
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu Logu Problém s Firefoxem
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosím o kontrolu Logu Problém s Firefoxem
ok
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o kontrolu Logu Problém s Firefoxem
tak zde je log z MBAM nic jsem zatím nemazal a čekám na to co s tím...
Malwarebytes Anti-Malware
http://www.malwarebytes.org
Scan Date: 24.1.2015
Scan Time: 7:49:34
Logfile:
Administrator: Yes
Version: 0.00.0.0000
Malware Database: v2015.01.24.06
Rootkit Database: v2015.01.14.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Roman
Scan Type: Custom Scan
Result: Completed
Objects Scanned: 480985
Time Elapsed: 1 hr, 23 min, 52 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 0
(No malicious items detected)
Physical Sectors: 0
(No malicious items detected)
(end)
Malwarebytes Anti-Malware
http://www.malwarebytes.org
Scan Date: 24.1.2015
Scan Time: 7:49:34
Logfile:
Administrator: Yes
Version: 0.00.0.0000
Malware Database: v2015.01.24.06
Rootkit Database: v2015.01.14.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Roman
Scan Type: Custom Scan
Result: Completed
Objects Scanned: 480985
Time Elapsed: 1 hr, 23 min, 52 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 0
(No malicious items detected)
Physical Sectors: 0
(No malicious items detected)
(end)
- Přílohy
-
- bam.jpg (115.7 KiB) Zobrazeno 1655 x
Re: Prosím o kontrolu Logu Problém s Firefoxem

Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o kontrolu Logu Problém s Firefoxem
to je ale přece nesmysl...označilo mi to: astroburn- mám na vypalování, adwareCleaner jste mi řekli že si jej mám stáhnout a vyčistit...Daemon tools ani nepoužívám...
Re: Prosím o kontrolu Logu Problém s Firefoxem
u polozek Daemon Tools a astroburn se pravdepodobne jedna jen o instalacky a jsou detekovany, protoze si do PC pri automatickem klikani na next next next do PC natahate plno dalsiho bordela (PUP = potentially unwanted program = potencialne nechteny program a adwary)... doporucuju mrknout do http://forum.viry.cz/viewtopic.php?f=24&t=142553
AdwCleaner neni vsemocny a jeho databaze se neustale rozsiruje o nove mutace haveti (napriklad... youtubeadblocker je detekovany, ale jeho mutaci yyautuubbeeadblocker uz nedetekuje) a je nutne je autorum teto utility nahlasit (reportnout) a nez ji do databaze pridaji, tak smazat rucne.
AdwCleaner neni vsemocny a jeho databaze se neustale rozsiruje o nove mutace haveti (napriklad... youtubeadblocker je detekovany, ale jeho mutaci yyautuubbeeadblocker uz nedetekuje) a je nutne je autorum teto utility nahlasit (reportnout) a nez ji do databaze pridaji, tak smazat rucne.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o kontrolu Logu Problém s Firefoxem
OK dal jsem to vše do karantény a pak smazal i z karantény...odinstaloval MBAM a udělal nový log FRST
počítač startuje o hodně pomaleji a při kliknutí na nějaký program na ploše reaguje opravdu hodně pomalu...zde je log...
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-01-2015 01
Ran by Roman (administrator) on ROMAN-PC on 24-01-2015 14:10:44
Running from C:\Users\Roman\Desktop
Loaded Profiles: Roman (Available profiles: Roman)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Lenovo) C:\Program Files\Lenovo\Nsd\startup.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\NLSSRV32.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
() C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Crawler.com) C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
() C:\Program Files (x86)\Lenovo EasyCamera\Monitor.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Lenovo MuteSync\MuteSync.exe
(LENOVO) C:\Program Files (x86)\Lenovo\Lenovo CAPOSD\CAPOSD.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(forum.viry.cz) C:\Users\Roman\Desktop\FRST-OlderVersion\FRSTLauncher.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2847016 2011-11-10] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12446824 2012-01-31] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1156712 2011-11-15] (Realtek Semiconductor)
HKLM\...\Run: [SynLenovoGestureMgr] => C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [408872 2011-11-10] (Synaptics)
HKLM\...\Run: [OnekeyStudio] => C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe [789856 2012-08-08] (Lenovo)
HKLM\...\Run: [UpdatePRCShortCut] => C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [222504 2009-05-14] (CyberLink Corp.)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [8079408 2012-08-08] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [6202416 2012-08-08] (Lenovo(beijing) Limited)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2012-05-21] (Intel Corporation)
HKLM-x32\...\Run: [Lenovo EasyCamera_Monitor] => C:\Program Files (x86)\Lenovo EasyCamera\monitor.exe [258936 2012-02-06] ()
HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [506712 2011-06-01] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [MuteSync] => C:\Program Files (x86)\Lenovo\Lenovo MuteSync\MuteSync.exe [343040 2012-02-04] (Lenovo)
HKLM-x32\...\Run: [Lenovo Registration] => C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [4351712 2012-01-26] (Lenovo, Inc.)
HKLM-x32\...\Run: [CAPOSD] => C:\Program Files (x86)\Lenovo\Lenovo CAPOSD\CAPOSD.exe [1876992 2012-02-09] (LENOVO)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-09] (AVAST Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-683440959-2606681586-737459993-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-11-14] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [141336 2013-11-14] (NVIDIA Corporation)
Lsa: [Notification Packages] scecli C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [VeriFace Enc] -> {771C7324-DA80-49D3-8017-753B0AF60951} => C:\Windows\system32\IcnOvrly.dll ()
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKU\S-1-5-21-683440959-2606681586-737459993-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.google.com/ig/redirectdomain ... &bmod=KMOH
HKU\S-1-5-21-683440959-2606681586-737459993-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM-x32 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-683440959-2606681586-737459993-1001 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-683440959-2606681586-737459993-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?sourceid=i ... OH_csCZ565
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\3zu19sxd.default
FF DefaultSearchEngine: Seznam
FF DefaultSearchUrl: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF SearchEngineOrder.1: Seznam
FF Homepage: hxxp://mail.centrum.cz/?utm_source=centrumHP&utm_medium=mailbox&utm_campaign=A|https://ssl.aukro.cz/fnd/authentication ... google.cz/
FF Keyword.URL: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_287.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_287.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro PDF\Professional 7\npnitromozilla.dll ( )
FF SearchPlugin: C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\3zu19sxd.default\searchplugins\seznam-avast.xml
FF Extension: Adblock Plus - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\3zu19sxd.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-31]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-06]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-16]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-16] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2014-11-16] (Avast Software)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [945440 2012-02-02] (Broadcom Corporation.)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-08] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-08] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
R2 NitroDriverReadSpool2; C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe [216072 2012-06-21] (Nitro PDF Software)
S2 NSDSvc; C:\Windows\System32\NSDSvc.exe [120160 2011-12-24] (Lenovo)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1370912 2013-11-29] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15128352 2013-11-29] (NVIDIA Corporation)
R2 ST2012_Svc; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [1148664 2012-09-07] (Crawler.com)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5426448 2014-12-15] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-16] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-16] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-16] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-16] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-16] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-16] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-16] ()
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [134696 2012-02-02] (Broadcom Corporation.)
