Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Virus Policie-Španělsko-kam se mi schoval ?Je v notebooku ?

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#16 Příspěvek od vyosek »

:arrow: Stahnete FRSTLauncher http://vyosek.ic.cz/pro_usery/FRSTLauncher.exe a ulozte tez na Plochu vedle FRST64.exe

:arrow: Spustte FRSTLauncher, on si nasledne spusti FRST a pak udelate jiz klasicky Scan - pouze zkontrolujte, at je zatrhnuta polozka "Addition"
Obrázek

:arrow: Vysledky log FRST.txt mi sem dejte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

jarmilaw
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 29 říj 2013 22:09

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#17 Příspěvek od jarmilaw »

Tady je a co to znamená?
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-10-2013
Ran by Jarmila (administrator) on JARMILA-NEWPC on 30-10-2013 19:20:29
Running from C:\Users\Jarmila\Desktop
Windows Vista (TM) Home Premium Service Pack 2 (X64) OS Language: Czech
Internet Explorer Version 9
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_15f4e438\STacSV64.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
() C:\Windows\System32\WLTRYSVC.EXE
(Dell Inc.) C:\Windows\System32\bcmwltry.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Software602 a.s.) C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_15f4e438\AESTSr64.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
(Tablet Driver) C:\Windows\System32\Drivers\WTSRV.EXE
(Microsoft Corporation) C:\Windows\ehome\ehsched.exe
(Microsoft Corporation) C:\Windows\ehome\ehRecvr.exe
(Tablet Driver) C:\Windows\SysWOW64\WTClient.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Dell Inc.) C:\Windows\System32\WLTRAY.EXE
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(ArcSoft, Inc.) C:\Program Files (x86)\MSI\TotalMedia 3.5\TMMonitor.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\system32\Macromed\Flash\FlashUtil64_11_9_900_117_ActiveX.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(forum.viry.cz) C:\Users\Jarmila\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\conime.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(forum.viry.cz) C:\Users\Jarmila\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE
(Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [Windows Defender] - C:\Program Files\Windows Defender\MSASCui.exe [1584184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1780520 2009-05-08] (Synaptics Incorporated)
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [Broadcom Wireless Manager UI] - C:\Windows\System32\WLTRAY.EXE [4119552 2008-12-21] (Dell Inc.)
HKLM\...\Run: [QuickSet] - C:\Program Files\Dell\QuickSet\quickset.exe [3236432 2009-04-23] (Dell Inc.)
HKLM\...\Run: [IAAnotif] - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe [178712 2008-06-15] (Intel Corporation)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [462848 2009-05-11] (IDT, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehtray.exe [138240 2008-01-21] (Microsoft Corporation)
HKLM-x32\...\Run: [Dell Webcam Central] - C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe [405639 2009-01-09] (Creative Technology Ltd)
HKLM-x32\...\Run: [WTClient] - C:\Windows\\SysWOW64\WTClient.exe [32768 2009-03-17] (Tablet Driver)
HKLM-x32\...\Run: [IR_SERVER] - C:\Program Files (x86)\MSI\REALTEK DTV USB DEVICE\IR_SERVER.exe
HKLM-x32\...\Run: [ArcSoft Connection Service] - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\avastui.exe [3567800 2013-10-30] (AVAST Software)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
DPF: HKLM {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.microsoft.com/sites/produ ... wsdc64.cab
DPF: HKLM-x32 {02BCC737-B171-4746-94C9-0D8A0B2C0089} http://office.microsoft.com/sites/produ ... wsdc32.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [50176] (Společnost Microsoft)
Winsock: Catalog5-x64 02 %SystemRoot%\system32\napinsp.dll [62976] (Společnost Microsoft)
Tcpip\Parameters: [DhcpNameServer] 87.216.1.65 87.216.1.66

Chrome:
=======
CHR RestoreOnStartup: "sync":{"acknowledged_types":["Bookmarks","Preferences","Passwords","Autofill Profiles","Autofill","Themes","Typed URLs","Extensions","Search Engines","Sessions","Apps","App settings","Extension settings","App Notifications","Encryption keys"],"app_notifications":true,"app_settings":true,"apps":true,"autofill":true,"autofill_profile":true,"bookmarks":true,"dictionary":true,"encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAORZAgitCUk28Yo43ISmE9QAAAAACAAAAAAADZgAAqAAAABAAAAB5vcxlXLRenTvBl5RT09ZXAAAAAASAAACgAAAAEAAAAF2JCRSD3xWSRJvQbIwvGCg4AAAAIS2lByKfOpInNrtZHCtiwl9GTAIxAPFU6xYtS9Do9js7XD2RjUyzsqyN9EDfkU8E/6bcsarpP1EUAAAA3/3mtURxvfrRxT3aV4pHDdbJ2qE=","extension_settings":true,"extensions":true,"favicon_images":true,"favicon_tracking":true,"has_setup_completed":true,"history_delete_directives":true,"keep_everything_synced":true,"keystore_encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAkq/J69KU3k2Rq2B4YeftUgAAAAACAAAAAAADZgAAqAAAABAAAADcdePXv62fj5Eh/6rIcQzOAAAAAASAAACgAAAAEAAAAP5ddCSpba3hVBP1kVtUTrBQAAAArzx3uLW75yVTaw1QLqJbn0U8752ZwalOaRZyeHHZD1BVgM/lxh8ype4zNVEv3rnvpDXpeTc0pPdkfCPqR7JsrFvUzoAyfnWry0ahVlfPP5kUAAAApAM/rX/GfPGd+ZS/rP5CTnLvAuc=","last_synced_time":"13027586147568000","passwords":true,"preferences":true,"priority_preferences":true,"search_engines":true,"session_sync_guid":"session_syncRNGY3XXsVll8STRJXKeNGw==","sessions":true,"suppress_start":false,"synced_notifications":true,"tabs":true,"themes":true,"typed_urls":true},"sync_promo":{"show_ntp_bubble":false,"startup_count":1,"user_skipped":true,"view_count":4},"translate_accepted_count":{"en":0,"es":1},"translate_denied_count":{"en":1,"es"
CHR Extension: (Google Docs) - C:\Users\Jarmila\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\Jarmila\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\Jarmila\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\Jarmila\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Skype Click to Call) - C:\Users\Jarmila\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.9.0.12585_0
CHR Extension: (Blue Space Sunset Chrome Theme) - C:\Users\Jarmila\AppData\Local\Google\Chrome\User Data\Default\Extensions\nndfdjfoclbidmgpmbelcieibgjjfdog\4.3_0
CHR Extension: (Gmail) - C:\Users\Jarmila\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx

==================== Services (Whitelisted) =================

R2 602XML Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [84520 2011-03-14] (Software602 a.s.)
R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-10-30] (AVAST Software)
R2 wltrysvc; C:\Windows\System32\WLTRYSVC.EXE [32768 2008-12-21] ()
R2 yksvc; C:\Windows\System32\ykx64mpcoinst.dll [382464 2009-05-12] (Marvell)
S3 aspnet_state; %SystemRoot%\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [x]

==================== Drivers (Whitelisted) ====================

R2 aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [38984 2013-10-30] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [84328 2013-10-30] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr.sys [64752 2013-10-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-10-30] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1032416 2013-10-30] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [409832 2013-10-30] (AVAST Software)
R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [65264 2013-10-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [205320 2013-10-30] ()
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [46368 2013-10-29] (AVG Technologies)
R0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [275432 2009-04-11] (Společnost Microsoft)
R3 Ntfs; C:\Windows\System32\Drivers\Ntfs.sys [1513320 2013-03-03] (Společnost Microsoft)
S3 RTL2832UBDA; C:\Windows\SysWow64\drivers\RTL2832UBDA.sys [114080 2009-07-06] (REALTEK SEMICONDUCTOR Corp.)
S3 RTL2832UUSB; C:\Windows\SysWow64\Drivers\RTL2832UUSB.sys [38944 2009-07-06] (REALTEK SEMICONDUCTOR Corp.)
S3 RTL2832U_IRHID; C:\Windows\SysWow64\DRIVERS\RTL2832U_IRHID.sys [42912 2009-07-13] (Realtek)
S3 VST64HWBS2; C:\Windows\System32\DRIVERS\VSTBS26.SYS [392704 2008-01-21] (Conexant Systems, Inc.)
S3 VST64_DPV; C:\Windows\System32\DRIVERS\VSTDPV6.SYS [1523712 2008-01-21] (Conexant Systems, Inc.)
S3 ZTEusbMB; C:\Windows\System32\DRIVERS\ZTEusbnmeaext2.sys [119680 2012-05-05] (ZTE Incorporated)
S3 ZTEusbnmeaext; C:\Windows\System32\DRIVERS\ZTEusbnmeaext.sys [119680 2012-05-05] (ZTE Incorporated)
S3 ZTEWMSD_637; C:\Windows\System32\Drivers\ZTEWMSD_637.sys [19968 2012-05-05] (ZTE Corporation)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-10-30 19:20 - 2013-10-30 19:20 - 00015327 _____ C:\Users\Jarmila\Desktop\LM.bat
2013-10-30 19:16 - 2013-10-30 19:20 - 00029696 _____ C:\Users\Jarmila\AppData\Local\MSGBOX.EXE
2013-10-30 19:16 - 2013-10-30 19:16 - 00112128 _____ (forum.viry.cz) C:\Users\Jarmila\Desktop\FRSTLauncher.exe
2013-10-30 15:12 - 2013-10-30 15:20 - 00000000 ____D C:\AdwCleaner
2013-10-30 15:12 - 2013-10-30 15:12 - 01060070 _____ C:\Users\Jarmila\Desktop\adwcleaner.exe
2013-10-30 15:00 - 2013-10-30 15:00 - 00004296 _____ C:\Users\Jarmila\Desktop\JRT.txt
2013-10-30 14:42 - 2013-10-30 14:42 - 00000000 ____D C:\Windows\ERUNT
2013-10-30 14:41 - 2013-10-30 14:41 - 01033335 _____ (Thisisu) C:\Users\Jarmila\Desktop\JRT.exe
2013-10-30 14:06 - 2013-10-30 14:06 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices
2013-10-30 14:05 - 2013-10-30 14:05 - 00104424 _____ C:\Users\Guest\AppData\Local\GDIPFONTCACHEV1.DAT
2013-10-30 14:05 - 2013-10-30 14:05 - 00000981 _____ C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-10-30 14:05 - 2013-10-30 14:05 - 00000951 _____ C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ___RD C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ___RD C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ____D C:\Users\Guest\Documents\Bluetooth Exchange Folder
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ____D C:\Users\Guest\AppData\Roaming\AVAST Software
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ____D C:\Users\Guest\AppData\Roaming\ArcSoft
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Adobe
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ____D C:\Users\Guest\AppData\Local\Broadcom
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ____D C:\Users\Guest\AppData\Local\ArcSoft
2013-10-30 14:04 - 2013-10-30 14:05 - 00000976 _____ C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2013-10-30 14:04 - 2013-10-30 14:05 - 00000917 _____ C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk
2013-10-30 14:04 - 2013-10-30 14:05 - 00000000 ____D C:\Users\Guest
2013-10-30 14:04 - 2013-10-30 14:04 - 00000020 ___SH C:\Users\Guest\ntuser.ini
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Šablony
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Soubory cookie
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Okolní tiskárny
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Okolní síť
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Nabídka Start
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Dokumenty
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Documents\Obrázky
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Documents\Hudba
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Documents\Filmy
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Data aplikací
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\AppData\Local\Historie
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\AppData\Local\Data aplikací
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 ____D C:\Users\Guest\AppData\Local\VirtualStore
2013-10-30 14:04 - 2009-10-17 02:03 - 00000000 ____D C:\Users\Guest\AppData\Local\Microsoft Help
2013-10-30 14:04 - 2008-01-21 04:20 - 00000000 ___RD C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-10-30 14:04 - 2008-01-21 04:20 - 00000000 ___RD C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-10-30 13:51 - 2013-10-30 13:51 - 00008343 _____ C:\Users\Jarmila\Downloads\fixlist.txt
2013-10-30 13:07 - 2013-10-30 13:07 - 01956614 _____ (Farbar) C:\Users\Jarmila\Desktop\FRST64.exe
2013-10-30 11:23 - 2013-10-30 11:23 - 00000000 ____D C:\Users\Jarmila\AppData\Roaming\AVAST Software
2013-10-30 11:22 - 2013-10-30 11:22 - 00001831 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-10-30 11:21 - 2013-10-30 11:21 - 01032416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00409832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00205320 _____ C:\Windows\system32\Drivers\aswVmm.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00084328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00065776 _____ C:\Windows\system32\Drivers\aswRvrt.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00065264 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00064752 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00038984 _____ (AVAST Software) C:\Windows\system32\Drivers\aswFsBlk.sys
2013-10-30 11:20 - 2013-10-30 11:20 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2013-10-30 09:50 - 2013-10-30 09:50 - 00000000 ____D C:\Users\Alin\AppData\Roaming\Macromedia
2013-10-30 09:49 - 2013-10-30 09:49 - 00000000 ____D C:\Users\Alin\AppData\Roaming\Adobe
2013-10-30 09:46 - 2013-10-30 09:46 - 00000000 ____D C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices
2013-10-30 09:46 - 2013-10-30 09:46 - 00000000 ____D C:\Users\Alin\AppData\Local\AVG SafeGuard toolbar
2013-10-30 09:45 - 2013-10-30 09:45 - 00000000 ____D C:\Users\Alin\Documents\Bluetooth Exchange Folder
2013-10-30 09:45 - 2013-10-30 09:45 - 00000000 ____D C:\Users\Alin\AppData\Local\Broadcom
2013-10-30 09:44 - 2013-10-30 09:46 - 00000000 ____D C:\Users\Alin\AppData\Roaming\ArcSoft
2013-10-30 09:44 - 2013-10-30 09:44 - 00104424 _____ C:\Users\Alin\AppData\Local\GDIPFONTCACHEV1.DAT
2013-10-30 09:44 - 2013-10-30 09:44 - 00000000 ____D C:\Users\Alin\AppData\Local\PowerDVD DX
2013-10-30 09:44 - 2013-10-30 09:44 - 00000000 ____D C:\Users\Alin\AppData\Local\ArcSoft
2013-10-30 09:40 - 2013-10-30 09:40 - 00000981 _____ C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-10-30 09:40 - 2013-10-30 09:40 - 00000951 _____ C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2013-10-30 09:39 - 2013-10-30 09:40 - 00000976 _____ C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2013-10-30 09:39 - 2013-10-30 09:40 - 00000917 _____ C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk
2013-10-30 09:39 - 2013-10-30 09:39 - 00000000 ___RD C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-10-30 09:39 - 2013-10-30 09:39 - 00000000 ___RD C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-10-30 09:38 - 2013-10-30 09:38 - 00000000 ____D C:\Users\Alin\AppData\Local\VirtualStore
2013-10-30 09:37 - 2013-10-30 09:39 - 00000000 ____D C:\Users\Alin
2013-10-30 09:37 - 2013-10-30 09:37 - 00000020 ___SH C:\Users\Alin\ntuser.ini
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Šablony
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Soubory cookie
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Okolní tiskárny
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Okolní síť
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Nabídka Start
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Dokumenty
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Documents\Obrázky
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Documents\Hudba
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Documents\Filmy
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Data aplikací
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\AppData\Local\Historie
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\AppData\Local\Data aplikací
2013-10-30 09:37 - 2009-10-17 02:03 - 00000000 ____D C:\Users\Alin\AppData\Local\Microsoft Help
2013-10-30 09:37 - 2008-01-21 04:20 - 00000000 ___RD C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-10-30 09:37 - 2008-01-21 04:20 - 00000000 ___RD C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-10-30 06:58 - 2013-10-30 06:58 - 00000000 ____D C:\Users\Jarmila\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices
2013-10-29 23:15 - 2013-10-29 23:15 - 00000137 _____ C:\Users\Jarmila\Desktop\VIRY.CZ • Zobrazit téma - Virus Policie-Španělsko-kam se mi schoval Je v notebooku .url
2013-10-29 22:28 - 2013-10-29 22:28 - 00027338 _____ C:\Users\Jarmila\Downloads\FRST Addition.txt
2013-10-29 22:01 - 2013-10-29 22:01 - 00047320 _____ C:\Users\Jarmila\Downloads\FRST.txt
2013-10-29 21:55 - 2013-10-29 22:01 - 00027338 _____ C:\Users\Jarmila\Downloads\Addition.txt
2013-10-29 21:39 - 2013-10-30 13:57 - 00000000 ____D C:\FRST
2013-10-29 19:11 - 2013-10-29 19:11 - 00000000 ____D C:\Users\Jarmila\AppData\Roaming\Malwarebytes
2013-10-29 18:49 - 2013-10-29 18:49 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-29 16:31 - 2013-10-29 21:13 - 00000000 ____D C:\Program Files (x86)\Amazon
2013-10-29 09:32 - 2013-10-29 09:32 - 00000000 _____ C:\Users\Jarmila\Documents\Wireless key.txt
2013-10-29 09:27 - 2013-10-25 23:28 - 00080976 _____ C:\Users\Jarmila\Desktop\wirelesskeyview-x64.zip
2013-10-29 09:13 - 2013-10-29 09:13 - 00046368 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys
2013-10-23 05:29 - 2013-10-29 09:37 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-22 17:00 - 2013-10-22 17:00 - 00000000 ____D C:\ProgramData\Oracle
2013-10-22 16:58 - 2013-10-08 06:50 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-22 16:58 - 2013-10-08 06:46 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-10-22 16:58 - 2013-10-08 06:46 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-10-22 16:58 - 2013-10-08 06:46 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-10-22 16:57 - 2013-10-22 16:58 - 00004746 _____ C:\Windows\SysWOW64\jupdate-1.7.0_45-b18.log
2013-10-19 07:07 - 2013-10-19 07:07 - 00915368 _____ (Oracle Corporation) C:\Users\Jarmila\Downloads\JavaSetup7u45.exe
2013-10-11 13:54 - 2013-10-11 13:54 - 00000000 ____D C:\Users\Public\Documents\CrashDump
2013-10-10 16:38 - 2013-09-22 16:43 - 17833984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-10 16:38 - 2013-09-22 16:01 - 10926080 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-10 16:38 - 2013-09-22 15:42 - 02312704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-10 16:38 - 2013-09-22 15:36 - 01346560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-10 16:38 - 2013-09-22 15:33 - 01494528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-10-10 16:38 - 2013-09-22 15:33 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-10 16:38 - 2013-09-22 15:30 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-10-10 16:38 - 2013-09-22 15:27 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-10 16:38 - 2013-09-22 15:23 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-10-10 16:38 - 2013-09-22 15:22 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-10 16:38 - 2013-09-22 15:21 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-10-10 16:38 - 2013-09-22 15:19 - 02147840 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-10 16:38 - 2013-09-22 15:19 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-10 16:38 - 2013-09-22 15:16 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-10-10 16:38 - 2013-09-22 15:15 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-10 16:38 - 2013-09-22 15:07 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-10 16:38 - 2013-09-22 11:29 - 12336128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-10 16:38 - 2013-09-22 11:22 - 09739264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-10 16:38 - 2013-09-22 11:22 - 01800704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-10 16:38 - 2013-09-22 11:14 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-10-10 16:38 - 2013-09-22 11:13 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-10 16:38 - 2013-09-22 11:13 - 01104896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-10 16:38 - 2013-09-22 11:12 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-10-10 16:38 - 2013-09-22 11:09 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-10 16:38 - 2013-09-22 11:08 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-10-10 16:38 - 2013-09-22 11:07 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-10 16:38 - 2013-09-22 11:06 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-10-10 16:38 - 2013-09-22 11:05 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-10 16:38 - 2013-09-22 11:03 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-10 16:38 - 2013-09-22 11:03 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-10 16:38 - 2013-09-22 11:03 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-10-10 16:38 - 2013-09-22 10:59 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-10-10 05:22 - 2013-08-29 08:48 - 02775552 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-10 05:22 - 2013-08-01 05:10 - 00901568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-10 05:22 - 2013-08-01 04:37 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2013-10-10 05:22 - 2013-07-20 11:45 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 05:22 - 2013-07-20 11:44 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 05:22 - 2013-07-12 10:19 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2013-10-10 05:22 - 2013-07-04 05:21 - 00532480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-10 05:22 - 2013-07-04 05:13 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-10 05:22 - 2013-07-03 03:55 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2013-10-10 05:22 - 2013-06-29 03:25 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-10 05:22 - 2013-06-29 03:25 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-10 05:22 - 2013-06-29 03:25 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-10 05:22 - 2013-06-29 03:25 - 00007552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-10 05:22 - 2013-06-27 00:00 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-10 05:22 - 2011-05-05 15:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-10 05:22 - 2011-05-05 15:17 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-10 05:21 - 2013-08-27 04:39 - 01268224 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2013-10-10 05:21 - 2013-08-27 04:39 - 00327680 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2013-10-10 05:21 - 2013-08-27 04:39 - 00287232 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2013-10-10 05:21 - 2013-08-27 04:39 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2013-10-10 05:21 - 2013-08-27 03:47 - 01029120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2013-10-10 05:21 - 2013-08-27 03:47 - 00219648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2013-10-10 05:21 - 2013-08-27 03:47 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2013-10-10 05:21 - 2013-08-27 03:47 - 00160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2013-10-10 05:21 - 2013-08-27 03:32 - 02002944 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2013-10-10 05:21 - 2013-08-27 03:30 - 00566272 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2013-10-10 05:21 - 2013-08-27 03:06 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2013-10-10 05:21 - 2013-08-27 03:00 - 01556480 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-10-10 05:21 - 2013-08-27 03:00 - 01149952 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2013-10-10 05:21 - 2013-08-27 02:52 - 01172480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2013-10-10 05:21 - 2013-08-27 02:50 - 00486400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2013-10-10 05:21 - 2013-08-27 02:32 - 00683008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2013-10-10 05:21 - 2013-08-27 02:28 - 01069056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-10-10 05:21 - 2013-06-04 05:16 - 00048128 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-10 05:21 - 2013-06-04 05:16 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-10 05:21 - 2013-06-04 03:01 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-10 05:21 - 2013-06-04 02:49 - 00293376 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-07 19:38 - 2013-10-07 19:38 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log
2013-10-07 19:38 - 2013-10-07 19:38 - 00000000 ____D C:\Users\Jarmila\AppData\Roaming\Samsung
2013-10-07 19:38 - 2013-10-07 19:38 - 00000000 ____D C:\Users\Jarmila\AppData\Local\Samsung
2013-10-07 19:37 - 2013-10-07 19:37 - 00001839 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk
2013-10-07 19:37 - 2013-10-07 19:37 - 00001829 _____ C:\Users\Public\Desktop\Samsung Kies.lnk
2013-10-07 19:37 - 2013-10-07 19:37 - 00000000 ____D C:\Users\Jarmila\Documents\samsung
2013-10-07 19:35 - 2013-06-21 01:07 - 00203672 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys
2013-10-07 19:35 - 2013-06-21 01:07 - 00103448 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2013-10-07 19:29 - 2013-07-18 13:33 - 04659712 _____ (Dmitry Streblechenko) C:\Windows\SysWOW64\Redemption.dll
2013-10-07 19:27 - 2013-07-18 13:32 - 00821824 _____ (Devguru Co., Ltd.) C:\Windows\SysWOW64\dgderapi.dll
2013-10-07 19:27 - 2013-07-18 13:32 - 00020032 _____ (Devguru Co., Ltd) C:\Windows\SysWOW64\Drivers\dgderdrv.sys
2013-10-07 19:24 - 2013-10-07 19:35 - 00000000 ____D C:\Program Files (x86)\Samsung
2013-10-07 19:24 - 2013-10-07 19:33 - 00000000 ____D C:\ProgramData\Samsung
2013-10-07 19:17 - 2013-10-07 19:17 - 00000000 ____D C:\Users\Jarmila\AppData\Local\Downloaded Installations
2013-10-07 19:08 - 2013-10-07 19:12 - 00000000 ____D C:\Users\Jarmila\SAMSUNG
2013-10-02 11:41 - 2013-10-02 11:42 - 60265144 _____ C:\Users\Jarmila\Downloads\R204603.exe

==================== One Month Modified Files and Folders =======

2013-10-30 19:21 - 2009-10-25 15:22 - 00000000 ____D C:\Users\Jarmila\AppData\Roaming\Skype
2013-10-30 19:20 - 2013-10-30 19:20 - 00015327 _____ C:\Users\Jarmila\Desktop\LM.bat
2013-10-30 19:20 - 2013-10-30 19:16 - 00029696 _____ C:\Users\Jarmila\AppData\Local\MSGBOX.EXE
2013-10-30 19:16 - 2013-10-30 19:16 - 00112128 _____ (forum.viry.cz) C:\Users\Jarmila\Desktop\FRSTLauncher.exe
2013-10-30 17:57 - 2009-10-16 13:42 - 00002699 _____ C:\Users\Jarmila\Desktop\Microsoft Office Word 2007.lnk
2013-10-30 17:23 - 2006-11-02 16:22 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-30 17:23 - 2006-11-02 16:22 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-30 15:31 - 2009-09-02 07:05 - 01912692 _____ C:\Windows\WindowsUpdate.log
2013-10-30 15:30 - 2008-01-21 10:32 - 00007100 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-30 15:30 - 2008-01-21 10:31 - 03124040 _____ C:\Windows\system32\perfh005.dat
2013-10-30 15:30 - 2008-01-21 10:31 - 01030746 _____ C:\Windows\system32\perfc005.dat
2013-10-30 15:26 - 2006-11-02 16:07 - 00000000 ___RD C:\Users\Public\Recorded TV
2013-10-30 15:23 - 2008-01-21 04:26 - 00135076 _____ C:\Windows\PFRO.log
2013-10-30 15:23 - 2006-11-02 16:42 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-30 15:22 - 2009-09-02 12:42 - 00006396 _____ C:\Windows\bthservsdp.dat
2013-10-30 15:22 - 2006-11-02 16:42 - 00032568 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-10-30 15:20 - 2013-10-30 15:12 - 00000000 ____D C:\AdwCleaner
2013-10-30 15:12 - 2013-10-30 15:12 - 01060070 _____ C:\Users\Jarmila\Desktop\adwcleaner.exe
2013-10-30 15:00 - 2013-10-30 15:00 - 00004296 _____ C:\Users\Jarmila\Desktop\JRT.txt
2013-10-30 14:42 - 2013-10-30 14:42 - 00000000 ____D C:\Windows\ERUNT
2013-10-30 14:41 - 2013-10-30 14:41 - 01033335 _____ (Thisisu) C:\Users\Jarmila\Desktop\JRT.exe
2013-10-30 14:06 - 2013-10-30 14:06 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices
2013-10-30 14:05 - 2013-10-30 14:05 - 00104424 _____ C:\Users\Guest\AppData\Local\GDIPFONTCACHEV1.DAT
2013-10-30 14:05 - 2013-10-30 14:05 - 00000981 _____ C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-10-30 14:05 - 2013-10-30 14:05 - 00000951 _____ C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ___RD C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ___RD C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ____D C:\Users\Guest\Documents\Bluetooth Exchange Folder
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ____D C:\Users\Guest\AppData\Roaming\AVAST Software
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ____D C:\Users\Guest\AppData\Roaming\ArcSoft
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Adobe
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ____D C:\Users\Guest\AppData\Local\Broadcom
2013-10-30 14:05 - 2013-10-30 14:05 - 00000000 ____D C:\Users\Guest\AppData\Local\ArcSoft
2013-10-30 14:05 - 2013-10-30 14:04 - 00000976 _____ C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2013-10-30 14:05 - 2013-10-30 14:04 - 00000917 _____ C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk
2013-10-30 14:05 - 2013-10-30 14:04 - 00000000 ____D C:\Users\Guest
2013-10-30 14:04 - 2013-10-30 14:04 - 00000020 ___SH C:\Users\Guest\ntuser.ini
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Šablony
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Soubory cookie
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Okolní tiskárny
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Okolní síť
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Nabídka Start
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Dokumenty
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Documents\Obrázky
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Documents\Hudba
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Documents\Filmy
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\Data aplikací
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\AppData\Local\Historie
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 _SHDL C:\Users\Guest\AppData\Local\Data aplikací
2013-10-30 14:04 - 2013-10-30 14:04 - 00000000 ____D C:\Users\Guest\AppData\Local\VirtualStore
2013-10-30 13:57 - 2013-10-29 21:39 - 00000000 ____D C:\FRST
2013-10-30 13:57 - 2009-10-15 18:52 - 00000000 ____D C:\Users\Jarmila
2013-10-30 13:51 - 2013-10-30 13:51 - 00008343 _____ C:\Users\Jarmila\Downloads\fixlist.txt
2013-10-30 13:07 - 2013-10-30 13:07 - 01956614 _____ (Farbar) C:\Users\Jarmila\Desktop\FRST64.exe
2013-10-30 11:23 - 2013-10-30 11:23 - 00000000 ____D C:\Users\Jarmila\AppData\Roaming\AVAST Software
2013-10-30 11:22 - 2013-10-30 11:22 - 00001831 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-10-30 11:21 - 2013-10-30 11:21 - 01032416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00409832 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00205320 _____ C:\Windows\system32\Drivers\aswVmm.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00084328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00065776 _____ C:\Windows\system32\Drivers\aswRvrt.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00065264 _____ (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00064752 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr.sys
2013-10-30 11:21 - 2013-10-30 11:21 - 00038984 _____ (AVAST Software) C:\Windows\system32\Drivers\aswFsBlk.sys
2013-10-30 11:21 - 2013-07-06 13:38 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2013-10-30 11:20 - 2013-10-30 11:20 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2013-10-30 11:18 - 2013-07-06 13:34 - 00000000 ____D C:\ProgramData\AVAST Software
2013-10-30 10:38 - 2009-10-15 18:53 - 00000000 ___RD C:\Users\Jarmila\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-10-30 10:27 - 2011-06-21 19:45 - 00000000 ____D C:\Program Files (x86)\AVG
2013-10-30 09:50 - 2013-10-30 09:50 - 00000000 ____D C:\Users\Alin\AppData\Roaming\Macromedia
2013-10-30 09:49 - 2013-10-30 09:49 - 00000000 ____D C:\Users\Alin\AppData\Roaming\Adobe
2013-10-30 09:46 - 2013-10-30 09:46 - 00000000 ____D C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices
2013-10-30 09:46 - 2013-10-30 09:46 - 00000000 ____D C:\Users\Alin\AppData\Local\AVG SafeGuard toolbar
2013-10-30 09:46 - 2013-10-30 09:44 - 00000000 ____D C:\Users\Alin\AppData\Roaming\ArcSoft
2013-10-30 09:45 - 2013-10-30 09:45 - 00000000 ____D C:\Users\Alin\Documents\Bluetooth Exchange Folder
2013-10-30 09:45 - 2013-10-30 09:45 - 00000000 ____D C:\Users\Alin\AppData\Local\Broadcom
2013-10-30 09:44 - 2013-10-30 09:44 - 00104424 _____ C:\Users\Alin\AppData\Local\GDIPFONTCACHEV1.DAT
2013-10-30 09:44 - 2013-10-30 09:44 - 00000000 ____D C:\Users\Alin\AppData\Local\PowerDVD DX
2013-10-30 09:44 - 2013-10-30 09:44 - 00000000 ____D C:\Users\Alin\AppData\Local\ArcSoft
2013-10-30 09:40 - 2013-10-30 09:40 - 00000981 _____ C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-10-30 09:40 - 2013-10-30 09:40 - 00000951 _____ C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2013-10-30 09:40 - 2013-10-30 09:39 - 00000976 _____ C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2013-10-30 09:40 - 2013-10-30 09:39 - 00000917 _____ C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk
2013-10-30 09:39 - 2013-10-30 09:39 - 00000000 ___RD C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-10-30 09:39 - 2013-10-30 09:39 - 00000000 ___RD C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-10-30 09:39 - 2013-10-30 09:37 - 00000000 ____D C:\Users\Alin
2013-10-30 09:38 - 2013-10-30 09:38 - 00000000 ____D C:\Users\Alin\AppData\Local\VirtualStore
2013-10-30 09:37 - 2013-10-30 09:37 - 00000020 ___SH C:\Users\Alin\ntuser.ini
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Šablony
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Soubory cookie
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Okolní tiskárny
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Okolní síť
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Nabídka Start
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Dokumenty
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Documents\Obrázky
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Documents\Hudba
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Documents\Filmy
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\Data aplikací
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\AppData\Local\Historie
2013-10-30 09:37 - 2013-10-30 09:37 - 00000000 _SHDL C:\Users\Alin\AppData\Local\Data aplikací
2013-10-30 06:58 - 2013-10-30 06:58 - 00000000 ____D C:\Users\Jarmila\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices
2013-10-29 23:15 - 2013-10-29 23:15 - 00000137 _____ C:\Users\Jarmila\Desktop\VIRY.CZ • Zobrazit téma - Virus Policie-Španělsko-kam se mi schoval Je v notebooku .url
2013-10-29 22:28 - 2013-10-29 22:28 - 00027338 _____ C:\Users\Jarmila\Downloads\FRST Addition.txt
2013-10-29 22:11 - 2010-11-05 00:08 - 00000000 ____D C:\Users\Jarmila\Documents\Hesla
2013-10-29 22:01 - 2013-10-29 22:01 - 00047320 _____ C:\Users\Jarmila\Downloads\FRST.txt
2013-10-29 22:01 - 2013-10-29 21:55 - 00027338 _____ C:\Users\Jarmila\Downloads\Addition.txt
2013-10-29 21:53 - 2009-10-25 14:15 - 00000000 ____D C:\ProgramData\Skype
2013-10-29 21:52 - 2009-10-25 14:15 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-10-29 21:13 - 2013-10-29 16:31 - 00000000 ____D C:\Program Files (x86)\Amazon
2013-10-29 19:11 - 2013-10-29 19:11 - 00000000 ____D C:\Users\Jarmila\AppData\Roaming\Malwarebytes
2013-10-29 18:49 - 2013-10-29 18:49 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-10-29 09:37 - 2013-10-23 05:29 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-29 09:32 - 2013-10-29 09:32 - 00000000 _____ C:\Users\Jarmila\Documents\Wireless key.txt
2013-10-29 09:13 - 2013-10-29 09:13 - 00046368 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys
2013-10-29 09:01 - 2011-12-15 11:15 - 00000000 ____D C:\Users\Jarmila\Documents\Španělsko
2013-10-25 23:28 - 2013-10-29 09:27 - 00080976 _____ C:\Users\Jarmila\Desktop\wirelesskeyview-x64.zip
2013-10-25 07:10 - 2009-10-16 13:42 - 00002613 _____ C:\Users\Jarmila\Desktop\Microsoft Office Excel 2007.lnk
2013-10-24 15:42 - 2012-04-16 14:44 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-24 15:42 - 2012-04-16 14:44 - 00003766 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-10-24 15:42 - 2011-06-08 14:28 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-24 15:42 - 2009-10-16 13:59 - 00000000 ____D C:\Users\Jarmila\AppData\Local\Adobe
2013-10-24 14:24 - 2006-11-02 14:33 - 00000000 ____D C:\Windows\rescache
2013-10-24 14:04 - 2013-09-28 09:05 - 00012571 _____ C:\Windows\setupact.log
2013-10-22 17:00 - 2013-10-22 17:00 - 00000000 ____D C:\ProgramData\Oracle
2013-10-22 16:58 - 2013-10-22 16:57 - 00004746 _____ C:\Windows\SysWOW64\jupdate-1.7.0_45-b18.log
2013-10-22 16:58 - 2009-09-02 12:34 - 00000000 ____D C:\Program Files (x86)\Java
2013-10-19 13:45 - 2012-08-11 04:53 - 00000000 ____D C:\Users\Jarmila\Documents\Nové Lublice
2013-10-19 07:07 - 2013-10-19 07:07 - 00915368 _____ (Oracle Corporation) C:\Users\Jarmila\Downloads\JavaSetup7u45.exe
2013-10-18 17:48 - 2013-04-10 08:16 - 00002054 _____ C:\Users\Jarmila\Desktop\Google Chrome.lnk
2013-10-16 20:07 - 2009-10-29 08:29 - 00000000 ____D C:\Users\Jarmila\Documents\Personální
2013-10-12 08:11 - 2009-10-16 14:03 - 00000000 ____D C:\Users\Jarmila\Documents\Inzerce
2013-10-11 13:54 - 2013-10-11 13:54 - 00000000 ____D C:\Users\Public\Documents\CrashDump
2013-10-10 18:47 - 2009-09-02 12:44 - 00000000 ____D C:\Program Files (x86)\Intel
2013-10-10 17:54 - 2006-11-02 16:21 - 00385040 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-10 17:21 - 2009-10-16 13:14 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-10 16:48 - 2013-07-23 18:02 - 00000000 ____D C:\Windows\system32\MRT
2013-10-10 16:43 - 2006-11-02 13:35 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2013-10-09 18:35 - 2010-06-26 14:25 - 00003950 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-09 18:35 - 2010-06-26 14:24 - 00003698 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-09 02:23 - 2013-07-02 19:56 - 00003858 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1411844188-494998471-412337545-1000UA
2013-10-09 02:23 - 2013-07-02 19:56 - 00003462 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1411844188-494998471-412337545-1000Core
2013-10-08 06:50 - 2013-10-22 16:58 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-10-08 06:46 - 2013-10-22 16:58 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-10-08 06:46 - 2013-10-22 16:58 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-10-08 06:46 - 2013-10-22 16:58 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-10-07 19:38 - 2013-10-07 19:38 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log
2013-10-07 19:38 - 2013-10-07 19:38 - 00000000 ____D C:\Users\Jarmila\AppData\Roaming\Samsung
2013-10-07 19:38 - 2013-10-07 19:38 - 00000000 ____D C:\Users\Jarmila\AppData\Local\Samsung
2013-10-07 19:37 - 2013-10-07 19:37 - 00001839 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk
2013-10-07 19:37 - 2013-10-07 19:37 - 00001829 _____ C:\Users\Public\Desktop\Samsung Kies.lnk
2013-10-07 19:37 - 2013-10-07 19:37 - 00000000 ____D C:\Users\Jarmila\Documents\samsung
2013-10-07 19:35 - 2013-10-07 19:24 - 00000000 ____D C:\Program Files (x86)\Samsung
2013-10-07 19:33 - 2013-10-07 19:24 - 00000000 ____D C:\ProgramData\Samsung
2013-10-07 19:27 - 2009-09-02 12:44 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-10-07 19:17 - 2013-10-07 19:17 - 00000000 ____D C:\Users\Jarmila\AppData\Local\Downloaded Installations
2013-10-07 19:12 - 2013-10-07 19:08 - 00000000 ____D C:\Users\Jarmila\SAMSUNG
2013-10-02 15:48 - 2010-06-26 14:24 - 00000000 ____D C:\Program Files\Google
2013-10-02 15:48 - 2010-06-26 14:23 - 00000000 ____D C:\Program Files (x86)\Google
2013-10-02 12:19 - 2010-03-19 11:17 - 00107038 _____ C:\Windows\DPINST.LOG
2013-10-02 11:48 - 2010-03-19 11:06 - 00000000 ____D C:\ProgramData\Installations
2013-10-02 11:42 - 2013-10-02 11:41 - 60265144 _____ C:\Users\Jarmila\Downloads\R204603.exe
2013-10-02 11:34 - 2010-06-26 14:24 - 00000000 ____D C:\Users\Jarmila\AppData\Local\Google
2013-10-02 11:34 - 2010-06-26 14:23 - 00000000 ____D C:\ProgramData\Google
2013-10-02 09:07 - 2009-10-16 14:03 - 00000000 ____D C:\Users\Jarmila\Documents\Zbyslavice
2013-09-30 12:38 - 2012-02-16 13:04 - 00000000 ____D C:\Users\Jarmila\Documents\EKOMA por.centrum 2012

Some content of TEMP:
====================
C:\Users\Jarmila\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-10-30 15:35

==================== End Of Log ============================
Jarmila

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#18 Příspěvek od vyosek »

:arrow: Nejak se nam neprovedlo co melo, ale nevadi. Ten FRSTLauncher je dilem naseho fora, do zakladniho logu z FRST doplni jeste nejake dalsi informace...

:arrow: Znovu na plose vytvorte fixlist.txt, obsah fixlistu je nize, spustte FRST a kliknete na Fix

Kód: Vybrat vše

Start
CHR RestoreOnStartup: "sync":{"acknowledged_types":["Bookmarks","Preferences","Passwords","Autofill Profiles","Autofill","Themes","Typed URLs","Extensions","Search Engines","Sessions","Apps","App settings","Extension settings","App Notifications","Encryption keys"],"app_notifications":true,"app_settings":true,"apps":true,"autofill":true,"autofill_profile":true,"bookmarks":true,"dictionary":true,"encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAORZAgitCUk28Yo43ISmE9QAAAAACAAAAAAADZgAAqAAAABAAAAB5vcxlXLRenTvBl5RT09ZXAAAAAASAAACgAAAAEAAAAF2JCRSD3xWSRJvQbIwvGCg4AAAAIS2lByKfOpInNrtZHCtiwl9GTAIxAPFU6xYtS9Do9js7XD2RjUyzsqyN9EDfkU8E/6bcsarpP1EUAAAA3/3mtURxvfrRxT3aV4pHDdbJ2qE=","extension_settings":true,"extensions":true,"favicon_images":true,"favicon_tracking":true,"has_setup_completed":true,"history_delete_directives":true,"keep_everything_synced":true,"keystore_encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAkq/J69KU3k2Rq2B4YeftUgAAAAACAAAAAAADZgAAqAAAABAAAADcdePXv62fj5Eh/6rIcQzOAAAAAASAAACgAAAAEAAAAP5ddCSpba3hVBP1kVtUTrBQAAAArzx3uLW75yVTaw1QLqJbn0U8752ZwalOaRZyeHHZD1BVgM/lxh8ype4zNVEv3rnvpDXpeTc0pPdkfCPqR7JsrFvUzoAyfnWry0ahVlfPP5kUAAAApAM/rX/GfPGd+ZS/rP5CTnLvAuc=","last_synced_time":"13027586147568000","passwords":true,"preferences":true,"priority_preferences":true,"search_engines":true,"session_sync_guid":"session_syncRNGY3XXsVll8STRJXKeNGw==","sessions":true,"suppress_start":false,"synced_notifications":true,"tabs":true,"themes":true,"typed_urls":true},"sync_promo":{"show_ntp_bubble":false,"startup_count":1,"user_skipped":true,"view_count":4},"translate_accepted_count":{"en":0,"es":1},"translate_denied_count":{"en":1,"es"

2013-10-30 19:20 - 2013-10-30 19:20 - 00015327 _____ C:\Users\Jarmila\Desktop\LM.bat
2013-10-30 19:16 - 2013-10-30 19:20 - 00029696 _____ C:\Users\Jarmila\AppData\Local\MSGBOX.EXE
2013-10-30 19:16 - 2013-10-30 19:16 - 00112128 _____ (forum.viry.cz) C:\Users\Jarmila\Desktop\FRSTLauncher.exe
2013-10-30 15:12 - 2013-10-30 15:20 - 00000000 ____D C:\AdwCleaner
2013-10-30 15:12 - 2013-10-30 15:12 - 01060070 _____ C:\Users\Jarmila\Desktop\adwcleaner.exe
2013-10-30 15:00 - 2013-10-30 15:00 - 00004296 _____ C:\Users\Jarmila\Desktop\JRT.txt
2013-10-30 14:41 - 2013-10-30 14:41 - 01033335 _____ (Thisisu) C:\Users\Jarmila\Desktop\JRT.exe
2013-10-30 13:51 - 2013-10-30 13:51 - 00008343 _____ C:\Users\Jarmila\Downloads\fixlist.txt
2013-10-30 13:07 - 2013-10-30 13:07 - 01956614 _____ (Farbar) C:\Users\Jarmila\Desktop\FRST64.exe
2013-10-30 09:46 - 2013-10-30 09:46 - 00000000 ____D C:\Users\Alin\AppData\Local\AVG SafeGuard toolbar
2013-10-29 22:28 - 2013-10-29 22:28 - 00027338 _____ C:\Users\Jarmila\Downloads\FRST Addition.txt
2013-10-29 22:01 - 2013-10-29 22:01 - 00047320 _____ C:\Users\Jarmila\Downloads\FRST.txt
2013-10-29 21:55 - 2013-10-29 22:01 - 00027338 _____ C:\Users\Jarmila\Downloads\Addition.txt
2013-10-30 10:27 - 2011-06-21 19:45 - 00000000 ____D C:\Program Files (x86)\AVG
C:\Users\Jarmila\AppData\Local\Temp\Quarantine.exe
End
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

jarmilaw
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 29 říj 2013 22:09

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#19 Příspěvek od jarmilaw »

Tak nevím, asi dělám něco špatně, nevytvořil se txt, jen Addition
Jarmila

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#20 Příspěvek od vyosek »

Taky ale asi klikate spatne, mate vytvorit fixlist.txt a pak kliknout (po spusteni FRS.exe) na FIX
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

jarmilaw
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 29 říj 2013 22:09

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#21 Příspěvek od jarmilaw »

Ano, ale jak vytvořím Fixlist, podle kterého návodu? Už se v tom ztrácím :52:
Jarmila

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#22 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    CHR RestoreOnStartup: "sync":{"acknowledged_types":["Bookmarks","Preferences","Passwords","Autofill Profiles","Autofill","Themes","Typed URLs","Extensions","Search Engines","Sessions","Apps","App settings","Extension settings","App Notifications","Encryption keys"],"app_notifications":true,"app_settings":true,"apps":true,"autofill":true,"autofill_profile":true,"bookmarks":true,"dictionary":true,"encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAORZAgitCUk28Yo43ISmE9QAAAAACAAAAAAADZgAAqAAAABAAAAB5vcxlXLRenTvBl5RT09ZXAAAAAASAAACgAAAAEAAAAF2JCRSD3xWSRJvQbIwvGCg4AAAAIS2lByKfOpInNrtZHCtiwl9GTAIxAPFU6xYtS9Do9js7XD2RjUyzsqyN9EDfkU8E/6bcsarpP1EUAAAA3/3mtURxvfrRxT3aV4pHDdbJ2qE=","extension_settings":true,"extensions":true,"favicon_images":true,"favicon_tracking":true,"has_setup_completed":true,"history_delete_directives":true,"keep_everything_synced":true,"keystore_encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAkq/J69KU3k2Rq2B4YeftUgAAAAACAAAAAAADZgAAqAAAABAAAADcdePXv62fj5Eh/6rIcQzOAAAAAASAAACgAAAAEAAAAP5ddCSpba3hVBP1kVtUTrBQAAAArzx3uLW75yVTaw1QLqJbn0U8752ZwalOaRZyeHHZD1BVgM/lxh8ype4zNVEv3rnvpDXpeTc0pPdkfCPqR7JsrFvUzoAyfnWry0ahVlfPP5kUAAAApAM/rX/GfPGd+ZS/rP5CTnLvAuc=","last_synced_time":"13027586147568000","passwords":true,"preferences":true,"priority_preferences":true,"search_engines":true,"session_sync_guid":"session_syncRNGY3XXsVll8STRJXKeNGw==","sessions":true,"suppress_start":false,"synced_notifications":true,"tabs":true,"themes":true,"typed_urls":true},"sync_promo":{"show_ntp_bubble":false,"startup_count":1,"user_skipped":true,"view_count":4},"translate_accepted_count":{"en":0,"es":1},"translate_denied_count":{"en":1,"es"
    
    2013-10-30 19:20 - 2013-10-30 19:20 - 00015327 _____ C:\Users\Jarmila\Desktop\LM.bat
    2013-10-30 19:16 - 2013-10-30 19:20 - 00029696 _____ C:\Users\Jarmila\AppData\Local\MSGBOX.EXE
    2013-10-30 19:16 - 2013-10-30 19:16 - 00112128 _____ (forum.viry.cz) C:\Users\Jarmila\Desktop\FRSTLauncher.exe
    2013-10-30 15:12 - 2013-10-30 15:20 - 00000000 ____D C:\AdwCleaner
    2013-10-30 15:12 - 2013-10-30 15:12 - 01060070 _____ C:\Users\Jarmila\Desktop\adwcleaner.exe
    2013-10-30 15:00 - 2013-10-30 15:00 - 00004296 _____ C:\Users\Jarmila\Desktop\JRT.txt
    2013-10-30 14:41 - 2013-10-30 14:41 - 01033335 _____ (Thisisu) C:\Users\Jarmila\Desktop\JRT.exe
    2013-10-30 13:51 - 2013-10-30 13:51 - 00008343 _____ C:\Users\Jarmila\Downloads\fixlist.txt
    2013-10-30 13:07 - 2013-10-30 13:07 - 01956614 _____ (Farbar) C:\Users\Jarmila\Desktop\FRST64.exe
    2013-10-30 09:46 - 2013-10-30 09:46 - 00000000 ____D C:\Users\Alin\AppData\Local\AVG SafeGuard toolbar
    2013-10-29 22:28 - 2013-10-29 22:28 - 00027338 _____ C:\Users\Jarmila\Downloads\FRST Addition.txt
    2013-10-29 22:01 - 2013-10-29 22:01 - 00047320 _____ C:\Users\Jarmila\Downloads\FRST.txt
    2013-10-29 21:55 - 2013-10-29 22:01 - 00027338 _____ C:\Users\Jarmila\Downloads\Addition.txt
    2013-10-30 10:27 - 2011-06-21 19:45 - 00000000 ____D C:\Program Files (x86)\AVG
    C:\Users\Jarmila\AppData\Local\Temp\Quarantine.exe
    End
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

jarmilaw
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 29 říj 2013 22:09

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#23 Příspěvek od jarmilaw »

Tak,tady je a co to tedy znamená?
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 30-10-2013
Ran by Jarmila at 2013-10-30 21:22:52 Run:3
Running from C:\Users\Jarmila\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CHR RestoreOnStartup: "sync":{"acknowledged_types":["Bookmarks","Preferences","Passwords","Autofill Profiles","Autofill","Themes","Typed URLs","Extensions","Search Engines","Sessions","Apps","App settings","Extension settings","App Notifications","Encryption keys"],"app_notifications":true,"app_settings":true,"apps":true,"autofill":true,"autofill_profile":true,"bookmarks":true,"dictionary":true,"encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAORZAgitCUk28Yo43ISmE9QAAAAACAAAAAAADZgAAqAAAABAAAAB5vcxlXLRenTvBl5RT09ZXAAAAAASAAACgAAAAEAAAAF2JCRSD3xWSRJvQbIwvGCg4AAAAIS2lByKfOpInNrtZHCtiwl9GTAIxAPFU6xYtS9Do9js7XD2RjUyzsqyN9EDfkU8E/6bcsarpP1EUAAAA3/3mtURxvfrRxT3aV4pHDdbJ2qE=","extension_settings":true,"extensions":true,"favicon_images":true,"favicon_tracking":true,"has_setup_completed":true,"history_delete_directives":true,"keep_everything_synced":true,"keystore_encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAkq/J69KU3k2Rq2B4YeftUgAAAAACAAAAAAADZgAAqAAAABAAAADcdePXv62fj5Eh/6rIcQzOAAAAAASAAACgAAAAEAAAAP5ddCSpba3hVBP1kVtUTrBQAAAArzx3uLW75yVTaw1QLqJbn0U8752ZwalOaRZyeHHZD1BVgM/lxh8ype4zNVEv3rnvpDXpeTc0pPdkfCPqR7JsrFvUzoAyfnWry0ahVlfPP5kUAAAApAM/rX/GfPGd+ZS/rP5CTnLvAuc=","last_synced_time":"13027586147568000","passwords":true,"preferences":true,"priority_preferences":true,"search_engines":true,"session_sync_guid":"session_syncRNGY3XXsVll8STRJXKeNGw==","sessions":true,"suppress_start":false,"synced_notifications":true,"tabs":true,"themes":true,"typed_urls":true},"sync_promo":{"show_ntp_bubble":false,"startup_count":1,"user_skipped":true,"view_count":4},"translate_accepted_count":{"en":0,"es":1},"translate_denied_count":{"en":1,"es"

2013-10-30 19:20 - 2013-10-30 19:20 - 00015327 _____ C:\Users\Jarmila\Desktop\LM.bat
2013-10-30 19:16 - 2013-10-30 19:20 - 00029696 _____ C:\Users\Jarmila\AppData\Local\MSGBOX.EXE
2013-10-30 19:16 - 2013-10-30 19:16 - 00112128 _____ (forum.viry.cz) C:\Users\Jarmila\Desktop\FRSTLauncher.exe
2013-10-30 15:12 - 2013-10-30 15:20 - 00000000 ____D C:\AdwCleaner
2013-10-30 15:12 - 2013-10-30 15:12 - 01060070 _____ C:\Users\Jarmila\Desktop\adwcleaner.exe
2013-10-30 15:00 - 2013-10-30 15:00 - 00004296 _____ C:\Users\Jarmila\Desktop\JRT.txt
2013-10-30 14:41 - 2013-10-30 14:41 - 01033335 _____ (Thisisu) C:\Users\Jarmila\Desktop\JRT.exe
2013-10-30 13:51 - 2013-10-30 13:51 - 00008343 _____ C:\Users\Jarmila\Downloads\fixlist.txt
2013-10-30 13:07 - 2013-10-30 13:07 - 01956614 _____ (Farbar) C:\Users\Jarmila\Desktop\FRST64.exe
2013-10-30 09:46 - 2013-10-30 09:46 - 00000000 ____D C:\Users\Alin\AppData\Local\AVG SafeGuard toolbar
2013-10-29 22:28 - 2013-10-29 22:28 - 00027338 _____ C:\Users\Jarmila\Downloads\FRST Addition.txt
2013-10-29 22:01 - 2013-10-29 22:01 - 00047320 _____ C:\Users\Jarmila\Downloads\FRST.txt
2013-10-29 21:55 - 2013-10-29 22:01 - 00027338 _____ C:\Users\Jarmila\Downloads\Addition.txt
2013-10-30 10:27 - 2011-06-21 19:45 - 00000000 ____D C:\Program Files (x86)\AVG
C:\Users\Jarmila\AppData\Local\Temp\Quarantine.exe
End
*****************

CHR RestoreOnStartup: "sync":{"acknowledged_types":["Bookmarks","Preferences","Passwords","Autofill Profiles","Autofill","Themes","Typed URLs","Extensions","Search Engines","Sessions","Apps","App settings","Extension settings","App Notifications","Encryption keys"],"app_notifications":true,"app_settings":true,"apps":true,"autofill":true,"autofill_profile":true,"bookmarks":true,"dictionary":true,"encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAORZAgitCUk28Yo43ISmE9QAAAAACAAAAAAADZgAAqAAAABAAAAB5vcxlXLRenTvBl5RT09ZXAAAAAASAAACgAAAAEAAAAF2JCRSD3xWSRJvQbIwvGCg4AAAAIS2lByKfOpInNrtZHCtiwl9GTAIxAPFU6xYtS9Do9js7XD2RjUyzsqyN9EDfkU8E/6bcsarpP1EUAAAA3/3mtURxvfrRxT3aV4pHDdbJ2qE=","extension_settings":true,"extensions":true,"favicon_images":true,"favicon_tracking":true,"has_setup_completed":true,"history_delete_directives":true,"keep_everything_synced":true,"keystore_encryption_bootstrap_token":"AQAAANCMnd8BFdERjHoAwE/Cl+sBAAAAkq/J69KU3k2Rq2B4YeftUgAAAAACAAAAAAADZgAAqAAAABAAAADcdePXv62fj5Eh/6rIcQzOAAAAAASAAACgAAAAEAAAAP5ddCSpba3hVBP1kVtUTrBQAAAArzx3uLW75yVTaw1QLqJbn0U8752ZwalOaRZyeHHZD1BVgM/lxh8ype4zNVEv3rnvpDXpeTc0pPdkfCPqR7JsrFvUzoAyfnWry0ahVlfPP5kUAAAApAM/rX/GfPGd+ZS/rP5CTnLvAuc=","last_synced_time":"13027586147568000","passwords":true,"preferences":true,"priority_preferences":true,"search_engines":true,"session_sync_guid":"session_syncRNGY3XXsVll8STRJXKeNGw==","sessions":true,"suppress_start":false,"synced_notifications":true,"tabs":true,"themes":true,"typed_urls":true},"sync_promo":{"show_ntp_bubble":false,"startup_count":1,"user_skipped":true,"view_count":4},"translate_accepted_count":{"en":0,"es":1},"translate_denied_count":{"en":1,"es" ==> The Chrome "Settings" can be used to fix the entry.
"C:\Users\Jarmila\Desktop\LM.bat" => File/Directory not found.
Jarmila

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#24 Příspěvek od vyosek »

Tohle je vysledek a informace o tom, co jsme mazali a zda-li jsme byli uspesni...

Jak se chova PC, jsou nyni nejake problemy??
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

jarmilaw
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 29 říj 2013 22:09

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#25 Příspěvek od jarmilaw »

A byli jsme úspěšní ? Nevykoukne na mne odněkud zase oznámení Policie ? Manželovi zablokoval počítač, takže si moc dobře vzpomíná, co to bylo za hrůzu. Ale já jsem takové problémy neměla, jen se objevila ta zpráva ve španělštině a mohla jsem s počítačem pracovat. Nyní je můj počítač rychlejší.
Jarmila

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#26 Příspěvek od vyosek »

:arrow: T-Cleaner http://vyosek.ic.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: Udelejte skena pomoci toho MalwareBytes jak jste jiz ze zacatku delala
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

jarmilaw
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 29 říj 2013 22:09

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#27 Příspěvek od jarmilaw »

Sorry, správce T cleaner nereaguje n a A ani enter. Ráda bych tedy vypnula Avast, ale nevím kde.
Jarmila

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#28 Příspěvek od vyosek »

OK, tak pokracujte dalsimi kroky. T-Cleaner neni zivotne nutny...
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

jarmilaw
Návštěvník
Návštěvník
Příspěvky: 17
Registrován: 29 říj 2013 22:09

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#29 Příspěvek od jarmilaw »

Už jsem to našla, provedeno :)
Jarmila

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Virus Policie-Španělsko-kam se mi schoval ?Je v notebook

#30 Příspěvek od vyosek »

Ou Kej, tak dokoncete zybtek uklidu :)
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno