
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Spomalený chrome/PC -DISCOUNT reklamy,extremne zavírený
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Spomalený chrome/PC -DISCOUNT reklamy,extremne zavírený
Vedel by mi prosím pomôct s PC? Všade vyskakuje Discound buddy, ...rovnako aj PC spomalený, skúšal som vymazávať aj extensions v Chrome, ale to sa nainstaluje naspet
Ďakujem
--------------------
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:09-08-2015
Ran by Pepo (administrator) on KLARIK (10-08-2015 23:43:43)
Running from C:\Users\Peter\Desktop
Loaded Profiles: Pepo (Available Profiles: Pepo & DefaultAppPool)
Platform: Windows 8.1 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
() C:\Program Files (x86)\Abrupt Quote\Abrupt Quote.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Fork Ltd.) C:\Prey\platform\windows\cronsvc.exe
(Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe
() C:\Program Files (x86)\Succulent Girlfriend\Succulent Girlfriend.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Qualcomm Atheros) C:\Program Files (x86)\Bluetooth Suite\BtTray.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
() C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(VideoLAN) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-01-21] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKU\S-1-5-21-3169770814-2687663565-890848358-1001\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hppp&ts ... XXW0V2RYK0
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hppp&ts ... XXW0V2RYK0
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
HKU\S-1-5-21-3169770814-2687663565-890848358-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=dsp ... earchTerms}
SearchScopes: HKU\S-1-5-21-3169770814-2687663565-890848358-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search
SearchScopes: HKU\S-1-5-21-3169770814-2687663565-890848358-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search
BHO: DioscounntExTEnSi -> {52BF42EA-46C1-45CE-A5B0-755C87BB9CFD} -> C:\Program Files (x86)\DioscounntExTEnSi\SpdDE7xFSPVmIi.x64.dll [2015-07-31] ()
BHO: GReatSiave4U -> {69964B79-5308-4868-AF97-18166ACF92ED} -> C:\Program Files (x86)\GReatSiave4U\AQAos6eNhSmTiZ.x64.dll [2015-08-06] ()
BHO-x32: DioscounntExTEnSi -> {52BF42EA-46C1-45CE-A5B0-755C87BB9CFD} -> C:\Program Files (x86)\DioscounntExTEnSi\SpdDE7xFSPVmIi.dll [2015-07-31] ()
BHO-x32: GReatSiave4U -> {69964B79-5308-4868-AF97-18166ACF92ED} -> C:\Program Files (x86)\GReatSiave4U\AQAos6eNhSmTiZ.dll [2015-08-06] ()
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{C7EF0772-77B2-4BAA-A628-3EF01B3E1455}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{D555A6BC-C9FA-4E58-8DB8-9591910625D5}: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-17] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-17] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Reader 3\npnitromozilla.dll [2013-07-26] (Nitro PDF)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-14] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3
CHR Extension: (DrWeb AntiVirus Link Checker) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aleggpabliehgbeagmfhnodcijcmbonb [2015-07-31]
CHR Extension: (ColorZilla) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\bhlhnicpbhignbdhedgjhgdocnmhomnp [2015-07-14]
CHR Extension: (Adblock Plus) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-07-14]
CHR Extension: (Facebook Customizer (by Adblock Plus)) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm [2015-07-14]
CHR Extension: (Talk and Comment for ) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\djnhkfljnimcpelfndpcjcgngmefaobl [2015-08-06]
CHR Extension: (Facebook Unseen) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\iicapmagmhahddefgokbabbgieiogjop [2015-07-14]
CHR Extension: (Color Picker) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\jcmgligingjhdnhdhgepemlckgcgmgaj [2015-07-14]
CHR Extension: (Skype Click to Call) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-07-02]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-14]
CHR HKLM\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]
Opera:
=======
OPR Extension: (No Name) - C:\Users\Peter\AppData\Roaming\Opera Software\Opera Stable\Extensions\hfmijjkdjheadkpejemopocfjbepodlp [2014-04-18]
OPR Extension: (No Name) - C:\Users\Peter\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2013-10-17]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 Abrupt Quote; C:\Program Files (x86)\Abrupt Quote\Abrupt Quote.exe [8016131 2015-06-11] () [File not signed] <==== ATTENTION
R3 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.)
R3 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [211584 2012-08-10] (Qualcomm Atheros Commnucations) [File not signed]
R3 CronService; C:\Prey\platform\windows\cronsvc.exe [23552 2013-05-08] (Fork Ltd.) [File not signed]
R3 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2015-06-17] (Ellora Assets Corp.) [File not signed]
R3 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation)
R3 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation)
S2 KMService; C:\WINDOWS\SysWOW64\srvany.exe [8192 2003-04-18] () [File not signed]
R3 NitroReaderDriverReadSpool3; C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe [230416 2013-07-26] (Nitro PDF Software)
R3 Succulent Girlfriend; C:\Program Files (x86)\Succulent Girlfriend\Succulent Girlfriend.exe [8016391 2015-07-25] () [File not signed] <==== ATTENTION
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-03-01] (Microsoft Corporation)
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [546304 2014-03-01] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R3 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2012-08-10] (Atheros) [File not signed]
S2 ekrn; "C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe" [X]
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ATP; C:\Windows\System32\drivers\AsusTP.sys [62848 2012-11-20] (ASUS Corporation)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [76952 2012-08-10] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2013-11-19] (Disc Soft Ltd)
S3 ESETCleanersDriver; C:\Windows\system32\Drivers\ESETCleanersDriver.sys [170280 2015-07-13] (ESET)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [14992 2012-08-02] ( )
S3 NdisImPlatformMp; C:\Windows\system32\DRIVERS\NdisImPlatform.sys [126464 2014-07-24] (Microsoft Corporation)
S3 Netaapl; C:\Windows\system32\DRIVERS\netaapl64.sys [23040 2013-07-25] (Apple Inc.) [File not signed]
R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc.)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2014-03-18] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-10 23:43 - 2015-08-10 23:44 - 00017049 _____ C:\Users\Peter\Desktop\FRST.txt
2015-08-10 23:43 - 2015-08-10 23:43 - 00000000 ____D C:\FRST
2015-08-10 23:42 - 2015-08-10 23:42 - 02171392 _____ (Farbar) C:\Users\Peter\Desktop\FRST64.exe
2015-08-10 23:29 - 2015-08-10 23:29 - 00602112 _____ (OldTimer Tools) C:\Users\Peter\Desktop\OTL.exe
2015-08-10 23:17 - 2015-08-10 23:17 - 00000000 ____D C:\Users\Peter\Desktop\Otecko - Otis (2015)
2015-08-08 10:38 - 2015-08-08 10:42 - 1305607342 _____ C:\Users\Peter\Desktop\Velký Gatsby .2013 CZ Titulky v obraze .avi
2015-08-06 20:17 - 2015-08-06 20:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDD Health
2015-08-06 20:17 - 2015-08-06 20:17 - 00000000 ____D C:\Program Files (x86)\HDD Health
2015-08-06 20:12 - 2015-08-06 20:12 - 00001200 _____ C:\Users\Peter\Desktop\CrystalDiskInfo.lnk
2015-08-06 20:12 - 2015-08-06 20:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2015-08-06 20:12 - 2015-08-06 20:12 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2015-08-06 17:51 - 2015-08-06 17:52 - 00000000 ____D C:\Program Files (x86)\GReatSiave4U
2015-08-06 17:51 - 2015-08-06 17:51 - 00000000 ____D C:\ProgramData\hljbkibjmfefajajccpkhfedmccdnlee
2015-08-06 17:50 - 2015-08-08 08:26 - 00000000 ____D C:\Users\Peter\Desktop\Nový priečinok (2)
2015-08-01 21:28 - 2015-08-01 21:28 - 00000000 ____D C:\Users\Peter\Desktop\Nový priečinok
2015-07-31 13:04 - 2015-07-31 13:04 - 00000000 ____D C:\ProgramData\bieebbofodliailegdobpcegaiccgkij
2015-07-31 13:04 - 2015-07-31 13:04 - 00000000 ____D C:\Program Files (x86)\DioscounntExTEnSi
2015-07-28 19:00 - 2015-07-28 19:04 - 733317120 _____ C:\Users\Peter\Desktop\82 - Zohan-kricí jméno Kadeřník http://www.hellbourne.cz.tl.avi
2015-07-27 22:33 - 2015-07-27 22:35 - 763146500 _____ C:\Users\Peter\Desktop\Wallander_03x01.web-rip.xvid.cz.avi
2015-07-27 21:25 - 2015-07-27 21:30 - 00000000 ____D C:\Users\Peter\Desktop\James.Mays.Cars.Of.The.People.S01E01.HDTV.x264-FTP[rarbg]
2015-07-27 21:25 - 2015-07-27 21:25 - 00041275 _____ C:\Users\Peter\Desktop\James.Mays.Cars.Of.The.People.S01E01.HDTV.x264-FTP[rartv]-[rarbg.com].torrent
2015-07-27 21:07 - 2015-07-27 21:07 - 00031036 _____ C:\Users\Peter\Desktop\James-May-s-Cars-of-the-People-S01E01(0000240566).zip
2015-07-27 21:04 - 2015-07-27 21:04 - 00113346 _____ C:\Users\Peter\Desktop\James Mays Cars Of The People S01E01 720p HDTV x264-FTP ---[www.bts.to]--- .torrent
2015-07-27 21:04 - 2015-07-27 21:04 - 00000000 ____D C:\Users\Peter\Desktop\James.Mays.Cars.Of.The.People.S01E01.720p.HDTV.x264-FTP[et]
2015-07-27 18:02 - 2015-07-27 18:02 - 00000000 _____ C:\Users\Peter\AppData\Local\{9D9B5A3D-9282-4C91-A45F-5A4F275B6528}
2015-07-26 17:41 - 2015-07-26 17:42 - 00105740 _____ C:\Windows\DirectX.log
2015-07-26 17:35 - 2015-07-26 17:35 - 00001804 _____ C:\Users\Public\Desktop\Play Caesar IV!.lnk
2015-07-26 17:35 - 2015-07-26 17:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra
2015-07-26 17:35 - 2015-07-26 17:35 - 00000000 ____D C:\Program Files (x86)\Sierra
2015-07-26 17:33 - 2015-07-26 17:33 - 00000000 ____D C:\Users\Peter\AppData\Roaming\InstallShield
2015-07-26 17:24 - 2015-07-26 17:24 - 01709792 _____ (Disc Soft Ltd.) C:\Users\Peter\Desktop\DTLiteInstaller.exe
2015-07-26 15:31 - 2011-11-06 19:44 - 00000000 ____D C:\Users\Peter\Desktop\Caesar IV(CZ+CRACK+CD KEY)
2015-07-26 15:23 - 2015-07-26 15:31 - 1559731164 _____ C:\Users\Peter\Desktop\Caesar IV(CZ+CRACK+CD KEY).rar
2015-07-25 19:41 - 2015-07-25 19:41 - 00000000 ____D C:\Program Files (x86)\Succulent Girlfriend
2015-07-22 00:03 - 2015-07-14 16:14 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-07-22 00:03 - 2015-07-14 16:14 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-07-22 00:03 - 2015-07-14 16:14 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-07-22 00:03 - 2015-07-14 16:13 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-07-19 23:18 - 2015-07-19 23:19 - 00034740 _____ C:\Users\Peter\Desktop\Game.of.Thrones.S05E09.PROPER.HDTV.x264-KILLERS (1).srt
2015-07-19 23:18 - 2015-07-19 23:18 - 00037754 _____ C:\Users\Peter\Desktop\Game.of.Thrones.S05E10.HDTV.x264-KILLERS (1).srt
2015-07-19 18:24 - 2015-07-19 18:45 - 00000000 ____D C:\Users\Peter\Desktop\Ted 2 2015 NEW UNCENSORED 720p HC HDRIP x264 AC3 TiTAN
2015-07-19 17:56 - 2015-07-19 17:56 - 00021803 _____ C:\Users\Peter\Desktop\The-Sopranos-S04E12(0000044062).zip
2015-07-19 17:45 - 2015-07-19 17:45 - 00026263 _____ C:\Users\Peter\Desktop\The-Sopranos-S04E13(0000044135).zip
2015-07-19 17:44 - 2015-07-19 17:56 - 00000000 ____D C:\Users\Peter\Desktop\The Sopranos 480p WEB-DL x264 Complete season 4
2015-07-19 12:25 - 2010-12-23 21:50 - 00000000 ____D C:\Users\Peter\Desktop\Delik & Bene - Zablesky geniality,ulomky sialenstva 2010
2015-07-19 12:22 - 2014-03-27 22:23 - 00000000 ____D C:\Users\Peter\Desktop\H16 - Kvalitny material
2015-07-18 21:52 - 2015-07-18 21:52 - 00045617 _____ C:\Users\Peter\Desktop\Game.of.Thrones.S05E08.HDTV.x264-KILLERS (1).srt
2015-07-17 21:55 - 2015-07-17 21:57 - 559994600 _____ C:\Users\Peter\Desktop\Hra o truny .Game of Thrones S05E07 CZ Dabing Dar.avi
2015-07-17 21:46 - 2015-08-10 23:24 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-07-17 21:46 - 2015-07-17 21:46 - 00003718 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-07-15 21:23 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-07-15 21:23 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-07-15 21:23 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-07-15 21:23 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-07-15 21:23 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-07-15 21:23 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-07-15 21:23 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-07-15 21:23 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-07-15 21:23 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-07-15 21:23 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-07-15 21:23 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-07-15 21:23 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-07-15 21:23 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-07-15 21:23 - 2015-06-25 04:31 - 04177920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-07-15 21:23 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-07-15 21:23 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-07-15 21:23 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-07-15 21:23 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-07-15 21:23 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-07-15 21:23 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-07-15 21:23 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-07-15 21:23 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-07-15 21:23 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-07-15 21:23 - 2014-10-29 06:03 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-07-15 21:23 - 2014-10-29 04:44 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-07-15 21:23 - 2014-10-29 04:22 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-07-15 21:23 - 2014-10-29 03:42 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-07-15 21:22 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll
2015-07-15 21:22 - 2014-10-29 03:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll
2015-07-15 21:21 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-07-15 21:21 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-07-15 21:21 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-07-15 21:21 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-07-15 21:21 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-07-15 21:21 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-07-15 21:20 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-07-15 21:20 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-07-15 21:20 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-07-15 21:20 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-07-15 21:20 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-07-15 21:20 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-07-15 21:20 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-07-15 21:20 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-07-15 21:20 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-07-15 21:20 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-07-15 21:20 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-07-15 21:20 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-07-15 21:20 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-07-15 21:20 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-07-15 21:20 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-07-15 21:20 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-07-15 21:20 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-07-15 21:20 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-07-15 21:20 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-07-15 21:20 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-07-15 21:20 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-07-15 21:20 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-07-15 21:20 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-07-15 21:20 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-07-15 21:20 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-07-15 21:20 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-07-15 21:20 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-07-15 21:20 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-07-15 21:20 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-07-15 21:20 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-07-15 21:20 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-07-15 21:20 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-07-15 21:20 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-07-15 21:20 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-07-15 21:20 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-07-15 21:20 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-07-15 21:20 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-07-15 21:20 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-07-15 21:20 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-07-15 21:20 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-07-15 21:20 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-07-15 21:20 - 2015-05-07 18:47 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-07-15 21:20 - 2015-03-11 03:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-07-15 21:20 - 2015-03-11 03:09 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-07-15 21:20 - 2014-10-29 04:45 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-07-15 21:20 - 2014-10-29 04:00 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2015-07-15 21:20 - 2014-10-29 04:00 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2015-07-14 23:58 - 2015-07-15 00:00 - 412224492 _____ C:\Users\Peter\Desktop\True.Detective.S02E01.HDTV.x264-KILLERS.mp4