S3 IT9135BDA; C:\Windows\System32\Drivers\IT9135BDA.sys [164736 2014-06-09] (ITE )
R0 NSD; C:\Windows\System32\drivers\nsd.sys [24160 2011-12-24] (Lenovo Corporation")
R1 Nsdfltr; C:\Windows\System32\drivers\Nsdfltr.sys [59488 2011-12-22] (Lenovo Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-10-30] (NVIDIA Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2014-03-27] () [File not signed]
R3 SPUVCbv; C:\Windows\System32\Drivers\usbvideo.sys [185344 2013-07-12] (Microsoft Corporation)
R2 sp_rsdrv2; C:\Windows\System32\DRIVERS\stflt.sys [51496 2013-12-06] (Windows (R) Win 7 DDK provider)
U4 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2014-11-16] (Avast Software)
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-24 14:10 - 2015-01-24 14:12 - 00017694 _____ () C:\Users\Roman\Desktop\FRST.txt
2015-01-24 14:10 - 2015-01-24 14:10 - 00000000 ____D () C:\Users\Roman\Desktop\FRST-OlderVersion
2015-01-24 01:05 - 2015-01-24 01:05 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-01-24 00:57 - 2015-01-24 00:57 - 00000000 ____D () C:\Users\Roman\Downloads\CrystalDiskInfo6_2_2
2015-01-24 00:56 - 2015-01-24 00:56 - 02817875 _____ () C:\Users\Roman\Downloads\CrystalDiskInfo6_2_2.zip
2015-01-23 22:52 - 2015-01-23 22:52 - 00000982 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-01-23 22:52 - 2015-01-23 22:52 - 00000970 _____ () C:\Users\Public\Desktop\TeamViewer 10.lnk
2015-01-16 22:08 - 2015-01-24 14:05 - 00006108 _____ () C:\Windows\PFRO.log
2015-01-16 22:06 - 2015-01-16 22:16 - 00000000 ____D () C:\AdwCleaner
2015-01-16 22:06 - 2015-01-16 22:06 - 02191360 _____ () C:\Users\Roman\Desktop\adwcleaner_4.107.exe
2015-01-16 21:55 - 2015-01-24 14:08 - 00001344 _____ () C:\Windows\setupact.log
2015-01-16 21:55 - 2015-01-16 21:55 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-16 21:27 - 2015-01-24 13:54 - 00000000 ____D () C:\Program Files (x86)\unnisalesu
2015-01-16 21:26 - 2015-01-24 13:54 - 00000000 ____D () C:\ProgramData\{7970f157-f150-e08b-7970-0f157f15c55f}
2015-01-15 17:43 - 2014-12-06 05:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-01-15 17:43 - 2014-12-06 04:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-01-15 17:43 - 2014-12-06 04:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-01-14 16:14 - 2014-12-19 04:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-01-14 16:14 - 2014-12-19 02:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-01-14 16:14 - 2014-12-12 06:35 - 05553592 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-01-14 16:14 - 2014-12-12 06:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-01-14 16:14 - 2014-12-12 06:31 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-01-14 16:14 - 2014-12-12 06:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-01-14 16:14 - 2014-12-12 06:11 - 03971512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-01-14 16:14 - 2014-12-12 06:11 - 03916728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-01-14 16:14 - 2014-12-12 06:07 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-01-14 16:14 - 2014-12-11 18:47 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-01-13 20:58 - 2015-01-13 20:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-01-13 18:10 - 2014-12-13 06:09 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-01-13 18:10 - 2014-12-13 04:33 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-01-12 19:31 - 2015-01-24 14:10 - 02129920 _____ (Farbar) C:\Users\Roman\Desktop\FRST64.exe
2015-01-12 19:20 - 2014-11-11 04:09 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-01-12 19:20 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-01-12 19:16 - 2015-01-12 19:16 - 00000000 __SHD () C:\Users\Roman\AppData\Local\EmieUserList
2015-01-12 19:16 - 2015-01-12 19:16 - 00000000 __SHD () C:\Users\Roman\AppData\Local\EmieSiteList
2015-01-12 19:16 - 2015-01-12 19:16 - 00000000 __SHD () C:\Users\Roman\AppData\Local\EmieBrowserModeList
2015-01-12 19:14 - 2015-01-16 22:08 - 00000940 _____ () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-01-12 19:03 - 2014-06-27 03:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-01-12 19:03 - 2014-06-27 02:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-01-12 19:01 - 2014-11-22 03:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-01-12 19:01 - 2014-06-24 04:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-01-12 19:01 - 2014-06-24 03:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-01-12 19:01 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-01-12 19:01 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-01-12 19:01 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-01-12 19:01 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-01-12 18:15 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2015-01-12 18:10 - 2015-01-12 18:10 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-01-12 18:09 - 2015-01-12 18:09 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-01-12 18:09 - 2015-01-12 18:09 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-01-12 18:09 - 2015-01-12 18:09 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-01-12 18:09 - 2015-01-12 18:09 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2015-01-12 18:09 - 2015-01-12 18:09 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2015-01-12 18:09 - 2015-01-12 18:09 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-01-12 18:09 - 2015-01-12 18:09 - 00389296 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00342200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-01-12 18:09 - 2015-01-12 18:09 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-01-12 18:09 - 2015-01-12 18:09 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-01-12 18:09 - 2015-01-12 18:09 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-01-12 18:02 - 2015-01-12 18:03 - 58794192 _____ (Microsoft Corporation) C:\Users\Roman\Downloads\IE11-Windows6.1-x64-cs-cz.exe
2015-01-04 18:51 - 2015-01-04 18:51 - 03480040 _____ (McAfee, Inc.) C:\Users\Roman\Downloads\MCPR.exe
2014-12-28 19:41 - 2014-12-28 19:41 - 00000000 ____D () C:\ProgramData\CyberLink
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-24 14:11 - 2012-08-08 08:02 - 01781909 _____ () C:\Windows\WindowsUpdate.log
2015-01-24 14:10 - 2014-11-14 20:54 - 00000000 ____D () C:\FRST
2015-01-24 14:07 - 2014-12-21 12:37 - 00070174 _____ () C:\FaceProv.log
2015-01-24 14:07 - 2012-08-08 08:52 - 00092933 _____ () C:\Windows\system32\fastboot.set
2015-01-24 14:07 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-24 14:05 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-24 14:05 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-24 14:00 - 2013-12-06 20:13 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-01-24 13:57 - 2009-07-14 05:45 - 00306272 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-24 13:55 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PLA
2015-01-24 13:17 - 2013-12-06 21:36 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-24 12:21 - 2012-08-08 07:43 - 00669116 _____ () C:\Windows\system32\perfh005.dat
2015-01-24 12:21 - 2012-08-08 07:43 - 00141744 _____ () C:\Windows\system32\perfc005.dat
2015-01-24 12:21 - 2009-07-14 06:13 - 01584554 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-24 01:04 - 2013-12-06 20:23 - 00000000 ____D () C:\MeProgramy
2015-01-24 00:09 - 2014-11-12 18:39 - 00000000 ____D () C:\Users\Roman\Documents\Youcam
2015-01-24 00:07 - 2013-12-06 19:31 - 00067944 _____ () C:\Users\Roman\AppData\Local\GDIPFONTCACHEV1.DAT
2015-01-23 22:52 - 2014-03-29 22:38 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2015-01-23 22:51 - 2014-03-29 22:35 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\TeamViewer
2015-01-23 19:17 - 2013-12-06 21:36 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-01-23 19:17 - 2013-12-06 21:36 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-01-23 19:17 - 2013-12-06 21:36 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-01-22 20:15 - 2013-12-07 00:07 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\ICQ
2015-01-22 16:00 - 2014-02-09 12:03 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\OpenOffice.org2
2015-01-16 21:53 - 2011-02-24 18:03 - 00000000 ____D () C:\Windows\Panther
2015-01-16 21:30 - 2013-12-06 21:31 - 00001146 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-01-16 21:30 - 2013-12-06 21:31 - 00001146 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-01-14 21:14 - 2013-12-10 18:00 - 00000000 ____D () C:\Windows\system32\MRT
2015-01-14 21:10 - 2013-12-10 18:00 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-01-14 16:06 - 2013-12-06 21:31 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-12 21:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2015-01-12 19:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK
2015-01-12 19:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR
2015-01-12 19:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\zh-HK
2015-01-12 19:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\tr-TR
2015-01-12 19:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-01-06 04:36 - 2010-11-21 04:27 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-01-01 20:11 - 2013-12-06 21:35 - 00000000 ____D () C:\Users\Roman\AppData\Local\Adobe
2014-12-25 15:54 - 2013-12-07 17:39 - 00001003 _____ () C:\Users\Roman\Desktop\Bluetooth.lnk
2014-12-25 08:57 - 2009-07-14 06:08 - 00032578 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
==================== Files in the root of some directories =======
2014-06-19 05:20 - 2014-06-19 05:20 - 0000024 _____ () C:\Users\Roman\AppData\Roaming\temp.ini
2014-08-19 20:23 - 2014-08-19 20:23 - 0003584 _____ () C:\Users\Roman\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-12-08 18:38 - 2014-05-04 23:47 - 0007597 _____ () C:\Users\Roman\AppData\Local\resmon.resmoncfg
2014-11-07 20:20 - 2014-11-07 20:20 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2014-06-09 17:50 - 2014-09-15 16:03 - 0026327 _____ () C:\ProgramData\LmeUSB.log
2014-06-09 17:50 - 2014-09-15 16:03 - 0025806 _____ () C:\ProgramData\LmeZJSW.log
2014-06-09 17:50 - 2014-09-15 16:03 - 0026309 _____ () C:\ProgramData\LSDmbTH.log
Some content of TEMP:
====================
C:\Users\Roman\AppData\Local\Temp\Quarantine.exe
C:\Users\Roman\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-01-24 03:02
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (Windows7_OS) (Fixed) (Total:886.32 GB) (Free:746.68 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (LENOVO) (Fixed) (Total:25.47 GB) (Free:20.7 GB) NTFS
Available physical RAM: 1856.91 MB
Total physical RAM: 3955.32 MB
Percentage of memory in use: 53%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: C70BA6D4)
Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=886.3 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=25.5 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=19.5 GB) - (Type=12)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Windows:nlsPreferences
==================== Security Center ==================
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Roman\Desktop" je 6 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Intelligent Touchpad
C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VeriFaceManager
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\YouCam Mirage
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\YouCam Tray
"C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe" /s [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DefaultOutboundAction REG_DWORD 0x0
DefaultInboundAction REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DefaultOutboundAction REG_DWORD 0x0
DefaultInboundAction REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
počítač startuje o hodně pomaleji a při kliknutí na nějaký program na ploše reaguje opravdu hodně pomalu...zde je log...
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-01-2015 01
Ran by Roman (administrator) on ROMAN-PC on 24-01-2015 14:10:44
Running from C:\Users\Roman\Desktop
Loaded Profiles: Roman (Available profiles: Roman)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Lenovo) C:\Program Files\Lenovo\Nsd\startup.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\NLSSRV32.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
() C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Crawler.com) C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
() C:\Program Files (x86)\Lenovo EasyCamera\Monitor.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Lenovo MuteSync\MuteSync.exe
(LENOVO) C:\Program Files (x86)\Lenovo\Lenovo CAPOSD\CAPOSD.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(forum.viry.cz) C:\Users\Roman\Desktop\FRST-OlderVersion\FRSTLauncher.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2847016 2011-11-10] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12446824 2012-01-31] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1156712 2011-11-15] (Realtek Semiconductor)
HKLM\...\Run: [SynLenovoGestureMgr] => C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [408872 2011-11-10] (Synaptics)
HKLM\...\Run: [OnekeyStudio] => C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe [789856 2012-08-08] (Lenovo)
HKLM\...\Run: [UpdatePRCShortCut] => C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [222504 2009-05-14] (CyberLink Corp.)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [8079408 2012-08-08] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [6202416 2012-08-08] (Lenovo(beijing) Limited)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2012-05-21] (Intel Corporation)
HKLM-x32\...\Run: [Lenovo EasyCamera_Monitor] => C:\Program Files (x86)\Lenovo EasyCamera\monitor.exe [258936 2012-02-06] ()
HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [506712 2011-06-01] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [MuteSync] => C:\Program Files (x86)\Lenovo\Lenovo MuteSync\MuteSync.exe [343040 2012-02-04] (Lenovo)
HKLM-x32\...\Run: [Lenovo Registration] => C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [4351712 2012-01-26] (Lenovo, Inc.)
