRO.log
2015-07-09 16:54 - 2015-07-09 16:55 - 00000000 ____D C:\ff941a1c84e0a6a2ec00d8b5c4d7e5a3
2015-07-09 16:47 - 2015-07-09 16:54 - 00000000 ____D C:\Windows\system32\MRT
2015-07-09 16:47 - 2015-05-27 00:04 - 140135120 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-07-09 12:30 - 2015-07-12 12:39 - 00002688 _____ C:\Windows\setupact.log
2015-07-09 12:30 - 2015-07-09 12:30 - 00000000 _____ C:\Windows\setuperr.log
2015-07-09 12:26 - 2015-07-12 12:40 - 00003142 _____ C:\Windows\Tasks\7c995f65-2933-43c4-9447-2f1eadce4003-1-7.job
2015-07-09 12:26 - 2015-07-09 12:26 - 00006172 _____ C:\Windows\System32\Tasks\7c995f65-2933-43c4-9447-2f1eadce4003-1-7
2015-07-09 12:26 - 2015-07-09 12:26 - 00000000 ____D C:\Program Files (x86)\026640d5-57d6-477c-a812-51a0ecc2960c
2015-07-09 12:25 - 2015-07-12 13:25 - 00002116 _____ C:\Windows\Tasks\7c995f65-2933-43c4-9447-2f1eadce4003-10_user.job
2015-07-09 12:25 - 2015-07-09 15:51 - 00000000 ____D C:\Program Files (x86)\Internet Speed Checker
2015-07-09 12:12 - 2015-07-09 12:12 - 00030696 _____ C:\Users\Lenovo\Documents\cc_20150709_121204.reg
2015-07-09 10:30 - 2015-07-09 10:35 - 00000000 ____D C:\Users\Lenovo\AppData\Local\BrowserHelper
2015-07-09 10:30 - 2015-07-09 10:30 - 00003908 _____ C:\Windows\System32\Tasks\YTDownloaderUpd
2015-07-09 10:30 - 2015-07-09 10:30 - 00003726 _____ C:\Windows\System32\Tasks\SMupdate1
2015-07-09 10:30 - 2015-07-09 10:30 - 00003586 _____ C:\Windows\System32\Tasks\YTDownloader
2015-07-09 10:30 - 2015-07-09 10:30 - 00000000 ____D C:\Program Files (x86)\YTDownloader
2015-07-09 10:28 - 2015-07-09 10:28 - 00006824 _____ C:\Windows\System32\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-1-7
2015-07-09 10:28 - 2015-07-09 10:28 - 00004504 _____ C:\Windows\System32\Tasks\ShopperPro
2015-07-09 10:28 - 2015-07-09 10:28 - 00003498 _____ C:\Windows\System32\Tasks\SPDriver
2015-07-09 10:27 - 2015-07-12 13:27 - 00005838 _____ C:\Windows\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-6.job
2015-07-09 10:27 - 2015-07-12 13:27 - 00002088 _____ C:\Windows\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-10_user.job
2015-07-09 10:27 - 2015-07-12 12:40 - 00003794 _____ C:\Windows\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-1-7.job
2015-07-09 10:27 - 2015-07-12 12:40 - 00003444 _____ C:\Windows\Tasks\75f54a3a-df0e-4604-a974-2c6f2e36b879-1-7.job
2015-07-09 10:27 - 2015-07-09 12:01 - 00000000 ____D C:\Program Files (x86)\Ge-Force
2015-07-09 10:27 - 2015-07-09 10:27 - 00008866 _____ C:\Windows\System32\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-6
2015-07-09 10:27 - 2015-07-09 10:27 - 00006474 _____ C:\Windows\System32\Tasks\75f54a3a-df0e-4604-a974-2c6f2e36b879-1-7
2015-07-09 10:27 - 2015-07-09 10:27 - 00003572 _____ C:\Windows\System32\Tasks\ShopperProJSUpd
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\Users\Public\Documents\ShopperPro
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\Users\Lenovo\AppData\Local\globalUpdate
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\ProgramData\ShopperPro
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\Program Files (x86)\ShopperPro
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\Program Files (x86)\globalUpdate
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\Program Files (x86)\c8740b62-7fbd-40ec-8261-6caaa1f87554
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\Program Files (x86)\07af7af5-ea64-42dd-91ad-92e4dfaf2d57
2015-07-09 10:26 - 2015-07-09 12:02 - 00000000 ____D C:\Program Files (x86)\Sense
2015-07-09 10:25 - 2015-07-09 10:25 - 00000000 ____D C:\Users\Lenovo\AppData\Local\CrashRpt
2015-07-09 10:03 - 2015-07-11 10:40 - 00003212 _____ C:\Windows\System32\Tasks\avastBCLRestart_chrome.exe
2015-07-08 18:17 - 2015-07-12 12:40 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-07-08 17:22 - 2015-07-08 17:22 - 00000000 ____D C:\Users\Lenovo\AppData\Local\Prompt Downloader
2015-07-08 17:22 - 2015-07-08 17:22 - 00000000 ____D C:\Program Files (x86)\Prompt Downloader
2015-07-08 17:18 - 2015-07-12 12:45 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Seznam.cz
2015-07-08 17:18 - 2015-07-12 12:41 - 00002442 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-5_user.job
2015-07-08 17:18 - 2015-07-12 12:40 - 00002442 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-5.job
2015-07-08 17:18 - 2015-07-08 17:18 - 00005472 _____ C:\Windows\System32\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-5
2015-07-08 17:18 - 2015-07-08 17:18 - 00000000 ____D C:\Program Files (x86)\Seznam.cz
2015-07-08 17:17 - 2015-07-12 13:17 - 00005514 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-6.job
2015-07-08 17:17 - 2015-07-12 13:17 - 00003134 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-1-6.job
2015-07-08 17:17 - 2015-07-12 13:17 - 00002108 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-10_user.job
2015-07-08 17:17 - 2015-07-12 12:40 - 00005178 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-7.job
2015-07-08 17:17 - 2015-07-12 12:40 - 00004154 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-3.job
2015-07-08 17:17 - 2015-07-12 12:40 - 00003134 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-1-7.job
2015-07-08 17:17 - 2015-07-09 12:26 - 00000000 ____D C:\Program Files (x86)\8074a835-88c5-402f-822d-f06a5b542c14
2015-07-08 17:17 - 2015-07-08 17:18 - 00000000 ____D C:\Program Files (x86)\CinemaP-1.9cV08.07
2015-07-08 17:17 - 2015-07-08 17:17 - 00008542 _____ C:\Windows\System32\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-6
2015-07-08 17:17 - 2015-07-08 17:17 - 00008208 _____ C:\Windows\System32\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-7
2015-07-08 17:17 - 2015-07-08 17:17 - 00007184 _____ C:\Windows\System32\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-3
2015-07-08 17:17 - 2015-07-08 17:17 - 00006164 _____ C:\Windows\System32\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-1-7
2015-07-08 17:17 - 2015-07-08 17:17 - 00006162 _____ C:\Windows\System32\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-1-6
2015-07-08 17:07 - 2015-07-08 17:07 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\NVIDIA
2015-07-08 16:58 - 2015-07-08 16:58 - 00000000 ____D C:\Users\Lenovo\Downloads\runtime
2015-07-08 16:55 - 2015-07-08 17:01 - 00000000 ____D C:\Users\Lenovo\Downloads\game
2015-07-07 16:18 - 2015-07-07 16:17 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-07-07 13:42 - 2015-07-09 12:53 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2015-07-01 21:57 - 2015-07-01 22:03 - 00000000 ____D C:\Users\Lenovo\mobogenieP2sp
2015-07-01 21:54 - 2015-07-01 21:54 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Mobogenie
2015-07-01 21:53 - 2015-07-09 20:30 - 00000000 ____D C:\Users\Lenovo\Documents\Mobogenie
2015-07-01 21:53 - 2015-07-09 20:30 - 00000000 ____D C:\Program Files (x86)\Mobogenie3
2015-07-01 21:53 - 2015-07-01 21:53 - 00000000 ____D C:\Users\Public\Documents\GenieSoft
2015-06-30 22:05 - 2015-06-30 22:05 - 01961909 _____ C:\Users\Lenovo\Desktop\Dominik uvodní video.mp4
2015-06-29 19:32 - 2015-07-09 10:27 - 00000000 ____D C:\Program Files (x86)\Adam
2015-06-29 19:26 - 2015-06-29 19:39 - 00000000 ____D C:\totalcmd
2015-06-29 19:26 - 2015-06-29 19:26 - 00000632 _____ C:\Users\Lenovo\Desktop\Total Commander.lnk
2015-06-29 19:26 - 2015-06-29 19:26 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2015-06-29 19:26 - 2015-06-29 19:26 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\GHISLER
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\UC.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\RAR.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\PKZIP.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\PKUNZIP.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\LHA.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\ARJ.PIF
2015-06-29 18:53 - 2015-06-29 18:53 - 00002702 _____ C:\Users\Lenovo\Desktop\Magisto - Magical Video Editor.lnk
2015-06-23 20:27 - 2015-06-23 20:27 - 00931408 _____ (Google Inc.) C:\Users\Lenovo\Downloads\GoogleEarthSetup.exe
2015-06-23 15:10 - 2015-06-23 15:10 - 00000000 _____ C:\dfu.log
2015-06-23 15:08 - 2015-06-23 15:08 - 00000000 ____D C:\Users\Lenovo\Downloads\Gameforge Live
2015-06-22 16:36 - 2015-06-22 16:36 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome
2015-06-22 16:33 - 2015-06-22 16:33 - 00002309 _____ C:\Users\Lenovo\Desktop\Spouštěč aplikací Chrome.lnk
2015-06-22 16:33 - 2015-06-22 16:33 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-06-21 17:59 - 2015-06-21 17:59 - 00000000 ____D C:\Users\Lenovo\Documents\Bus Simulator 2012 Demo
2015-06-21 17:59 - 2015-06-21 17:59 - 00000000 ____D C:\Users\Lenovo\AppData\Local\Bus Simulator 2012 Demo
2015-06-20 11:35 - 2015-06-20 11:35 - 00000000 ____D C:\Program Files (x86)\Microsoft Games
2015-06-20 11:21 - 2015-06-20 11:27 - 620534000 _____ (SCS Software ) C:\Users\Lenovo\Downloads\euro-truck-simulator-2_1.3.1.exe
2015-06-16 20:50 - 2015-06-16 20:50 - 00003168 _____ C:\Windows\System32\Tasks\{60580607-8D09-4465-A110-EE03995C4B97}
2015-06-16 20:46 - 2015-06-16 20:46 - 00643520 _____ (Unity Technologies ApS) C:\Users\Lenovo\Downloads\unity-web-player_4.0.1.exe
2015-06-16 20:40 - 2015-06-16 20:40 - 00000000 ____D C:\Users\Lenovo\Documents\Any Video Recorder
2015-06-16 20:40 - 2015-06-16 20:40 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\AnvSoft
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-12 13:36 - 2009-07-14 06:45 - 00014416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-12 13:36 - 2009-07-14 06:45 - 00014416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-12 13:21 - 2015-02-14 22:03 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-12 13:19 - 2015-02-14 18:47 - 01190479 _____ C:\Windows\WindowsUpdate.log
2015-07-12 12:41 - 2015-02-14 22:04 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-07-12 12:40 - 2015-02-14 22:03 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-12 12:40 - 2015-02-14 19:39 - 00000828 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
2015-07-12 12:39 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-12 10:59 - 2009-07-14 17:18 - 01428876 _____ C:\Windows\system32\perfh005.dat
2015-07-12 10:59 - 2009-07-14 17:18 - 00406990 _____ C:\Windows\system32\perfc005.dat
2015-07-12 10:59 - 2009-07-14 07:13 - 00005394 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-11 21:38 - 2009-07-14 07:08 - 00032538 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-07-11 20:06 - 2015-02-17 15:42 - 00003978 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{3DE70EA5-2B4A-457D-B519-E44B8DCD0F68}
2015-07-09 20:50 - 2015-03-05 17:49 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-07-09 12:59 - 2015-05-14 13:12 - 00000000 ____D C:\Users\Lenovo\Documents\VirtualDJ
2015-07-09 12:53 - 2015-04-23 13:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
2015-07-09 10:30 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System
2015-07-09 10:12 - 2015-02-21 11:56 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\.minecraft
2015-07-08 18:28 - 2015-02-14 19:39 - 00000830 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
2015-07-08 17:26 - 2015-03-19 10:08 - 00000000 ____D C:\Program Files (x86)\Midway Home Entertainment
2015-07-08 00:21 - 2015-02-14 22:04 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-07 16:18 - 2015-02-21 11:55 - 00000000 ____D C:\ProgramData\Oracle
2015-07-07 16:17 - 2015-02-22 17:19 - 00000000 ____D C:\Program Files (x86)\Java
2015-07-07 15:21 - 2015-02-14 19:11 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-07 13:42 - 2015-03-19 10:16 - 00000000 ____D C:\Users\Public\Documents\Softwrap