2015-07-14 23:54 - 2015-07-14 23:54 - 00041374 _____ C:\Users\Peter\Desktop\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG).srt
2015-07-14 23:53 - 2015-07-14 23:53 - 00041374 _____ C:\Users\Peter\Downloads\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG) (2).srt
2015-07-14 23:53 - 2015-07-14 23:53 - 00041374 _____ C:\Users\Peter\Downloads\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG) (1).srt
2015-07-14 23:53 - 2015-07-14 23:53 - 00000000 ____D C:\Users\Peter\Desktop\True.Detective.S02E04.HDTV.x264-ASAP[ettv]
2015-07-14 23:52 - 2015-07-14 23:52 - 00002687 _____ C:\Users\Peter\Desktop\µTorrent.lnk
2015-07-14 23:51 - 2015-07-14 23:51 - 01993056 _____ (BitTorrent Inc.) C:\Users\Peter\Downloads\uTorrent.exe
2015-07-14 23:50 - 2015-07-14 23:50 - 00030444 _____ C:\Users\Peter\Downloads\[kickass.proxyindex.net]true.detective.s02e04.hdtv.x264.asap.ettv.torrent
2015-07-14 23:50 - 2015-07-14 23:50 - 00030444 _____ C:\Users\Peter\Downloads\[kickass.proxyindex.net]true.detective.s02e04.hdtv.x264.asap.ettv (1).torrent
2015-07-14 23:46 - 2015-07-14 23:46 - 00041374 _____ C:\Users\Peter\Downloads\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG).srt
2015-07-14 23:24 - 2015-07-14 23:24 - 00003168 _____ C:\Windows\DPINST.LOG
2015-07-14 23:21 - 2015-07-29 18:36 - 00002217 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-14 23:21 - 2015-07-14 23:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-07-13 23:04 - 2015-08-09 16:59 - 00000401 _____ C:\Users\Peter\AppData\Roaming\sp_data.sys
2015-07-13 22:23 - 2015-07-13 22:23 - 00000000 ____D C:\Program Files\WinPcap
2015-07-13 22:22 - 2015-07-13 22:27 - 00000000 ____D C:\Users\Peter\Documents\Freemake
2015-07-13 22:22 - 2015-07-13 22:23 - 00000000 ____D C:\ProgramData\Freemake
2015-07-13 22:22 - 2015-07-13 22:22 - 00001350 _____ C:\Users\Public\Desktop\Freemake Video Downloader.lnk
2015-07-13 22:22 - 2015-07-13 22:22 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
2015-07-13 22:22 - 2015-07-13 22:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake
2015-07-13 22:22 - 2015-07-13 22:22 - 00000000 ____D C:\Program Files (x86)\Freemake
2015-07-13 22:15 - 2015-07-13 22:15 - 00001767 _____ C:\Users\Public\Desktop\iTunes.lnk
2015-07-13 22:15 - 2015-07-13 22:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-07-13 22:14 - 2012-10-03 16:14 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2015-07-13 22:13 - 2015-07-13 22:14 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-07-13 22:13 - 2015-07-13 22:14 - 00000000 ____D C:\Program Files\iTunes
2015-07-13 22:13 - 2015-07-13 22:13 - 00000000 ____D C:\Program Files\iPod
2015-07-13 22:13 - 2015-07-13 22:13 - 00000000 ____D C:\Program Files (x86)\iTunes
2015-07-13 22:09 - 2015-07-13 22:09 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2015-07-13 22:09 - 2015-07-13 22:09 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2015-07-13 22:05 - 2015-07-14 00:02 - 00000000 ____D C:\Users\Peter\Desktop\hudba-zdielana
2015-07-13 18:24 - 2015-08-10 23:15 - 01443701 _____ C:\Windows\WindowsUpdate.log
2015-07-13 18:20 - 2015-08-10 22:24 - 00005598 _____ C:\Windows\setupact.log
2015-07-13 18:20 - 2015-07-27 18:00 - 00006528 _____ C:\Windows\PFRO.log
2015-07-13 18:20 - 2015-07-13 18:20 - 00000000 _____ C:\Windows\setuperr.log
2015-07-13 17:19 - 2015-07-13 17:19 - 03034492 _____ (Malwarebytes Corporation) C:\Users\Peter\Desktop\JRT.exe
2015-07-13 16:50 - 2015-07-13 16:50 - 00170280 _____ (ESET) C:\Windows\system32\Drivers\ESETCleanersDriver.sys
2015-07-13 16:30 - 2015-07-13 16:30 - 00000000 ____D C:\ProgramData\ESET
2015-07-13 16:30 - 2015-07-13 16:30 - 00000000 ____D C:\Program Files\ESET
2015-07-13 13:14 - 2015-08-08 07:57 - 00000000 ____D C:\Windows\pss
2015-07-13 12:52 - 2015-07-13 12:52 - 00039068 _____ C:\Users\Peter\Downloads\Game.Of.Thrones.S05E04.720p.HDTV.x264-0SEC.srt
2015-07-13 02:35 - 2015-07-13 02:35 - 00000000 ____D C:\Users\Peter\AppData\Local\Chris_Pietschmann_(http__
2015-07-13 02:32 - 2015-07-13 17:20 - 00000000 ____D C:\Program Files (x86)\Virtual Router
2015-07-13 02:23 - 2015-07-13 02:29 - 00000000 ____D C:\ProgramData\VirtualWifiRouter
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-10 23:40 - 2013-10-02 19:55 - 00000000 ____D C:\Users\Peter\AppData\Roaming\AIMP3
2015-08-10 23:26 - 2014-07-25 18:59 - 00000000 ____D C:\Users\Peter\AppData\Local\Google
2015-08-10 23:03 - 2012-07-26 09:59 - 00000000 ____D C:\Windows\CbsTemp
2015-08-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-08-10 22:23 - 2013-08-28 00:03 - 00000000 ____D C:\Users\Peter\AppData\Roaming\vlc
2015-08-09 16:59 - 2013-01-24 04:17 - 00003056 _____ C:\Windows\System32\Tasks\ASUS P4G
2015-08-09 16:59 - 2013-01-24 04:15 - 00003028 _____ C:\Windows\System32\Tasks\ASUS USB Charger Plus
2015-08-08 21:39 - 2014-03-01 12:24 - 00105992 _____ C:\Windows\system32\perfh01B.dat
2015-08-08 21:39 - 2014-03-01 12:24 - 00037210 _____ C:\Windows\system32\perfc01B.dat
2015-08-08 21:39 - 2013-09-30 06:18 - 01120408 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-08 13:02 - 2013-08-27 23:23 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3169770814-2687663565-890848358-1001
2015-08-08 07:57 - 2013-01-24 04:26 - 00003704 _____ C:\Windows\system32\ServiceFilter.ini
2015-08-08 01:28 - 2013-11-12 14:25 - 00000000 ____D C:\Users\Peter
2015-08-06 18:51 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2015-08-01 20:04 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-27 22:31 - 2013-08-28 00:28 - 00000000 ____D C:\Users\Peter\AppData\Roaming\uTorrent
2015-07-26 17:35 - 2013-01-24 03:56 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-26 17:33 - 2013-11-19 22:19 - 00000000 ____D C:\Users\Peter\AppData\Roaming\DAEMON Tools Lite
2015-07-25 21:04 - 2013-09-01 09:04 - 00000000 ____D C:\Windows\system32\MRT
2015-07-25 19:38 - 2013-08-22 16:44 - 00410456 _____ C:\Windows\system32\FNTCACHE.DAT
2015-07-25 19:36 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-07-18 20:15 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2015-07-17 21:46 - 2013-08-27 23:26 - 00000000 ____D C:\Users\Peter\AppData\Local\Adobe
2015-07-15 23:26 - 2014-01-07 22:25 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-07-14 23:24 - 2012-11-23 15:07 - 00000000 ____D C:\Program Files (x86)\ASUS
2015-07-14 23:23 - 2013-08-27 23:23 - 00000000 ____D C:\Users\Peter\AppData\Local\Opera Software
2015-07-14 23:23 - 2013-08-27 23:23 - 00000000 ____D C:\Program Files (x86)\Opera
2015-07-14 23:21 - 2014-07-25 18:59 - 00000000 ____D C:\Program Files (x86)\Google
2015-07-13 23:10 - 2013-08-22 17:38 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-13 23:10 - 2013-08-22 17:38 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-13 22:13 - 2013-09-22 21:26 - 00000000 ____D C:\Program Files\Common Files\Apple
2015-07-13 17:47 - 2012-11-23 15:06 - 00000000 ____D C:\ProgramData\Adobe
2015-07-13 17:42 - 2014-07-09 23:11 - 00000000 ____D C:\Windows\Minidump
2015-07-13 17:42 - 2013-09-07 00:05 - 00000000 ____D C:\Users\Peter\AppData\Local\CrashDumps
2015-07-13 17:32 - 2014-03-01 11:37 - 00000000 ____D C:\ProgramData\Skype
2015-07-13 17:31 - 2014-07-07 15:36 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-07-13 17:31 - 2014-03-01 12:21 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Skype
2015-07-13 17:31 - 2012-11-23 15:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2015-07-13 17:24 - 2015-03-12 11:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rhinoceros 5
2015-07-13 17:23 - 2015-04-17 21:05 - 00000000 ____D C:\Users\Peter\AppData\Local\pip
2015-07-13 17:22 - 2013-12-01 23:50 - 00098608 _____ C:\Users\Peter\AppData\Local\GDIPFONTCACHEV1.DAT
2015-07-13 17:22 - 2013-12-01 00:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codec Pack
2015-07-13 17:21 - 2014-02-28 20:00 - 00000000 ____D C:\Users\Peter\AppData\Local\Facebook
2015-07-13 17:16 - 2015-06-08 16:37 - 00000000 ____D C:\Users\Peter\Desktop\Matej
2015-07-13 17:06 - 2014-07-02 10:30 - 00000000 ____D C:\ProgramData\saove On
2015-07-13 16:27 - 2013-09-13 18:16 - 00000000 ____D C:\Users\Peter\AppData\Local\ABBYY
2015-07-13 16:27 - 2013-09-13 18:16 - 00000000 ____D C:\Program Files (x86)\ABBYY FineReader 11
2015-07-13 11:20 - 2015-07-03 11:34 - 00000933 _____ C:\Users\Peter\Desktop\Age of Empires II.lnk
2015-07-13 11:20 - 2015-07-03 11:34 - 00000926 _____ C:\Users\Peter\Desktop\Age of Empires II - The Conquerors.lnk
2015-07-13 02:34 - 2013-12-13 19:42 - 00000802 _____ C:\Windows\system32\Drivers\etc\hosts.ics
==================== Files in the root of some directories =======
2015-07-13 23:04 - 2015-08-09 16:59 - 0000401 _____ () C:\Users\Peter\AppData\Roaming\sp_data.sys
2013-10-11 11:25 - 2013-10-11 11:25 - 0000037 ___SH () C:\Users\Peter\AppData\Local\70149b02515b3bb20dd492.47983420
2015-07-27 18:02 - 2015-07-27 18:02 - 0000000 _____ () C:\Users\Peter\AppData\Local\{9D9B5A3D-9282-4C91-A45F-5A4F275B6528}
2012-11-23 15:06 - 2012-09-07 13:40 - 0000256 _____ () C:\ProgramData\SetStretch.cmd
2012-11-23 15:06 - 2009-07-22 12:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe
2012-11-23 15:06 - 2012-09-07 13:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS
Files to move or delete:
====================
C:\ProgramData\SetStretch.VBS
Some files in TEMP:
====================
C:\Users\Peter\AppData\Local\Temp\130812921452256338.exe
C:\Users\Peter\AppData\Local\Temp\13081292149084219295.exe
C:\Users\Peter\AppData\Local\Temp\3312.exe
C:\Users\Peter\AppData\Local\Temp\6B3.exe
C:\Users\Peter\AppData\Local\Temp\DAEMON Tools Lite.exe
C:\Users\Peter\AppData\Local\Temp\FreemakeVideoDownloaderFull.exe
C:\Users\Peter\AppData\Local\Temp\InstHelper.exe
C:\Users\Peter\AppData\Local\Temp\proxy_vole929552021567733713.dll
C:\Users\Peter\AppData\Local\Temp\_is7E43.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-08-01 22:03
==================== End of log ============================
Ďakujem
--------------------
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:09-08-2015
Ran by Pepo (administrator) on KLARIK (10-08-2015 23:43:43)
Running from C:\Users\Peter\Desktop
Loaded Profiles: Pepo (Available Profiles: Pepo & DefaultAppPool)
Platform: Windows 8.1 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
() C:\Program Files (x86)\Abrupt Quote\Abrupt Quote.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Fork Ltd.) C:\Prey\platform\windows\cronsvc.exe
(Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe
() C:\Program Files (x86)\Succulent Girlfriend\Succulent Girlfriend.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Qualcomm Atheros) C:\Program Files (x86)\Bluetooth Suite\BtTray.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
() C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(VideoLAN) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-01-21] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKU\S-1-5-21-3169770814-2687663565-890848358-1001\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hppp&ts ... XXW0V2RYK0
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hppp&ts ... XXW0V2RYK0
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds& ... earchTerms}
HKU\S-1-5-21-3169770814-2687663565-890848358-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=dsp ... earchTerms}
SearchScopes: HKU\S-1-5-21-3169770814-2687663565-890848358-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search
SearchScopes: HKU\S-1-5-21-3169770814-2687663565-890848358-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search
BHO: DioscounntExTEnSi -> {52BF42EA-46C1-45CE-A5B0-755C87BB9CFD} -> C:\Program Files (x86)\DioscounntExTEnSi\SpdDE7xFSPVmIi.x64.dll [2015-07-31] ()
BHO: GReatSiave4U -> {69964B79-5308-4868-AF97-18166ACF92ED} -> C:\Program Files (x86)\GReatSiave4U\AQAos6eNhSmTiZ.x64.dll [2015-08-06] ()
BHO-x32: DioscounntExTEnSi -> {52BF42EA-46C1-45CE-A5B0-755C87BB9CFD} -> C:\Program Files (x86)\DioscounntExTEnSi\SpdDE7xFSPVmIi.dll [2015-07-31] ()
BHO-x32: GReatSiave4U -> {69964B79-5308-4868-AF97-18166ACF92ED} -> C:\Program Files (x86)\GReatSiave4U\AQAos6eNhSmTiZ.dll [2015-08-06] ()
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{C7EF0772-77B2-4BAA-A628-3EF01B3E1455}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{D555A6BC-C9FA-4E58-8DB8-9591910625D5}: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-17] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-17] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Reader 3\npnitromozilla.dll [2013-07-26] (Nitro PDF)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-14] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3
CHR Extension: (DrWeb AntiVirus Link Checker) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aleggpabliehgbeagmfhnodcijcmbonb [2015-07-31]
CHR Extension: (ColorZilla) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\bhlhnicpbhignbdhedgjhgdocnmhomnp [2015-07-14]
CHR Extension: (Adblock Plus) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-07-14]
CHR Extension: (Facebook Customizer (by Adblock Plus)) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm [2015-07-14]
CHR Extension: (Talk and Comment for ) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\djnhkfljnimcpelfndpcjcgngmefaobl [2015-08-06]
CHR Extension: (Facebook Unseen) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\iicapmagmhahddefgokbabbgieiogjop [2015-07-14]
CHR Extension: (Color Picker) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\jcmgligingjhdnhdhgepemlckgcgmgaj [2015-07-14]
CHR Extension: (Skype Click to Call) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-07-02]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-14]
CHR HKLM\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]
Opera:
=======
OPR Extension: (No Name) - C:\Users\Peter\AppData\Roaming\Opera Software\Opera Stable\Extensions\hfmijjkdjheadkpejemopocfjbepodlp [2014-04-18]
OPR Extension: (No Name) - C:\Users\Peter\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2013-10-17]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 Abrupt Quote; C:\Program Files (x86)\Abrupt Quote\Abrupt Quote.exe [8016131 2015-06-11] () [File not signed] <==== ATTENTION
R3 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.)