HKLM-x32\...\Run: [CAPOSD] => C:\Program Files (x86)\Lenovo\Lenovo CAPOSD\CAPOSD.exe [1876992 2012-02-09] (LENOVO)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-09] (AVAST Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-683440959-2606681586-737459993-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-11-14] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [141336 2013-11-14] (NVIDIA Corporation)
Lsa: [Notification Packages] scecli C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [VeriFace Enc] -> {771C7324-DA80-49D3-8017-753B0AF60951} => C:\Windows\system32\IcnOvrly.dll ()
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKU\S-1-5-21-683440959-2606681586-737459993-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.google.com/ig/redirectdomain ... &bmod=KMOH
HKU\S-1-5-21-683440959-2606681586-737459993-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.seznam.cz/?clid=22668
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM-x32 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-683440959-2606681586-737459993-1001 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-683440959-2606681586-737459993-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?sourceid=i ... OH_csCZ565
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\3zu19sxd.default
FF DefaultSearchEngine: Seznam
FF DefaultSearchUrl: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF SearchEngineOrder.1: Seznam
FF Homepage: hxxp://mail.centrum.cz/?utm_source=centrumHP&utm_medium=mailbox&utm_campaign=A|https://ssl.aukro.cz/fnd/authentication ... google.cz/
FF Keyword.URL: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_287.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_287.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro PDF\Professional 7\npnitromozilla.dll ( )
FF SearchPlugin: C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\3zu19sxd.default\searchplugins\seznam-avast.xml
FF Extension: Adblock Plus - C:\Users\Roman\AppData\Roaming\Mozilla\Firefox\Profiles\3zu19sxd.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-31]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-06]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-16]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-16] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2014-11-16] (Avast Software)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [945440 2012-02-02] (Broadcom Corporation.)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-08] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-08] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
R2 NitroDriverReadSpool2; C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe [216072 2012-06-21] (Nitro PDF Software)
S2 NSDSvc; C:\Windows\System32\NSDSvc.exe [120160 2011-12-24] (Lenovo)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1370912 2013-11-29] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15128352 2013-11-29] (NVIDIA Corporation)
R2 ST2012_Svc; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [1148664 2012-09-07] (Crawler.com)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5426448 2014-12-15] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-16] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-16] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-16] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-16] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-22] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-16] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-16] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-16] ()
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [134696 2012-02-02] (Broadcom Corporation.)
S3 IT9135BDA; C:\Windows\System32\Drivers\IT9135BDA.sys [164736 2014-06-09] (ITE )
R0 NSD; C:\Windows\System32\drivers\nsd.sys [24160 2011-12-24] (Lenovo Corporation")
R1 Nsdfltr; C:\Windows\System32\drivers\Nsdfltr.sys [59488 2011-12-22] (Lenovo Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-10-30] (NVIDIA Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2014-03-27] () [File not signed]
R3 SPUVCbv; C:\Windows\System32\Drivers\usbvideo.sys [185344 2013-07-12] (Microsoft Corporation)
R2 sp_rsdrv2; C:\Windows\System32\DRIVERS\stflt.sys [51496 2013-12-06] (Windows (R) Win 7 DDK provider)
U4 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2014-11-16] (Avast Software)
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-24 14:10 - 2015-01-24 14:12 - 00017694 _____ () C:\Users\Roman\Desktop\FRST.txt
2015-01-24 14:10 - 2015-01-24 14:10 - 00000000 ____D () C:\Users\Roman\Desktop\FRST-OlderVersion
2015-01-24 01:05 - 2015-01-24 01:05 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-01-24 00:57 - 2015-01-24 00:57 - 00000000 ____D () C:\Users\Roman\Downloads\CrystalDiskInfo6_2_2
2015-01-24 00:56 - 2015-01-24 00:56 - 02817875 _____ () C:\Users\Roman\Downloads\CrystalDiskInfo6_2_2.zip
2015-01-23 22:52 - 2015-01-23 22:52 - 00000982 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-01-23 22:52 - 2015-01-23 22:52 - 00000970 _____ () C:\Users\Public\Desktop\TeamViewer 10.lnk
2015-01-16 22:08 - 2015-01-24 14:05 - 00006108 _____ () C:\Windows\PFRO.log
2015-01-16 22:06 - 2015-01-16 22:16 - 00000000 ____D () C:\AdwCleaner
2015-01-16 22:06 - 2015-01-16 22:06 - 02191360 _____ () C:\Users\Roman\Desktop\adwcleaner_4.107.exe
2015-01-16 21:55 - 2015-01-24 14:08 - 00001344 _____ () C:\Windows\setupact.log
2015-01-16 21:55 - 2015-01-16 21:55 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-16 21:27 - 2015-01-24 13:54 - 00000000 ____D () C:\Program Files (x86)\unnisalesu
2015-01-16 21:26 - 2015-01-24 13:54 - 00000000 ____D () C:\ProgramData\{7970f157-f150-e08b-7970-0f157f15c55f}
2015-01-15 17:43 - 2014-12-06 05:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-01-15 17:43 - 2014-12-06 04:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-01-15 17:43 - 2014-12-06 04:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-01-14 16:14 - 2014-12-19 04:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-01-14 16:14 - 2014-12-19 02:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-01-14 16:14 - 2014-12-12 06:35 - 05553592 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-01-14 16:14 - 2014-12-12 06:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-01-14 16:14 - 2014-12-12 06:31 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-01-14 16:14 - 2014-12-12 06:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-01-14 16:14 - 2014-12-12 06:11 - 03971512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-01-14 16:14 - 2014-12-12 06:11 - 03916728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-01-14 16:14 - 2014-12-12 06:07 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-01-14 16:14 - 2014-12-11 18:47 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-01-13 20:58 - 2015-01-13 20:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-01-13 18:10 - 2014-12-13 06:09 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-01-13 18:10 - 2014-12-13 04:33 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-01-12 19:31 - 2015-01-24 14:10 - 02129920 _____ (Farbar) C:\Users\Roman\Desktop\FRST64.exe
2015-01-12 19:20 - 2014-11-11 04:09 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-01-12 19:20 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-01-12 19:16 - 2015-01-12 19:16 - 00000000 __SHD () C:\Users\Roman\AppData\Local\EmieUserList
2015-01-12 19:16 - 2015-01-12 19:16 - 00000000 __SHD () C:\Users\Roman\AppData\Local\EmieSiteList
2015-01-12 19:16 - 2015-01-12 19:16 - 00000000 __SHD () C:\Users\Roman\AppData\Local\EmieBrowserModeList
2015-01-12 19:14 - 2015-01-16 22:08 - 00000940 _____ () C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-01-12 19:03 - 2014-06-27 03:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-01-12 19:03 - 2014-06-27 02:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-01-12 19:01 - 2014-11-22 03:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-01-12 19:01 - 2014-06-24 04:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-01-12 19:01 - 2014-06-24 03:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-01-12 19:01 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-01-12 19:01 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-01-12 19:01 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-01-12 19:01 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-01-12 18:15 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2015-01-12 18:10 - 2015-01-12 18:10 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-01-12 18:09 - 2015-01-12 18:09 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-01-12 18:09 - 2015-01-12 18:09 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-01-12 18:09 - 2015-01-12 18:09 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-01-12 18:09 - 2015-01-12 18:09 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2015-01-12 18:09 - 2015-01-12 18:09 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2015-01-12 18:09 - 2015-01-12 18:09 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-01-12 18:09 - 2015-01-12 18:09 - 00389296 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00342200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-01-12 18:09 - 2015-01-12 18:09 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-01-12 18:09 - 2015-01-12 18:09 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-01-12 18:09 - 2015-01-12 18:09 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2015-01-12 18:09 - 2015-01-12 18:09 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-01-12 18:09 - 2015-01-12 18:09 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-01-12 18:08 - 2015-01-12 18:08 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-01-12 18:02 - 2015-01-12 18:03 - 58794192 _____ (Microsoft Corporation) C:\Users\Roman\Downloads\IE11-Windows6.1-x64-cs-cz.exe
2015-01-04 18:51 - 2015-01-04 18:51 - 03480040 _____ (McAfee, Inc.) C:\Users\Roman\Downloads\MCPR.exe
2014-12-28 19:41 - 2014-12-28 19:41 - 00000000 ____D () C:\ProgramData\CyberLink
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-24 14:11 - 2012-08-08 08:02 - 01781909 _____ () C:\Windows\WindowsUpdate.log
2015-01-24 14:10 - 2014-11-14 20:54 - 00000000 ____D () C:\FRST
2015-01-24 14:07 - 2014-12-21 12:37 - 00070174 _____ () C:\FaceProv.log
2015-01-24 14:07 - 2012-08-08 08:52 - 00092933 _____ () C:\Windows\system32\fastboot.set
2015-01-24 14:07 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-24 14:05 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-24 14:05 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-24 14:00 - 2013-12-06 20:13 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-01-24 13:57 - 2009-07-14 05:45 - 00306272 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-24 13:55 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PLA
2015-01-24 13:17 - 2013-12-06 21:36 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-24 12:21 - 2012-08-08 07:43 - 00669116 _____ () C:\Windows\system32\perfh005.dat
2015-01-24 12:21 - 2012-08-08 07:43 - 00141744 _____ () C:\Windows\system32\perfc005.dat
2015-01-24 12:21 - 2009-07-14 06:13 - 01584554 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-24 01:04 - 2013-12-06 20:23 - 00000000 ____D () C:\MeProgramy
2015-01-24 00:09 - 2014-11-12 18:39 - 00000000 ____D () C:\Users\Roman\Documents\Youcam
2015-01-24 00:07 - 2013-12-06 19:31 - 00067944 _____ () C:\Users\Roman\AppData\Local\GDIPFONTCACHEV1.DAT
2015-01-23 22:52 - 2014-03-29 22:38 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2015-01-23 22:51 - 2014-03-29 22:35 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\TeamViewer