2015-07-01 21:57 - 2015-02-14 18:39 - 00000000 ____D C:\Users\Lenovo
2015-06-29 19:48 - 2015-02-14 22:03 - 00000000 ____D C:\Program Files (x86)\Google
2015-06-29 19:48 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-06-29 19:46 - 2015-04-24 19:32 - 00000000 ____D C:\Program Files (x86)\GameforgeLive
2015-06-29 19:46 - 2015-02-21 11:02 - 00000000 ____D C:\Users\Lenovo\Documents\Euro Truck Simulator 2
2015-06-29 01:05 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2015-06-23 13:30 - 2015-03-06 21:05 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-06-16 20:50 - 2015-03-16 20:00 - 00000000 __SHD C:\Users\Lenovo\AppData\Local\EmieUserList
2015-06-16 20:50 - 2015-03-16 20:00 - 00000000 __SHD C:\Users\Lenovo\AppData\Local\EmieSiteList
2015-06-16 20:50 - 2015-03-16 20:00 - 00000000 __SHD C:\Users\Lenovo\AppData\Local\EmieBrowserModeList
2015-06-16 20:46 - 2015-02-15 11:42 - 00000000 ____D C:\Users\Lenovo\AppData\Local\Unity
2015-06-14 18:12 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-06-14 10:12 - 2015-03-13 21:40 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\vlc
==================== Files in the root of some directories =======
2015-03-06 17:16 - 2015-03-06 17:18 - 0004608 _____ () C:\Users\Lenovo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
Some files in TEMP:
====================
C:\Users\Lenovo\AppData\Local\Temp\downloader.dll
C:\Users\Lenovo\AppData\Local\Temp\mytmpinstaller.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-1-7.job => C:\Program Files (x86)\Ge-Force\16569258-46d8-4da5-b693-90f0d23de2ce-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-10_user.job => C:\Program Files (x86)\Ge-Force\16569258-46d8-4da5-b693-90f0d23de2ce-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-6.job => C:\Program Files (x86)\Ge-Force\16569258-46d8-4da5-b693-90f0d23de2ce-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\75f54a3a-df0e-4604-a974-2c6f2e36b879-1-7.job => C:\Program Files (x86)\Sense\75f54a3a-df0e-4604-a974-2c6f2e36b879-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\7c995f65-2933-43c4-9447-2f1eadce4003-1-7.job => C:\Program Files (x86)\Internet Speed Checker\7c995f65-2933-43c4-9447-2f1eadce4003-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\7c995f65-2933-43c4-9447-2f1eadce4003-10_user.job => C:\Program Files (x86)\Internet Speed Checker\7c995f65-2933-43c4-9447-2f1eadce4003-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-1-6.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-1-7.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-10_user.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-3.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-5.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-5_user.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-6.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-7.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => c:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => c:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Lenovo\Desktop" je 62667 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog
C:\Program Files (x86)\USB Camera\VM331_STI.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor
"C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor
C:\Windows\PixArt\PAC207\Monitor.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Prosím vás o kontrolu logu PC je synátora a prohlížet na něm internet je hrůza všude nevyžádaná reklama okna skáčou přes sebe vyhledávání úplně mimo. předem dik
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:11-07-2015
Ran by Lenovo (administrator) on LENOVO-PC on 12-07-2015 13:37:48
Running from C:\Users\Lenovo\Desktop
Loaded Profiles: Lenovo (Available Profiles: Lenovo)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
() C:\Program Files (x86)\YTDownloader\BrowserHelperSrv.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Goobzo) C:\Program Files (x86)\YTDownloader\BrowserHelper.exe
(Cinema PlusV08.07) C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-1-6.exe
(Cinema PlusV08.07) C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-10.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Webar) C:\Program Files (x86)\Ge-Force\16569258-46d8-4da5-b693-90f0d23de2ce-10.exe
(Speedchecker) C:\Program Files (x86)\Internet Speed Checker\7c995f65-2933-43c4-9447-2f1eadce4003-10.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(YTDownloader) C:\Program Files (x86)\YTDownloader\YTDownloader.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
() C:\Users\Lenovo\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Lenovo\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(YTDownloader) C:\Program Files (x86)\YTDownloader\DownloadHelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Lenovo\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [8079408 2015-02-14] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [6199128 2015-02-14] (Lenovo(beijing) Limited)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2015-02-05] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-01-27] (Intel Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227648 2015-03-30] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
HKLM-x32\...\Run: [YTDownloader] => C:\Program Files (x86)\YTDownloader\YTDownloader.exe [1988528 2015-07-08] (YTDownloader)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Lenovo\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Lenovo\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\Run: [YTDownloader] => C:\Program Files (x86)\YTDownloader\YTDownloader.exe [1988528 2015-07-08] (YTDownloader)
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\MountPoints2: {5051c6fd-18e7-11e5-865b-c0143dc679e0} - G:\Startme.exe
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\MountPoints2: {be945f2e-d3af-11e4-a608-c0143dc679e0} - D:\Setup.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-03-14] (Microsoft Corporation)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [177624 2015-02-05] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [164752 2015-02-05] (NVIDIA Corporation)
Lsa: [Notification Packages] scecli c:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2015-02-14]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-02-14] (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://do-search.com/?type=hp&ts=143245 ... 46DGGP46DX
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://do-search.com/?type=hp&ts=143245 ... 46DGGP46DX
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://do-search.com/?type=hp&ts=143245 ... 46DGGP46DX
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://do-search.com/?type=hp&ts=143245 ... 46DGGP46DX
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=16194
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://do-search.com/?type=hp&ts=143245 ... 46DGGP46DX
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {1F9C68E1-0B84-476D-9F25-21D3DFFC547A} URL = http://search.seznam.cz/?q={searchTerms ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://do-search.com/web/?type=ds&ts=14 ... earchTerms}
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {64592E63-645F-40B9-86C9-83C96AAE1F12} URL = http://www.novinky.cz/hledej?w={searchT ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {67DAB26F-6E48-4402-BDB0-11004D4EB26B} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {7F8D9D5F-0323-4A1C-B3EC-88000848752F} URL = http://encyklopedie.seznam.cz/search?q= ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {86E37279-F407-4B18-85CF-2F1318B78DCB} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {8FA5658A-8902-455D-8E43-55F65B773C44} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {B0A1A4C4-8EDB-4B54-B2B2-8DBBA552572F} URL = http://www.mapy.cz/?query={searchTerms} ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {D5444259-A29C-4027-BF00-9BE018BA05E1} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {E6340881-7E24-41FD-83AC-59F26BF1AFA3} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-02-14] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro64.dll [2015-07-09] (Goobzo Ltd.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-07-07] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-02-14] (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro.dll [2015-07-09] (Goobzo Ltd.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-07-07] (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{405A326B-5852-4376-A9DF-BF21BE31409D}: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.52 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2011-12-01] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2011-12-01] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-07-07] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-07-07] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll No File
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin HKU\S-1-5-21-2675591590-823612212-1287575946-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Lenovo\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-16] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-02-14]
Chrome:
=======
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-14]
CHR Extension: (Google Docs) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-14]
CHR Extension: (Google Drive) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-14]
CHR Extension: (YouTube) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-14]
CHR Extension: (Google Search) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-14]
CHR Extension: (Google Sheets) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-14]
CHR Extension: (Avast Online Security) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-02-14]
CHR Extension: (CinemaP-1.9cV08.07) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi [2015-07-11]
CHR Extension: (Google Wallet) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-14]
CHR Extension: (Gmail) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-14]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-02-14]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-02-14] (AVAST Software)
R2 BrsHelper; C:\Program Files (x86)\YTDownloader\BrowserHelperSrv.exe [112560 2015-07-08] ()
R2 btwdins; c:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [957216 2012-03-21] (Broadcom Corporation.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2015-02-05] (NVIDIA Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2011-12-16] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2011-12-16] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128 2015-02-05] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21833360 2015-02-05] (NVIDIA Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-02-14] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [87912 2015-02-14] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-02-14] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-02-14] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-02-14] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-02-14] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-02-14] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-02-14] ()
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [163368 2012-03-20] (Broadcom Corporation.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-02-05] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2015-02-05] (NVIDIA Corporation)
S3 PAC207; C:\Windows\System32\DRIVERS\PFC027.SYS [572416 2006-12-05] (PixArt Imaging Inc.)