R3 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [211584 2012-08-10] (Qualcomm Atheros Commnucations) [File not signed]
R3 CronService; C:\Prey\platform\windows\cronsvc.exe [23552 2013-05-08] (Fork Ltd.) [File not signed]
R3 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2015-06-17] (Ellora Assets Corp.) [File not signed]
R3 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation)
R3 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation)
S2 KMService; C:\WINDOWS\SysWOW64\srvany.exe [8192 2003-04-18] () [File not signed]
R3 NitroReaderDriverReadSpool3; C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe [230416 2013-07-26] (Nitro PDF Software)
R3 Succulent Girlfriend; C:\Program Files (x86)\Succulent Girlfriend\Succulent Girlfriend.exe [8016391 2015-07-25] () [File not signed] <==== ATTENTION
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-03-01] (Microsoft Corporation)
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [546304 2014-03-01] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R3 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2012-08-10] (Atheros) [File not signed]
S2 ekrn; "C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe" [X]
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ATP; C:\Windows\System32\drivers\AsusTP.sys [62848 2012-11-20] (ASUS Corporation)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [76952 2012-08-10] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2013-11-19] (Disc Soft Ltd)
S3 ESETCleanersDriver; C:\Windows\system32\Drivers\ESETCleanersDriver.sys [170280 2015-07-13] (ESET)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [14992 2012-08-02] ( )
S3 NdisImPlatformMp; C:\Windows\system32\DRIVERS\NdisImPlatform.sys [126464 2014-07-24] (Microsoft Corporation)
S3 Netaapl; C:\Windows\system32\DRIVERS\netaapl64.sys [23040 2013-07-25] (Apple Inc.) [File not signed]
R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc.)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2014-03-18] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-10 23:43 - 2015-08-10 23:44 - 00017049 _____ C:\Users\Peter\Desktop\FRST.txt
2015-08-10 23:43 - 2015-08-10 23:43 - 00000000 ____D C:\FRST
2015-08-10 23:42 - 2015-08-10 23:42 - 02171392 _____ (Farbar) C:\Users\Peter\Desktop\FRST64.exe
2015-08-10 23:29 - 2015-08-10 23:29 - 00602112 _____ (OldTimer Tools) C:\Users\Peter\Desktop\OTL.exe
2015-08-10 23:17 - 2015-08-10 23:17 - 00000000 ____D C:\Users\Peter\Desktop\Otecko - Otis (2015)
2015-08-08 10:38 - 2015-08-08 10:42 - 1305607342 _____ C:\Users\Peter\Desktop\Velký Gatsby .2013 CZ Titulky v obraze .avi
2015-08-06 20:17 - 2015-08-06 20:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDD Health
2015-08-06 20:17 - 2015-08-06 20:17 - 00000000 ____D C:\Program Files (x86)\HDD Health
2015-08-06 20:12 - 2015-08-06 20:12 - 00001200 _____ C:\Users\Peter\Desktop\CrystalDiskInfo.lnk
2015-08-06 20:12 - 2015-08-06 20:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2015-08-06 20:12 - 2015-08-06 20:12 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2015-08-06 17:51 - 2015-08-06 17:52 - 00000000 ____D C:\Program Files (x86)\GReatSiave4U
2015-08-06 17:51 - 2015-08-06 17:51 - 00000000 ____D C:\ProgramData\hljbkibjmfefajajccpkhfedmccdnlee
2015-08-06 17:50 - 2015-08-08 08:26 - 00000000 ____D C:\Users\Peter\Desktop\Nový priečinok (2)
2015-08-01 21:28 - 2015-08-01 21:28 - 00000000 ____D C:\Users\Peter\Desktop\Nový priečinok
2015-07-31 13:04 - 2015-07-31 13:04 - 00000000 ____D C:\ProgramData\bieebbofodliailegdobpcegaiccgkij
2015-07-31 13:04 - 2015-07-31 13:04 - 00000000 ____D C:\Program Files (x86)\DioscounntExTEnSi
2015-07-28 19:00 - 2015-07-28 19:04 - 733317120 _____ C:\Users\Peter\Desktop\82 - Zohan-kricí jméno Kadeřník http://www.hellbourne.cz.tl.avi
2015-07-27 22:33 - 2015-07-27 22:35 - 763146500 _____ C:\Users\Peter\Desktop\Wallander_03x01.web-rip.xvid.cz.avi
2015-07-27 21:25 - 2015-07-27 21:30 - 00000000 ____D C:\Users\Peter\Desktop\James.Mays.Cars.Of.The.People.S01E01.HDTV.x264-FTP[rarbg]
2015-07-27 21:25 - 2015-07-27 21:25 - 00041275 _____ C:\Users\Peter\Desktop\James.Mays.Cars.Of.The.People.S01E01.HDTV.x264-FTP[rartv]-[rarbg.com].torrent
2015-07-27 21:07 - 2015-07-27 21:07 - 00031036 _____ C:\Users\Peter\Desktop\James-May-s-Cars-of-the-People-S01E01(0000240566).zip
2015-07-27 21:04 - 2015-07-27 21:04 - 00113346 _____ C:\Users\Peter\Desktop\James Mays Cars Of The People S01E01 720p HDTV x264-FTP ---[www.bts.to]--- .torrent
2015-07-27 21:04 - 2015-07-27 21:04 - 00000000 ____D C:\Users\Peter\Desktop\James.Mays.Cars.Of.The.People.S01E01.720p.HDTV.x264-FTP[et]
2015-07-27 18:02 - 2015-07-27 18:02 - 00000000 _____ C:\Users\Peter\AppData\Local\{9D9B5A3D-9282-4C91-A45F-5A4F275B6528}
2015-07-26 17:41 - 2015-07-26 17:42 - 00105740 _____ C:\Windows\DirectX.log
2015-07-26 17:35 - 2015-07-26 17:35 - 00001804 _____ C:\Users\Public\Desktop\Play Caesar IV!.lnk
2015-07-26 17:35 - 2015-07-26 17:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra
2015-07-26 17:35 - 2015-07-26 17:35 - 00000000 ____D C:\Program Files (x86)\Sierra
2015-07-26 17:33 - 2015-07-26 17:33 - 00000000 ____D C:\Users\Peter\AppData\Roaming\InstallShield
2015-07-26 17:24 - 2015-07-26 17:24 - 01709792 _____ (Disc Soft Ltd.) C:\Users\Peter\Desktop\DTLiteInstaller.exe
2015-07-26 15:31 - 2011-11-06 19:44 - 00000000 ____D C:\Users\Peter\Desktop\Caesar IV(CZ+CRACK+CD KEY)
2015-07-26 15:23 - 2015-07-26 15:31 - 1559731164 _____ C:\Users\Peter\Desktop\Caesar IV(CZ+CRACK+CD KEY).rar
2015-07-25 19:41 - 2015-07-25 19:41 - 00000000 ____D C:\Program Files (x86)\Succulent Girlfriend
2015-07-22 00:03 - 2015-07-14 16:14 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-07-22 00:03 - 2015-07-14 16:14 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-07-22 00:03 - 2015-07-14 16:14 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-07-22 00:03 - 2015-07-14 16:13 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-07-19 23:18 - 2015-07-19 23:19 - 00034740 _____ C:\Users\Peter\Desktop\Game.of.Thrones.S05E09.PROPER.HDTV.x264-KILLERS (1).srt
2015-07-19 23:18 - 2015-07-19 23:18 - 00037754 _____ C:\Users\Peter\Desktop\Game.of.Thrones.S05E10.HDTV.x264-KILLERS (1).srt
2015-07-19 18:24 - 2015-07-19 18:45 - 00000000 ____D C:\Users\Peter\Desktop\Ted 2 2015 NEW UNCENSORED 720p HC HDRIP x264 AC3 TiTAN
2015-07-19 17:56 - 2015-07-19 17:56 - 00021803 _____ C:\Users\Peter\Desktop\The-Sopranos-S04E12(0000044062).zip
2015-07-19 17:45 - 2015-07-19 17:45 - 00026263 _____ C:\Users\Peter\Desktop\The-Sopranos-S04E13(0000044135).zip
2015-07-19 17:44 - 2015-07-19 17:56 - 00000000 ____D C:\Users\Peter\Desktop\The Sopranos 480p WEB-DL x264 Complete season 4
2015-07-19 12:25 - 2010-12-23 21:50 - 00000000 ____D C:\Users\Peter\Desktop\Delik & Bene - Zablesky geniality,ulomky sialenstva 2010
2015-07-19 12:22 - 2014-03-27 22:23 - 00000000 ____D C:\Users\Peter\Desktop\H16 - Kvalitny material
2015-07-18 21:52 - 2015-07-18 21:52 - 00045617 _____ C:\Users\Peter\Desktop\Game.of.Thrones.S05E08.HDTV.x264-KILLERS (1).srt
2015-07-17 21:55 - 2015-07-17 21:57 - 559994600 _____ C:\Users\Peter\Desktop\Hra o truny .Game of Thrones S05E07 CZ Dabing Dar.avi
2015-07-17 21:46 - 2015-08-10 23:24 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-07-17 21:46 - 2015-07-17 21:46 - 00003718 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-07-15 21:23 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-07-15 21:23 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-07-15 21:23 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-07-15 21:23 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-07-15 21:23 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-07-15 21:23 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-07-15 21:23 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-07-15 21:23 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-07-15 21:23 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-07-15 21:23 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-07-15 21:23 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-07-15 21:23 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-07-15 21:23 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-07-15 21:23 - 2015-06-25 04:31 - 04177920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-07-15 21:23 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-07-15 21:23 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-07-15 21:23 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-07-15 21:23 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-07-15 21:23 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-07-15 21:23 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-07-15 21:23 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-07-15 21:23 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-07-15 21:23 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-07-15 21:23 - 2014-10-29 06:03 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-07-15 21:23 - 2014-10-29 04:44 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-07-15 21:23 - 2014-10-29 04:22 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-07-15 21:23 - 2014-10-29 03:42 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-07-15 21:22 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll
2015-07-15 21:22 - 2014-10-29 03:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll
2015-07-15 21:21 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-07-15 21:21 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-07-15 21:21 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-07-15 21:21 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-07-15 21:21 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-07-15 21:21 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-07-15 21:20 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-07-15 21:20 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-07-15 21:20 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-07-15 21:20 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-07-15 21:20 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-07-15 21:20 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-07-15 21:20 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-07-15 21:20 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-07-15 21:20 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-07-15 21:20 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-07-15 21:20 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-07-15 21:20 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-07-15 21:20 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-07-15 21:20 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-07-15 21:20 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-07-15 21:20 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-07-15 21:20 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-07-15 21:20 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-07-15 21:20 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-07-15 21:20 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-07-15 21:20 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-07-15 21:20 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-07-15 21:20 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-07-15 21:20 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-07-15 21:20 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-07-15 21:20 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-07-15 21:20 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-07-15 21:20 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-07-15 21:20 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-07-15 21:20 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-07-15 21:20 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-07-15 21:20 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-07-15 21:20 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-07-15 21:20 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-07-15 21:20 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-07-15 21:20 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-07-15 21:20 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-07-15 21:20 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-07-15 21:20 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-07-15 21:20 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-07-15 21:20 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-07-15 21:20 - 2015-05-07 18:47 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-07-15 21:20 - 2015-03-11 03:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-07-15 21:20 - 2015-03-11 03:09 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-07-15 21:20 - 2014-10-29 04:45 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-07-15 21:20 - 2014-10-29 04:00 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2015-07-15 21:20 - 2014-10-29 04:00 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2015-07-14 23:58 - 2015-07-15 00:00 - 412224492 _____ C:\Users\Peter\Desktop\True.Detective.S02E01.HDTV.x264-KILLERS.mp4