2015-01-23 19:17 - 2013-12-06 21:36 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-01-23 19:17 - 2013-12-06 21:36 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-01-23 19:17 - 2013-12-06 21:36 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-01-22 20:15 - 2013-12-07 00:07 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\ICQ
2015-01-22 16:00 - 2014-02-09 12:03 - 00000000 ____D () C:\Users\Roman\AppData\Roaming\OpenOffice.org2
2015-01-16 21:53 - 2011-02-24 18:03 - 00000000 ____D () C:\Windows\Panther
2015-01-16 21:30 - 2013-12-06 21:31 - 00001146 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-01-16 21:30 - 2013-12-06 21:31 - 00001146 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-01-14 21:14 - 2013-12-10 18:00 - 00000000 ____D () C:\Windows\system32\MRT
2015-01-14 21:10 - 2013-12-10 18:00 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-01-14 16:06 - 2013-12-06 21:31 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-01-12 21:47 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2015-01-12 19:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK
2015-01-12 19:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR
2015-01-12 19:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\zh-HK
2015-01-12 19:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\tr-TR
2015-01-12 19:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-01-06 04:36 - 2010-11-21 04:27 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-01-01 20:11 - 2013-12-06 21:35 - 00000000 ____D () C:\Users\Roman\AppData\Local\Adobe
2014-12-25 15:54 - 2013-12-07 17:39 - 00001003 _____ () C:\Users\Roman\Desktop\Bluetooth.lnk
2014-12-25 08:57 - 2009-07-14 06:08 - 00032578 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
==================== Files in the root of some directories =======
2014-06-19 05:20 - 2014-06-19 05:20 - 0000024 _____ () C:\Users\Roman\AppData\Roaming\temp.ini
2014-08-19 20:23 - 2014-08-19 20:23 - 0003584 _____ () C:\Users\Roman\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-12-08 18:38 - 2014-05-04 23:47 - 0007597 _____ () C:\Users\Roman\AppData\Local\resmon.resmoncfg
2014-11-07 20:20 - 2014-11-07 20:20 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2014-06-09 17:50 - 2014-09-15 16:03 - 0026327 _____ () C:\ProgramData\LmeUSB.log
2014-06-09 17:50 - 2014-09-15 16:03 - 0025806 _____ () C:\ProgramData\LmeZJSW.log
2014-06-09 17:50 - 2014-09-15 16:03 - 0026309 _____ () C:\ProgramData\LSDmbTH.log
Some content of TEMP:
====================
C:\Users\Roman\AppData\Local\Temp\Quarantine.exe
C:\Users\Roman\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-01-24 03:02
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (Windows7_OS) (Fixed) (Total:886.32 GB) (Free:746.68 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (LENOVO) (Fixed) (Total:25.47 GB) (Free:20.7 GB) NTFS
Available physical RAM: 1856.91 MB
Total physical RAM: 3955.32 MB
Percentage of memory in use: 53%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: C70BA6D4)
Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=886.3 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=25.5 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=19.5 GB) - (Type=12)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Windows:nlsPreferences
==================== Security Center ==================
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Roman\Desktop" je 6 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Intelligent Touchpad
C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VeriFaceManager
C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\YouCam Mirage
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\YouCam Tray
"C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe" /s [x]
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DefaultOutboundAction REG_DWORD 0x0
DefaultInboundAction REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
DefaultOutboundAction REG_DWORD 0x0
DefaultInboundAction REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Re: Prosím o kontrolu Logu Problém s Firefoxem
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-01-2015 01
Ran by Roman at 2015-01-24 14:12:49
Running from C:\Users\Roman\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.287 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.287 - Adobe Systems Incorporated)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software)
CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
Lenovo EE Boot Optimizer (HKLM\...\Lenovo EE Boot Optimizer) (Version: 0.0.1.5 - Lenovo)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Mozilla Firefox 35.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 35.0 (x86 cs)) (Version: 35.0 - Mozilla)
OpenOffice.org 2.0 (HKLM-x32\...\{5DB8BFC7-9595-49CC-BF0D-A17D3A83929A}) (Version: 2.0.9044 - OpenOffice.org)
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM-x32\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation)
Ovládací prvok ActiveX programu Windows Live Mesh pre vzdialené pripojenia (HKLM-x32\...\{C2FD7DB5-FE30-49B6-8A2F-C5652E053C31}) (Version: 15.4.5722.2 - Microsoft Corporation)
Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 7.48.823.2011 - Realtek)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.36897 - TeamViewer)
Windows Driver Package - Lenovo (ACPIVPC) System (12/15/2011 7.1.0.1) (HKLM\...\99841829BE839365AA67B2AD0E50D371F59F8A1E) (Version: 12/15/2011 7.1.0.1 - Lenovo)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
09-11-2014 02:20:30 Windows Update
13-11-2014 06:37:51 Windows Update
15-11-2014 13:01:57 Instalační služba modulů systému Windows
15-11-2014 13:03:12 Instalační služba modulů systému Windows
16-11-2014 17:10:27 avast! antivirus system restore point
18-11-2014 17:05:04 Windows Update
20-11-2014 00:49:16 Windows Update
25-11-2014 08:54:51 Windows Update
28-11-2014 13:47:23 Windows Update
02-12-2014 12:52:34 Windows Update
11-12-2014 10:21:35 Windows Update
11-12-2014 17:15:56 Windows Update
16-12-2014 15:10:52 Windows Update
23-12-2014 17:27:38 Windows Update
30-12-2014 10:39:25 Windows Update
04-01-2015 17:53:20 Removed SpyHunter
06-01-2015 17:47:52 Windows Update
12-01-2015 18:05:25 Instalační služba modulů systému Windows
12-01-2015 18:06:33 Instalační služba modulů systému Windows
12-01-2015 19:02:35 Windows Update
12-01-2015 19:21:35 Windows Update
14-01-2015 03:00:44 Windows Update
14-01-2015 21:08:49 Windows Update
16-01-2015 03:01:05 Windows Update
20-01-2015 17:59:20 Windows Update
23-01-2015 18:53:35 Windows Update
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2015-01-12 20:07 - 00000035 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {39964426-A2DF-44CF-8184-89767D3BBC60} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-23] (Adobe Systems Incorporated)
Task: {7A6B7BA0-BDB8-44AE-82DE-B3DAE750C6EC} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-11-16] (AVAST Software)
Task: {A261A537-27D9-409A-ADCF-4A4FB21DB9D5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
Task: {B75D31B9-CA73-40A5-A6ED-839C179DD280} - System32\Tasks\MirageAgent => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29] (CyberLink)
Task: {EB058A3C-BC05-433E-B298-B48788895A33} - System32\Tasks\{7E97F875-7619-4918-AAB1-B8AE23BC214B} => pcalua.exe -a "C:\Program Files (x86)\Lenovo\Boot Optimizer\DeleteUninstall.exe" -d "C:\Program Files (x86)\Lenovo\Boot Optimizer"
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Loaded Modules (whitelisted) =============
2012-08-08 08:19 - 2013-11-11 16:02 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2012-08-08 08:50 - 2012-08-08 08:50 - 01508192 _____ () C:\Windows\system32\IcnOvrly.dll
2011-06-02 21:58 - 2011-06-02 21:58 - 00201568 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\ActiveDetect64.dll
2011-06-02 21:59 - 2011-06-02 21:59 - 00156000 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\WindowsApiHookDll64.dll
2012-08-08 08:50 - 2012-08-08 08:50 - 00628064 _____ () C:\Windows\system32\SimpleExt.dll
2012-06-21 12:23 - 2012-06-21 12:23 - 00108040 _____ () C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NPShellExtension64.dll
2012-08-08 08:30 - 2012-02-08 03:03 - 00128280 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
2008-12-20 11:20 - 2012-08-08 08:52 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\HookLib.dll
2012-04-20 00:22 - 2012-08-08 08:52 - 01516592 _____ () C:\Program Files (x86)\Lenovo\Energy Management\EMWpfUI.dll
2012-03-08 23:36 - 2012-08-08 08:52 - 00011096 _____ () C:\Program Files (x86)\Lenovo\Energy Management\cs-CZ\EMWpfUI.resources.dll
2008-12-20 11:20 - 2012-08-08 08:52 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\kbdhook.dll
2012-08-08 08:47 - 2012-08-08 08:47 - 00099680 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe
2012-02-06 03:38 - 2012-02-06 03:38 - 00258936 _____ () C:\Program Files (x86)\Lenovo EasyCamera\monitor.exe
2012-05-05 12:16 - 2012-03-27 01:33 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll
2014-11-16 17:12 - 2014-11-16 17:12 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll
2014-11-16 17:12 - 2014-11-16 17:12 - 05851328 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll
2014-12-12 23:25 - 2014-12-12 23:25 - 00053248 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2015-01-24 13:00 - 2015-01-24 13:00 - 02913280 _____ () C:\Program Files\AVAST Software\Avast\defs\15012400\algo.dll
2014-11-16 17:12 - 2014-11-16 17:12 - 04495336 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll
2011-06-02 21:57 - 2011-06-02 21:57 - 00161120 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\ActiveDetect32.dll
2011-06-02 21:58 - 2011-06-02 21:58 - 00132448 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\WindowsApiHookDll32.dll
2011-06-28 07:28 - 2011-06-28 07:28 - 00042496 _____ () C:\Program Files (x86)\Lenovo\Lenovo CAPOSD\QTKB.dll
2014-11-16 17:13 - 2014-11-16 17:13 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2012-08-08 08:30 - 2012-02-08 02:39 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\Windows:nlsPreferences
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
MSCONFIG\startupreg: Intelligent Touchpad => C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe
MSCONFIG\startupreg: VeriFaceManager => C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
MSCONFIG\startupreg: YouCam Mirage => "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
MSCONFIG\startupreg: YouCam Tray => "C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe" /s
========================= Accounts: ==========================
Administrator (S-1-5-21-683440959-2606681586-737459993-500 - Administrator - Disabled)
Guest (S-1-5-21-683440959-2606681586-737459993-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-683440959-2606681586-737459993-1003 - Limited - Enabled)
Roman (S-1-5-21-683440959-2606681586-737459993-1001 - Administrator - Enabled) => C:\Users\Roman
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (01/24/2015 02:08:35 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]
Error: (01/24/2015 02:08:35 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---query POLICYVT key success failed with 0, The Code is:0x424.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---Get Poicy Open key suc failed with 0, The Code is:0x422.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---query POLICYVT key success failed with 0, The Code is:0x424.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---Get Poicy Open key suc failed with 0, The Code is:0x422.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---query POLICYVT key success failed with 0, The Code is:0x424.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---Get Poicy Open key suc failed with 0, The Code is:0x422.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---query POLICYVT key success failed with 0, The Code is:0x424.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---Get Poicy Open key suc failed with 0, The Code is:0x422.).
System errors:
=============
Error: (01/24/2015 02:09:18 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Error: (01/24/2015 01:59:50 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Error: (01/24/2015 11:33:14 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby ShellHWDetection bylo dosaženo časového limitu (30000 ms).
Error: (01/22/2015 08:21:54 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Error: (01/22/2015 08:20:49 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Intel(R) PROSet/Wireless Zero Configuration Service byla ukončena s následující chybou:
%%-2147196306
Error: (01/18/2015 09:17:12 AM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Error: (01/17/2015 08:18:47 AM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Error: (01/17/2015 08:17:46 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: {F319F1B8-7587-4146-AF9C-0D6D77819BF1}
Error: (01/16/2015 10:20:07 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Error: (01/16/2015 10:12:03 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Microsoft Office Sessions:
=========================
Error: (01/24/2015 02:08:35 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]
Error: (01/24/2015 02:08:35 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---query POLICYVT key success failed with 0, The Code is:0x424.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---Get Poicy Open key suc failed with 0, The Code is:0x422.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---query POLICYVT key success failed with 0, The Code is:0x424.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---Get Poicy Open key suc failed with 0, The Code is:0x422.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---query POLICYVT key success failed with 0, The Code is:0x424.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---Get Poicy Open key suc failed with 0, The Code is:0x422.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---query POLICYVT key success failed with 0, The Code is:0x424.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---Get Poicy Open key suc failed with 0, The Code is:0x422.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i3-2328M CPU @ 2.20GHz
Percentage of memory in use: 53%
Total physical RAM: 3955.32 MB
Available physical RAM: 1856.91 MB
Total Pagefile: 7908.82 MB
Available Pagefile: 5822.64 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB
==================== Drives ================================
Drive c: (Windows7_OS) (Fixed) (Total:886.32 GB) (Free:746.68 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (LENOVO) (Fixed) (Total:25.47 GB) (Free:20.7 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: C70BA6D4)
Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=886.3 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=25.5 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=19.5 GB) - (Type=12)
==================== End Of Log ============================
Ran by Roman at 2015-01-24 14:12:49
Running from C:\Users\Roman\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.287 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.287 - Adobe Systems Incorporated)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software)
CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
Lenovo EE Boot Optimizer (HKLM\...\Lenovo EE Boot Optimizer) (Version: 0.0.1.5 - Lenovo)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Mozilla Firefox 35.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 35.0 (x86 cs)) (Version: 35.0 - Mozilla)
OpenOffice.org 2.0 (HKLM-x32\...\{5DB8BFC7-9595-49CC-BF0D-A17D3A83929A}) (Version: 2.0.9044 - OpenOffice.org)
Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM-x32\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation)
Ovládací prvok ActiveX programu Windows Live Mesh pre vzdialené pripojenia (HKLM-x32\...\{C2FD7DB5-FE30-49B6-8A2F-C5652E053C31}) (Version: 15.4.5722.2 - Microsoft Corporation)
Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 7.48.823.2011 - Realtek)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.36897 - TeamViewer)
Windows Driver Package - Lenovo (ACPIVPC) System (12/15/2011 7.1.0.1) (HKLM\...\99841829BE839365AA67B2AD0E50D371F59F8A1E) (Version: 12/15/2011 7.1.0.1 - Lenovo)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
09-11-2014 02:20:30 Windows Update
13-11-2014 06:37:51 Windows Update
15-11-2014 13:01:57 Instalační služba modulů systému Windows
15-11-2014 13:03:12 Instalační služba modulů systému Windows
16-11-2014 17:10:27 avast! antivirus system restore point
18-11-2014 17:05:04 Windows Update
20-11-2014 00:49:16 Windows Update
25-11-2014 08:54:51 Windows Update
28-11-2014 13:47:23 Windows Update
02-12-2014 12:52:34 Windows Update
11-12-2014 10:21:35 Windows Update
11-12-2014 17:15:56 Windows Update
16-12-2014 15:10:52 Windows Update
23-12-2014 17:27:38 Windows Update
30-12-2014 10:39:25 Windows Update
04-01-2015 17:53:20 Removed SpyHunter
06-01-2015 17:47:52 Windows Update
12-01-2015 18:05:25 Instalační služba modulů systému Windows
12-01-2015 18:06:33 Instalační služba modulů systému Windows
12-01-2015 19:02:35 Windows Update
12-01-2015 19:21:35 Windows Update
14-01-2015 03:00:44 Windows Update
14-01-2015 21:08:49 Windows Update
16-01-2015 03:01:05 Windows Update
20-01-2015 17:59:20 Windows Update
23-01-2015 18:53:35 Windows Update
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2015-01-12 20:07 - 00000035 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {39964426-A2DF-44CF-8184-89767D3BBC60} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-23] (Adobe Systems Incorporated)
Task: {7A6B7BA0-BDB8-44AE-82DE-B3DAE750C6EC} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-11-16] (AVAST Software)
Task: {A261A537-27D9-409A-ADCF-4A4FB21DB9D5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
Task: {B75D31B9-CA73-40A5-A6ED-839C179DD280} - System32\Tasks\MirageAgent => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29] (CyberLink)
Task: {EB058A3C-BC05-433E-B298-B48788895A33} - System32\Tasks\{7E97F875-7619-4918-AAB1-B8AE23BC214B} => pcalua.exe -a "C:\Program Files (x86)\Lenovo\Boot Optimizer\DeleteUninstall.exe" -d "C:\Program Files (x86)\Lenovo\Boot Optimizer"
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Loaded Modules (whitelisted) =============
2012-08-08 08:19 - 2013-11-11 16:02 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2012-08-08 08:50 - 2012-08-08 08:50 - 01508192 _____ () C:\Windows\system32\IcnOvrly.dll
2011-06-02 21:58 - 2011-06-02 21:58 - 00201568 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\ActiveDetect64.dll
2011-06-02 21:59 - 2011-06-02 21:59 - 00156000 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\WindowsApiHookDll64.dll
2012-08-08 08:50 - 2012-08-08 08:50 - 00628064 _____ () C:\Windows\system32\SimpleExt.dll
2012-06-21 12:23 - 2012-06-21 12:23 - 00108040 _____ () C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NPShellExtension64.dll
2012-08-08 08:30 - 2012-02-08 03:03 - 00128280 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
2008-12-20 11:20 - 2012-08-08 08:52 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\HookLib.dll
2012-04-20 00:22 - 2012-08-08 08:52 - 01516592 _____ () C:\Program Files (x86)\Lenovo\Energy Management\EMWpfUI.dll
2012-03-08 23:36 - 2012-08-08 08:52 - 00011096 _____ () C:\Program Files (x86)\Lenovo\Energy Management\cs-CZ\EMWpfUI.resources.dll
2008-12-20 11:20 - 2012-08-08 08:52 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\kbdhook.dll
2012-08-08 08:47 - 2012-08-08 08:47 - 00099680 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe
2012-02-06 03:38 - 2012-02-06 03:38 - 00258936 _____ () C:\Program Files (x86)\Lenovo EasyCamera\monitor.exe
2012-05-05 12:16 - 2012-03-27 01:33 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll
2014-11-16 17:12 - 2014-11-16 17:12 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll
2014-11-16 17:12 - 2014-11-16 17:12 - 05851328 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll
2014-12-12 23:25 - 2014-12-12 23:25 - 00053248 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2015-01-24 13:00 - 2015-01-24 13:00 - 02913280 _____ () C:\Program Files\AVAST Software\Avast\defs\15012400\algo.dll
2014-11-16 17:12 - 2014-11-16 17:12 - 04495336 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll
2011-06-02 21:57 - 2011-06-02 21:57 - 00161120 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\ActiveDetect32.dll
2011-06-02 21:58 - 2011-06-02 21:58 - 00132448 _____ () C:\Program Files (x86)\Lenovo\Onekey Theater\WindowsApiHookDll32.dll
2011-06-28 07:28 - 2011-06-28 07:28 - 00042496 _____ () C:\Program Files (x86)\Lenovo\Lenovo CAPOSD\QTKB.dll
2014-11-16 17:13 - 2014-11-16 17:13 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2012-08-08 08:30 - 2012-02-08 02:39 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\Windows:nlsPreferences
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
MSCONFIG\startupreg: Intelligent Touchpad => C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe
MSCONFIG\startupreg: VeriFaceManager => C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
MSCONFIG\startupreg: YouCam Mirage => "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
MSCONFIG\startupreg: YouCam Tray => "C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe" /s
========================= Accounts: ==========================
Administrator (S-1-5-21-683440959-2606681586-737459993-500 - Administrator - Disabled)
Guest (S-1-5-21-683440959-2606681586-737459993-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-683440959-2606681586-737459993-1003 - Limited - Enabled)
Roman (S-1-5-21-683440959-2606681586-737459993-1001 - Administrator - Enabled) => C:\Users\Roman
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (01/24/2015 02:08:35 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]
Error: (01/24/2015 02:08:35 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---query POLICYVT key success failed with 0, The Code is:0x424.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---Get Poicy Open key suc failed with 0, The Code is:0x422.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---query POLICYVT key success failed with 0, The Code is:0x424.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---Get Poicy Open key suc failed with 0, The Code is:0x422.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---query POLICYVT key success failed with 0, The Code is:0x424.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---Get Poicy Open key suc failed with 0, The Code is:0x422.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---query POLICYVT key success failed with 0, The Code is:0x424.).