R2 sbmntr; C:\Program Files (x86)\YTDownloader\sbmntr.sys [58528 2015-07-08] (YTDownloader)
R2 SPDRIVER_1.42.1.2096; C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2096\jsdrv.sys [52376 2015-07-09] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2015-03-26] () [File not signed]
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [952832 2011-12-06] (Vimicro Corporation)
U3 a7pol3o0; C:\Windows\System32\Drivers\a7pol3o0.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder)
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 L1C; system32\DRIVERS\L1C62x64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-12 13:37 - 2015-07-12 13:38 - 00024557 _____ C:\Users\Lenovo\Desktop\FRST.txt
2015-07-12 13:37 - 2015-07-12 13:37 - 00000000 ____D C:\FRST
2015-07-12 13:35 - 2015-07-12 13:35 - 00112640 _____ (forum.viry.cz) C:\Users\Lenovo\Desktop\FRSTLauncher.exe
2015-07-12 13:34 - 2015-07-12 13:34 - 00112640 _____ (forum.viry.cz) C:\Users\Lenovo\Downloads\Nepotvrzeno 55293.crdownload
2015-07-12 13:33 - 2015-07-12 13:33 - 02130944 _____ (Farbar) C:\Users\Lenovo\Desktop\FRST64.exe
2015-07-09 20:10 - 2015-07-09 22:14 - 00249792 _____ C:\Windows\PFRO.log
2015-07-09 16:54 - 2015-07-09 16:55 - 00000000 ____D C:\ff941a1c84e0a6a2ec00d8b5c4d7e5a3
2015-07-09 16:47 - 2015-07-09 16:54 - 00000000 ____D C:\Windows\system32\MRT
2015-07-09 16:47 - 2015-05-27 00:04 - 140135120 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-07-09 12:30 - 2015-07-12 12:39 - 00002688 _____ C:\Windows\setupact.log
2015-07-09 12:30 - 2015-07-09 12:30 - 00000000 _____ C:\Windows\setuperr.log
2015-07-09 12:26 - 2015-07-12 12:40 - 00003142 _____ C:\Windows\Tasks\7c995f65-2933-43c4-9447-2f1eadce4003-1-7.job
2015-07-09 12:26 - 2015-07-09 12:26 - 00006172 _____ C:\Windows\System32\Tasks\7c995f65-2933-43c4-9447-2f1eadce4003-1-7
2015-07-09 12:26 - 2015-07-09 12:26 - 00000000 ____D C:\Program Files (x86)\026640d5-57d6-477c-a812-51a0ecc2960c
2015-07-09 12:25 - 2015-07-12 13:25 - 00002116 _____ C:\Windows\Tasks\7c995f65-2933-43c4-9447-2f1eadce4003-10_user.job
2015-07-09 12:25 - 2015-07-09 15:51 - 00000000 ____D C:\Program Files (x86)\Internet Speed Checker
2015-07-09 12:12 - 2015-07-09 12:12 - 00030696 _____ C:\Users\Lenovo\Documents\cc_20150709_121204.reg
2015-07-09 10:30 - 2015-07-09 10:35 - 00000000 ____D C:\Users\Lenovo\AppData\Local\BrowserHelper
2015-07-09 10:30 - 2015-07-09 10:30 - 00003908 _____ C:\Windows\System32\Tasks\YTDownloaderUpd
2015-07-09 10:30 - 2015-07-09 10:30 - 00003726 _____ C:\Windows\System32\Tasks\SMupdate1
2015-07-09 10:30 - 2015-07-09 10:30 - 00003586 _____ C:\Windows\System32\Tasks\YTDownloader
2015-07-09 10:30 - 2015-07-09 10:30 - 00000000 ____D C:\Program Files (x86)\YTDownloader
2015-07-09 10:28 - 2015-07-09 10:28 - 00006824 _____ C:\Windows\System32\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-1-7
2015-07-09 10:28 - 2015-07-09 10:28 - 00004504 _____ C:\Windows\System32\Tasks\ShopperPro
2015-07-09 10:28 - 2015-07-09 10:28 - 00003498 _____ C:\Windows\System32\Tasks\SPDriver
2015-07-09 10:27 - 2015-07-12 13:27 - 00005838 _____ C:\Windows\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-6.job
2015-07-09 10:27 - 2015-07-12 13:27 - 00002088 _____ C:\Windows\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-10_user.job
2015-07-09 10:27 - 2015-07-12 12:40 - 00003794 _____ C:\Windows\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-1-7.job
2015-07-09 10:27 - 2015-07-12 12:40 - 00003444 _____ C:\Windows\Tasks\75f54a3a-df0e-4604-a974-2c6f2e36b879-1-7.job
2015-07-09 10:27 - 2015-07-09 12:01 - 00000000 ____D C:\Program Files (x86)\Ge-Force
2015-07-09 10:27 - 2015-07-09 10:27 - 00008866 _____ C:\Windows\System32\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-6
2015-07-09 10:27 - 2015-07-09 10:27 - 00006474 _____ C:\Windows\System32\Tasks\75f54a3a-df0e-4604-a974-2c6f2e36b879-1-7
2015-07-09 10:27 - 2015-07-09 10:27 - 00003572 _____ C:\Windows\System32\Tasks\ShopperProJSUpd
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\Users\Public\Documents\ShopperPro
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\Users\Lenovo\AppData\Local\globalUpdate
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\ProgramData\ShopperPro
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\Program Files (x86)\ShopperPro
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\Program Files (x86)\globalUpdate
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\Program Files (x86)\c8740b62-7fbd-40ec-8261-6caaa1f87554
2015-07-09 10:27 - 2015-07-09 10:27 - 00000000 ____D C:\Program Files (x86)\07af7af5-ea64-42dd-91ad-92e4dfaf2d57
2015-07-09 10:26 - 2015-07-09 12:02 - 00000000 ____D C:\Program Files (x86)\Sense
2015-07-09 10:25 - 2015-07-09 10:25 - 00000000 ____D C:\Users\Lenovo\AppData\Local\CrashRpt
2015-07-09 10:03 - 2015-07-11 10:40 - 00003212 _____ C:\Windows\System32\Tasks\avastBCLRestart_chrome.exe
2015-07-08 18:17 - 2015-07-12 12:40 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-07-08 17:22 - 2015-07-08 17:22 - 00000000 ____D C:\Users\Lenovo\AppData\Local\Prompt Downloader
2015-07-08 17:22 - 2015-07-08 17:22 - 00000000 ____D C:\Program Files (x86)\Prompt Downloader
2015-07-08 17:18 - 2015-07-12 12:45 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Seznam.cz
2015-07-08 17:18 - 2015-07-12 12:41 - 00002442 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-5_user.job
2015-07-08 17:18 - 2015-07-12 12:40 - 00002442 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-5.job
2015-07-08 17:18 - 2015-07-08 17:18 - 00005472 _____ C:\Windows\System32\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-5
2015-07-08 17:18 - 2015-07-08 17:18 - 00000000 ____D C:\Program Files (x86)\Seznam.cz
2015-07-08 17:17 - 2015-07-12 13:17 - 00005514 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-6.job
2015-07-08 17:17 - 2015-07-12 13:17 - 00003134 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-1-6.job
2015-07-08 17:17 - 2015-07-12 13:17 - 00002108 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-10_user.job
2015-07-08 17:17 - 2015-07-12 12:40 - 00005178 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-7.job
2015-07-08 17:17 - 2015-07-12 12:40 - 00004154 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-3.job
2015-07-08 17:17 - 2015-07-12 12:40 - 00003134 _____ C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-1-7.job
2015-07-08 17:17 - 2015-07-09 12:26 - 00000000 ____D C:\Program Files (x86)\8074a835-88c5-402f-822d-f06a5b542c14
2015-07-08 17:17 - 2015-07-08 17:18 - 00000000 ____D C:\Program Files (x86)\CinemaP-1.9cV08.07
2015-07-08 17:17 - 2015-07-08 17:17 - 00008542 _____ C:\Windows\System32\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-6
2015-07-08 17:17 - 2015-07-08 17:17 - 00008208 _____ C:\Windows\System32\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-7
2015-07-08 17:17 - 2015-07-08 17:17 - 00007184 _____ C:\Windows\System32\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-3
2015-07-08 17:17 - 2015-07-08 17:17 - 00006164 _____ C:\Windows\System32\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-1-7
2015-07-08 17:17 - 2015-07-08 17:17 - 00006162 _____ C:\Windows\System32\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-1-6
2015-07-08 17:07 - 2015-07-08 17:07 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\NVIDIA
2015-07-08 16:58 - 2015-07-08 16:58 - 00000000 ____D C:\Users\Lenovo\Downloads\runtime
2015-07-08 16:55 - 2015-07-08 17:01 - 00000000 ____D C:\Users\Lenovo\Downloads\game
2015-07-07 16:18 - 2015-07-07 16:17 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-07-07 13:42 - 2015-07-09 12:53 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2015-07-01 21:57 - 2015-07-01 22:03 - 00000000 ____D C:\Users\Lenovo\mobogenieP2sp
2015-07-01 21:54 - 2015-07-01 21:54 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Mobogenie
2015-07-01 21:53 - 2015-07-09 20:30 - 00000000 ____D C:\Users\Lenovo\Documents\Mobogenie
2015-07-01 21:53 - 2015-07-09 20:30 - 00000000 ____D C:\Program Files (x86)\Mobogenie3
2015-07-01 21:53 - 2015-07-01 21:53 - 00000000 ____D C:\Users\Public\Documents\GenieSoft
2015-06-30 22:05 - 2015-06-30 22:05 - 01961909 _____ C:\Users\Lenovo\Desktop\Dominik uvodní video.mp4
2015-06-29 19:32 - 2015-07-09 10:27 - 00000000 ____D C:\Program Files (x86)\Adam
2015-06-29 19:26 - 2015-06-29 19:39 - 00000000 ____D C:\totalcmd
2015-06-29 19:26 - 2015-06-29 19:26 - 00000632 _____ C:\Users\Lenovo\Desktop\Total Commander.lnk
2015-06-29 19:26 - 2015-06-29 19:26 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2015-06-29 19:26 - 2015-06-29 19:26 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\GHISLER
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\UC.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\RAR.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\PKZIP.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\PKUNZIP.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\LHA.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\ARJ.PIF
2015-06-29 18:53 - 2015-06-29 18:53 - 00002702 _____ C:\Users\Lenovo\Desktop\Magisto - Magical Video Editor.lnk
2015-06-23 20:27 - 2015-06-23 20:27 - 00931408 _____ (Google Inc.) C:\Users\Lenovo\Downloads\GoogleEarthSetup.exe
2015-06-23 15:10 - 2015-06-23 15:10 - 00000000 _____ C:\dfu.log
2015-06-23 15:08 - 2015-06-23 15:08 - 00000000 ____D C:\Users\Lenovo\Downloads\Gameforge Live
2015-06-22 16:36 - 2015-06-22 16:36 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome
2015-06-22 16:33 - 2015-06-22 16:33 - 00002309 _____ C:\Users\Lenovo\Desktop\Spouštěč aplikací Chrome.lnk
2015-06-22 16:33 - 2015-06-22 16:33 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-06-21 17:59 - 2015-06-21 17:59 - 00000000 ____D C:\Users\Lenovo\Documents\Bus Simulator 2012 Demo
2015-06-21 17:59 - 2015-06-21 17:59 - 00000000 ____D C:\Users\Lenovo\AppData\Local\Bus Simulator 2012 Demo
2015-06-20 11:35 - 2015-06-20 11:35 - 00000000 ____D C:\Program Files (x86)\Microsoft Games
2015-06-20 11:21 - 2015-06-20 11:27 - 620534000 _____ (SCS Software ) C:\Users\Lenovo\Downloads\euro-truck-simulator-2_1.3.1.exe
2015-06-16 20:50 - 2015-06-16 20:50 - 00003168 _____ C:\Windows\System32\Tasks\{60580607-8D09-4465-A110-EE03995C4B97}
2015-06-16 20:46 - 2015-06-16 20:46 - 00643520 _____ (Unity Technologies ApS) C:\Users\Lenovo\Downloads\unity-web-player_4.0.1.exe
2015-06-16 20:40 - 2015-06-16 20:40 - 00000000 ____D C:\Users\Lenovo\Documents\Any Video Recorder
2015-06-16 20:40 - 2015-06-16 20:40 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\AnvSoft
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-12 13:36 - 2009-07-14 06:45 - 00014416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-12 13:36 - 2009-07-14 06:45 - 00014416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-12 13:21 - 2015-02-14 22:03 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-12 13:19 - 2015-02-14 18:47 - 01190479 _____ C:\Windows\WindowsUpdate.log
2015-07-12 12:41 - 2015-02-14 22:04 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-07-12 12:40 - 2015-02-14 22:03 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-12 12:40 - 2015-02-14 19:39 - 00000828 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
2015-07-12 12:39 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-12 10:59 - 2009-07-14 17:18 - 01428876 _____ C:\Windows\system32\perfh005.dat
2015-07-12 10:59 - 2009-07-14 17:18 - 00406990 _____ C:\Windows\system32\perfc005.dat
2015-07-12 10:59 - 2009-07-14 07:13 - 00005394 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-11 21:38 - 2009-07-14 07:08 - 00032538 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-07-11 20:06 - 2015-02-17 15:42 - 00003978 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{3DE70EA5-2B4A-457D-B519-E44B8DCD0F68}
2015-07-09 20:50 - 2015-03-05 17:49 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-07-09 12:59 - 2015-05-14 13:12 - 00000000 ____D C:\Users\Lenovo\Documents\VirtualDJ
2015-07-09 12:53 - 2015-04-23 13:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
2015-07-09 10:30 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System
2015-07-09 10:12 - 2015-02-21 11:56 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\.minecraft