2015-07-14 23:54 - 2015-07-14 23:54 - 00041374 _____ C:\Users\Peter\Desktop\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG).srt
2015-07-14 23:53 - 2015-07-14 23:53 - 00041374 _____ C:\Users\Peter\Downloads\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG) (2).srt
2015-07-14 23:53 - 2015-07-14 23:53 - 00041374 _____ C:\Users\Peter\Downloads\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG) (1).srt
2015-07-14 23:53 - 2015-07-14 23:53 - 00000000 ____D C:\Users\Peter\Desktop\True.Detective.S02E04.HDTV.x264-ASAP[ettv]
2015-07-14 23:52 - 2015-07-14 23:52 - 00002687 _____ C:\Users\Peter\Desktop\µTorrent.lnk
2015-07-14 23:51 - 2015-07-14 23:51 - 01993056 _____ (BitTorrent Inc.) C:\Users\Peter\Downloads\uTorrent.exe
2015-07-14 23:50 - 2015-07-14 23:50 - 00030444 _____ C:\Users\Peter\Downloads\[kickass.proxyindex.net]true.detective.s02e04.hdtv.x264.asap.ettv.torrent
2015-07-14 23:50 - 2015-07-14 23:50 - 00030444 _____ C:\Users\Peter\Downloads\[kickass.proxyindex.net]true.detective.s02e04.hdtv.x264.asap.ettv (1).torrent
2015-07-14 23:46 - 2015-07-14 23:46 - 00041374 _____ C:\Users\Peter\Downloads\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG).srt
2015-07-14 23:24 - 2015-07-14 23:24 - 00003168 _____ C:\Windows\DPINST.LOG
2015-07-14 23:21 - 2015-07-29 18:36 - 00002217 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-14 23:21 - 2015-07-14 23:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-07-13 23:04 - 2015-08-09 16:59 - 00000401 _____ C:\Users\Peter\AppData\Roaming\sp_data.sys
2015-07-13 22:23 - 2015-07-13 22:23 - 00000000 ____D C:\Program Files\WinPcap
2015-07-13 22:22 - 2015-07-13 22:27 - 00000000 ____D C:\Users\Peter\Documents\Freemake
2015-07-13 22:22 - 2015-07-13 22:23 - 00000000 ____D C:\ProgramData\Freemake
2015-07-13 22:22 - 2015-07-13 22:22 - 00001350 _____ C:\Users\Public\Desktop\Freemake Video Downloader.lnk
2015-07-13 22:22 - 2015-07-13 22:22 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
2015-07-13 22:22 - 2015-07-13 22:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake
2015-07-13 22:22 - 2015-07-13 22:22 - 00000000 ____D C:\Program Files (x86)\Freemake
2015-07-13 22:15 - 2015-07-13 22:15 - 00001767 _____ C:\Users\Public\Desktop\iTunes.lnk
2015-07-13 22:15 - 2015-07-13 22:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-07-13 22:14 - 2012-10-03 16:14 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2015-07-13 22:13 - 2015-07-13 22:14 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-07-13 22:13 - 2015-07-13 22:14 - 00000000 ____D C:\Program Files\iTunes
2015-07-13 22:13 - 2015-07-13 22:13 - 00000000 ____D C:\Program Files\iPod
2015-07-13 22:13 - 2015-07-13 22:13 - 00000000 ____D C:\Program Files (x86)\iTunes
2015-07-13 22:09 - 2015-07-13 22:09 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2015-07-13 22:09 - 2015-07-13 22:09 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2015-07-13 22:05 - 2015-07-14 00:02 - 00000000 ____D C:\Users\Peter\Desktop\hudba-zdielana
2015-07-13 18:24 - 2015-08-10 23:15 - 01443701 _____ C:\Windows\WindowsUpdate.log
2015-07-13 18:20 - 2015-08-10 22:24 - 00005598 _____ C:\Windows\setupact.log
2015-07-13 18:20 - 2015-07-27 18:00 - 00006528 _____ C:\Windows\PFRO.log
2015-07-13 18:20 - 2015-07-13 18:20 - 00000000 _____ C:\Windows\setuperr.log
2015-07-13 17:19 - 2015-07-13 17:19 - 03034492 _____ (Malwarebytes Corporation) C:\Users\Peter\Desktop\JRT.exe
2015-07-13 16:50 - 2015-07-13 16:50 - 00170280 _____ (ESET) C:\Windows\system32\Drivers\ESETCleanersDriver.sys
2015-07-13 16:30 - 2015-07-13 16:30 - 00000000 ____D C:\ProgramData\ESET
2015-07-13 16:30 - 2015-07-13 16:30 - 00000000 ____D C:\Program Files\ESET
2015-07-13 13:14 - 2015-08-08 07:57 - 00000000 ____D C:\Windows\pss
2015-07-13 12:52 - 2015-07-13 12:52 - 00039068 _____ C:\Users\Peter\Downloads\Game.Of.Thrones.S05E04.720p.HDTV.x264-0SEC.srt
2015-07-13 02:35 - 2015-07-13 02:35 - 00000000 ____D C:\Users\Peter\AppData\Local\Chris_Pietschmann_(http__
2015-07-13 02:32 - 2015-07-13 17:20 - 00000000 ____D C:\Program Files (x86)\Virtual Router
2015-07-13 02:23 - 2015-07-13 02:29 - 00000000 ____D C:\ProgramData\VirtualWifiRouter
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-10 23:40 - 2013-10-02 19:55 - 00000000 ____D C:\Users\Peter\AppData\Roaming\AIMP3
2015-08-10 23:26 - 2014-07-25 18:59 - 00000000 ____D C:\Users\Peter\AppData\Local\Google
2015-08-10 23:03 - 2012-07-26 09:59 - 00000000 ____D C:\Windows\CbsTemp
2015-08-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-08-10 22:23 - 2013-08-28 00:03 - 00000000 ____D C:\Users\Peter\AppData\Roaming\vlc
2015-08-09 16:59 - 2013-01-24 04:17 - 00003056 _____ C:\Windows\System32\Tasks\ASUS P4G
2015-08-09 16:59 - 2013-01-24 04:15 - 00003028 _____ C:\Windows\System32\Tasks\ASUS USB Charger Plus
2015-08-08 21:39 - 2014-03-01 12:24 - 00105992 _____ C:\Windows\system32\perfh01B.dat
2015-08-08 21:39 - 2014-03-01 12:24 - 00037210 _____ C:\Windows\system32\perfc01B.dat
2015-08-08 21:39 - 2013-09-30 06:18 - 01120408 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-08 13:02 - 2013-08-27 23:23 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3169770814-2687663565-890848358-1001
2015-08-08 07:57 - 2013-01-24 04:26 - 00003704 _____ C:\Windows\system32\ServiceFilter.ini
2015-08-08 01:28 - 2013-11-12 14:25 - 00000000 ____D C:\Users\Peter
2015-08-06 18:51 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2015-08-01 20:04 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-27 22:31 - 2013-08-28 00:28 - 00000000 ____D C:\Users\Peter\AppData\Roaming\uTorrent
2015-07-26 17:35 - 2013-01-24 03:56 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-26 17:33 - 2013-11-19 22:19 - 00000000 ____D C:\Users\Peter\AppData\Roaming\DAEMON Tools Lite
2015-07-25 21:04 - 2013-09-01 09:04 - 00000000 ____D C:\Windows\system32\MRT
2015-07-25 19:38 - 2013-08-22 16:44 - 00410456 _____ C:\Windows\system32\FNTCACHE.DAT
2015-07-25 19:36 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-07-18 20:15 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2015-07-17 21:46 - 2013-08-27 23:26 - 00000000 ____D C:\Users\Peter\AppData\Local\Adobe
2015-07-15 23:26 - 2014-01-07 22:25 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-07-14 23:24 - 2012-11-23 15:07 - 00000000 ____D C:\Program Files (x86)\ASUS
2015-07-14 23:23 - 2013-08-27 23:23 - 00000000 ____D C:\Users\Peter\AppData\Local\Opera Software
2015-07-14 23:23 - 2013-08-27 23:23 - 00000000 ____D C:\Program Files (x86)\Opera
2015-07-14 23:21 - 2014-07-25 18:59 - 00000000 ____D C:\Program Files (x86)\Google
2015-07-13 23:10 - 2013-08-22 17:38 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-13 23:10 - 2013-08-22 17:38 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-13 22:13 - 2013-09-22 21:26 - 00000000 ____D C:\Program Files\Common Files\Apple
2015-07-13 17:47 - 2012-11-23 15:06 - 00000000 ____D C:\ProgramData\Adobe
2015-07-13 17:42 - 2014-07-09 23:11 - 00000000 ____D C:\Windows\Minidump
2015-07-13 17:42 - 2013-09-07 00:05 - 00000000 ____D C:\Users\Peter\AppData\Local\CrashDumps
2015-07-13 17:32 - 2014-03-01 11:37 - 00000000 ____D C:\ProgramData\Skype
2015-07-13 17:31 - 2014-07-07 15:36 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-07-13 17:31 - 2014-03-01 12:21 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Skype
2015-07-13 17:31 - 2012-11-23 15:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2015-07-13 17:24 - 2015-03-12 11:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rhinoceros 5
2015-07-13 17:23 - 2015-04-17 21:05 - 00000000 ____D C:\Users\Peter\AppData\Local\pip
2015-07-13 17:22 - 2013-12-01 23:50 - 00098608 _____ C:\Users\Peter\AppData\Local\GDIPFONTCACHEV1.DAT
2015-07-13 17:22 - 2013-12-01 00:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codec Pack
2015-07-13 17:21 - 2014-02-28 20:00 - 00000000 ____D C:\Users\Peter\AppData\Local\Facebook
2015-07-13 17:16 - 2015-06-08 16:37 - 00000000 ____D C:\Users\Peter\Desktop\Matej
2015-07-13 17:06 - 2014-07-02 10:30 - 00000000 ____D C:\ProgramData\saove On
2015-07-13 16:27 - 2013-09-13 18:16 - 00000000 ____D C:\Users\Peter\AppData\Local\ABBYY
2015-07-13 16:27 - 2013-09-13 18:16 - 00000000 ____D C:\Program Files (x86)\ABBYY FineReader 11
2015-07-13 11:20 - 2015-07-03 11:34 - 00000933 _____ C:\Users\Peter\Desktop\Age of Empires II.lnk
2015-07-13 11:20 - 2015-07-03 11:34 - 00000926 _____ C:\Users\Peter\Desktop\Age of Empires II - The Conquerors.lnk
2015-07-13 02:34 - 2013-12-13 19:42 - 00000802 _____ C:\Windows\system32\Drivers\etc\hosts.ics
==================== Files in the root of some directories =======
2015-07-13 23:04 - 2015-08-09 16:59 - 0000401 _____ () C:\Users\Peter\AppData\Roaming\sp_data.sys
2013-10-11 11:25 - 2013-10-11 11:25 - 0000037 ___SH () C:\Users\Peter\AppData\Local\70149b02515b3bb20dd492.47983420
2015-07-27 18:02 - 2015-07-27 18:02 - 0000000 _____ () C:\Users\Peter\AppData\Local\{9D9B5A3D-9282-4C91-A45F-5A4F275B6528}
2012-11-23 15:06 - 2012-09-07 13:40 - 0000256 _____ () C:\ProgramData\SetStretch.cmd
2012-11-23 15:06 - 2009-07-22 12:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe
2012-11-23 15:06 - 2012-09-07 13:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS
Files to move or delete:
====================
C:\ProgramData\SetStretch.VBS
Some files in TEMP:
====================
C:\Users\Peter\AppData\Local\Temp\130812921452256338.exe
C:\Users\Peter\AppData\Local\Temp\13081292149084219295.exe
C:\Users\Peter\AppData\Local\Temp\3312.exe
C:\Users\Peter\AppData\Local\Temp\6B3.exe
C:\Users\Peter\AppData\Local\Temp\DAEMON Tools Lite.exe
C:\Users\Peter\AppData\Local\Temp\FreemakeVideoDownloaderFull.exe
C:\Users\Peter\AppData\Local\Temp\InstHelper.exe
C:\Users\Peter\AppData\Local\Temp\proxy_vole929552021567733713.dll
C:\Users\Peter\AppData\Local\Temp\_is7E43.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-08-01 22:03
==================== End of log ============================
- Přílohy
-
- Addition.zip
- (9.54 KiB) Staženo 41 x
Naposledy upravil(a) caprnka dne 11 srp 2015 18:56, celkem upraveno 1 x.
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Spomalený chrome/PC -DISCOUNT reklamy,extremne zavírený
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Spomalený chrome/PC -DISCOUNT reklamy,extremne zavírený
# AdwCleaner v4.208 - Log vytvorený 11/08/2015 at 20:01:46
# Aktualizované 09/07/2015 by Xplode
# Databáza : 2015-08-11.1 [Server]
# Operačný systém : Windows 8.1 (x64)
# Uživateľské meno : Pepo - KLARIK
# Spustené z : C:\Users\Peter\Desktop\adwcleaner_4.208.exe
# Nastavenia : Čistenie
***** [ Služby ] *****
***** [ Súbory / Priečinky ] *****
Priečinok Zmazané : C:\ProgramData\BlockIt Ad remover
Priečinok Zmazané : C:\ProgramData\Wideblue installer
Priečinok Zmazané : C:\ProgramData\saove On
Priečinok Zmazané : C:\Program Files (x86)\AllSavver
Priečinok Zmazané : C:\Program Files (x86)\BaitSaVer
Priečinok Zmazané : C:\Program Files (x86)\ChEapMe
Priečinok Zmazané : C:\Program Files (x86)\CouapExtennsioN
Priečinok Zmazané : C:\Program Files (x86)\DioscounntExTEnSi
Priečinok Zmazané : C:\Program Files (x86)\GReatSiave4U
Priečinok Zmazané : C:\ProgramData\bieebbofodliailegdobpcegaiccgkij
Priečinok Zmazané : C:\ProgramData\ecppogepfcknmdmonfcinmppfhknmfpe
Priečinok Zmazané : C:\ProgramData\fhcedjihdmjffokpdhhbpabhieppmifd
Priečinok Zmazané : C:\ProgramData\hljbkibjmfefajajccpkhfedmccdnlee
Priečinok Zmazané : C:\ProgramData\null
***** [ Naplánované úlohy ] *****
***** [ Zástupcovia ] *****
***** [ Registre ] *****
Kľúč registra Zmazané : HKCU\Software\Classes\pokki
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\SDP
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\P52BF42EA_46C1_45CE_A5B0_755C87BB9CFD_.P52BF42EA_46C1_45CE_A5B0_755C87BB9CFD_
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\P52BF42EA_46C1_45CE_A5B0_755C87BB9CFD_.P52BF42EA_46C1_45CE_A5B0_755C87BB9CFD_.9
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\P69964B79_5308_4868_AF97_18166ACF92ED_.P69964B79_5308_4868_AF97_18166ACF92ED_
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\P69964B79_5308_4868_AF97_18166ACF92ED_.P69964B79_5308_4868_AF97_18166ACF92ED_.9
Kľúč registra Zmazané : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\S-126785670
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{33B8CF8E-1B37-40DD-A652-F97EDFCA9565}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{41F978F3-431A-4464-A789-5C0692D562FB}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{7D0F8586-7AD5-44A7-BD3D-31E63B3F18D2}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{94D4476C-892A-4FF2-AE91-1A5FB2D2F126}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{96BB8E60-6EF9-47E0-9ED8-4AD477ECF427}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{A1965763-A486-4E1E-B574-19E44B3842E8}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{A6918429-4197-42E6-A4AC-742073A9BCBB}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{AEF2BB85-DF75-41E2-8366-FB89A5F869F9}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{E7E31D58-524A-497F-BDA0-7C1B4D0E7D8D}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{EB559340-3A8F-4456-B24D-160098054EF0}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\CLSID\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\CLSID\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : HKCU\Software\Somoto
Kľúč registra Zmazané : HKCU\Software\PRODUCTSETUP
Kľúč registra Zmazané : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Kľúč registra Zmazané : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Kľúč registra Zmazané : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Kľúč registra Zmazané : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Kľúč registra Zmazané : HKLM\SOFTWARE\istartsurfSoftware
Kľúč registra Zmazané : HKLM\SOFTWARE\SupDp
Kľúč registra Zmazané : HKLM\SOFTWARE\SupTab
Kľúč registra Zmazané : HKLM\SOFTWARE\IHProtect
Kľúč registra Zmazané : HKU\.DEFAULT\Software\AskPartnerNetwork
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B138259A-351E-33FA-2726-8D71704F1DA9}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CF987D06-1DCF-7B36-5B43-13BC8699C44C}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{45606A90-3363-3A3B-1C15-C40E77F4DAA0}
Dáta Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local
***** [ Webové prehliadače ] *****
-\\ Internet Explorer v11.0.9600.17840
Nastavenie Obnovené : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavenie Obnovené : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavenie Obnovené : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Nastavenie Obnovené : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavenie Obnovené : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Nastavenie Obnovené : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Nastavenie Obnovené : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
-\\ Google Chrome v44.0.2403.125
-\\ Opera v0.0.0.0
*************************
AdwCleaner[R0].txt - [9073 bajtov] - [11/08/2015 20:00:18]
AdwCleaner[S0].txt - [7091 bajtov] - [11/08/2015 20:01:46]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7151 bajtov] ##########
# Aktualizované 09/07/2015 by Xplode
# Databáza : 2015-08-11.1 [Server]
# Operačný systém : Windows 8.1 (x64)
# Uživateľské meno : Pepo - KLARIK
# Spustené z : C:\Users\Peter\Desktop\adwcleaner_4.208.exe
# Nastavenia : Čistenie
***** [ Služby ] *****
***** [ Súbory / Priečinky ] *****
Priečinok Zmazané : C:\ProgramData\BlockIt Ad remover
Priečinok Zmazané : C:\ProgramData\Wideblue installer
Priečinok Zmazané : C:\ProgramData\saove On
Priečinok Zmazané : C:\Program Files (x86)\AllSavver
Priečinok Zmazané : C:\Program Files (x86)\BaitSaVer
Priečinok Zmazané : C:\Program Files (x86)\ChEapMe
Priečinok Zmazané : C:\Program Files (x86)\CouapExtennsioN
Priečinok Zmazané : C:\Program Files (x86)\DioscounntExTEnSi
Priečinok Zmazané : C:\Program Files (x86)\GReatSiave4U
Priečinok Zmazané : C:\ProgramData\bieebbofodliailegdobpcegaiccgkij
Priečinok Zmazané : C:\ProgramData\ecppogepfcknmdmonfcinmppfhknmfpe
Priečinok Zmazané : C:\ProgramData\fhcedjihdmjffokpdhhbpabhieppmifd
Priečinok Zmazané : C:\ProgramData\hljbkibjmfefajajccpkhfedmccdnlee
Priečinok Zmazané : C:\ProgramData\null
***** [ Naplánované úlohy ] *****
***** [ Zástupcovia ] *****
***** [ Registre ] *****
Kľúč registra Zmazané : HKCU\Software\Classes\pokki
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\SDP
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\P52BF42EA_46C1_45CE_A5B0_755C87BB9CFD_.P52BF42EA_46C1_45CE_A5B0_755C87BB9CFD_
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\P52BF42EA_46C1_45CE_A5B0_755C87BB9CFD_.P52BF42EA_46C1_45CE_A5B0_755C87BB9CFD_.9
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\P69964B79_5308_4868_AF97_18166ACF92ED_.P69964B79_5308_4868_AF97_18166ACF92ED_
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\P69964B79_5308_4868_AF97_18166ACF92ED_.P69964B79_5308_4868_AF97_18166ACF92ED_.9
Kľúč registra Zmazané : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\S-126785670
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{33B8CF8E-1B37-40DD-A652-F97EDFCA9565}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{41F978F3-431A-4464-A789-5C0692D562FB}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{7D0F8586-7AD5-44A7-BD3D-31E63B3F18D2}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{94D4476C-892A-4FF2-AE91-1A5FB2D2F126}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{96BB8E60-6EF9-47E0-9ED8-4AD477ECF427}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{A1965763-A486-4E1E-B574-19E44B3842E8}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{A6918429-4197-42E6-A4AC-742073A9BCBB}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{AEF2BB85-DF75-41E2-8366-FB89A5F869F9}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{E7E31D58-524A-497F-BDA0-7C1B4D0E7D8D}
Kľúč registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{EB559340-3A8F-4456-B24D-160098054EF0}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\CLSID\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\CLSID\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{52BF42EA-46C1-45CE-A5B0-755C87BB9CFD}
Kľúč registra Zmazané : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{69964B79-5308-4868-AF97-18166ACF92ED}
Kľúč registra Zmazané : HKCU\Software\Somoto
Kľúč registra Zmazané : HKCU\Software\PRODUCTSETUP
Kľúč registra Zmazané : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Kľúč registra Zmazané : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Kľúč registra Zmazané : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Kľúč registra Zmazané : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Kľúč registra Zmazané : HKLM\SOFTWARE\istartsurfSoftware
Kľúč registra Zmazané : HKLM\SOFTWARE\SupDp
Kľúč registra Zmazané : HKLM\SOFTWARE\SupTab
Kľúč registra Zmazané : HKLM\SOFTWARE\IHProtect
Kľúč registra Zmazané : HKU\.DEFAULT\Software\AskPartnerNetwork
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B138259A-351E-33FA-2726-8D71704F1DA9}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CF987D06-1DCF-7B36-5B43-13BC8699C44C}
Kľúč registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{45606A90-3363-3A3B-1C15-C40E77F4DAA0}
Dáta Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local
***** [ Webové prehliadače ] *****
-\\ Internet Explorer v11.0.9600.17840
Nastavenie Obnovené : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavenie Obnovené : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavenie Obnovené : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Nastavenie Obnovené : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Nastavenie Obnovené : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Nastavenie Obnovené : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Nastavenie Obnovené : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
-\\ Google Chrome v44.0.2403.125
-\\ Opera v0.0.0.0
*************************
AdwCleaner[R0].txt - [9073 bajtov] - [11/08/2015 20:00:18]
AdwCleaner[S0].txt - [7091 bajtov] - [11/08/2015 20:01:46]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7151 bajtov] ##########
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Spomalený chrome/PC -DISCOUNT reklamy,extremne zavírený
Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Spomalený chrome/PC -DISCOUNT reklamy,extremne zavírený
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:11-08-2015 02
Ran by Pepo (administrator) on KLARIK (12-08-2015 18:47:09)
Running from C:\Users\Peter\Desktop
Loaded Profiles: Pepo (Available Profiles: Pepo & DefaultAppPool)
Platform: Windows 8.1 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Qualcomm Atheros) C:\Program Files (x86)\Bluetooth Suite\BtTray.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
() C:\Program Files (x86)\Abrupt Quote\Abrupt Quote.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
() C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Fork Ltd.) C:\Prey\platform\windows\cronsvc.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe
() C:\Program Files (x86)\Succulent Girlfriend\Succulent Girlfriend.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-01-21] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKU\S-1-5-21-3169770814-2687663565-890848358-1001\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{C7EF0772-77B2-4BAA-A628-3EF01B3E1455}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{D555A6BC-C9FA-4E58-8DB8-9591910625D5}: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-17] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-17] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Reader 3\npnitromozilla.dll [2013-07-26] (Nitro PDF)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-14] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3
CHR Extension: (Adblock Plus) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-07-14]
CHR Extension: (Facebook Customizer (by Adblock Plus)) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm [2015-07-14]
CHR Extension: (Color Picker) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\jcmgligingjhdnhdhgepemlckgcgmgaj [2015-07-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-14]
CHR Profile: C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 4
CHR Extension: (Skype Click to Call) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-08-12]
CHR HKLM\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]
Opera:
=======
OPR Extension: (No Name) - C:\Users\Peter\AppData\Roaming\Opera Software\Opera Stable\Extensions\hfmijjkdjheadkpejemopocfjbepodlp [2014-04-18]
OPR Extension: (No Name) - C:\Users\Peter\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2013-10-17]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 Abrupt Quote; C:\Program Files (x86)\Abrupt Quote\Abrupt Quote.exe [8016131 2015-06-11] () [File not signed] <==== ATTENTION
R3 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.)
R3 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [211584 2012-08-10] (Qualcomm Atheros Commnucations) [File not signed]
R3 CronService; C:\Prey\platform\windows\cronsvc.exe [23552 2013-05-08] (Fork Ltd.) [File not signed]
R3 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2015-06-17] (Ellora Assets Corp.) [File not signed]
R3 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation)
R3 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation)
S2 KMService; C:\WINDOWS\SysWOW64\srvany.exe [8192 2003-04-18] () [File not signed]
R3 NitroReaderDriverReadSpool3; C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe [230416 2013-07-26] (Nitro PDF Software)
R3 Succulent Girlfriend; C:\Program Files (x86)\Succulent Girlfriend\Succulent Girlfriend.exe [8016391 2015-07-25] () [File not signed] <==== ATTENTION
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-03-01] (Microsoft Corporation)
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [546304 2014-03-01] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R3 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2012-08-10] (Atheros) [File not signed]
S2 ekrn; "C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe" [X]
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ATP; C:\Windows\System32\drivers\AsusTP.sys [62848 2012-11-20] (ASUS Corporation)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [76952 2012-08-10] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2013-11-19] (Disc Soft Ltd)
S3 ESETCleanersDriver; C:\Windows\system32\Drivers\ESETCleanersDriver.sys [170280 2015-07-13] (ESET)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [14992 2012-08-02] ( )
S3 NdisImPlatformMp; C:\Windows\system32\DRIVERS\NdisImPlatform.sys [126464 2014-07-24] (Microsoft Corporation)
S3 Netaapl; C:\Windows\system32\DRIVERS\netaapl64.sys [23040 2013-07-25] (Apple Inc.) [File not signed]
R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc.)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2014-03-18] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-12 18:47 - 2015-08-12 18:49 - 00014633 _____ C:\Users\Peter\Desktop\FRST.txt
2015-08-12 18:47 - 2015-08-12 18:47 - 00000000 ____D C:\Users\Peter\Desktop\FRST-OlderVersion
2015-08-11 20:00 - 2015-08-11 20:01 - 00000000 ____D C:\AdwCleaner
2015-08-10 23:43 - 2015-08-12 18:47 - 00000000 ____D C:\FRST
2015-08-10 23:42 - 2015-08-12 18:47 - 02172928 _____ (Farbar) C:\Users\Peter\Desktop\FRST64.exe
2015-08-10 23:29 - 2015-08-10 23:29 - 00602112 _____ (OldTimer Tools) C:\Users\Peter\Desktop\OTL.exe
2015-08-08 10:38 - 2015-08-08 10:42 - 1305607342 _____ C:\Users\Peter\Desktop\Velký Gatsby .2013 CZ Titulky v obraze .avi
2015-08-06 20:17 - 2015-08-06 20:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDD Health
2015-08-06 20:17 - 2015-08-06 20:17 - 00000000 ____D C:\Program Files (x86)\HDD Health
2015-08-06 20:12 - 2015-08-06 20:12 - 00001200 _____ C:\Users\Peter\Desktop\CrystalDiskInfo.lnk
2015-08-06 20:12 - 2015-08-06 20:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2015-08-06 20:12 - 2015-08-06 20:12 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2015-08-06 17:50 - 2015-08-08 08:26 - 00000000 ____D C:\Users\Peter\Desktop\Nový priečinok (2)
2015-08-01 21:28 - 2015-08-01 21:28 - 00000000 ____D C:\Users\Peter\Desktop\Nový priečinok
2015-07-28 19:00 - 2015-07-28 19:04 - 733317120 _____ C:\Users\Peter\Desktop\82 - Zohan-kricí jméno Kadeřník www.hellbourne.cz.tl.avi
2015-07-27 22:33 - 2015-07-27 22:35 - 763146500 _____ C:\Users\Peter\Desktop\Wallander_03x01.web-rip.xvid.cz.avi
2015-07-27 21:25 - 2015-07-27 21:30 - 00000000 ____D C:\Users\Peter\Desktop\James.Mays.Cars.Of.The.People.S01E01.HDTV.x264-FTP[rarbg]
2015-07-27 21:25 - 2015-07-27 21:25 - 00041275 _____ C:\Users\Peter\Desktop\James.Mays.Cars.Of.The.People.S01E01.HDTV.x264-FTP[rartv]-[rarbg.com].torrent
2015-07-27 21:07 - 2015-07-27 21:07 - 00031036 _____ C:\Users\Peter\Desktop\James-May-s-Cars-of-the-People-S01E01(0000240566).zip
2015-07-27 21:04 - 2015-07-27 21:04 - 00113346 _____ C:\Users\Peter\Desktop\James Mays Cars Of The People S01E01 720p HDTV x264-FTP ---[www.bts.to]--- .torrent
2015-07-27 21:04 - 2015-07-27 21:04 - 00000000 ____D C:\Users\Peter\Desktop\James.Mays.Cars.Of.The.People.S01E01.720p.HDTV.x264-FTP[et]
2015-07-27 18:02 - 2015-07-27 18:02 - 00000000 _____ C:\Users\Peter\AppData\Local\{9D9B5A3D-9282-4C91-A45F-5A4F275B6528}
2015-07-26 17:41 - 2015-07-26 17:42 - 00105740 _____ C:\Windows\DirectX.log
2015-07-26 17:35 - 2015-07-26 17:35 - 00001804 _____ C:\Users\Public\Desktop\Play Caesar IV!.lnk
2015-07-26 17:35 - 2015-07-26 17:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra
2015-07-26 17:35 - 2015-07-26 17:35 - 00000000 ____D C:\Program Files (x86)\Sierra
2015-07-26 17:33 - 2015-07-26 17:33 - 00000000 ____D C:\Users\Peter\AppData\Roaming\InstallShield
2015-07-26 17:24 - 2015-07-26 17:24 - 01709792 _____ (Disc Soft Ltd.) C:\Users\Peter\Desktop\DTLiteInstaller.exe
2015-07-26 15:31 - 2011-11-06 19:44 - 00000000 ____D C:\Users\Peter\Desktop\Caesar IV(CZ+CRACK+CD KEY)
2015-07-26 15:23 - 2015-07-26 15:31 - 1559731164 _____ C:\Users\Peter\Desktop\Caesar IV(CZ+CRACK+CD KEY).rar
2015-07-25 19:41 - 2015-07-25 19:41 - 00000000 ____D C:\Program Files (x86)\Succulent Girlfriend
2015-07-22 00:03 - 2015-07-14 16:14 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-07-22 00:03 - 2015-07-14 16:14 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-07-22 00:03 - 2015-07-14 16:14 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-07-22 00:03 - 2015-07-14 16:13 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-07-19 23:18 - 2015-07-19 23:19 - 00034740 _____ C:\Users\Peter\Desktop\Game.of.Thrones.S05E09.PROPER.HDTV.x264-KILLERS (1).srt
2015-07-19 23:18 - 2015-07-19 23:18 - 00037754 _____ C:\Users\Peter\Desktop\Game.of.Thrones.S05E10.HDTV.x264-KILLERS (1).srt
2015-07-19 18:24 - 2015-07-19 18:45 - 00000000 ____D C:\Users\Peter\Desktop\Ted 2 2015 NEW UNCENSORED 720p HC HDRIP x264 AC3 TiTAN
2015-07-19 17:56 - 2015-07-19 17:56 - 00021803 _____ C:\Users\Peter\Desktop\The-Sopranos-S04E12(0000044062).zip
2015-07-19 17:45 - 2015-07-19 17:45 - 00026263 _____ C:\Users\Peter\Desktop\The-Sopranos-S04E13(0000044135).zip
2015-07-19 17:44 - 2015-07-19 17:56 - 00000000 ____D C:\Users\Peter\Desktop\The Sopranos 480p WEB-DL x264 Complete season 4
2015-07-19 12:25 - 2010-12-23 21:50 - 00000000 ____D C:\Users\Peter\Desktop\Delik & Bene - Zablesky geniality,ulomky sialenstva 2010
2015-07-19 12:22 - 2014-03-27 22:23 - 00000000 ____D C:\Users\Peter\Desktop\H16 - Kvalitny material
2015-07-18 21:52 - 2015-07-18 21:52 - 00045617 _____ C:\Users\Peter\Desktop\Game.of.Thrones.S05E08.HDTV.x264-KILLERS (1).srt
2015-07-17 21:55 - 2015-07-17 21:57 - 559994600 _____ C:\Users\Peter\Desktop\Hra o truny .Game of Thrones S05E07 CZ Dabing Dar.avi
2015-07-17 21:46 - 2015-08-11 19:24 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-07-17 21:46 - 2015-07-17 21:46 - 00003718 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-07-15 21:23 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-07-15 21:23 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-07-15 21:23 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-07-15 21:23 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-07-15 21:23 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-07-15 21:23 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-07-15 21:23 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-07-15 21:23 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-07-15 21:23 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-07-15 21:23 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-07-15 21:23 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-07-15 21:23 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-07-15 21:23 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-07-15 21:23 - 2015-06-25 04:31 - 04177920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-07-15 21:23 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-07-15 21:23 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-07-15 21:23 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-07-15 21:23 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-07-15 21:23 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-07-15 21:23 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-07-15 21:23 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-07-15 21:23 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-07-15 21:23 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-07-15 21:23 - 2014-10-29 06:03 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-07-15 21:23 - 2014-10-29 04:44 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-07-15 21:23 - 2014-10-29 04:22 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-07-15 21:23 - 2014-10-29 03:42 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-07-15 21:22 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll
2015-07-15 21:22 - 2014-10-29 03:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll
2015-07-15 21:21 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-07-15 21:21 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-07-15 21:21 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-07-15 21:21 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-07-15 21:21 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-07-15 21:21 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-07-15 21:20 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-07-15 21:20 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-07-15 21:20 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-07-15 21:20 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-07-15 21:20 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-07-15 21:20 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-07-15 21:20 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-07-15 21:20 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-07-15 21:20 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-07-15 21:20 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-07-15 21:20 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-07-15 21:20 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-07-15 21:20 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-07-15 21:20 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-07-15 21:20 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-07-15 21:20 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-07-15 21:20 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-07-15 21:20 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-07-15 21:20 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-07-15 21:20 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-07-15 21:20 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-07-15 21:20 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-07-15 21:20 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-07-15 21:20 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-07-15 21:20 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-07-15 21:20 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-07-15 21:20 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-07-15 21:20 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-07-15 21:20 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-07-15 21:20 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-07-15 21:20 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-07-15 21:20 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-07-15 21:20 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-07-15 21:20 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-07-15 21:20 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-07-15 21:20 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-07-15 21:20 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-07-15 21:20 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-07-15 21:20 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-07-15 21:20 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-07-15 21:20 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-07-15 21:20 - 2015-05-07 18:47 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-07-15 21:20 - 2015-03-11 03:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-07-15 21:20 - 2015-03-11 03:09 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-07-15 21:20 - 2014-10-29 04:45 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-07-15 21:20 - 2014-10-29 04:00 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2015-07-15 21:20 - 2014-10-29 04:00 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2015-07-14 23:58 - 2015-07-15 00:00 - 412224492 _____ C:\Users\Peter\Desktop\True.Detective.S02E01.HDTV.x264-KILLERS.mp4
2015-07-14 23:54 - 2015-07-14 23:54 - 00041374 _____ C:\Users\Peter\Desktop\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG).srt
2015-07-14 23:53 - 2015-07-14 23:53 - 00041374 _____ C:\Users\Peter\Downloads\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG) (2).srt
2015-07-14 23:53 - 2015-07-14 23:53 - 00041374 _____ C:\Users\Peter\Downloads\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG) (1).srt
2015-07-14 23:53 - 2015-07-14 23:53 - 00000000 ____D C:\Users\Peter\Desktop\True.Detective.S02E04.HDTV.x264-ASAP[ettv]
2015-07-14 23:52 - 2015-07-14 23:52 - 00002687 _____ C:\Users\Peter\Desktop\µTorrent.lnk
2015-07-14 23:51 - 2015-07-14 23:51 - 01993056 _____ (BitTorrent Inc.) C:\Users\Peter\Downloads\uTorrent.exe
2015-07-14 23:50 - 2015-07-14 23:50 - 00030444 _____ C:\Users\Peter\Downloads\[kickass.proxyindex.net]true.detective.s02e04.hdtv.x264.asap.ettv.torrent
2015-07-14 23:50 - 2015-07-14 23:50 - 00030444 _____ C:\Users\Peter\Downloads\[kickass.proxyindex.net]true.detective.s02e04.hdtv.x264.asap.ettv (1).torrent
2015-07-14 23:46 - 2015-07-14 23:46 - 00041374 _____ C:\Users\Peter\Downloads\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG).srt
2015-07-14 23:24 - 2015-07-14 23:24 - 00003168 _____ C:\Windows\DPINST.LOG
2015-07-14 23:21 - 2015-07-29 18:36 - 00002217 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-14 23:21 - 2015-07-14 23:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-07-13 23:04 - 2015-08-11 20:20 - 00000401 _____ C:\Users\Peter\AppData\Roaming\sp_data.sys
2015-07-13 22:23 - 2015-07-13 22:23 - 00000000 ____D C:\Program Files\WinPcap
2015-07-13 22:22 - 2015-07-13 22:27 - 00000000 ____D C:\Users\Peter\Documents\Freemake
2015-07-13 22:22 - 2015-07-13 22:23 - 00000000 ____D C:\ProgramData\Freemake
2015-07-13 22:22 - 2015-07-13 22:22 - 00001350 _____ C:\Users\Public\Desktop\Freemake Video Downloader.lnk
2015-07-13 22:22 - 2015-07-13 22:22 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
2015-07-13 22:22 - 2015-07-13 22:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake
2015-07-13 22:22 - 2015-07-13 22:22 - 00000000 ____D C:\Program Files (x86)\Freemake
2015-07-13 22:15 - 2015-07-13 22:15 - 00001767 _____ C:\Users\Public\Desktop\iTunes.lnk
2015-07-13 22:15 - 2015-07-13 22:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-07-13 22:14 - 2012-10-03 16:14 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2015-07-13 22:13 - 2015-07-13 22:14 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-07-13 22:13 - 2015-07-13 22:14 - 00000000 ____D C:\Program Files\iTunes
2015-07-13 22:13 - 2015-07-13 22:13 - 00000000 ____D C:\Program Files\iPod
2015-07-13 22:13 - 2015-07-13 22:13 - 00000000 ____D C:\Program Files (x86)\iTunes
2015-07-13 22:09 - 2015-07-13 22:09 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2015-07-13 22:09 - 2015-07-13 22:09 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2015-07-13 22:05 - 2015-08-11 00:12 - 00000000 ____D C:\Users\Peter\Desktop\hudba-zdielana
2015-07-13 18:24 - 2015-08-12 18:45 - 01608376 _____ C:\Windows\WindowsUpdate.log
2015-07-13 18:20 - 2015-08-11 20:19 - 00005906 _____ C:\Windows\setupact.log
2015-07-13 18:20 - 2015-07-27 18:00 - 00006528 _____ C:\Windows\PFRO.log
2015-07-13 18:20 - 2015-07-13 18:20 - 00000000 _____ C:\Windows\setuperr.log
2015-07-13 17:19 - 2015-07-13 17:19 - 03034492 _____ (Malwarebytes Corporation) C:\Users\Peter\Desktop\JRT.exe
2015-07-13 16:50 - 2015-07-13 16:50 - 00170280 _____ (ESET) C:\Windows\system32\Drivers\ESETCleanersDriver.sys
2015-07-13 16:30 - 2015-07-13 16:30 - 00000000 ____D C:\ProgramData\ESET
2015-07-13 16:30 - 2015-07-13 16:30 - 00000000 ____D C:\Program Files\ESET
2015-07-13 13:14 - 2015-08-08 07:57 - 00000000 ____D C:\Windows\pss
2015-07-13 12:52 - 2015-07-13 12:52 - 00039068 _____ C:\Users\Peter\Downloads\Game.Of.Thrones.S05E04.720p.HDTV.x264-0SEC.srt
2015-07-13 02:35 - 2015-07-13 02:35 - 00000000 ____D C:\Users\Peter\AppData\Local\Chris_Pietschmann_(http__
2015-07-13 02:32 - 2015-07-13 17:20 - 00000000 ____D C:\Program Files (x86)\Virtual Router
2015-07-13 02:23 - 2015-07-13 02:29 - 00000000 ____D C:\ProgramData\VirtualWifiRouter
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-12 18:45 - 2012-07-26 09:59 - 00000000 ____D C:\Windows\CbsTemp
2015-08-11 20:20 - 2013-01-24 04:17 - 00003056 _____ C:\Windows\System32\Tasks\ASUS P4G
2015-08-11 20:20 - 2013-01-24 04:15 - 00003028 _____ C:\Windows\System32\Tasks\ASUS USB Charger Plus
2015-08-11 20:19 - 2013-10-02 19:55 - 00000000 ____D C:\Users\Peter\AppData\Roaming\AIMP3
2015-08-11 20:19 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-11 20:19 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-08-11 20:02 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-08-11 19:32 - 2013-08-28 00:03 - 00000000 ____D C:\Users\Peter\AppData\Roaming\vlc
2015-08-11 17:42 - 2014-03-01 12:24 - 00105992 _____ C:\Windows\system32\perfh01B.dat
2015-08-11 17:42 - 2014-03-01 12:24 - 00037210 _____ C:\Windows\system32\perfc01B.dat
2015-08-11 17:42 - 2013-09-30 06:18 - 01120408 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-10 23:26 - 2014-07-25 18:59 - 00000000 ____D C:\Users\Peter\AppData\Local\Google
2015-08-08 13:02 - 2013-08-27 23:23 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3169770814-2687663565-890848358-1001
2015-08-08 07:57 - 2013-01-24 04:26 - 00003704 _____ C:\Windows\system32\ServiceFilter.ini
2015-08-08 01:28 - 2013-11-12 14:25 - 00000000 ____D C:\Users\Peter
2015-08-06 18:51 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2015-07-27 22:31 - 2013-08-28 00:28 - 00000000 ____D C:\Users\Peter\AppData\Roaming\uTorrent
2015-07-26 17:35 - 2013-01-24 03:56 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-26 17:33 - 2013-11-19 22:19 - 00000000 ____D C:\Users\Peter\AppData\Roaming\DAEMON Tools Lite
2015-07-25 21:04 - 2013-09-01 09:04 - 00000000 ____D C:\Windows\system32\MRT
2015-07-25 19:38 - 2013-08-22 16:44 - 00410456 _____ C:\Windows\system32\FNTCACHE.DAT
2015-07-18 20:15 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2015-07-17 21:46 - 2013-08-27 23:26 - 00000000 ____D C:\Users\Peter\AppData\Local\Adobe
2015-07-15 23:26 - 2014-01-07 22:25 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-07-14 23:24 - 2012-11-23 15:07 - 00000000 ____D C:\Program Files (x86)\ASUS
2015-07-14 23:23 - 2013-08-27 23:23 - 00000000 ____D C:\Users\Peter\AppData\Local\Opera Software
2015-07-14 23:23 - 2013-08-27 23:23 - 00000000 ____D C:\Program Files (x86)\Opera
2015-07-14 23:21 - 2014-07-25 18:59 - 00000000 ____D C:\Program Files (x86)\Google
2015-07-13 23:10 - 2013-08-22 17:38 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-13 23:10 - 2013-08-22 17:38 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-13 22:13 - 2013-09-22 21:26 - 00000000 ____D C:\Program Files\Common Files\Apple
2015-07-13 17:47 - 2012-11-23 15:06 - 00000000 ____D C:\ProgramData\Adobe
2015-07-13 17:42 - 2014-07-09 23:11 - 00000000 ____D C:\Windows\Minidump
2015-07-13 17:42 - 2013-09-07 00:05 - 00000000 ____D C:\Users\Peter\AppData\Local\CrashDumps
2015-07-13 17:32 - 2014-03-01 11:37 - 00000000 ____D C:\ProgramData\Skype
2015-07-13 17:31 - 2014-07-07 15:36 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-07-13 17:31 - 2014-03-01 12:21 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Skype
2015-07-13 17:31 - 2012-11-23 15:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2015-07-13 17:24 - 2015-03-12 11:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rhinoceros 5
2015-07-13 17:23 - 2015-04-17 21:05 - 00000000 ____D C:\Users\Peter\AppData\Local\pip
2015-07-13 17:22 - 2013-12-01 23:50 - 00098608 _____ C:\Users\Peter\AppData\Local\GDIPFONTCACHEV1.DAT
2015-07-13 17:22 - 2013-12-01 00:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codec Pack
2015-07-13 17:21 - 2014-02-28 20:00 - 00000000 ____D C:\Users\Peter\AppData\Local\Facebook
2015-07-13 17:16 - 2015-06-08 16:37 - 00000000 ____D C:\Users\Peter\Desktop\Matej
2015-07-13 16:27 - 2013-09-13 18:16 - 00000000 ____D C:\Users\Peter\AppData\Local\ABBYY
2015-07-13 16:27 - 2013-09-13 18:16 - 00000000 ____D C:\Program Files (x86)\ABBYY FineReader 11
2015-07-13 11:20 - 2015-07-03 11:34 - 00000933 _____ C:\Users\Peter\Desktop\Age of Empires II.lnk
2015-07-13 11:20 - 2015-07-03 11:34 - 00000926 _____ C:\Users\Peter\Desktop\Age of Empires II - The Conquerors.lnk
2015-07-13 02:34 - 2013-12-13 19:42 - 00000802 _____ C:\Windows\system32\Drivers\etc\hosts.ics
==================== Files in the root of some directories =======
2015-07-13 23:04 - 2015-08-11 20:20 - 0000401 _____ () C:\Users\Peter\AppData\Roaming\sp_data.sys
2013-10-11 11:25 - 2013-10-11 11:25 - 0000037 ___SH () C:\Users\Peter\AppData\Local\70149b02515b3bb20dd492.47983420
2015-07-27 18:02 - 2015-07-27 18:02 - 0000000 _____ () C:\Users\Peter\AppData\Local\{9D9B5A3D-9282-4C91-A45F-5A4F275B6528}
2012-11-23 15:06 - 2012-09-07 13:40 - 0000256 _____ () C:\ProgramData\SetStretch.cmd
2012-11-23 15:06 - 2009-07-22 12:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe
2012-11-23 15:06 - 2012-09-07 13:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS
Files to move or delete:
====================
C:\ProgramData\SetStretch.VBS
Some files in TEMP:
====================
C:\Users\Peter\AppData\Local\Temp\130812921452256338.exe
C:\Users\Peter\AppData\Local\Temp\13081292149084219295.exe
C:\Users\Peter\AppData\Local\Temp\3312.exe
C:\Users\Peter\AppData\Local\Temp\6B3.exe
C:\Users\Peter\AppData\Local\Temp\DAEMON Tools Lite.exe
C:\Users\Peter\AppData\Local\Temp\FreemakeVideoDownloaderFull.exe
C:\Users\Peter\AppData\Local\Temp\InstHelper.exe
C:\Users\Peter\AppData\Local\Temp\proxy_vole929552021567733713.dll
C:\Users\Peter\AppData\Local\Temp\Quarantine.exe
C:\Users\Peter\AppData\Local\Temp\sqlite3.dll
C:\Users\Peter\AppData\Local\Temp\_is7E43.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-08-01 22:03
==================== End of log ============================
Ran by Pepo (administrator) on KLARIK (12-08-2015 18:47:09)
Running from C:\Users\Peter\Desktop
Loaded Profiles: Pepo (Available Profiles: Pepo & DefaultAppPool)
Platform: Windows 8.1 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 15\Program32\ZPSTray.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Qualcomm Atheros) C:\Program Files (x86)\Bluetooth Suite\BtTray.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
() C:\Program Files (x86)\Abrupt Quote\Abrupt Quote.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
() C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Fork Ltd.) C:\Prey\platform\windows\cronsvc.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe
() C:\Program Files (x86)\Succulent Girlfriend\Succulent Girlfriend.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-01-21] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKU\S-1-5-21-3169770814-2687663565-890848358-1001\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{C7EF0772-77B2-4BAA-A628-3EF01B3E1455}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{D555A6BC-C9FA-4E58-8DB8-9591910625D5}: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-17] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-17] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Reader 3\npnitromozilla.dll [2013-07-26] (Nitro PDF)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-14] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3
CHR Extension: (Adblock Plus) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-07-14]
CHR Extension: (Facebook Customizer (by Adblock Plus)) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm [2015-07-14]
CHR Extension: (Color Picker) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\jcmgligingjhdnhdhgepemlckgcgmgaj [2015-07-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-14]
CHR Profile: C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 4
CHR Extension: (Skype Click to Call) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-08-12]
CHR HKLM\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]
Opera:
=======
OPR Extension: (No Name) - C:\Users\Peter\AppData\Roaming\Opera Software\Opera Stable\Extensions\hfmijjkdjheadkpejemopocfjbepodlp [2014-04-18]
OPR Extension: (No Name) - C:\Users\Peter\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2013-10-17]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 Abrupt Quote; C:\Program Files (x86)\Abrupt Quote\Abrupt Quote.exe [8016131 2015-06-11] () [File not signed] <==== ATTENTION
R3 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.)
R3 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [211584 2012-08-10] (Qualcomm Atheros Commnucations) [File not signed]
R3 CronService; C:\Prey\platform\windows\cronsvc.exe [23552 2013-05-08] (Fork Ltd.) [File not signed]
R3 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2015-06-17] (Ellora Assets Corp.) [File not signed]
R3 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation)
R3 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation)
S2 KMService; C:\WINDOWS\SysWOW64\srvany.exe [8192 2003-04-18] () [File not signed]
R3 NitroReaderDriverReadSpool3; C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe [230416 2013-07-26] (Nitro PDF Software)
R3 Succulent Girlfriend; C:\Program Files (x86)\Succulent Girlfriend\Succulent Girlfriend.exe [8016391 2015-07-25] () [File not signed] <==== ATTENTION
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-03-01] (Microsoft Corporation)
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [546304 2014-03-01] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R3 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2012-08-10] (Atheros) [File not signed]
S2 ekrn; "C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe" [X]
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ATP; C:\Windows\System32\drivers\AsusTP.sys [62848 2012-11-20] (ASUS Corporation)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [76952 2012-08-10] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2013-11-19] (Disc Soft Ltd)
S3 ESETCleanersDriver; C:\Windows\system32\Drivers\ESETCleanersDriver.sys [170280 2015-07-13] (ESET)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [14992 2012-08-02] ( )
S3 NdisImPlatformMp; C:\Windows\system32\DRIVERS\NdisImPlatform.sys [126464 2014-07-24] (Microsoft Corporation)
S3 Netaapl; C:\Windows\system32\DRIVERS\netaapl64.sys [23040 2013-07-25] (Apple Inc.) [File not signed]
R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc.)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2014-03-18] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-12 18:47 - 2015-08-12 18:49 - 00014633 _____ C:\Users\Peter\Desktop\FRST.txt
2015-08-12 18:47 - 2015-08-12 18:47 - 00000000 ____D C:\Users\Peter\Desktop\FRST-OlderVersion
2015-08-11 20:00 - 2015-08-11 20:01 - 00000000 ____D C:\AdwCleaner
2015-08-10 23:43 - 2015-08-12 18:47 - 00000000 ____D C:\FRST
2015-08-10 23:42 - 2015-08-12 18:47 - 02172928 _____ (Farbar) C:\Users\Peter\Desktop\FRST64.exe
2015-08-10 23:29 - 2015-08-10 23:29 - 00602112 _____ (OldTimer Tools) C:\Users\Peter\Desktop\OTL.exe
2015-08-08 10:38 - 2015-08-08 10:42 - 1305607342 _____ C:\Users\Peter\Desktop\Velký Gatsby .2013 CZ Titulky v obraze .avi
2015-08-06 20:17 - 2015-08-06 20:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDD Health
2015-08-06 20:17 - 2015-08-06 20:17 - 00000000 ____D C:\Program Files (x86)\HDD Health
2015-08-06 20:12 - 2015-08-06 20:12 - 00001200 _____ C:\Users\Peter\Desktop\CrystalDiskInfo.lnk
2015-08-06 20:12 - 2015-08-06 20:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2015-08-06 20:12 - 2015-08-06 20:12 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2015-08-06 17:50 - 2015-08-08 08:26 - 00000000 ____D C:\Users\Peter\Desktop\Nový priečinok (2)
2015-08-01 21:28 - 2015-08-01 21:28 - 00000000 ____D C:\Users\Peter\Desktop\Nový priečinok
2015-07-28 19:00 - 2015-07-28 19:04 - 733317120 _____ C:\Users\Peter\Desktop\82 - Zohan-kricí jméno Kadeřník www.hellbourne.cz.tl.avi
2015-07-27 22:33 - 2015-07-27 22:35 - 763146500 _____ C:\Users\Peter\Desktop\Wallander_03x01.web-rip.xvid.cz.avi
2015-07-27 21:25 - 2015-07-27 21:30 - 00000000 ____D C:\Users\Peter\Desktop\James.Mays.Cars.Of.The.People.S01E01.HDTV.x264-FTP[rarbg]
2015-07-27 21:25 - 2015-07-27 21:25 - 00041275 _____ C:\Users\Peter\Desktop\James.Mays.Cars.Of.The.People.S01E01.HDTV.x264-FTP[rartv]-[rarbg.com].torrent
2015-07-27 21:07 - 2015-07-27 21:07 - 00031036 _____ C:\Users\Peter\Desktop\James-May-s-Cars-of-the-People-S01E01(0000240566).zip
2015-07-27 21:04 - 2015-07-27 21:04 - 00113346 _____ C:\Users\Peter\Desktop\James Mays Cars Of The People S01E01 720p HDTV x264-FTP ---[www.bts.to]--- .torrent
2015-07-27 21:04 - 2015-07-27 21:04 - 00000000 ____D C:\Users\Peter\Desktop\James.Mays.Cars.Of.The.People.S01E01.720p.HDTV.x264-FTP[et]
2015-07-27 18:02 - 2015-07-27 18:02 - 00000000 _____ C:\Users\Peter\AppData\Local\{9D9B5A3D-9282-4C91-A45F-5A4F275B6528}
2015-07-26 17:41 - 2015-07-26 17:42 - 00105740 _____ C:\Windows\DirectX.log
2015-07-26 17:35 - 2015-07-26 17:35 - 00001804 _____ C:\Users\Public\Desktop\Play Caesar IV!.lnk
2015-07-26 17:35 - 2015-07-26 17:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra
2015-07-26 17:35 - 2015-07-26 17:35 - 00000000 ____D C:\Program Files (x86)\Sierra
2015-07-26 17:33 - 2015-07-26 17:33 - 00000000 ____D C:\Users\Peter\AppData\Roaming\InstallShield
2015-07-26 17:24 - 2015-07-26 17:24 - 01709792 _____ (Disc Soft Ltd.) C:\Users\Peter\Desktop\DTLiteInstaller.exe
2015-07-26 15:31 - 2011-11-06 19:44 - 00000000 ____D C:\Users\Peter\Desktop\Caesar IV(CZ+CRACK+CD KEY)
2015-07-26 15:23 - 2015-07-26 15:31 - 1559731164 _____ C:\Users\Peter\Desktop\Caesar IV(CZ+CRACK+CD KEY).rar
2015-07-25 19:41 - 2015-07-25 19:41 - 00000000 ____D C:\Program Files (x86)\Succulent Girlfriend
2015-07-22 00:03 - 2015-07-14 16:14 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-07-22 00:03 - 2015-07-14 16:14 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-07-22 00:03 - 2015-07-14 16:14 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-07-22 00:03 - 2015-07-14 16:13 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-07-19 23:18 - 2015-07-19 23:19 - 00034740 _____ C:\Users\Peter\Desktop\Game.of.Thrones.S05E09.PROPER.HDTV.x264-KILLERS (1).srt
2015-07-19 23:18 - 2015-07-19 23:18 - 00037754 _____ C:\Users\Peter\Desktop\Game.of.Thrones.S05E10.HDTV.x264-KILLERS (1).srt
2015-07-19 18:24 - 2015-07-19 18:45 - 00000000 ____D C:\Users\Peter\Desktop\Ted 2 2015 NEW UNCENSORED 720p HC HDRIP x264 AC3 TiTAN
2015-07-19 17:56 - 2015-07-19 17:56 - 00021803 _____ C:\Users\Peter\Desktop\The-Sopranos-S04E12(0000044062).zip
2015-07-19 17:45 - 2015-07-19 17:45 - 00026263 _____ C:\Users\Peter\Desktop\The-Sopranos-S04E13(0000044135).zip
2015-07-19 17:44 - 2015-07-19 17:56 - 00000000 ____D C:\Users\Peter\Desktop\The Sopranos 480p WEB-DL x264 Complete season 4
2015-07-19 12:25 - 2010-12-23 21:50 - 00000000 ____D C:\Users\Peter\Desktop\Delik & Bene - Zablesky geniality,ulomky sialenstva 2010
2015-07-19 12:22 - 2014-03-27 22:23 - 00000000 ____D C:\Users\Peter\Desktop\H16 - Kvalitny material
2015-07-18 21:52 - 2015-07-18 21:52 - 00045617 _____ C:\Users\Peter\Desktop\Game.of.Thrones.S05E08.HDTV.x264-KILLERS (1).srt
2015-07-17 21:55 - 2015-07-17 21:57 - 559994600 _____ C:\Users\Peter\Desktop\Hra o truny .Game of Thrones S05E07 CZ Dabing Dar.avi
2015-07-17 21:46 - 2015-08-11 19:24 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-07-17 21:46 - 2015-07-17 21:46 - 00003718 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-07-15 21:23 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-07-15 21:23 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-07-15 21:23 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-07-15 21:23 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-07-15 21:23 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-07-15 21:23 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-07-15 21:23 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-07-15 21:23 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-07-15 21:23 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-07-15 21:23 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-07-15 21:23 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-07-15 21:23 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-07-15 21:23 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-07-15 21:23 - 2015-06-25 04:31 - 04177920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-07-15 21:23 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-07-15 21:23 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-07-15 21:23 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-07-15 21:23 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-07-15 21:23 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-07-15 21:23 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-07-15 21:23 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-07-15 21:23 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-07-15 21:23 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-07-15 21:23 - 2014-10-29 06:03 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-07-15 21:23 - 2014-10-29 04:44 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-07-15 21:23 - 2014-10-29 04:22 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-07-15 21:23 - 2014-10-29 03:42 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-07-15 21:22 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll
2015-07-15 21:22 - 2014-10-29 03:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll
2015-07-15 21:21 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-07-15 21:21 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-07-15 21:21 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-07-15 21:21 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-07-15 21:21 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-07-15 21:21 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-07-15 21:20 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-07-15 21:20 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-07-15 21:20 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-07-15 21:20 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-07-15 21:20 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-07-15 21:20 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-07-15 21:20 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-07-15 21:20 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-07-15 21:20 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-07-15 21:20 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-07-15 21:20 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-07-15 21:20 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-07-15 21:20 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-07-15 21:20 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-07-15 21:20 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-07-15 21:20 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-07-15 21:20 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-07-15 21:20 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-07-15 21:20 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-07-15 21:20 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-07-15 21:20 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-07-15 21:20 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-07-15 21:20 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-07-15 21:20 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-07-15 21:20 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-07-15 21:20 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-07-15 21:20 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-07-15 21:20 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-07-15 21:20 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-07-15 21:20 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-07-15 21:20 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-07-15 21:20 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-07-15 21:20 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-07-15 21:20 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-07-15 21:20 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-07-15 21:20 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-07-15 21:20 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-07-15 21:20 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-07-15 21:20 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-07-15 21:20 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-07-15 21:20 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-07-15 21:20 - 2015-05-07 18:47 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-07-15 21:20 - 2015-03-11 03:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-07-15 21:20 - 2015-03-11 03:09 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-07-15 21:20 - 2014-10-29 04:45 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2015-07-15 21:20 - 2014-10-29 04:00 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2015-07-15 21:20 - 2014-10-29 04:00 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2015-07-14 23:58 - 2015-07-15 00:00 - 412224492 _____ C:\Users\Peter\Desktop\True.Detective.S02E01.HDTV.x264-KILLERS.mp4
2015-07-14 23:54 - 2015-07-14 23:54 - 00041374 _____ C:\Users\Peter\Desktop\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG).srt
2015-07-14 23:53 - 2015-07-14 23:53 - 00041374 _____ C:\Users\Peter\Downloads\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG) (2).srt
2015-07-14 23:53 - 2015-07-14 23:53 - 00041374 _____ C:\Users\Peter\Downloads\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG) (1).srt
2015-07-14 23:53 - 2015-07-14 23:53 - 00000000 ____D C:\Users\Peter\Desktop\True.Detective.S02E04.HDTV.x264-ASAP[ettv]
2015-07-14 23:52 - 2015-07-14 23:52 - 00002687 _____ C:\Users\Peter\Desktop\µTorrent.lnk
2015-07-14 23:51 - 2015-07-14 23:51 - 01993056 _____ (BitTorrent Inc.) C:\Users\Peter\Downloads\uTorrent.exe
2015-07-14 23:50 - 2015-07-14 23:50 - 00030444 _____ C:\Users\Peter\Downloads\[kickass.proxyindex.net]true.detective.s02e04.hdtv.x264.asap.ettv.torrent
2015-07-14 23:50 - 2015-07-14 23:50 - 00030444 _____ C:\Users\Peter\Downloads\[kickass.proxyindex.net]true.detective.s02e04.hdtv.x264.asap.ettv (1).torrent
2015-07-14 23:46 - 2015-07-14 23:46 - 00041374 _____ C:\Users\Peter\Downloads\True.Detective.S02E01.HDTV.x264-KILLERS (PROPER+FUM+AFG).srt
2015-07-14 23:24 - 2015-07-14 23:24 - 00003168 _____ C:\Windows\DPINST.LOG
2015-07-14 23:21 - 2015-07-29 18:36 - 00002217 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-14 23:21 - 2015-07-14 23:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-07-13 23:04 - 2015-08-11 20:20 - 00000401 _____ C:\Users\Peter\AppData\Roaming\sp_data.sys
2015-07-13 22:23 - 2015-07-13 22:23 - 00000000 ____D C:\Program Files\WinPcap
2015-07-13 22:22 - 2015-07-13 22:27 - 00000000 ____D C:\Users\Peter\Documents\Freemake
2015-07-13 22:22 - 2015-07-13 22:23 - 00000000 ____D C:\ProgramData\Freemake
2015-07-13 22:22 - 2015-07-13 22:22 - 00001350 _____ C:\Users\Public\Desktop\Freemake Video Downloader.lnk
2015-07-13 22:22 - 2015-07-13 22:22 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
2015-07-13 22:22 - 2015-07-13 22:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake
2015-07-13 22:22 - 2015-07-13 22:22 - 00000000 ____D C:\Program Files (x86)\Freemake
2015-07-13 22:15 - 2015-07-13 22:15 - 00001767 _____ C:\Users\Public\Desktop\iTunes.lnk
2015-07-13 22:15 - 2015-07-13 22:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-07-13 22:14 - 2012-10-03 16:14 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2015-07-13 22:13 - 2015-07-13 22:14 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-07-13 22:13 - 2015-07-13 22:14 - 00000000 ____D C:\Program Files\iTunes
2015-07-13 22:13 - 2015-07-13 22:13 - 00000000 ____D C:\Program Files\iPod
2015-07-13 22:13 - 2015-07-13 22:13 - 00000000 ____D C:\Program Files (x86)\iTunes
2015-07-13 22:09 - 2015-07-13 22:09 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2015-07-13 22:09 - 2015-07-13 22:09 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2015-07-13 22:05 - 2015-08-11 00:12 - 00000000 ____D C:\Users\Peter\Desktop\hudba-zdielana
2015-07-13 18:24 - 2015-08-12 18:45 - 01608376 _____ C:\Windows\WindowsUpdate.log
2015-07-13 18:20 - 2015-08-11 20:19 - 00005906 _____ C:\Windows\setupact.log
2015-07-13 18:20 - 2015-07-27 18:00 - 00006528 _____ C:\Windows\PFRO.log
2015-07-13 18:20 - 2015-07-13 18:20 - 00000000 _____ C:\Windows\setuperr.log
2015-07-13 17:19 - 2015-07-13 17:19 - 03034492 _____ (Malwarebytes Corporation) C:\Users\Peter\Desktop\JRT.exe
2015-07-13 16:50 - 2015-07-13 16:50 - 00170280 _____ (ESET) C:\Windows\system32\Drivers\ESETCleanersDriver.sys
2015-07-13 16:30 - 2015-07-13 16:30 - 00000000 ____D C:\ProgramData\ESET
2015-07-13 16:30 - 2015-07-13 16:30 - 00000000 ____D C:\Program Files\ESET
2015-07-13 13:14 - 2015-08-08 07:57 - 00000000 ____D C:\Windows\pss
2015-07-13 12:52 - 2015-07-13 12:52 - 00039068 _____ C:\Users\Peter\Downloads\Game.Of.Thrones.S05E04.720p.HDTV.x264-0SEC.srt
2015-07-13 02:35 - 2015-07-13 02:35 - 00000000 ____D C:\Users\Peter\AppData\Local\Chris_Pietschmann_(http__
2015-07-13 02:32 - 2015-07-13 17:20 - 00000000 ____D C:\Program Files (x86)\Virtual Router
2015-07-13 02:23 - 2015-07-13 02:29 - 00000000 ____D C:\ProgramData\VirtualWifiRouter
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-08-12 18:45 - 2012-07-26 09:59 - 00000000 ____D C:\Windows\CbsTemp
2015-08-11 20:20 - 2013-01-24 04:17 - 00003056 _____ C:\Windows\System32\Tasks\ASUS P4G
2015-08-11 20:20 - 2013-01-24 04:15 - 00003028 _____ C:\Windows\System32\Tasks\ASUS USB Charger Plus
2015-08-11 20:19 - 2013-10-02 19:55 - 00000000 ____D C:\Users\Peter\AppData\Roaming\AIMP3
2015-08-11 20:19 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-11 20:19 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-08-11 20:02 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-08-11 19:32 - 2013-08-28 00:03 - 00000000 ____D C:\Users\Peter\AppData\Roaming\vlc
2015-08-11 17:42 - 2014-03-01 12:24 - 00105992 _____ C:\Windows\system32\perfh01B.dat
2015-08-11 17:42 - 2014-03-01 12:24 - 00037210 _____ C:\Windows\system32\perfc01B.dat
2015-08-11 17:42 - 2013-09-30 06:18 - 01120408 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-10 23:26 - 2014-07-25 18:59 - 00000000 ____D C:\Users\Peter\AppData\Local\Google
2015-08-08 13:02 - 2013-08-27 23:23 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3169770814-2687663565-890848358-1001
2015-08-08 07:57 - 2013-01-24 04:26 - 00003704 _____ C:\Windows\system32\ServiceFilter.ini
2015-08-08 01:28 - 2013-11-12 14:25 - 00000000 ____D C:\Users\Peter
2015-08-06 18:51 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2015-07-27 22:31 - 2013-08-28 00:28 - 00000000 ____D C:\Users\Peter\AppData\Roaming\uTorrent
2015-07-26 17:35 - 2013-01-24 03:56 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-26 17:33 - 2013-11-19 22:19 - 00000000 ____D C:\Users\Peter\AppData\Roaming\DAEMON Tools Lite
2015-07-25 21:04 - 2013-09-01 09:04 - 00000000 ____D C:\Windows\system32\MRT
2015-07-25 19:38 - 2013-08-22 16:44 - 00410456 _____ C:\Windows\system32\FNTCACHE.DAT
2015-07-18 20:15 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2015-07-17 21:46 - 2013-08-27 23:26 - 00000000 ____D C:\Users\Peter\AppData\Local\Adobe
2015-07-15 23:26 - 2014-01-07 22:25 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-07-14 23:24 - 2012-11-23 15:07 - 00000000 ____D C:\Program Files (x86)\ASUS
2015-07-14 23:23 - 2013-08-27 23:23 - 00000000 ____D C:\Users\Peter\AppData\Local\Opera Software
2015-07-14 23:23 - 2013-08-27 23:23 - 00000000 ____D C:\Program Files (x86)\Opera
2015-07-14 23:21 - 2014-07-25 18:59 - 00000000 ____D C:\Program Files (x86)\Google
2015-07-13 23:10 - 2013-08-22 17:38 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-13 23:10 - 2013-08-22 17:38 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-13 22:13 - 2013-09-22 21:26 - 00000000 ____D C:\Program Files\Common Files\Apple
2015-07-13 17:47 - 2012-11-23 15:06 - 00000000 ____D C:\ProgramData\Adobe
2015-07-13 17:42 - 2014-07-09 23:11 - 00000000 ____D C:\Windows\Minidump
2015-07-13 17:42 - 2013-09-07 00:05 - 00000000 ____D C:\Users\Peter\AppData\Local\CrashDumps
2015-07-13 17:32 - 2014-03-01 11:37 - 00000000 ____D C:\ProgramData\Skype
2015-07-13 17:31 - 2014-07-07 15:36 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-07-13 17:31 - 2014-03-01 12:21 - 00000000 ____D C:\Users\Peter\AppData\Roaming\Skype
2015-07-13 17:31 - 2012-11-23 15:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2015-07-13 17:24 - 2015-03-12 11:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rhinoceros 5
2015-07-13 17:23 - 2015-04-17 21:05 - 00000000 ____D C:\Users\Peter\AppData\Local\pip
2015-07-13 17:22 - 2013-12-01 23:50 - 00098608 _____ C:\Users\Peter\AppData\Local\GDIPFONTCACHEV1.DAT
2015-07-13 17:22 - 2013-12-01 00:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codec Pack
2015-07-13 17:21 - 2014-02-28 20:00 - 00000000 ____D C:\Users\Peter\AppData\Local\Facebook
2015-07-13 17:16 - 2015-06-08 16:37 - 00000000 ____D C:\Users\Peter\Desktop\Matej
2015-07-13 16:27 - 2013-09-13 18:16 - 00000000 ____D C:\Users\Peter\AppData\Local\ABBYY
2015-07-13 16:27 - 2013-09-13 18:16 - 00000000 ____D C:\Program Files (x86)\ABBYY FineReader 11
2015-07-13 11:20 - 2015-07-03 11:34 - 00000933 _____ C:\Users\Peter\Desktop\Age of Empires II.lnk
2015-07-13 11:20 - 2015-07-03 11:34 - 00000926 _____ C:\Users\Peter\Desktop\Age of Empires II - The Conquerors.lnk
2015-07-13 02:34 - 2013-12-13 19:42 - 00000802 _____ C:\Windows\system32\Drivers\etc\hosts.ics
==================== Files in the root of some directories =======
2015-07-13 23:04 - 2015-08-11 20:20 - 0000401 _____ () C:\Users\Peter\AppData\Roaming\sp_data.sys
2013-10-11 11:25 - 2013-10-11 11:25 - 0000037 ___SH () C:\Users\Peter\AppData\Local\70149b02515b3bb20dd492.47983420
2015-07-27 18:02 - 2015-07-27 18:02 - 0000000 _____ () C:\Users\Peter\AppData\Local\{9D9B5A3D-9282-4C91-A45F-5A4F275B6528}
2012-11-23 15:06 - 2012-09-07 13:40 - 0000256 _____ () C:\ProgramData\SetStretch.cmd
2012-11-23 15:06 - 2009-07-22 12:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe
2012-11-23 15:06 - 2012-09-07 13:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS
Files to move or delete:
====================
C:\ProgramData\SetStretch.VBS
Some files in TEMP:
====================
C:\Users\Peter\AppData\Local\Temp\130812921452256338.exe
C:\Users\Peter\AppData\Local\Temp\13081292149084219295.exe
C:\Users\Peter\AppData\Local\Temp\3312.exe
C:\Users\Peter\AppData\Local\Temp\6B3.exe
C:\Users\Peter\AppData\Local\Temp\DAEMON Tools Lite.exe
C:\Users\Peter\AppData\Local\Temp\FreemakeVideoDownloaderFull.exe
C:\Users\Peter\AppData\Local\Temp\InstHelper.exe
C:\Users\Peter\AppData\Local\Temp\proxy_vole929552021567733713.dll
C:\Users\Peter\AppData\Local\Temp\Quarantine.exe
C:\Users\Peter\AppData\Local\Temp\sqlite3.dll
C:\Users\Peter\AppData\Local\Temp\_is7E43.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-08-01 22:03
==================== End of log ============================
- Přílohy
-
- Addition.zip
- (9.02 KiB) Staženo 70 x
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Spomalený chrome/PC -DISCOUNT reklamy,extremne zavírený
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKU\S-1-5-21-3169770814-2687663565-890848358-1001\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - No File
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR HKLM\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]
C:\Program Files (x86)\Internet Download Manager
C:\Program Files (x86)\Skype\Toolbars
C:\ProgramData\SetStretch.VBS
C:\Users\Peter\AppData\Local\Temp
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3169770814-2687663565-890848358-1001Core1cf3539cd45885c.job => C:\Users\Peter\AppData\Local\Facebook\Update\FacebookUpdate.exe
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Spomalený chrome/PC -DISCOUNT reklamy,extremne zavírený
posielam fixlog
- Přílohy
-
- Fixlog.zip
- (1.18 KiB) Staženo 44 x
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Spomalený chrome/PC -DISCOUNT reklamy,extremne zavírený
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Spomalený chrome/PC -DISCOUNT reklamy,extremne zavírený
Ďakujem
, nebude ten "vir" (v extensions...) uložený aj na mojom google účte? , lebo neviem či sa mám prihlásiť
, nebude ten "vir" (v extensions...) uložený aj na mojom google účte? , lebo neviem či sa mám prihlásiť
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Spomalený chrome/PC -DISCOUNT reklamy,extremne zavírený
Dosud jsme se s tím nesetkali. Možné je ale všchno, i viry se vyvíjejí.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?