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: An error has occurred (---Get Poicy Open key suc failed with 0, The Code is:0x422.).
System errors:
=============
Error: (01/24/2015 02:09:18 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Error: (01/24/2015 01:59:50 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Error: (01/24/2015 11:33:14 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby ShellHWDetection bylo dosaženo časového limitu (30000 ms).
Error: (01/22/2015 08:21:54 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Error: (01/22/2015 08:20:49 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Intel(R) PROSet/Wireless Zero Configuration Service byla ukončena s následující chybou:
%%-2147196306
Error: (01/18/2015 09:17:12 AM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Error: (01/17/2015 08:18:47 AM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Error: (01/17/2015 08:17:46 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: {F319F1B8-7587-4146-AF9C-0D6D77819BF1}
Error: (01/16/2015 10:20:07 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Error: (01/16/2015 10:12:03 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Type s touto chybou:
%%5
Microsoft Office Sessions:
=========================
Error: (01/24/2015 02:08:35 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]
Error: (01/24/2015 02:08:35 PM) (Source: NvStreamSvc) (EventID: 1) (User: )
Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---query POLICYVT key success failed with 0, The Code is:0x424.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---Get Poicy Open key suc failed with 0, The Code is:0x422.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---query POLICYVT key success failed with 0, The Code is:0x424.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---Get Poicy Open key suc failed with 0, The Code is:0x422.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---query POLICYVT key success failed with 0, The Code is:0x424.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---Get Poicy Open key suc failed with 0, The Code is:0x422.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---query POLICYVT key success failed with 0, The Code is:0x424.
Error: (01/24/2015 02:08:13 PM) (Source: NSDSvc) (EventID: 256) (User: )
Description: NSDSvc---Get Poicy Open key suc failed with 0, The Code is:0x422.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i3-2328M CPU @ 2.20GHz
Percentage of memory in use: 53%
Total physical RAM: 3955.32 MB
Available physical RAM: 1856.91 MB
Total Pagefile: 7908.82 MB
Available Pagefile: 5822.64 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB
==================== Drives ================================
Drive c: (Windows7_OS) (Fixed) (Total:886.32 GB) (Free:746.68 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (LENOVO) (Fixed) (Total:25.47 GB) (Free:20.7 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: C70BA6D4)
Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=886.3 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=25.5 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=19.5 GB) - (Type=12)
==================== End Of Log ============================
Re: Prosím o kontrolu Logu Problém s Firefoxem

- Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
- ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
- znovu spustte FRST a kliknete na Fix
- po restartu na Vas vyskoci fixlog (pripadne bude ulozen na Plose), jehoz obsah mi vlozte do pristi odpovedi
Kód: Vybrat vše
Start CloseProcesses: SearchScopes: HKLM-x32 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms} SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-683440959-2606681586-737459993-1001 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms} FF DefaultSearchEngine: Seznam FF DefaultSearchUrl: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}& FF SearchEngineOrder.1: Seznam FF Keyword.URL: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}& S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X] 2015-01-24 14:10 - 2015-01-24 14:12 - 00017694 _____ () C:\Users\Roman\Desktop\FRST.txt 2015-01-24 01:05 - 2015-01-24 01:05 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-01-16 22:08 - 2015-01-24 14:05 - 00006108 _____ () C:\Windows\PFRO.log 2015-01-16 22:06 - 2015-01-16 22:16 - 00000000 ____D () C:\AdwCleaner 2015-01-16 22:06 - 2015-01-16 22:06 - 02191360 _____ () C:\Users\Roman\Desktop\adwcleaner_4.107.exe 2015-01-16 21:27 - 2015-01-24 13:54 - 00000000 ____D () C:\Program Files (x86)\unnisalesu 2015-01-16 21:26 - 2015-01-24 13:54 - 00000000 ____D () C:\ProgramData\{7970f157-f150-e08b-7970-0f157f15c55f} 2014-11-07 20:20 - 2014-11-07 20:20 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Folder: C:\Program Files (x86) Folder: C:\ProgramData Folder: %appdata% Folder: %localappdata% EmptyTemp: End
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o kontrolu Logu Problém s Firefoxem
nejde to sem vložit protože to má 3 miliony znaků...sem jde vložit max 100tis...takže co dál?
Re: Prosím o kontrolu Logu Problém s Firefoxem
zabalit (zip/rar) a bud vlozit jako prilohu nebo upnout na leteckaposta.cz
zlepsil se stav PC?
zlepsil se stav PC?
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o kontrolu Logu Problém s Firefoxem
rozdělil jsem to na 2 txt...
- Přílohy
-
- Fix.zip
- (248.87 KiB) Staženo 68 x
Re: Prosím o kontrolu Logu Problém s Firefoxem
zlepsil se stav PC?
udelal jsem si spatny export, takze vas poprosim o nasledujici
udelal jsem si spatny export, takze vas poprosim o nasledujici
- Start -> spustit -> notepad
- zkopirujte do nej obsah okna nize
- ulozte na plochu jako report.bat - typ souboru: Vsechny soubory
- spustte dvojklikem a obsah vysledneho result.txt (bude umisten na plose) mi zaslete
Kód: Vybrat vše
dir "C:\Program Files" > C:\Users\Roman\Desktop\report.txt dir "C:\Program Files (x86)" >> C:\Users\Roman\Desktop\report.txt dir "C:\ProgramData" >> C:\Users\Roman\Desktop\report.txt dir "%appdata%" >> C:\Users\Roman\Desktop\report.txt dir "%localappdata%" >> C:\Users\Roman\Desktop\report.txt
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o kontrolu Logu Problém s Firefoxem
problém z chodem PC -> subjektivně je to lepší
problém z FF -> tohle jde říst až za nějakou dobu...protože se to projevuje náhodně...
tady je ten report:
Svazek v jednotce C je Windows7_OS.
S‚riov‚ źˇslo svazku je 72C4-0114.
Věpis adres ýe C:\Program Files
12.01.2015 20:07 <DIR> .
12.01.2015 20:07 <DIR> ..
06.12.2013 20:11 <DIR> AVAST Software
21.12.2014 12:22 <DIR> CCleaner
04.01.2015 18:55 <DIR> Common Files
08.08.2012 08:52 <DIR> DIFX
13.12.2013 20:14 <DIR> DVD Maker
06.12.2013 23:20 <DIR> Google
08.08.2012 08:30 <DIR> Intel
08.08.2012 08:42 <DIR> Intel Corporation
12.01.2015 19:08 <DIR> Internet Explorer
08.08.2012 08:52 <DIR> Lenovo
10.10.2011 09:19 <DIR> Microsoft Games
11.08.2014 12:26 <DIR> Microsoft Silverlight
14.07.2009 06:32 <DIR> MSBuild
07.12.2013 19:50 <DIR> NVIDIA Corporation
19.08.2014 20:30 <DIR> PlayReady
08.08.2012 08:32 <DIR> Realtek
14.07.2009 06:32 <DIR> Reference Assemblies
08.08.2012 08:31 <DIR> Synaptics
13.12.2013 20:14 <DIR> Windows Defender
11.07.2014 17:11 <DIR> Windows Journal
08.08.2012 08:36 <DIR> Windows Live
13.12.2013 20:14 <DIR> Windows Mail
13.12.2013 20:14 <DIR> Windows Media Player
14.07.2009 06:32 <DIR> Windows NT
13.12.2013 20:14 <DIR> Windows Photo Viewer
21.11.2010 04:31 <DIR> Windows Portable Devices
13.12.2013 20:14 <DIR> Windows Sidebar
Soubor…: 0, Bajt…: 0
Adres ý…: 29, Volněch bajt…: 802˙071˙908˙352
Svazek v jednotce C je Windows7_OS.