2015-07-08 18:28 - 2015-02-14 19:39 - 00000830 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
2015-07-08 17:26 - 2015-03-19 10:08 - 00000000 ____D C:\Program Files (x86)\Midway Home Entertainment
2015-07-08 00:21 - 2015-02-14 22:04 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-07 16:18 - 2015-02-21 11:55 - 00000000 ____D C:\ProgramData\Oracle
2015-07-07 16:17 - 2015-02-22 17:19 - 00000000 ____D C:\Program Files (x86)\Java
2015-07-07 15:21 - 2015-02-14 19:11 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-07 13:42 - 2015-03-19 10:16 - 00000000 ____D C:\Users\Public\Documents\Softwrap
2015-07-01 21:57 - 2015-02-14 18:39 - 00000000 ____D C:\Users\Lenovo
2015-06-29 19:48 - 2015-02-14 22:03 - 00000000 ____D C:\Program Files (x86)\Google
2015-06-29 19:48 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-06-29 19:46 - 2015-04-24 19:32 - 00000000 ____D C:\Program Files (x86)\GameforgeLive
2015-06-29 19:46 - 2015-02-21 11:02 - 00000000 ____D C:\Users\Lenovo\Documents\Euro Truck Simulator 2
2015-06-29 01:05 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2015-06-23 13:30 - 2015-03-06 21:05 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-06-16 20:50 - 2015-03-16 20:00 - 00000000 __SHD C:\Users\Lenovo\AppData\Local\EmieUserList
2015-06-16 20:50 - 2015-03-16 20:00 - 00000000 __SHD C:\Users\Lenovo\AppData\Local\EmieSiteList
2015-06-16 20:50 - 2015-03-16 20:00 - 00000000 __SHD C:\Users\Lenovo\AppData\Local\EmieBrowserModeList
2015-06-16 20:46 - 2015-02-15 11:42 - 00000000 ____D C:\Users\Lenovo\AppData\Local\Unity
2015-06-14 18:12 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-06-14 10:12 - 2015-03-13 21:40 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\vlc
==================== Files in the root of some directories =======
2015-03-06 17:16 - 2015-03-06 17:18 - 0004608 _____ () C:\Users\Lenovo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
Some files in TEMP:
====================
C:\Users\Lenovo\AppData\Local\Temp\downloader.dll
C:\Users\Lenovo\AppData\Local\Temp\mytmpinstaller.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-1-7.job => C:\Program Files (x86)\Ge-Force\16569258-46d8-4da5-b693-90f0d23de2ce-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-10_user.job => C:\Program Files (x86)\Ge-Force\16569258-46d8-4da5-b693-90f0d23de2ce-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\16569258-46d8-4da5-b693-90f0d23de2ce-6.job => C:\Program Files (x86)\Ge-Force\16569258-46d8-4da5-b693-90f0d23de2ce-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\75f54a3a-df0e-4604-a974-2c6f2e36b879-1-7.job => C:\Program Files (x86)\Sense\75f54a3a-df0e-4604-a974-2c6f2e36b879-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\7c995f65-2933-43c4-9447-2f1eadce4003-1-7.job => C:\Program Files (x86)\Internet Speed Checker\7c995f65-2933-43c4-9447-2f1eadce4003-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\7c995f65-2933-43c4-9447-2f1eadce4003-10_user.job => C:\Program Files (x86)\Internet Speed Checker\7c995f65-2933-43c4-9447-2f1eadce4003-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-1-6.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-1-7.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-10_user.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-3.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-5.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-5_user.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-6.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\ac56a0df-13ce-4f41-b67b-932698d333e0-7.job => C:\Program Files (x86)\CinemaP-1.9cV08.07\ac56a0df-13ce-4f41-b67b-932698d333e0-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => c:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => c:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Lenovo\Desktop" je 62667 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog
C:\Program Files (x86)\USB Camera\VM331_STI.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor
"C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor
C:\Windows\PixArt\PAC207\Monitor.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Re: Prosím o kontrolu logu
Zdravim
Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner


- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Po spusteni probehne stazeni databaze
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
Re: Prosím o kontrolu logu
# AdwCleaner v4.208 - Log vytvořen 12/07/2015 v 18:27:30
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-07-11.1 [Server]
# Operační system : Windows 7 Home Premium Service Pack 1 (x64)
# Uživatelské jméno : Lenovo - LENOVO-PC
# Spuštěno z : C:\Users\Lenovo\Desktop\adwcleaner_4.208.exe
# Nastavení : Čištění
***** [ Služby ] *****
[#] Služba Smazáno : BrsHelper
Služba Smazáno : sbmntr
Služba Smazáno : SPDRIVER_1.42.1.2096
***** [ Soubory / Složky ] *****
Složka Smazáno : C:\ProgramData\ShopperPro
Složka Smazáno : C:\Users\Public\Documents\ShopperPro
Složka Smazáno : C:\Program Files (x86)\globalUpdate
Složka Smazáno : C:\Program Files (x86)\Sense
Složka Smazáno : C:\Program Files (x86)\ShopperPro
Složka Smazáno : C:\Program Files (x86)\YTDownloader
Složka Smazáno : C:\Program Files (x86)\Internet Speed Checker
Složka Smazáno : C:\Program Files (x86)\Ge-Force
Složka Smazáno : C:\Program Files (x86)\Prompt Downloader
Složka Smazáno : C:\Program Files (x86)\Mobogenie3
Složka Smazáno : C:\Program Files (x86)\CinemaP-1.9cV08.07
Složka Smazáno : C:\Windows\SysWOW64\config\systemprofile\Documents\Mobogenie
Složka Smazáno : C:\Users\Lenovo\mobogenieP2sp
Složka Smazáno : C:\Users\Lenovo\AppData\Local\globalUpdate
Složka Smazáno : C:\Users\Lenovo\AppData\Local\BrowserHelper
Složka Smazáno : C:\Users\Lenovo\AppData\Local\Prompt Downloader
Složka Smazáno : C:\Users\Lenovo\AppData\Roaming\Mobogenie
Složka Smazáno : C:\Users\Lenovo\Documents\Mobogenie
Soubor Smazáno : C:\Program Files\Common Files\System\SysMenu.dll
Soubor Smazáno : C:\Program Files\Common Files\System\SysMenu64.dll
***** [ Naplánované úlohy ] *****
Úloha Smazáno : ShopperPro
Úloha Smazáno : ShopperProJSUpd
Úloha Smazáno : SMupdate1
Úloha Smazáno : SPDriver
Úloha Smazáno : YTDownloader
Úloha Smazáno : YTDownloaderUpd
Úloha Smazáno : Microsoft\Windows\Multimedia\SMupdate3
Úloha Smazáno : Microsoft\Windows\Maintenance\SMupdate2
Úloha Smazáno : 16569258-46d8-4da5-b693-90f0d23de2ce-1-7
Úloha Smazáno : 16569258-46d8-4da5-b693-90f0d23de2ce-10_user
Úloha Smazáno : 16569258-46d8-4da5-b693-90f0d23de2ce-6
Úloha Smazáno : 75f54a3a-df0e-4604-a974-2c6f2e36b879-1-7
Úloha Smazáno : 7c995f65-2933-43c4-9447-2f1eadce4003-1-7
Úloha Smazáno : 7c995f65-2933-43c4-9447-2f1eadce4003-10_user
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-1-6
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-1-7
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-10_user
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-3
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-5
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-5_user
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-6
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-7
***** [ Zástupci ] *****
***** [ Registry ] *****
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\ShopperPro.DLL
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO
Klíč Smazáno : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO.1
Klíč Smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Klíč Smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Hodnota Smazáno : HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [YTDownloader]
Hodnota Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [YTDownloader]
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ShopperPro.exe
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\YTDownloader.exe
Klíč Smazáno : HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\SysMenuExt
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\SysMenu.DLL
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\globalupdate.exe
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{D813D5BB-EBC7-45F9-B8A4-36A305168069}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{6EDBF8C0-C94C-4A13-956F-E393BCA5BA4B}
Klíč Smazáno : HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\CLSID\{020B1D4B-5738-4C77-9E19-4F173DD9B486}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Smazáno : HKCU\Software\GlobalUpdate
Klíč Smazáno : HKCU\Software\InstalledBrowserExtensions
Klíč Smazáno : HKCU\Software\ShopperPro
Klíč Smazáno : HKCU\Software\YTDownloader
Klíč Smazáno : HKCU\Software\Internet Speed Checker
Klíč Smazáno : HKCU\Software\Ge-Force
Klíč Smazáno : HKCU\Software\YorkNewCin
Klíč Smazáno : HKCU\Software\HighDefAction
Klíč Smazáno : HKCU\Software\ArenaHD
Klíč Smazáno : HKCU\Software\PRODUCTSETUP
Klíč Smazáno : HKCU\Software\CinemaP-1.9cV08.07
Klíč Smazáno : HKCU\Software\CinemaP-1.9cV08.07-nv
Klíč Smazáno : HKCU\Software\CinemaP-1.9cV08.07-nv-ie
Klíč Smazáno : HKCU\Software\Ge-Force-nv
Klíč Smazáno : HKCU\Software\Ge-Force-nv-ie
Klíč Smazáno : HKCU\Software\Internet Speed Checker-nv
Klíč Smazáno : HKCU\Software\Internet Speed Checker-nv-ie
Klíč Smazáno : HKCU\Software\AppDataLow\Software\Crossrider
Klíč Smazáno : HKLM\SOFTWARE\do-searchSoftware
Klíč Smazáno : HKLM\SOFTWARE\GlobalUpdate
Klíč Smazáno : HKLM\SOFTWARE\InstalledBrowserExtensions
Klíč Smazáno : HKLM\SOFTWARE\PIP
Klíč Smazáno : HKLM\SOFTWARE\Sense
Klíč Smazáno : HKLM\SOFTWARE\ShopperPro
Klíč Smazáno : HKLM\SOFTWARE\YTDownloader
Klíč Smazáno : HKLM\SOFTWARE\Internet Speed Checker
Klíč Smazáno : HKLM\SOFTWARE\Ge-Force
Klíč Smazáno : HKLM\SOFTWARE\YorkNewCin
Klíč Smazáno : HKLM\SOFTWARE\HighDefAction
Klíč Smazáno : HKLM\SOFTWARE\ArenaHD
Klíč Smazáno : HKLM\SOFTWARE\CinemaP-1.9cV08.07
Klíč Smazáno : HKLM\SOFTWARE\CinemaP-1.9cV08.07-nv
Klíč Smazáno : HKLM\SOFTWARE\CinemaP-1.9cV08.07-nv-ie
Klíč Smazáno : HKLM\SOFTWARE\Ge-Force-nv
Klíč Smazáno : HKLM\SOFTWARE\Ge-Force-nv-ie
Klíč Smazáno : HKLM\SOFTWARE\Internet Speed Checker-nv
Klíč Smazáno : HKLM\SOFTWARE\Internet Speed Checker-nv-ie
Klíč Smazáno : HKU\.DEFAULT\Software\Mobogenie
Klíč Smazáno : HKU\.DEFAULT\Software\CinemaP-1.9cV08.07-nv-ie
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sense
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YTDownloader
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Speed Checker
Klíč Smazáno : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Klíč Smazáno : [x64] HKLM\SOFTWARE\ShopperPro
Klíč Smazáno : [x64] HKLM\SOFTWARE\YTDownloader
Klíč Smazáno : [x64] HKLM\SOFTWARE\YorkNewCin
Klíč Smazáno : [x64] HKLM\SOFTWARE\HighDefAction
Klíč Smazáno : [x64] HKLM\SOFTWARE\ArenaHD
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\globalupdate.exe
***** [ Prohlížeče ] *****
-\\ Internet Explorer v11.0.9600.17840
Nastavení Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Nastavení Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavení Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Nastavení Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Nastavení Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
-\\ Google Chrome v43.0.2357.132
[C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://do-search.com/web/?type=ds&ts=1432453710&z=696b3d5667afc47dbf45a18g0zcc2ofzew4ceq3t9w&from=cor&uid=HitachiXHTS543232A7A384_E2034233GGP46DGGP46DX&q={searchTerms}
*************************
AdwCleaner[R0].txt - [2523 bytů] - [04/05/2015 19:04:45]
AdwCleaner[R1].txt - [18055 bytů] - [12/07/2015 18:24:54]
AdwCleaner[S0].txt - [2193 bytů] - [04/05/2015 19:06:20]
AdwCleaner[S1].txt - [13777 bytů] - [12/07/2015 18:27:30]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [13836 bytů] ##########
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-07-11.1 [Server]
# Operační system : Windows 7 Home Premium Service Pack 1 (x64)
# Uživatelské jméno : Lenovo - LENOVO-PC
# Spuštěno z : C:\Users\Lenovo\Desktop\adwcleaner_4.208.exe
# Nastavení : Čištění
***** [ Služby ] *****
[#] Služba Smazáno : BrsHelper
Služba Smazáno : sbmntr
Služba Smazáno : SPDRIVER_1.42.1.2096
***** [ Soubory / Složky ] *****
Složka Smazáno : C:\ProgramData\ShopperPro
Složka Smazáno : C:\Users\Public\Documents\ShopperPro
Složka Smazáno : C:\Program Files (x86)\globalUpdate
Složka Smazáno : C:\Program Files (x86)\Sense
Složka Smazáno : C:\Program Files (x86)\ShopperPro
Složka Smazáno : C:\Program Files (x86)\YTDownloader
Složka Smazáno : C:\Program Files (x86)\Internet Speed Checker
Složka Smazáno : C:\Program Files (x86)\Ge-Force
Složka Smazáno : C:\Program Files (x86)\Prompt Downloader
Složka Smazáno : C:\Program Files (x86)\Mobogenie3
Složka Smazáno : C:\Program Files (x86)\CinemaP-1.9cV08.07
Složka Smazáno : C:\Windows\SysWOW64\config\systemprofile\Documents\Mobogenie
Složka Smazáno : C:\Users\Lenovo\mobogenieP2sp
Složka Smazáno : C:\Users\Lenovo\AppData\Local\globalUpdate
Složka Smazáno : C:\Users\Lenovo\AppData\Local\BrowserHelper
Složka Smazáno : C:\Users\Lenovo\AppData\Local\Prompt Downloader
Složka Smazáno : C:\Users\Lenovo\AppData\Roaming\Mobogenie
Složka Smazáno : C:\Users\Lenovo\Documents\Mobogenie
Soubor Smazáno : C:\Program Files\Common Files\System\SysMenu.dll
Soubor Smazáno : C:\Program Files\Common Files\System\SysMenu64.dll
***** [ Naplánované úlohy ] *****
Úloha Smazáno : ShopperPro
Úloha Smazáno : ShopperProJSUpd
Úloha Smazáno : SMupdate1
Úloha Smazáno : SPDriver
Úloha Smazáno : YTDownloader
Úloha Smazáno : YTDownloaderUpd
Úloha Smazáno : Microsoft\Windows\Multimedia\SMupdate3
Úloha Smazáno : Microsoft\Windows\Maintenance\SMupdate2
Úloha Smazáno : 16569258-46d8-4da5-b693-90f0d23de2ce-1-7
Úloha Smazáno : 16569258-46d8-4da5-b693-90f0d23de2ce-10_user
Úloha Smazáno : 16569258-46d8-4da5-b693-90f0d23de2ce-6
Úloha Smazáno : 75f54a3a-df0e-4604-a974-2c6f2e36b879-1-7
Úloha Smazáno : 7c995f65-2933-43c4-9447-2f1eadce4003-1-7
Úloha Smazáno : 7c995f65-2933-43c4-9447-2f1eadce4003-10_user
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-1-6
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-1-7
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-10_user
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-3
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-5
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-5_user
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-6
Úloha Smazáno : ac56a0df-13ce-4f41-b67b-932698d333e0-7
***** [ Zástupci ] *****
***** [ Registry ] *****
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\ShopperPro.DLL
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO
Klíč Smazáno : HKLM\SOFTWARE\Classes\ShopperPro.ShopperProBHO.1
Klíč Smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Klíč Smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Hodnota Smazáno : HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [YTDownloader]
Hodnota Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [YTDownloader]
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ShopperPro.exe
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\YTDownloader.exe
Klíč Smazáno : HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\SysMenuExt
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\SysMenu.DLL
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\globalupdate.exe
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{58FDA6AF-67D8-4198-B7CD-94B17532C8D5}
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{D813D5BB-EBC7-45F9-B8A4-36A305168069}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{6EDBF8C0-C94C-4A13-956F-E393BCA5BA4B}
Klíč Smazáno : HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{8FB1A663-2820-468B-95C4-5060A4C5F413}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\CLSID\{020B1D4B-5738-4C77-9E19-4F173DD9B486}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Classes\Interface\{03C0AC00-86DE-4B55-81BA-2E7CD61C51B1}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Klíč Smazáno : HKCU\Software\GlobalUpdate
Klíč Smazáno : HKCU\Software\InstalledBrowserExtensions
Klíč Smazáno : HKCU\Software\ShopperPro
Klíč Smazáno : HKCU\Software\YTDownloader
Klíč Smazáno : HKCU\Software\Internet Speed Checker
Klíč Smazáno : HKCU\Software\Ge-Force
Klíč Smazáno : HKCU\Software\YorkNewCin
Klíč Smazáno : HKCU\Software\HighDefAction
Klíč Smazáno : HKCU\Software\ArenaHD
Klíč Smazáno : HKCU\Software\PRODUCTSETUP
Klíč Smazáno : HKCU\Software\CinemaP-1.9cV08.07
Klíč Smazáno : HKCU\Software\CinemaP-1.9cV08.07-nv
Klíč Smazáno : HKCU\Software\CinemaP-1.9cV08.07-nv-ie
Klíč Smazáno : HKCU\Software\Ge-Force-nv
Klíč Smazáno : HKCU\Software\Ge-Force-nv-ie
Klíč Smazáno : HKCU\Software\Internet Speed Checker-nv
Klíč Smazáno : HKCU\Software\Internet Speed Checker-nv-ie
Klíč Smazáno : HKCU\Software\AppDataLow\Software\Crossrider
Klíč Smazáno : HKLM\SOFTWARE\do-searchSoftware
Klíč Smazáno : HKLM\SOFTWARE\GlobalUpdate
Klíč Smazáno : HKLM\SOFTWARE\InstalledBrowserExtensions
Klíč Smazáno : HKLM\SOFTWARE\PIP
Klíč Smazáno : HKLM\SOFTWARE\Sense
Klíč Smazáno : HKLM\SOFTWARE\ShopperPro
Klíč Smazáno : HKLM\SOFTWARE\YTDownloader
Klíč Smazáno : HKLM\SOFTWARE\Internet Speed Checker
Klíč Smazáno : HKLM\SOFTWARE\Ge-Force
Klíč Smazáno : HKLM\SOFTWARE\YorkNewCin
Klíč Smazáno : HKLM\SOFTWARE\HighDefAction
Klíč Smazáno : HKLM\SOFTWARE\ArenaHD
Klíč Smazáno : HKLM\SOFTWARE\CinemaP-1.9cV08.07
Klíč Smazáno : HKLM\SOFTWARE\CinemaP-1.9cV08.07-nv
Klíč Smazáno : HKLM\SOFTWARE\CinemaP-1.9cV08.07-nv-ie
Klíč Smazáno : HKLM\SOFTWARE\Ge-Force-nv
Klíč Smazáno : HKLM\SOFTWARE\Ge-Force-nv-ie
Klíč Smazáno : HKLM\SOFTWARE\Internet Speed Checker-nv
Klíč Smazáno : HKLM\SOFTWARE\Internet Speed Checker-nv-ie
Klíč Smazáno : HKU\.DEFAULT\Software\Mobogenie
Klíč Smazáno : HKU\.DEFAULT\Software\CinemaP-1.9cV08.07-nv-ie
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Sense
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YTDownloader
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Speed Checker
Klíč Smazáno : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Klíč Smazáno : [x64] HKLM\SOFTWARE\ShopperPro
Klíč Smazáno : [x64] HKLM\SOFTWARE\YTDownloader
Klíč Smazáno : [x64] HKLM\SOFTWARE\YorkNewCin
Klíč Smazáno : [x64] HKLM\SOFTWARE\HighDefAction
Klíč Smazáno : [x64] HKLM\SOFTWARE\ArenaHD
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\globalupdate.exe
***** [ Prohlížeče ] *****
-\\ Internet Explorer v11.0.9600.17840
Nastavení Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Nastavení Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Nastavení Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavení Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Nastavení Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Nastavení Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
-\\ Google Chrome v43.0.2357.132
[C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://do-search.com/web/?type=ds&ts=1432453710&z=696b3d5667afc47dbf45a18g0zcc2ofzew4ceq3t9w&from=cor&uid=HitachiXHTS543232A7A384_E2034233GGP46DGGP46DX&q={searchTerms}
*************************
AdwCleaner[R0].txt - [2523 bytů] - [04/05/2015 19:04:45]
AdwCleaner[R1].txt - [18055 bytů] - [12/07/2015 18:24:54]
AdwCleaner[S0].txt - [2193 bytů] - [04/05/2015 19:06:20]
AdwCleaner[S1].txt - [13777 bytů] - [12/07/2015 18:27:30]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [13836 bytů] ##########
Re: Prosím o kontrolu logu

- Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
- Do okna vlozte skript nize
Kód: Vybrat vše
autoclean; resethosts; emptyclsid; IEdefaults; FFdefaults; CHRdefaults; emptyIEcache; emptyFFcache; emptyCHRcache; emptyalltemp; emptyflash; emptyjava; emptyrecycle.bin;
- Nasledne kliknete na Run Script
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Re: Prosím o kontrolu logu
Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by Lenovo on ne 12.07.2015 at 19:06:43,56.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Lenovo\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
12.7.2015 19:08:29 Zoek.exe System Restore Point Created Successfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\Adobe deleted successfully
C:\PROGRA~2\AGEIA Technologies deleted successfully
C:\PROGRA~2\dumps deleted successfully
C:\Users\Lenovo\AppData\Roaming\Opera Software deleted successfully
C:\Users\Lenovo\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\Lenovo\AppData\Local\EmieSiteList deleted successfully
C:\Users\Lenovo\AppData\Local\EmieUserList deleted successfully
C:\Users\Lenovo\AppData\Local\Opera Software deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\PROGRA~2\Adobe not found
C:\PROGRA~2\AGEIA Technologies not found
C:\PROGRA~2\dumps not found
C:\PROGRA~2\026640d5-57d6-477c-a812-51a0ecc2960c deleted
C:\PROGRA~2\07af7af5-ea64-42dd-91ad-92e4dfaf2d57 deleted
C:\PROGRA~2\8074a835-88c5-402f-822d-f06a5b542c14 deleted
C:\PROGRA~2\c8740b62-7fbd-40ec-8261-6caaa1f87554 deleted
C:\PROGRA~3\Package Cache deleted
C:\windows\SysNative\Tasks\avastBCLRestart_chrome.exe deleted
C:\Users\Public\Documents\GenieSoft deleted
C:\Windows\Syswow64\tmp12D5.tmp deleted
C:\Windows\Syswow64\tmp12D6.tmp deleted
C:\Windows\Syswow64\tmp8A07.tmp deleted
C:\Windows\Syswow64\tmp8A08.tmp deleted
C:\Windows\Syswow64\tmp8B4E.tmp deleted
C:\Windows\Syswow64\tmp8B4F.tmp deleted
C:\Windows\Syswow64\tmpF009.tmp deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [14.02.2015 23:41]
==== Chromium Look ======================
Google Chrome Version: 43.0.2357.132
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[14.02.2015 22:03]
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[01.05.2015 11:17]
Avast Online Security - Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
CinemaP-1.9cV08.07 - Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi
==== Chromium Fix ======================
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi deleted successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lkadffjmnaiokkdncgdlecdegajoiemi_0.localstorage deleted successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lkadffjmnaiokkdncgdlecdegajoiemi_0.localstorage-journal deleted successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_lkadffjmnaiokkdncgdlecdegajoiemi_0 deleted successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lkadffjmnaiokkdncgdlecdegajoiemi deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/?clid=16194"
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.seznam.cz/?clid=16194"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{1F9C68E1-0B84-476D-9F25-21D3DFFC547A} Seznam Url="http://search.seznam.cz/?q={searchTerms ... arch_16194"
{64592E63-645F-40B9-86C9-83C96AAE1F12} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_16194"
{67DAB26F-6E48-4402-BDB0-11004D4EB26B} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_16194"
{7F8D9D5F-0323-4A1C-B3EC-88000848752F} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_16194"
{86E37279-F407-4B18-85CF-2F1318B78DCB} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_16194"
{8FA5658A-8902-455D-8E43-55F65B773C44} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_16194"
{B0A1A4C4-8EDB-4B54-B2B2-8DBBA552572F} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_16194"
{D5444259-A29C-4027-BF00-9BE018BA05E1} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_16194"
{E6340881-7E24-41FD-83AC-59F26BF1AFA3} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_16194"
==== Reset Google Chrome ======================
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Lenovo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Lenovo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=151 folders=50 95846102 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Lenovo\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Lenovo\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted
==== EOF on ne 12.07.2015 at 19:40:51,12 ======================
Tool run by Lenovo on ne 12.07.2015 at 19:06:43,56.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Lenovo\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
12.7.2015 19:08:29 Zoek.exe System Restore Point Created Successfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\Adobe deleted successfully
C:\PROGRA~2\AGEIA Technologies deleted successfully
C:\PROGRA~2\dumps deleted successfully
C:\Users\Lenovo\AppData\Roaming\Opera Software deleted successfully
C:\Users\Lenovo\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\Lenovo\AppData\Local\EmieSiteList deleted successfully
