Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-03-2014 01
Ran by HP 8710w Workstation (administrator) on PC on 07-03-2014 20:48:05
Running from C:\Users\HP 8710w Workstation\Downloads
Windows 7 Professional Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(Hewlett-Packard Company) C:\Windows\system32\Hpservice.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Deskjet 3520 series\Bin\ScanToPCActivationApp.exe
(Andrea Electronics Corporation) C:\Windows\system32\AEADISRV.EXE
() C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTray.exe
(Analog Devices, Inc.) C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(Conexant Systems, Inc.) C:\Windows\system32\DRIVERS\xaudio64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
(TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe
(Wargaming.net) C:\Games\World_of_Tanks\WorldOfTanks.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MpCmdRun.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [] - [X]
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2174760 2010-06-04] (Synaptics Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [SoundMAXPnP] - C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe [1183744 2007-02-21] (Analog Devices, Inc.)
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [IObit Malware Fighter] - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [1573184 2013-12-13] (IObit)
HKLM-x32\...\Run: [] - [X]
Winlogon\Notify\ScCertProp: wlnotify.dll [X]
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\Run: [HP Deskjet 3520 series (NET)] - C:\Program Files\HP\HP Deskjet 3520 series\Bin\ScanToPCActivationApp.exe [2551656 2012-01-31] (Hewlett-Packard Co.)
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\Run: [Zoner Photo Studio Autoupdate] - C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE [800280 2013-09-16] (ZONER software)
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: E - E:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: F - F:\Autorun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: G - G:\Autorun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {139c7562-8b52-11e2-91f9-001f3b41b05d} - F:\.\Autorun.exe AUTORUN=1
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {139c7571-8b52-11e2-91f9-001f3b41b05d} - F:\.\Autorun.exe AUTORUN=1
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {2acfa570-d04d-11e1-9856-00218609dcde} - F:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {2b7145e4-d0f8-11e1-988e-00218609dcde} - F:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {2b71460b-d0f8-11e1-988e-00218609dcde} - E:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {3f440a7d-cf81-11e1-9894-00218609dcde} - E:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {440d9b1f-bee5-11e1-9ed7-00218609dcde} - E:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {440d9b2f-bee5-11e1-9ed7-00218609dcde} - E:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {61b65efc-d10c-11e1-98ab-00218609dcde} - E:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {61b65f33-d10c-11e1-98ab-00218609dcde} - E:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {61b65f3d-d10c-11e1-98ab-00218609dcde} - E:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {6b4d171d-8e22-11e1-9e73-00218609dcde} - E:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {824008d1-83f2-11e1-922a-00218609dcde} - E:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {824008d9-83f2-11e1-922a-00218609dcde} - E:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {979ab722-d0f7-11e1-98f1-00218609dcde} - F:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {a25c2f9c-d1ac-11e1-9ee3-00218609dcde} - G:\Autorun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {a3b5fada-cf82-11e1-98ec-00218609dcde} - E:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {b4052603-cf6b-11e1-a62f-00218609dcde} - E:\AutoRun.exe
HKU\S-1-5-21-3878015499-2240099498-1799337887-1000\...\MountPoints2: {d6f6ebab-8a71-11e2-ac22-00218609dcde} - F:\.\Autorun.exe AUTORUN=1
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.seznam.cz/?clid=13415
SearchScopes: HKCU - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
http://www.google.com/search?q={searchT ... {startPage}
SearchScopes: HKCU - {02D7F91A-39E9-4A03-B20F-5B946AC35427} URL =
http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKCU - {22450D50-F49B-4445-B109-EED229DC41E8} URL =
http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {328D9851-0553-41C6-A747-2C7CCBEFA4B2} URL =
http://www.mapy.cz/?query={searchTerms} ... arch_13415
SearchScopes: HKCU - {3C893BF9-C8B6-4C21-9823-43B0BC982B20} URL =
http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKCU - {4D69FA62-3CE5-464A-8255-B0B4EC3ED103} URL =
http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKCU - {56167194-330E-420C-9D1D-5D725E15532B} URL =
http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
http://www.google.com/search?q={searchT ... {startPage}
SearchScopes: HKCU - {8E6AC9F9-4752-45AE-BD31-2BDF207C1594} URL =
http://search.seznam.cz/?q={searchTerms ... arch_13415
SearchScopes: HKCU - {E18BEAB9-934A-4000-957F-620B87EEF062} URL =
http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {E221EAA4-4187-4E81-84AB-A85B42ADC1B3} URL =
http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Ads Removal - {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll (Adblock)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000}
https://fpdownload.macromedia.com/get/s ... wflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
FireFox:
========
FF ProfilePath: C:\Users\HP 8710w Workstation\AppData\Roaming\Mozilla\Firefox\Profiles\ne98b4cd.default
FF NewTab: hxxp://
www.google.com/
FF DefaultSearchEngine: Google
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://
www.google.com
FF Keyword.URL: hxxp://
www.google.com/search?btnG=Google+Search&q=
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll ()
FF Plugin: @java.com/DTPlugin,version=10.11.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.11.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\HP 8710w Workstation\AppData\Roaming\Mozilla\Firefox\Profiles\ne98b4cd.default\searchplugins\yahoo_ff.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Ads Removal - C:\Users\HP 8710w Workstation\AppData\Roaming\Mozilla\Firefox\Profiles\ne98b4cd.default\Extensions\
adsremoval@adsremoval.net [2014-03-07]
FF Extension: Seznam lištička - C:\Users\HP 8710w Workstation\AppData\Roaming\Mozilla\Firefox\Profiles\ne98b4cd.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2013-10-14]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} [2013-07-13]
Chrome:
=======
CHR Extension: (Dokumenty Google) - C:\Users\HP 8710w Workstation\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-07]
CHR Extension: (Disk Google) - C:\Users\HP 8710w Workstation\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-07]
CHR Extension: (YouTube) - C:\Users\HP 8710w Workstation\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-04-05]
CHR Extension: (Vyhledávání Google) - C:\Users\HP 8710w Workstation\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-04-05]
CHR Extension: (Ads Removal) - C:\Users\HP 8710w Workstation\AppData\Local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen [2014-03-07]
CHR Extension: (Peněženka Google) - C:\Users\HP 8710w Workstation\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23]
CHR Extension: (Gmail) - C:\Users\HP 8710w Workstation\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-04-05]
==================== Services (Whitelisted) =================
R2 AEADIFilters; C:\Windows\system32\AEADISRV.EXE [80384 2007-02-06] (Andrea Electronics Corporation)
R2 DokanMounter; C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe [14848 2011-01-10] ()
R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [341824 2013-11-11] (IObit)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
R2 Dokan; C:\Windows\system32\drivers\dokan.sys [120408 2011-01-10] (Windows (R) Win 7 DDK provider)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-10-14] (DT Soft Ltd)
R3 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2013-03-23] (IObit)
R3 HBtnKey; C:\Windows\System32\DRIVERS\cpqbttn.sys [19000 2010-02-25] (Hewlett-Packard Company)
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [31136 2013-09-30] (REALiX(tm))
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2013-11-19] (IObit.com)
S3 RICOH SmartCard Reader; C:\Windows\System32\DRIVERS\rismcx64.sys [59008 2009-07-20] (RICOH Company, Ltd.)
R3 rismcx64; C:\Windows\System32\DRIVERS\rismcx64.sys [59008 2009-07-20] (RICOH Company, Ltd.)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21184 2013-12-24] (IObit)
R3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2013-11-19] (IObit.com)
S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org)
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S3 hwusbfake; system32\DRIVERS\ewusbfake.sys [X]
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-07 20:48 - 2014-03-07 20:49 - 00018163 _____ () C:\Users\HP 8710w Workstation\Downloads\FRST.txt
2014-03-07 20:47 - 2014-03-07 20:48 - 00000000 ____D () C:\FRST
2014-03-07 20:47 - 2014-03-07 20:47 - 02156544 _____ (Farbar) C:\Users\HP 8710w Workstation\Downloads\FRST64.exe
2014-03-07 20:45 - 2014-03-07 20:45 - 00112640 _____ (forum.viry.cz) C:\Users\HP 8710w Workstation\Downloads\Nepotvrzeno 33301.crdownload
2014-03-07 02:49 - 2014-03-06 23:51 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-03-06 23:52 - 2014-03-07 05:17 - 00015988 _____ () C:\zoek-results.log
2014-03-06 23:51 - 2014-03-07 02:05 - 00000000 ____D () C:\zoek_backup
2014-03-06 23:51 - 2014-03-06 23:51 - 01284608 _____ () C:\Users\HP 8710w Workstation\Downloads\zoek.exe
2014-03-06 23:01 - 2014-03-06 23:04 - 00000000 ____D () C:\AdwCleaner
2014-03-06 22:59 - 2014-03-06 22:59 - 01244192 _____ () C:\Users\HP 8710w Workstation\Downloads\adwcleaner.exe
2014-03-06 08:56 - 2014-03-06 08:56 - 00001073 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-03-06 08:56 - 2014-03-06 08:56 - 00000000 ____D () C:\Users\HP 8710w Workstation\AppData\Roaming\Malwarebytes
2014-03-06 08:56 - 2014-03-06 08:56 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-03-06 08:56 - 2014-03-06 08:56 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-03-06 08:56 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-03-06 08:12 - 2014-03-06 08:13 - 10284816 _____ (Malwarebytes Corporation ) C:\Users\HP 8710w Workstation\Downloads\mbam-setup.exe
2014-03-05 00:22 - 2014-03-06 15:03 - 00000000 ____D () C:\Program Files\trend micro
2014-03-05 00:22 - 2014-03-05 00:23 - 00000000 ____D () C:\rsit
2014-03-05 00:21 - 2014-03-05 00:22 - 00935175 _____ () C:\Users\HP 8710w Workstation\Downloads\RSITx64.exe
2014-03-03 18:17 - 2014-03-07 19:43 - 00000616 _____ () C:\Windows\setupact.log
2014-03-03 18:17 - 2014-03-03 18:17 - 00000000 _____ () C:\Windows\setuperr.log
2014-03-03 18:16 - 2014-03-07 19:28 - 00074134 _____ () C:\Windows\PFRO.log
2014-03-01 08:39 - 2014-03-01 08:39 - 15740232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 31432480 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 23683360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 17715784 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 12324640 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-03-01 08:38 - 2014-03-01 08:38 - 11636176 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 11589272 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 09728064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 09690424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 03142432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 02956576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 02782496 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 02713728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 02410784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433489.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433489.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 00892192 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 00875296 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 00863520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 00844576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-02-28 21:54 - 2014-02-28 21:54 - 00000110 ____H () C:\Users\HP 8710w Workstation\Downloads\001_CMTP_logo_2 (1).jpg.uid-zps
2014-02-27 16:01 - 2014-02-27 16:01 - 00000110 ____H () C:\Users\HP 8710w Workstation\Downloads\image5.png.uid-zps
2014-02-24 23:02 - 2014-02-24 23:02 - 02522143 _____ () C:\Users\HP 8710w Workstation\Downloads\Citizen Herren-Armbanduhr XL Super Titanium Chronograph Quarz Titan CA0340-55A Amazon.de Uhren.htm
2014-02-24 23:02 - 2014-02-24 23:02 - 00000000 ____D () C:\Users\HP 8710w Workstation\Downloads\Citizen Herren-Armbanduhr XL Super Titanium Chronograph Quarz Titan CA0340-55A Amazon.de Uhren_files
2014-02-19 19:27 - 2014-02-19 19:40 - 147266000 _____ () C:\Users\HP 8710w Workstation\ts3_recording_14_02_19_19_27_19.wav
2014-02-19 10:41 - 2014-02-19 10:41 - 00000160 _____ () C:\Users\HP 8710w Workstation\Downloads\stažený soubor (1)
2014-02-19 10:41 - 2014-02-19 10:41 - 00000160 _____ () C:\Users\HP 8710w Workstation\Downloads\stažený soubor
2014-02-18 09:56 - 2014-03-01 08:38 - 14669032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-02-18 09:56 - 2014-02-18 09:56 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433250.dll
2014-02-18 09:56 - 2014-02-18 09:56 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433250.dll
2014-02-16 09:27 - 2014-02-16 09:29 - 27098838 _____ () C:\Users\HP 8710w Workstation\Downloads\8.11_Crabtr33_XVM_CZ_modpack_v1.00.7z
2014-02-15 15:03 - 2014-02-15 15:03 - 00001058 _____ () C:\Users\Public\Desktop\Smart Defrag 3.lnk
2014-02-15 15:03 - 2013-12-24 10:40 - 00021184 _____ (IObit) C:\Windows\system32\Drivers\SmartDefragDriver.sys
2014-02-13 00:08 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-13 00:08 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-02-13 00:07 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-13 00:07 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-13 00:07 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-13 00:07 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-13 00:07 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-13 00:07 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-13 00:07 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-13 00:07 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-13 00:07 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-13 00:07 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-13 00:07 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-13 00:07 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-13 00:07 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-13 00:07 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-13 00:07 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-13 00:07 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-13 00:07 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-13 00:07 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-13 00:07 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-13 00:07 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-13 00:07 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-13 00:07 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-13 00:07 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-13 00:07 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-13 00:07 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-13 00:07 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-13 00:07 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-13 00:07 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-13 00:07 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-13 00:07 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-13 00:07 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-13 00:07 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-13 00:07 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-13 00:07 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-13 00:07 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-13 00:07 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-13 00:07 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-13 00:07 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-13 00:07 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-12 17:50 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-02-12 17:50 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-02-12 17:50 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-12 17:50 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-02-12 17:50 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-02-12 17:50 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-02-12 17:49 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-02-12 17:49 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-02-12 17:49 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-02-12 17:49 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-02-12 17:49 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-02-12 17:49 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-02-12 17:49 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-02-12 17:49 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-02-12 17:49 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-02-12 17:49 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-02-12 17:49 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-02-12 17:49 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-02-12 17:49 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-02-12 17:49 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-02-12 17:49 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-02-12 17:49 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-02-12 17:49 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-02-12 17:49 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-02-12 17:49 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-02-12 17:49 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-02-12 17:49 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-02-12 17:49 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-02-07 20:54 - 2014-02-07 20:55 - 00000000 ____D () C:\Program Files\Virtual Audio Cable
2014-02-07 20:54 - 2014-02-07 20:54 - 00066728 _____ (Eugene V. Muzychenko) C:\Windows\system32\Drivers\vrtaucbl.sys
==================== One Month Modified Files and Folders =======
2014-03-07 20:49 - 2014-03-07 20:48 - 00018163 _____ () C:\Users\HP 8710w Workstation\Downloads\FRST.txt
2014-03-07 20:48 - 2014-03-07 20:47 - 00000000 ____D () C:\FRST
2014-03-07 20:47 - 2014-03-07 20:47 - 02156544 _____ (Farbar) C:\Users\HP 8710w Workstation\Downloads\FRST64.exe
2014-03-07 20:45 - 2014-03-07 20:45 - 00112640 _____ (forum.viry.cz) C:\Users\HP 8710w Workstation\Downloads\Nepotvrzeno 33301.crdownload
2014-03-07 20:36 - 2012-04-05 09:00 - 00000980 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-07 20:13 - 2012-06-28 13:45 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-03-07 19:57 - 2012-02-03 13:25 - 01552674 _____ () C:\Windows\WindowsUpdate.log
2014-03-07 19:51 - 2009-07-14 05:45 - 00014256 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-03-07 19:51 - 2009-07-14 05:45 - 00014256 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-03-07 19:47 - 2012-08-05 21:31 - 00000000 ____D () C:\Users\HP 8710w Workstation\AppData\Roaming\TS3Client
2014-03-07 19:43 - 2014-03-03 18:17 - 00000616 _____ () C:\Windows\setupact.log
2014-03-07 19:43 - 2012-04-05 09:00 - 00000976 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-07 19:43 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-03-07 19:28 - 2014-03-03 18:16 - 00074134 _____ () C:\Windows\PFRO.log
2014-03-07 05:17 - 2014-03-06 23:52 - 00015988 _____ () C:\zoek-results.log
2014-03-07 03:04 - 2013-01-23 18:16 - 00000664 ____H () C:\Windows\Tasks\Norton Product InstallerIdle.job
2014-03-07 02:05 - 2014-03-06 23:51 - 00000000 ____D () C:\zoek_backup
2014-03-07 01:15 - 2012-02-03 13:33 - 00000000 ____D () C:\Users\HP 8710w Workstation
2014-03-06 23:51 - 2014-03-07 02:49 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-03-06 23:51 - 2014-03-06 23:51 - 01284608 _____ () C:\Users\HP 8710w Workstation\Downloads\zoek.exe
2014-03-06 23:04 - 2014-03-06 23:01 - 00000000 ____D () C:\AdwCleaner
2014-03-06 22:59 - 2014-03-06 22:59 - 01244192 _____ () C:\Users\HP 8710w Workstation\Downloads\adwcleaner.exe
2014-03-06 15:03 - 2014-03-05 00:22 - 00000000 ____D () C:\Program Files\trend micro
2014-03-06 08:56 - 2014-03-06 08:56 - 00001073 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-03-06 08:56 - 2014-03-06 08:56 - 00000000 ____D () C:\Users\HP 8710w Workstation\AppData\Roaming\Malwarebytes
2014-03-06 08:56 - 2014-03-06 08:56 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-03-06 08:56 - 2014-03-06 08:56 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-03-06 08:13 - 2014-03-06 08:12 - 10284816 _____ (Malwarebytes Corporation ) C:\Users\HP 8710w Workstation\Downloads\mbam-setup.exe
2014-03-06 05:28 - 2013-02-28 07:45 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-03-06 05:27 - 2012-04-01 17:39 - 00000000 ____D () C:\ProgramData\Skype
2014-03-05 22:59 - 2009-07-14 16:18 - 00669132 _____ () C:\Windows\system32\perfh005.dat
2014-03-05 22:59 - 2009-07-14 16:18 - 00141760 _____ () C:\Windows\system32\perfc005.dat
2014-03-05 22:59 - 2009-07-14 06:13 - 01584626 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-03-05 00:23 - 2014-03-05 00:22 - 00000000 ____D () C:\rsit
2014-03-05 00:22 - 2014-03-05 00:21 - 00935175 _____ () C:\Users\HP 8710w Workstation\Downloads\RSITx64.exe
2014-03-03 18:17 - 2014-03-03 18:17 - 00000000 _____ () C:\Windows\setuperr.log
2014-03-03 00:44 - 2012-04-09 17:02 - 00000000 ____D () C:\Windows\Minidump
2014-03-02 10:40 - 2009-07-14 06:08 - 00032616 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-03-01 08:43 - 2014-01-29 16:14 - 00000000 ____D () C:\DrvInstall
2014-03-01 08:42 - 2012-02-03 14:10 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-03-01 08:39 - 2014-03-01 08:39 - 15740232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-03-01 08:39 - 2010-12-04 05:45 - 18257576 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 31432480 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 23683360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 17715784 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 12324640 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-03-01 08:38 - 2014-03-01 08:38 - 11636176 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 11589272 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 09728064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 09690424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 03142432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 02956576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 02782496 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 02713728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 02410784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433489.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433489.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 00892192 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 00875296 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 00863520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-03-01 08:38 - 2014-03-01 08:38 - 00844576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-03-01 08:38 - 2014-02-18 09:56 - 14669032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-03-01 08:38 - 2014-01-12 23:55 - 00024544 _____ () C:\Windows\system32\nvinfo.pb
2014-03-01 08:38 - 2010-12-04 05:45 - 03090184 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-02-28 21:54 - 2014-02-28 21:54 - 00000110 ____H () C:\Users\HP 8710w Workstation\Downloads\001_CMTP_logo_2 (1).jpg.uid-zps
2014-02-28 21:29 - 2013-03-24 14:34 - 00000000 ____D () C:\Users\HP 8710w Workstation\Downloads\Náhrada TWIST Micro Duo leifheit-online.cz_files
2014-02-27 16:01 - 2014-02-27 16:01 - 00000110 ____H () C:\Users\HP 8710w Workstation\Downloads\image5.png.uid-zps
2014-02-27 15:30 - 2013-10-14 10:39 - 00000000 ____D () C:\Users\HP 8710w Workstation\Downloads\Pinnacle-Studio-16-Ultimate-16.0.1.98-CZ-Multilingual
2014-02-24 23:02 - 2014-02-24 23:02 - 02522143 _____ () C:\Users\HP 8710w Workstation\Downloads\Citizen Herren-Armbanduhr XL Super Titanium Chronograph Quarz Titan CA0340-55A Amazon.de Uhren.htm
2014-02-24 23:02 - 2014-02-24 23:02 - 00000000 ____D () C:\Users\HP 8710w Workstation\Downloads\Citizen Herren-Armbanduhr XL Super Titanium Chronograph Quarz Titan CA0340-55A Amazon.de Uhren_files
2014-02-21 21:13 - 2012-06-28 13:45 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-02-21 21:13 - 2012-04-19 17:30 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-21 21:13 - 2012-02-03 17:00 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-19 19:40 - 2014-02-19 19:27 - 147266000 _____ () C:\Users\HP 8710w Workstation\ts3_recording_14_02_19_19_27_19.wav
2014-02-19 10:41 - 2014-02-19 10:41 - 00000160 _____ () C:\Users\HP 8710w Workstation\Downloads\stažený soubor (1)
2014-02-19 10:41 - 2014-02-19 10:41 - 00000160 _____ () C:\Users\HP 8710w Workstation\Downloads\stažený soubor
2014-02-18 18:49 - 2012-05-11 19:15 - 00000000 ____D () C:\Windows\rescache
2014-02-18 13:55 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-02-18 09:56 - 2014-02-18 09:56 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433250.dll
2014-02-18 09:56 - 2014-02-18 09:56 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433250.dll
2014-02-18 09:33 - 2013-07-14 13:30 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-18 09:30 - 2012-02-03 23:59 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-16 14:31 - 2012-04-05 09:00 - 00003976 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-02-16 14:31 - 2012-04-05 09:00 - 00003724 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-02-16 09:29 - 2014-02-16 09:27 - 27098838 _____ () C:\Users\HP 8710w Workstation\Downloads\8.11_Crabtr33_XVM_CZ_modpack_v1.00.7z
2014-02-15 15:03 - 2014-02-15 15:03 - 00001058 _____ () C:\Users\Public\Desktop\Smart Defrag 3.lnk
2014-02-15 15:02 - 2013-08-29 15:37 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-02-13 00:10 - 2012-03-18 12:02 - 01560276 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-02-10 15:35 - 2009-07-14 06:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD
2014-02-08 18:42 - 2010-12-04 04:45 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-02-08 18:42 - 2009-06-23 11:59 - 06712608 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-02-08 18:42 - 2009-06-23 11:59 - 03498272 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-02-08 18:42 - 2009-06-23 11:59 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-02-08 18:42 - 2009-06-23 11:59 - 00923936 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-02-08 18:42 - 2009-06-23 11:59 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-02-07 20:55 - 2014-02-07 20:54 - 00000000 ____D () C:\Program Files\Virtual Audio Cable
2014-02-07 20:54 - 2014-02-07 20:54 - 00066728 _____ (Eugene V. Muzychenko) C:\Windows\system32\Drivers\vrtaucbl.sys
2014-02-06 13:16 - 2014-02-13 00:07 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-06 12:30 - 2014-02-13 00:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-06 12:30 - 2014-02-13 00:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-06 12:12 - 2014-02-13 00:07 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-06 12:07 - 2014-02-13 00:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-06 12:06 - 2014-02-13 00:07 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-06 11:57 - 2014-02-13 00:07 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-06 11:56 - 2014-02-13 00:07 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-06 11:52 - 2014-02-13 00:07 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-06 11:49 - 2014-02-13 00:07 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-06 11:48 - 2014-02-13 00:07 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-06 11:48 - 2014-02-13 00:07 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-06 11:38 - 2014-02-13 00:07 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-06 11:32 - 2014-02-13 00:07 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-06 11:20 - 2014-02-13 00:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-06 11:17 - 2014-02-13 00:07 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-06 11:11 - 2014-02-13 00:07 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-06 11:01 - 2014-02-13 00:07 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-06 11:00 - 2014-02-13 00:07 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-06 10:57 - 2014-02-13 00:07 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-06 10:57 - 2014-02-13 00:07 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-06 10:52 - 2014-02-13 00:07 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-06 10:52 - 2014-02-13 00:07 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-06 10:50 - 2014-02-13 00:07 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-06 10:49 - 2014-02-13 00:07 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-06 10:47 - 2014-02-13 00:07 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-06 10:46 - 2014-02-13 00:07 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-06 10:25 - 2014-02-13 00:07 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-06 10:25 - 2014-02-13 00:07 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-06 10:24 - 2014-02-13 00:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-06 10:22 - 2014-02-13 00:07 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-06 10:13 - 2014-02-13 00:07 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-06 10:09 - 2014-02-13 00:07 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-06 10:03 - 2014-02-13 00:07 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-06 09:55 - 2014-02-13 00:07 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-06 09:41 - 2014-02-13 00:07 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-06 09:40 - 2014-02-13 00:07 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-06 09:36 - 2014-02-13 00:07 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-06 09:34 - 2014-02-13 00:07 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-05 21:16 - 2013-05-19 20:39 - 00001747 _____ () C:\Users\HP 8710w Workstation\Desktop\Nový textový dokument.txt
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-02-28 13:23
==================== End Of Log ============================