S‚riov‚ źˇslo svazku je 72C4-0114.
Věpis adres ýe C:\Program Files (x86)
24.01.2015 14:44 <DIR> .
24.01.2015 14:44 <DIR> ..
18.09.2014 17:05 <DIR> Astroburn Lite
08.08.2012 08:22 <DIR> Cisco
04.01.2015 18:54 <DIR> Common Files
08.08.2012 08:49 <DIR> Cyberlink
08.08.2012 08:32 <DIR> Dolby Home Theater v4
15.11.2014 12:44 <DIR> Google
07.12.2013 00:08 <DIR> ICQ7.7
08.08.2012 08:30 <DIR> Intel
12.01.2015 19:08 <DIR> Internet Explorer
08.08.2012 08:52 <DIR> Lenovo
08.08.2012 08:30 <DIR> Lenovo EasyCamera
08.08.2012 08:45 <DIR> Lenovo Registration
11.08.2014 12:26 <DIR> Microsoft Silverlight
08.08.2012 08:37 <DIR> Microsoft SQL Server Compact Edition
28.02.2011 19:11 <DIR> Microsoft.NET
13.01.2015 20:58 <DIR> Mozilla Firefox
14.01.2015 16:06 <DIR> Mozilla Maintenance Service
14.07.2009 06:32 <DIR> MSBuild
08.08.2012 08:10 <DIR> Nitro PDF
08.11.2014 08:20 <DIR> NVIDIA Corporation
27.09.2014 06:50 <DIR> OpenOffice.org 2.0
08.08.2012 08:32 <DIR> Realtek
14.07.2009 06:32 <DIR> Reference Assemblies
06.12.2013 23:36 <DIR> Spyware Terminator
18.09.2014 17:05 <DIR> SugarSync
23.01.2015 22:52 <DIR> TeamViewer
06.12.2013 21:24 <DIR> The KMPlayer
07.03.2014 21:55 <DIR> VideoLAN
13.12.2013 20:14 <DIR> Windows Defender
08.08.2012 08:38 <DIR> Windows Live
13.12.2013 20:14 <DIR> Windows Mail
13.12.2013 20:14 <DIR> Windows Media Player
14.07.2009 06:32 <DIR> Windows NT
13.12.2013 20:14 <DIR> Windows Photo Viewer
21.11.2010 04:31 <DIR> Windows Portable Devices
13.12.2013 20:14 <DIR> Windows Sidebar
Soubor…: 0, Bajt…: 0
Adres ý…: 38, Volněch bajt…: 802˙071˙908˙352
Svazek v jednotce C je Windows7_OS.
S‚riov‚ źˇslo svazku je 72C4-0114.
Věpis adres ýe C:\ProgramData
27.03.2014 19:51 <DIR> Astroburn Lite
06.12.2013 20:09 <DIR> AVAST Software
19.09.2014 15:36 <DIR> BlazeVideo
28.12.2014 19:41 <DIR> CyberLink
27.03.2014 19:34 <DIR> DAEMON Tools Lite
08.08.2012 08:52 <DIR> Downloaded Installations
13.12.2013 20:21 <DIR> Energy Management
06.12.2013 19:51 <DIR> FileOpen
08.08.2012 08:42 <DIR> Intel
08.11.2014 18:33 <DIR> IObit
15.09.2014 16:03 26˙327 LmeUSB.log
15.09.2014 16:03 25˙806 LmeZJSW.log
15.09.2014 16:03 26˙309 LSDmbTH.log
06.12.2013 21:31 <DIR> Mozilla
08.08.2012 08:10 <DIR> Nitro PDF
07.12.2013 19:51 <DIR> NVIDIA
07.12.2013 19:51 <DIR> NVIDIA Corporation
08.08.2012 08:51 <DIR> OneKey Recovery
31.07.2014 07:42 <DIR> Plugins
05.12.2014 16:45 <DIR> ProductData
08.08.2012 08:23 <DIR> Roaming
06.12.2013 23:35 <DIR> Spyware Terminator
08.08.2012 08:51 <DIR> Temp
07.12.2013 11:00 <DIR> VeriFace
08.08.2012 08:48 <DIR> YouCam
08.03.2014 23:57 <DIR> {3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
Soubor…: 3, Bajt…: 78˙442
Adres ý…: 23, Volněch bajt…: 802˙071˙904˙256
Svazek v jednotce C je Windows7_OS.
S‚riov‚ źˇslo svazku je 72C4-0114.
Věpis adres ýe C:\Users\Roman\AppData\Roaming
14.11.2014 18:02 <DIR> .
14.11.2014 18:02 <DIR> ..
06.12.2013 20:13 <DIR> Adobe
08.03.2014 23:58 <DIR> Apple Computer
06.12.2013 20:13 <DIR> AVAST Software
12.11.2014 18:39 <DIR> CyberLink
29.03.2014 08:59 <DIR> DAEMON Tools Lite
15.07.2014 20:54 <DIR> Dropbox
06.12.2013 19:51 <DIR> FileOpen
22.01.2015 20:15 <DIR> ICQ
09.02.2014 18:04 <DIR> ICQ-Profile
06.12.2013 19:30 <DIR> Identities
06.12.2013 19:28 <DIR> Intel
08.11.2014 18:31 <DIR> IObit
06.12.2013 19:31 <DIR> Leadertech
06.12.2013 21:24 <DIR> Macromedia
10.10.2011 09:19 <DIR> Media Center Programs
06.12.2013 21:32 <DIR> Mozilla
21.06.2014 22:42 <DIR> Nitro PDF
22.01.2015 16:00 <DIR> OpenOffice.org2
08.11.2014 03:26 <DIR> ProductData
03.02.2014 23:00 <DIR> Racket
06.12.2013 20:30 <DIR> Spyware Terminator
23.01.2015 22:51 <DIR> TeamViewer
19.06.2014 05:20 24 temp.ini
27.03.2014 21:06 <DIR> uTorrent
07.03.2014 21:47 <DIR> vlc
15.03.2014 08:19 <DIR> Windows Live Writer
Soubor…: 1, Bajt…: 24
Adres ý…: 27, Volněch bajt…: 802˙071˙904˙256
Svazek v jednotce C je Windows7_OS.
S‚riov‚ źˇslo svazku je 72C4-0114.
Věpis adres ýe C:\Users\Roman\AppData\Local
24.01.2015 14:43 <DIR> .
24.01.2015 14:43 <DIR> ..
01.01.2015 20:11 <DIR> Adobe
26.01.2014 21:16 <DIR> Apps
06.12.2013 19:31 <DIR> Broadcom
12.11.2014 18:39 <DIR> CyberLink
19.08.2014 20:23 3˙584 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
26.01.2014 21:16 <DIR> Deployment
07.01.2014 21:17 <DIR> ElevatedDiagnostics
24.01.2015 00:07 67˙944 GDIPFONTCACHEV1.DAT
15.11.2014 12:44 <DIR> Google
06.12.2013 21:37 <DIR> Macromedia
12.01.2015 19:14 <DIR> Microsoft
31.07.2014 07:41 <DIR> Mozilla
24.01.2015 14:43 29˙696 MSGBOX.EXE
07.12.2013 19:51 <DIR> NVIDIA
07.12.2013 19:51 <DIR> NVIDIA Corporation
08.03.2014 23:56 <DIR> Programs
04.05.2014 23:47 7˙597 resmon.resmoncfg
24.01.2015 15:40 <DIR> Temp
08.11.2014 17:17 <DIR> VirtualStore
15.03.2014 08:19 <DIR> Windows Live Writer
15.03.2014 08:20 <DIR> {0162B46C-7D73-4CE3-ACFD-A20E9A3322AA}
15.03.2014 08:20 <DIR> {B4318F41-4DA7-459B-9835-B285B5F18199}
Soubor…: 4, Bajt…: 108˙821
Adres ý…: 20, Volněch bajt…: 802˙071˙900˙160
problém z FF -> tohle jde říst až za nějakou dobu...protože se to projevuje náhodně...
tady je ten report:
Svazek v jednotce C je Windows7_OS.
S‚riov‚ źˇslo svazku je 72C4-0114.
Věpis adres ýe C:\Program Files
12.01.2015 20:07 <DIR> .
12.01.2015 20:07 <DIR> ..
06.12.2013 20:11 <DIR> AVAST Software
21.12.2014 12:22 <DIR> CCleaner
04.01.2015 18:55 <DIR> Common Files
08.08.2012 08:52 <DIR> DIFX
13.12.2013 20:14 <DIR> DVD Maker
06.12.2013 23:20 <DIR> Google
08.08.2012 08:30 <DIR> Intel
08.08.2012 08:42 <DIR> Intel Corporation
12.01.2015 19:08 <DIR> Internet Explorer
08.08.2012 08:52 <DIR> Lenovo
10.10.2011 09:19 <DIR> Microsoft Games
11.08.2014 12:26 <DIR> Microsoft Silverlight
14.07.2009 06:32 <DIR> MSBuild
07.12.2013 19:50 <DIR> NVIDIA Corporation
19.08.2014 20:30 <DIR> PlayReady
08.08.2012 08:32 <DIR> Realtek
14.07.2009 06:32 <DIR> Reference Assemblies
08.08.2012 08:31 <DIR> Synaptics
13.12.2013 20:14 <DIR> Windows Defender
11.07.2014 17:11 <DIR> Windows Journal
08.08.2012 08:36 <DIR> Windows Live
13.12.2013 20:14 <DIR> Windows Mail
13.12.2013 20:14 <DIR> Windows Media Player
14.07.2009 06:32 <DIR> Windows NT
13.12.2013 20:14 <DIR> Windows Photo Viewer
21.11.2010 04:31 <DIR> Windows Portable Devices
13.12.2013 20:14 <DIR> Windows Sidebar
Soubor…: 0, Bajt…: 0
Adres ý…: 29, Volněch bajt…: 802˙071˙908˙352
Svazek v jednotce C je Windows7_OS.
S‚riov‚ źˇslo svazku je 72C4-0114.
Věpis adres ýe C:\Program Files (x86)
24.01.2015 14:44 <DIR> .
24.01.2015 14:44 <DIR> ..
18.09.2014 17:05 <DIR> Astroburn Lite
08.08.2012 08:22 <DIR> Cisco
04.01.2015 18:54 <DIR> Common Files
08.08.2012 08:49 <DIR> Cyberlink
08.08.2012 08:32 <DIR> Dolby Home Theater v4
15.11.2014 12:44 <DIR> Google
07.12.2013 00:08 <DIR> ICQ7.7
08.08.2012 08:30 <DIR> Intel
12.01.2015 19:08 <DIR> Internet Explorer
08.08.2012 08:52 <DIR> Lenovo
08.08.2012 08:30 <DIR> Lenovo EasyCamera
08.08.2012 08:45 <DIR> Lenovo Registration
11.08.2014 12:26 <DIR> Microsoft Silverlight
08.08.2012 08:37 <DIR> Microsoft SQL Server Compact Edition
28.02.2011 19:11 <DIR> Microsoft.NET
13.01.2015 20:58 <DIR> Mozilla Firefox
14.01.2015 16:06 <DIR> Mozilla Maintenance Service
14.07.2009 06:32 <DIR> MSBuild
08.08.2012 08:10 <DIR> Nitro PDF
08.11.2014 08:20 <DIR> NVIDIA Corporation
27.09.2014 06:50 <DIR> OpenOffice.org 2.0
08.08.2012 08:32 <DIR> Realtek
14.07.2009 06:32 <DIR> Reference Assemblies
06.12.2013 23:36 <DIR> Spyware Terminator
18.09.2014 17:05 <DIR> SugarSync
23.01.2015 22:52 <DIR> TeamViewer
06.12.2013 21:24 <DIR> The KMPlayer
07.03.2014 21:55 <DIR> VideoLAN
13.12.2013 20:14 <DIR> Windows Defender
08.08.2012 08:38 <DIR> Windows Live
13.12.2013 20:14 <DIR> Windows Mail
13.12.2013 20:14 <DIR> Windows Media Player
14.07.2009 06:32 <DIR> Windows NT
13.12.2013 20:14 <DIR> Windows Photo Viewer
21.11.2010 04:31 <DIR> Windows Portable Devices
13.12.2013 20:14 <DIR> Windows Sidebar
Soubor…: 0, Bajt…: 0
Adres ý…: 38, Volněch bajt…: 802˙071˙908˙352
Svazek v jednotce C je Windows7_OS.
S‚riov‚ źˇslo svazku je 72C4-0114.
Věpis adres ýe C:\ProgramData
27.03.2014 19:51 <DIR> Astroburn Lite
06.12.2013 20:09 <DIR> AVAST Software
19.09.2014 15:36 <DIR> BlazeVideo
28.12.2014 19:41 <DIR> CyberLink
27.03.2014 19:34 <DIR> DAEMON Tools Lite
08.08.2012 08:52 <DIR> Downloaded Installations
13.12.2013 20:21 <DIR> Energy Management
06.12.2013 19:51 <DIR> FileOpen
08.08.2012 08:42 <DIR> Intel
08.11.2014 18:33 <DIR> IObit
15.09.2014 16:03 26˙327 LmeUSB.log
15.09.2014 16:03 25˙806 LmeZJSW.log
15.09.2014 16:03 26˙309 LSDmbTH.log
06.12.2013 21:31 <DIR> Mozilla
08.08.2012 08:10 <DIR> Nitro PDF
07.12.2013 19:51 <DIR> NVIDIA
07.12.2013 19:51 <DIR> NVIDIA Corporation
08.08.2012 08:51 <DIR> OneKey Recovery
31.07.2014 07:42 <DIR> Plugins
05.12.2014 16:45 <DIR> ProductData
08.08.2012 08:23 <DIR> Roaming
06.12.2013 23:35 <DIR> Spyware Terminator
08.08.2012 08:51 <DIR> Temp
07.12.2013 11:00 <DIR> VeriFace
08.08.2012 08:48 <DIR> YouCam
08.03.2014 23:57 <DIR> {3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
Soubor…: 3, Bajt…: 78˙442
Adres ý…: 23, Volněch bajt…: 802˙071˙904˙256
Svazek v jednotce C je Windows7_OS.
S‚riov‚ źˇslo svazku je 72C4-0114.
Věpis adres ýe C:\Users\Roman\AppData\Roaming
14.11.2014 18:02 <DIR> .
14.11.2014 18:02 <DIR> ..
06.12.2013 20:13 <DIR> Adobe
08.03.2014 23:58 <DIR> Apple Computer
06.12.2013 20:13 <DIR> AVAST Software
12.11.2014 18:39 <DIR> CyberLink
29.03.2014 08:59 <DIR> DAEMON Tools Lite
15.07.2014 20:54 <DIR> Dropbox
06.12.2013 19:51 <DIR> FileOpen
22.01.2015 20:15 <DIR> ICQ
09.02.2014 18:04 <DIR> ICQ-Profile
06.12.2013 19:30 <DIR> Identities
06.12.2013 19:28 <DIR> Intel
08.11.2014 18:31 <DIR> IObit
06.12.2013 19:31 <DIR> Leadertech
06.12.2013 21:24 <DIR> Macromedia
10.10.2011 09:19 <DIR> Media Center Programs
06.12.2013 21:32 <DIR> Mozilla
21.06.2014 22:42 <DIR> Nitro PDF
22.01.2015 16:00 <DIR> OpenOffice.org2
08.11.2014 03:26 <DIR> ProductData
03.02.2014 23:00 <DIR> Racket
06.12.2013 20:30 <DIR> Spyware Terminator
23.01.2015 22:51 <DIR> TeamViewer
19.06.2014 05:20 24 temp.ini
27.03.2014 21:06 <DIR> uTorrent
07.03.2014 21:47 <DIR> vlc
15.03.2014 08:19 <DIR> Windows Live Writer
Soubor…: 1, Bajt…: 24
Adres ý…: 27, Volněch bajt…: 802˙071˙904˙256
Svazek v jednotce C je Windows7_OS.
S‚riov‚ źˇslo svazku je 72C4-0114.
Věpis adres ýe C:\Users\Roman\AppData\Local
24.01.2015 14:43 <DIR> .
24.01.2015 14:43 <DIR> ..
01.01.2015 20:11 <DIR> Adobe
26.01.2014 21:16 <DIR> Apps
06.12.2013 19:31 <DIR> Broadcom
12.11.2014 18:39 <DIR> CyberLink
19.08.2014 20:23 3˙584 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
26.01.2014 21:16 <DIR> Deployment
07.01.2014 21:17 <DIR> ElevatedDiagnostics
24.01.2015 00:07 67˙944 GDIPFONTCACHEV1.DAT
15.11.2014 12:44 <DIR> Google
06.12.2013 21:37 <DIR> Macromedia
12.01.2015 19:14 <DIR> Microsoft
31.07.2014 07:41 <DIR> Mozilla
24.01.2015 14:43 29˙696 MSGBOX.EXE
07.12.2013 19:51 <DIR> NVIDIA
07.12.2013 19:51 <DIR> NVIDIA Corporation
08.03.2014 23:56 <DIR> Programs
04.05.2014 23:47 7˙597 resmon.resmoncfg
24.01.2015 15:40 <DIR> Temp
08.11.2014 17:17 <DIR> VirtualStore
15.03.2014 08:19 <DIR> Windows Live Writer
15.03.2014 08:20 <DIR> {0162B46C-7D73-4CE3-ACFD-A20E9A3322AA}
15.03.2014 08:20 <DIR> {B4318F41-4DA7-459B-9835-B285B5F18199}
Soubor…: 4, Bajt…: 108˙821
Adres ý…: 20, Volněch bajt…: 802˙071˙900˙160
Re: Prosím o kontrolu Logu Problém s Firefoxem
Ted uz vypada cisto 
V predchozim fixlistu jsme smazali havet, ktera nekdy shazuje Chrome a obecne vyuziva/zneuziva funkci prohlizecu...

V predchozim fixlistu jsme smazali havet, ktera nekdy shazuje Chrome a obecne vyuziva/zneuziva funkci prohlizecu...
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.
Re: Prosím o kontrolu Logu Problém s Firefoxem
no zkusím to restartovat abych věděl jak dlouho to přibližně startuje
s tím Firefoxem je to na delší dobu...pokud si ale všimnu zpoždění mezi kliknutím a reakcí určitě dám vědět do tohoto vlákna...
zatím děkuju
s tím Firefoxem je to na delší dobu...pokud si ale všimnu zpoždění mezi kliknutím a reakcí určitě dám vědět do tohoto vlákna...
zatím děkuju