C:\Users\Lenovo\AppData\Local\EmieUserList deleted successfully
C:\Users\Lenovo\AppData\Local\Opera Software deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\PROGRA~2\Adobe not found
C:\PROGRA~2\AGEIA Technologies not found
C:\PROGRA~2\dumps not found
C:\PROGRA~2\026640d5-57d6-477c-a812-51a0ecc2960c deleted
C:\PROGRA~2\07af7af5-ea64-42dd-91ad-92e4dfaf2d57 deleted
C:\PROGRA~2\8074a835-88c5-402f-822d-f06a5b542c14 deleted
C:\PROGRA~2\c8740b62-7fbd-40ec-8261-6caaa1f87554 deleted
C:\PROGRA~3\Package Cache deleted
C:\windows\SysNative\Tasks\avastBCLRestart_chrome.exe deleted
C:\Users\Public\Documents\GenieSoft deleted
C:\Windows\Syswow64\tmp12D5.tmp deleted
C:\Windows\Syswow64\tmp12D6.tmp deleted
C:\Windows\Syswow64\tmp8A07.tmp deleted
C:\Windows\Syswow64\tmp8A08.tmp deleted
C:\Windows\Syswow64\tmp8B4E.tmp deleted
C:\Windows\Syswow64\tmp8B4F.tmp deleted
C:\Windows\Syswow64\tmpF009.tmp deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [14.02.2015 23:41]
==== Chromium Look ======================
Google Chrome Version: 43.0.2357.132
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[14.02.2015 22:03]
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[01.05.2015 11:17]
Avast Online Security - Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
CinemaP-1.9cV08.07 - Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi
==== Chromium Fix ======================
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi deleted successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lkadffjmnaiokkdncgdlecdegajoiemi_0.localstorage deleted successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lkadffjmnaiokkdncgdlecdegajoiemi_0.localstorage-journal deleted successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_lkadffjmnaiokkdncgdlecdegajoiemi_0 deleted successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lkadffjmnaiokkdncgdlecdegajoiemi deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.seznam.cz/?clid=16194"
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.seznam.cz/?clid=16194"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{1F9C68E1-0B84-476D-9F25-21D3DFFC547A} Seznam Url="http://search.seznam.cz/?q={searchTerms ... arch_16194"
{64592E63-645F-40B9-86C9-83C96AAE1F12} Novinky.cz Url="http://www.novinky.cz/hledej?w={searchT ... arch_16194"
{67DAB26F-6E48-4402-BDB0-11004D4EB26B} Seznam TV Program Url="http://tv.seznam.cz/hledej?w={searchTer ... arch_16194"
{7F8D9D5F-0323-4A1C-B3EC-88000848752F} Encyklopedie Seznam Url="http://encyklopedie.seznam.cz/search?q= ... arch_16194"
{86E37279-F407-4B18-85CF-2F1318B78DCB} Slovnˇk EN/CZ Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_16194"
{8FA5658A-8902-455D-8E43-55F65B773C44} Zbo§ˇ.cz Url="http://www.zbozi.cz/?q={searchTerms}&r= ... arch_16194"
{B0A1A4C4-8EDB-4B54-B2B2-8DBBA552572F} Mapy.cz Url="http://www.mapy.cz/?query={searchTerms} ... arch_16194"
{D5444259-A29C-4027-BF00-9BE018BA05E1} Firmy.cz Url="http://www.firmy.cz/?q={searchTerms}&so ... arch_16194"
{E6340881-7E24-41FD-83AC-59F26BF1AFA3} Slovnˇk CZ/EN Url="http://slovnik.seznam.cz/?q={searchTerm ... arch_16194"
==== Reset Google Chrome ======================
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Lenovo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Lenovo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=151 folders=50 95846102 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Lenovo\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Lenovo\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted
==== EOF on ne 12.07.2015 at 19:40:51,12 ======================
Re: Prosím o kontrolu logu
Poprosim o novy log z FRST
Re: Prosím o kontrolu logu
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:11-07-2015
Ran by Lenovo (administrator) on LENOVO-PC on 12-07-2015 20:37:19
Running from C:\Users\Lenovo\Desktop
Loaded Profiles: Lenovo (Available Profiles: Lenovo)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Users\Lenovo\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Lenovo\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(forum.viry.cz) C:\Users\Lenovo\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [8079408 2015-02-14] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [6199128 2015-02-14] (Lenovo(beijing) Limited)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2015-02-05] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-01-27] (Intel Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227648 2015-03-30] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Lenovo\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Lenovo\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\MountPoints2: {5051c6fd-18e7-11e5-865b-c0143dc679e0} - G:\Startme.exe
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\MountPoints2: {be945f2e-d3af-11e4-a608-c0143dc679e0} - D:\Setup.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-03-14] (Microsoft Corporation)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [177624 2015-02-05] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [164752 2015-02-05] (NVIDIA Corporation)
Lsa: [Notification Packages] scecli c:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2015-02-14]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-02-14] (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=16194
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {1F9C68E1-0B84-476D-9F25-21D3DFFC547A} URL = http://search.seznam.cz/?q={searchTerms ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {64592E63-645F-40B9-86C9-83C96AAE1F12} URL = http://www.novinky.cz/hledej?w={searchT ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {67DAB26F-6E48-4402-BDB0-11004D4EB26B} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {7F8D9D5F-0323-4A1C-B3EC-88000848752F} URL = http://encyklopedie.seznam.cz/search?q= ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {86E37279-F407-4B18-85CF-2F1318B78DCB} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {8FA5658A-8902-455D-8E43-55F65B773C44} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {B0A1A4C4-8EDB-4B54-B2B2-8DBBA552572F} URL = http://www.mapy.cz/?query={searchTerms} ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {D5444259-A29C-4027-BF00-9BE018BA05E1} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {E6340881-7E24-41FD-83AC-59F26BF1AFA3} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-02-14] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-07-07] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-02-14] (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-07-07] (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{405A326B-5852-4376-A9DF-BF21BE31409D}: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.52 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2011-12-01] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2011-12-01] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-07-07] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-07-07] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin HKU\S-1-5-21-2675591590-823612212-1287575946-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Lenovo\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-16] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-02-14]
Chrome:
=======
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-14]
CHR Extension: (Google Docs) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-14]
CHR Extension: (Google Drive) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-14]
CHR Extension: (YouTube) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-14]
CHR Extension: (Google Search) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-14]
CHR Extension: (Google Sheets) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-14]
CHR Extension: (Skype Click to Call) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-07-12]
CHR Extension: (Google Wallet) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-14]
CHR Extension: (Gmail) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-14]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-02-14]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-02-14] (AVAST Software)
R2 btwdins; c:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [957216 2012-03-21] (Broadcom Corporation.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2015-02-05] (NVIDIA Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2011-12-16] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2011-12-16] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128 2015-02-05] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21833360 2015-02-05] (NVIDIA Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-02-14] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [87912 2015-02-14] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-02-14] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-02-14] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-02-14] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-02-14] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-02-14] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-02-14] ()
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [163368 2012-03-20] (Broadcom Corporation.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-02-05] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2015-02-05] (NVIDIA Corporation)
S3 PAC207; C:\Windows\System32\DRIVERS\PFC027.SYS [572416 2006-12-05] (PixArt Imaging Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2015-03-26] () [File not signed]
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [952832 2011-12-06] (Vimicro Corporation)
U3 a6gxyite; C:\Windows\System32\Drivers\a6gxyite.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder)
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 L1C; system32\DRIVERS\L1C62x64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-12 20:36 - 2015-07-12 20:36 - 00112640 _____ (forum.viry.cz) C:\Users\Lenovo\Downloads\FRSTLauncher.exe
2015-07-12 20:36 - 2015-07-12 20:36 - 00112640 _____ (forum.viry.cz) C:\Users\Lenovo\Desktop\FRSTLauncher.exe
2015-07-12 19:38 - 2015-07-12 19:06 - 00024064 _____ C:\Windows\zoek-delete.exe
2015-07-12 19:08 - 2015-07-12 19:40 - 00010650 _____ C:\zoek-results.log
2015-07-12 19:06 - 2015-07-12 19:39 - 00000000 ____D C:\zoek_backup
2015-07-12 19:05 - 2015-07-12 19:05 - 01308672 _____ C:\Users\Lenovo\Desktop\zoek.exe
2015-07-12 18:24 - 2015-07-12 18:24 - 02248704 _____ C:\Users\Lenovo\Desktop\adwcleaner_4.208.exe
2015-07-12 13:37 - 2015-07-12 20:37 - 00019331 _____ C:\Users\Lenovo\Desktop\FRST.txt
2015-07-12 13:37 - 2015-07-12 20:37 - 00000000 ____D C:\FRST
2015-07-12 13:33 - 2015-07-12 13:33 - 02130944 _____ (Farbar) C:\Users\Lenovo\Desktop\FRST64.exe
2015-07-09 20:10 - 2015-07-12 19:39 - 00250126 _____ C:\Windows\PFRO.log
2015-07-09 16:54 - 2015-07-09 16:55 - 00000000 ____D C:\ff941a1c84e0a6a2ec00d8b5c4d7e5a3
2015-07-09 16:47 - 2015-07-09 16:54 - 00000000 ____D C:\Windows\system32\MRT
2015-07-09 16:47 - 2015-05-27 00:04 - 140135120 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-07-09 12:30 - 2015-07-12 19:40 - 00003024 _____ C:\Windows\setupact.log
2015-07-09 12:30 - 2015-07-09 12:30 - 00000000 _____ C:\Windows\setuperr.log
2015-07-09 12:12 - 2015-07-09 12:12 - 00030696 _____ C:\Users\Lenovo\Documents\cc_20150709_121204.reg
2015-07-09 10:25 - 2015-07-09 10:25 - 00000000 ____D C:\Users\Lenovo\AppData\Local\CrashRpt
2015-07-08 18:17 - 2015-07-12 12:40 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-07-08 17:18 - 2015-07-12 19:46 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Seznam.cz
2015-07-08 17:18 - 2015-07-08 17:18 - 00000000 ____D C:\Program Files (x86)\Seznam.cz
2015-07-08 17:07 - 2015-07-08 17:07 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\NVIDIA
2015-07-08 16:58 - 2015-07-08 16:58 - 00000000 ____D C:\Users\Lenovo\Downloads\runtime
2015-07-08 16:55 - 2015-07-08 17:01 - 00000000 ____D C:\Users\Lenovo\Downloads\game
2015-07-07 16:18 - 2015-07-07 16:17 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-07-07 13:42 - 2015-07-09 12:53 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2015-06-30 22:05 - 2015-06-30 22:05 - 01961909 _____ C:\Users\Lenovo\Desktop\Dominik uvodní video.mp4
2015-06-29 19:32 - 2015-07-09 10:27 - 00000000 ____D C:\Program Files (x86)\Adam
2015-06-29 19:26 - 2015-06-29 19:39 - 00000000 ____D C:\totalcmd
2015-06-29 19:26 - 2015-06-29 19:26 - 00000632 _____ C:\Users\Lenovo\Desktop\Total Commander.lnk
2015-06-29 19:26 - 2015-06-29 19:26 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2015-06-29 19:26 - 2015-06-29 19:26 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\GHISLER
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\UC.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\RAR.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\PKZIP.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\PKUNZIP.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\LHA.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\ARJ.PIF
2015-06-29 18:53 - 2015-06-29 18:53 - 00002702 _____ C:\Users\Lenovo\Desktop\Magisto - Magical Video Editor.lnk
2015-06-23 20:27 - 2015-06-23 20:27 - 00931408 _____ (Google Inc.) C:\Users\Lenovo\Downloads\GoogleEarthSetup.exe
2015-06-23 15:10 - 2015-06-23 15:10 - 00000000 _____ C:\dfu.log
2015-06-23 15:08 - 2015-06-23 15:08 - 00000000 ____D C:\Users\Lenovo\Downloads\Gameforge Live
2015-06-22 16:36 - 2015-06-22 16:36 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome
2015-06-22 16:33 - 2015-06-22 16:33 - 00002309 _____ C:\Users\Lenovo\Desktop\Spouštěč aplikací Chrome.lnk
2015-06-22 16:33 - 2015-06-22 16:33 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-06-21 17:59 - 2015-06-21 17:59 - 00000000 ____D C:\Users\Lenovo\Documents\Bus Simulator 2012 Demo
2015-06-21 17:59 - 2015-06-21 17:59 - 00000000 ____D C:\Users\Lenovo\AppData\Local\Bus Simulator 2012 Demo
2015-06-20 11:35 - 2015-06-20 11:35 - 00000000 ____D C:\Program Files (x86)\Microsoft Games
2015-06-20 11:21 - 2015-06-20 11:27 - 620534000 _____ (SCS Software ) C:\Users\Lenovo\Downloads\euro-truck-simulator-2_1.3.1.exe
2015-06-16 20:50 - 2015-06-16 20:50 - 00003168 _____ C:\Windows\System32\Tasks\{60580607-8D09-4465-A110-EE03995C4B97}
2015-06-16 20:46 - 2015-06-16 20:46 - 00643520 _____ (Unity Technologies ApS) C:\Users\Lenovo\Downloads\unity-web-player_4.0.1.exe
2015-06-16 20:40 - 2015-06-16 20:40 - 00000000 ____D C:\Users\Lenovo\Documents\Any Video Recorder
2015-06-16 20:40 - 2015-06-16 20:40 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\AnvSoft
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-12 20:20 - 2015-02-14 22:03 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-12 19:48 - 2009-07-14 06:45 - 00014416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-12 19:48 - 2009-07-14 06:45 - 00014416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-12 19:45 - 2015-02-14 18:47 - 01240893 _____ C:\Windows\WindowsUpdate.log
2015-07-12 19:41 - 2015-02-14 19:39 - 00000828 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
2015-07-12 19:40 - 2015-02-14 22:03 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-12 19:40 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-12 18:28 - 2015-05-04 19:04 - 00000000 ____D C:\AdwCleaner
2015-07-12 18:28 - 2015-02-14 19:39 - 00000830 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
2015-07-12 18:27 - 2015-02-14 18:39 - 00000000 ____D C:\Users\Lenovo
2015-07-12 18:27 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System
2015-07-12 12:41 - 2015-02-14 22:04 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-07-12 10:59 - 2009-07-14 17:18 - 01428876 _____ C:\Windows\system32\perfh005.dat
2015-07-12 10:59 - 2009-07-14 17:18 - 00406990 _____ C:\Windows\system32\perfc005.dat
2015-07-12 10:59 - 2009-07-14 07:13 - 00005394 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-11 21:38 - 2009-07-14 07:08 - 00032538 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-07-11 20:06 - 2015-02-17 15:42 - 00003978 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{3DE70EA5-2B4A-457D-B519-E44B8DCD0F68}
2015-07-09 20:50 - 2015-03-05 17:49 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-07-09 12:59 - 2015-05-14 13:12 - 00000000 ____D C:\Users\Lenovo\Documents\VirtualDJ
2015-07-09 12:53 - 2015-04-23 13:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
2015-07-09 10:12 - 2015-02-21 11:56 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\.minecraft
2015-07-08 17:26 - 2015-03-19 10:08 - 00000000 ____D C:\Program Files (x86)\Midway Home Entertainment
2015-07-08 00:21 - 2015-02-14 22:04 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-07 16:18 - 2015-02-21 11:55 - 00000000 ____D C:\ProgramData\Oracle
2015-07-07 16:17 - 2015-02-22 17:19 - 00000000 ____D C:\Program Files (x86)\Java
2015-07-07 15:21 - 2015-02-14 19:11 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-07 13:42 - 2015-03-19 10:16 - 00000000 ____D C:\Users\Public\Documents\Softwrap
2015-06-29 19:48 - 2015-02-14 22:03 - 00000000 ____D C:\Program Files (x86)\Google
2015-06-29 19:48 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-06-29 19:46 - 2015-04-24 19:32 - 00000000 ____D C:\Program Files (x86)\GameforgeLive
2015-06-29 19:46 - 2015-02-21 11:02 - 00000000 ____D C:\Users\Lenovo\Documents\Euro Truck Simulator 2
2015-06-29 01:05 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2015-06-23 13:30 - 2015-03-06 21:05 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-06-16 20:46 - 2015-02-15 11:42 - 00000000 ____D C:\Users\Lenovo\AppData\Local\Unity
2015-06-14 18:12 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-06-14 10:12 - 2015-03-13 21:40 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\vlc
==================== Files in the root of some directories =======
2015-03-06 17:16 - 2015-03-06 17:18 - 0004608 _____ () C:\Users\Lenovo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-06-29 00:36
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:297.99 GB) (Free:174.94 GB) NTFS
Available physical RAM: 2808.81 MB
Total physical RAM: 3941.41 MB
Percentage of memory in use: 28%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 26991DC3)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=298 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => c:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => c:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Lenovo\Desktop" je 62670 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog
C:\Program Files (x86)\USB Camera\VM331_STI.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor
"C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor
C:\Windows\PixArt\PAC207\Monitor.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Ran by Lenovo (administrator) on LENOVO-PC on 12-07-2015 20:37:19
Running from C:\Users\Lenovo\Desktop
Loaded Profiles: Lenovo (Available Profiles: Lenovo)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Users\Lenovo\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
() C:\Users\Lenovo\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTStackServer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(forum.viry.cz) C:\Users\Lenovo\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [8079408 2015-02-14] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [6199128 2015-02-14] (Lenovo(beijing) Limited)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2015-02-05] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-01-27] (Intel Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227648 2015-03-30] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Lenovo\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] ()
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Lenovo\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] ()
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\MountPoints2: {5051c6fd-18e7-11e5-865b-c0143dc679e0} - G:\Startme.exe
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\MountPoints2: {be945f2e-d3af-11e4-a608-c0143dc679e0} - D:\Setup.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-03-14] (Microsoft Corporation)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [177624 2015-02-05] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [164752 2015-02-05] (NVIDIA Corporation)
Lsa: [Notification Packages] scecli c:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2015-02-14]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-02-14] (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKU\S-1-5-21-2675591590-823612212-1287575946-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=16194
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {1F9C68E1-0B84-476D-9F25-21D3DFFC547A} URL = http://search.seznam.cz/?q={searchTerms ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {64592E63-645F-40B9-86C9-83C96AAE1F12} URL = http://www.novinky.cz/hledej?w={searchT ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {67DAB26F-6E48-4402-BDB0-11004D4EB26B} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {7F8D9D5F-0323-4A1C-B3EC-88000848752F} URL = http://encyklopedie.seznam.cz/search?q= ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {86E37279-F407-4B18-85CF-2F1318B78DCB} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {8FA5658A-8902-455D-8E43-55F65B773C44} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {B0A1A4C4-8EDB-4B54-B2B2-8DBBA552572F} URL = http://www.mapy.cz/?query={searchTerms} ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {D5444259-A29C-4027-BF00-9BE018BA05E1} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_16194
SearchScopes: HKU\S-1-5-21-2675591590-823612212-1287575946-1000 -> {E6340881-7E24-41FD-83AC-59F26BF1AFA3} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_16194
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-02-14] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-07-07] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-02-14] (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-07-07] (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{405A326B-5852-4376-A9DF-BF21BE31409D}: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.52 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2011-12-01] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2011-12-01] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-07-07] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-07-07] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin HKU\S-1-5-21-2675591590-823612212-1287575946-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Lenovo\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-16] (Unity Technologies ApS)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-02-14]
Chrome:
=======
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-14]
CHR Extension: (Google Docs) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-14]
CHR Extension: (Google Drive) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-14]
CHR Extension: (YouTube) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-14]
CHR Extension: (Google Search) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-14]
CHR Extension: (Google Sheets) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-14]
CHR Extension: (Skype Click to Call) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-07-12]
CHR Extension: (Google Wallet) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-14]
CHR Extension: (Gmail) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-14]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-02-14]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-02-14] (AVAST Software)
R2 btwdins; c:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [957216 2012-03-21] (Broadcom Corporation.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2015-02-05] (NVIDIA Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2011-12-16] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2011-12-16] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128 2015-02-05] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21833360 2015-02-05] (NVIDIA Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-02-14] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [87912 2015-02-14] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-02-14] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-02-14] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-02-14] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-02-14] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-02-14] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-02-14] ()
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [163368 2012-03-20] (Broadcom Corporation.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-02-05] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2015-02-05] (NVIDIA Corporation)
S3 PAC207; C:\Windows\System32\DRIVERS\PFC027.SYS [572416 2006-12-05] (PixArt Imaging Inc.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2015-03-26] () [File not signed]
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [952832 2011-12-06] (Vimicro Corporation)
U3 a6gxyite; C:\Windows\System32\Drivers\a6gxyite.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder)
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 L1C; system32\DRIVERS\L1C62x64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-12 20:36 - 2015-07-12 20:36 - 00112640 _____ (forum.viry.cz) C:\Users\Lenovo\Downloads\FRSTLauncher.exe
2015-07-12 20:36 - 2015-07-12 20:36 - 00112640 _____ (forum.viry.cz) C:\Users\Lenovo\Desktop\FRSTLauncher.exe
2015-07-12 19:38 - 2015-07-12 19:06 - 00024064 _____ C:\Windows\zoek-delete.exe
2015-07-12 19:08 - 2015-07-12 19:40 - 00010650 _____ C:\zoek-results.log
2015-07-12 19:06 - 2015-07-12 19:39 - 00000000 ____D C:\zoek_backup
2015-07-12 19:05 - 2015-07-12 19:05 - 01308672 _____ C:\Users\Lenovo\Desktop\zoek.exe
2015-07-12 18:24 - 2015-07-12 18:24 - 02248704 _____ C:\Users\Lenovo\Desktop\adwcleaner_4.208.exe
2015-07-12 13:37 - 2015-07-12 20:37 - 00019331 _____ C:\Users\Lenovo\Desktop\FRST.txt
2015-07-12 13:37 - 2015-07-12 20:37 - 00000000 ____D C:\FRST
2015-07-12 13:33 - 2015-07-12 13:33 - 02130944 _____ (Farbar) C:\Users\Lenovo\Desktop\FRST64.exe
2015-07-09 20:10 - 2015-07-12 19:39 - 00250126 _____ C:\Windows\PFRO.log
2015-07-09 16:54 - 2015-07-09 16:55 - 00000000 ____D C:\ff941a1c84e0a6a2ec00d8b5c4d7e5a3
2015-07-09 16:47 - 2015-07-09 16:54 - 00000000 ____D C:\Windows\system32\MRT
2015-07-09 16:47 - 2015-05-27 00:04 - 140135120 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-07-09 12:30 - 2015-07-12 19:40 - 00003024 _____ C:\Windows\setupact.log
2015-07-09 12:30 - 2015-07-09 12:30 - 00000000 _____ C:\Windows\setuperr.log
2015-07-09 12:12 - 2015-07-09 12:12 - 00030696 _____ C:\Users\Lenovo\Documents\cc_20150709_121204.reg
2015-07-09 10:25 - 2015-07-09 10:25 - 00000000 ____D C:\Users\Lenovo\AppData\Local\CrashRpt
2015-07-08 18:17 - 2015-07-12 12:40 - 00000004 _____ C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-07-08 17:18 - 2015-07-12 19:46 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Seznam.cz
2015-07-08 17:18 - 2015-07-08 17:18 - 00000000 ____D C:\Program Files (x86)\Seznam.cz
2015-07-08 17:07 - 2015-07-08 17:07 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\NVIDIA
2015-07-08 16:58 - 2015-07-08 16:58 - 00000000 ____D C:\Users\Lenovo\Downloads\runtime
2015-07-08 16:55 - 2015-07-08 17:01 - 00000000 ____D C:\Users\Lenovo\Downloads\game
2015-07-07 16:18 - 2015-07-07 16:17 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-07-07 13:42 - 2015-07-09 12:53 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2015-06-30 22:05 - 2015-06-30 22:05 - 01961909 _____ C:\Users\Lenovo\Desktop\Dominik uvodní video.mp4
2015-06-29 19:32 - 2015-07-09 10:27 - 00000000 ____D C:\Program Files (x86)\Adam
2015-06-29 19:26 - 2015-06-29 19:39 - 00000000 ____D C:\totalcmd
2015-06-29 19:26 - 2015-06-29 19:26 - 00000632 _____ C:\Users\Lenovo\Desktop\Total Commander.lnk
2015-06-29 19:26 - 2015-06-29 19:26 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2015-06-29 19:26 - 2015-06-29 19:26 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\GHISLER
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\UC.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\RAR.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\PKZIP.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\PKUNZIP.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\LHA.PIF
2015-06-29 19:26 - 2014-04-23 08:51 - 00000545 _____ C:\Windows\ARJ.PIF
2015-06-29 18:53 - 2015-06-29 18:53 - 00002702 _____ C:\Users\Lenovo\Desktop\Magisto - Magical Video Editor.lnk
2015-06-23 20:27 - 2015-06-23 20:27 - 00931408 _____ (Google Inc.) C:\Users\Lenovo\Downloads\GoogleEarthSetup.exe
2015-06-23 15:10 - 2015-06-23 15:10 - 00000000 _____ C:\dfu.log
2015-06-23 15:08 - 2015-06-23 15:08 - 00000000 ____D C:\Users\Lenovo\Downloads\Gameforge Live
2015-06-22 16:36 - 2015-06-22 16:36 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome
2015-06-22 16:33 - 2015-06-22 16:33 - 00002309 _____ C:\Users\Lenovo\Desktop\Spouštěč aplikací Chrome.lnk
2015-06-22 16:33 - 2015-06-22 16:33 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-06-21 17:59 - 2015-06-21 17:59 - 00000000 ____D C:\Users\Lenovo\Documents\Bus Simulator 2012 Demo
2015-06-21 17:59 - 2015-06-21 17:59 - 00000000 ____D C:\Users\Lenovo\AppData\Local\Bus Simulator 2012 Demo
2015-06-20 11:35 - 2015-06-20 11:35 - 00000000 ____D C:\Program Files (x86)\Microsoft Games
2015-06-20 11:21 - 2015-06-20 11:27 - 620534000 _____ (SCS Software ) C:\Users\Lenovo\Downloads\euro-truck-simulator-2_1.3.1.exe
2015-06-16 20:50 - 2015-06-16 20:50 - 00003168 _____ C:\Windows\System32\Tasks\{60580607-8D09-4465-A110-EE03995C4B97}
2015-06-16 20:46 - 2015-06-16 20:46 - 00643520 _____ (Unity Technologies ApS) C:\Users\Lenovo\Downloads\unity-web-player_4.0.1.exe
2015-06-16 20:40 - 2015-06-16 20:40 - 00000000 ____D C:\Users\Lenovo\Documents\Any Video Recorder
2015-06-16 20:40 - 2015-06-16 20:40 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\AnvSoft
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-12 20:20 - 2015-02-14 22:03 - 00000952 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-12 19:48 - 2009-07-14 06:45 - 00014416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-12 19:48 - 2009-07-14 06:45 - 00014416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-12 19:45 - 2015-02-14 18:47 - 01240893 _____ C:\Windows\WindowsUpdate.log
2015-07-12 19:41 - 2015-02-14 19:39 - 00000828 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
2015-07-12 19:40 - 2015-02-14 22:03 - 00000948 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-12 19:40 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-12 18:28 - 2015-05-04 19:04 - 00000000 ____D C:\AdwCleaner
2015-07-12 18:28 - 2015-02-14 19:39 - 00000830 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
2015-07-12 18:27 - 2015-02-14 18:39 - 00000000 ____D C:\Users\Lenovo
2015-07-12 18:27 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System
2015-07-12 12:41 - 2015-02-14 22:04 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-07-12 10:59 - 2009-07-14 17:18 - 01428876 _____ C:\Windows\system32\perfh005.dat
2015-07-12 10:59 - 2009-07-14 17:18 - 00406990 _____ C:\Windows\system32\perfc005.dat
2015-07-12 10:59 - 2009-07-14 07:13 - 00005394 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-11 21:38 - 2009-07-14 07:08 - 00032538 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-07-11 20:06 - 2015-02-17 15:42 - 00003978 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{3DE70EA5-2B4A-457D-B519-E44B8DCD0F68}
2015-07-09 20:50 - 2015-03-05 17:49 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-07-09 12:59 - 2015-05-14 13:12 - 00000000 ____D C:\Users\Lenovo\Documents\VirtualDJ
2015-07-09 12:53 - 2015-04-23 13:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
2015-07-09 10:12 - 2015-02-21 11:56 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\.minecraft
2015-07-08 17:26 - 2015-03-19 10:08 - 00000000 ____D C:\Program Files (x86)\Midway Home Entertainment
2015-07-08 00:21 - 2015-02-14 22:04 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-07 16:18 - 2015-02-21 11:55 - 00000000 ____D C:\ProgramData\Oracle
2015-07-07 16:17 - 2015-02-22 17:19 - 00000000 ____D C:\Program Files (x86)\Java
2015-07-07 15:21 - 2015-02-14 19:11 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-07 13:42 - 2015-03-19 10:16 - 00000000 ____D C:\Users\Public\Documents\Softwrap
2015-06-29 19:48 - 2015-02-14 22:03 - 00000000 ____D C:\Program Files (x86)\Google
2015-06-29 19:48 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-06-29 19:46 - 2015-04-24 19:32 - 00000000 ____D C:\Program Files (x86)\GameforgeLive
2015-06-29 19:46 - 2015-02-21 11:02 - 00000000 ____D C:\Users\Lenovo\Documents\Euro Truck Simulator 2
2015-06-29 01:05 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2015-06-23 13:30 - 2015-03-06 21:05 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-06-16 20:46 - 2015-02-15 11:42 - 00000000 ____D C:\Users\Lenovo\AppData\Local\Unity
2015-06-14 18:12 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-06-14 10:12 - 2015-03-13 21:40 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\vlc
==================== Files in the root of some directories =======
2015-03-06 17:16 - 2015-03-06 17:18 - 0004608 _____ () C:\Users\Lenovo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-06-29 00:36
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:297.99 GB) (Free:174.94 GB) NTFS
Available physical RAM: 2808.81 MB
Total physical RAM: 3941.41 MB
Percentage of memory in use: 28%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 26991DC3)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=298 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => c:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => c:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Lenovo\Desktop" je 62670 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\331BigDog
C:\Program Files (x86)\USB Camera\VM331_STI.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor
"C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor
C:\Windows\PixArt\PAC207\Monitor.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Re: Prosím o kontrolu logu

- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start CloseProcesses: CreateRestorePoint: HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation) HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] () HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Lenovo\AppData\Roaming\Seznam.cz\szninstall.exe [1062472 2013-05-16] () HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Lenovo\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [103080 2015-05-26] () HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\MountPoints2: {5051c6fd-18e7-11e5-865b-c0143dc679e0} - G:\Startme.exe HKU\S-1-5-21-2675591590-823612212-1287575946-1000\...\MountPoints2: {be945f2e-d3af-11e4-a608-c0143dc679e0} - D:\Setup.exe HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-03-14] (Microsoft Corporation) SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation) CHR Extension: (Skype Click to Call) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-07-12] R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation) U3 a6gxyite; C:\Windows\System32\Drivers\a6gxyite.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 L1C; system32\DRIVERS\L1C62x64.sys [X] C:\Program Files (x86)\Skype\Toolbars 2015-07-12 20:36 - 2015-07-12 20:36 - 00112640 _____ (forum.viry.cz) C:\Users\Lenovo\Downloads\FRSTLauncher.exe 2015-07-12 20:36 - 2015-07-12 20:36 - 00112640 _____ (forum.viry.cz) C:\Users\Lenovo\Desktop\FRSTLauncher.exe 2015-07-12 19:38 - 2015-07-12 19:06 - 00024064 _____ C:\Windows\zoek-delete.exe 2015-07-12 19:08 - 2015-07-12 19:40 - 00010650 _____ C:\zoek-results.log 2015-07-12 19:06 - 2015-07-12 19:39 - 00000000 ____D C:\zoek_backup 2015-07-12 19:05 - 2015-07-12 19:05 - 01308672 _____ C:\Users\Lenovo\Desktop\zoek.exe 2015-07-12 18:24 - 2015-07-12 18:24 - 02248704 _____ C:\Users\Lenovo\Desktop\adwcleaner_4.208.exe 2015-07-12 13:37 - 2015-07-12 20:37 - 00019331 _____ C:\Users\Lenovo\Desktop\FRST.txt Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => c:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => c:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe DeleteKey: HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched Hosts: EmptyTemp: Reboot: End
- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST

- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt
