Re: vysoké zpomalení počítače + přetížená fyzická paměť
Napsal: 13 dub 2015 19:32
FRST:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-04-2015
Ran by Honza (administrator) on HONZA-PC on 13-04-2015 20:25:54
Running from C:\Users\Honza\Desktop
Loaded Profiles: Honza (Available profiles: Honza)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(AVEO) C:\Program Files (x86)\AVEO USB2.0 PC Camera(U2HGCV3P31048)\AveoSTI.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Acer Group) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\Honza\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [9644576 2009-12-15] (Realtek Semiconductor)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [558168 2010-04-01] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [349272 2010-04-01] (Atheros Communications)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1890088 2009-12-10] (Synaptics Incorporated)
HKLM\...\Run: [Acer ePower Management] => C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [860704 2010-03-17] (Acer Incorporated)
HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe [258560 2010-03-09] (NewTech Infosystems, Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-03-29] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1300560 2010-03-03] (Dritek System Inc.)
HKLM-x32\...\Run: [AveoSTI.exe] => C:\Program Files (x86)\AVEO USB2.0 PC Camera(U2HGCV3P31048)\AveoSTI.exe [32768 2010-12-02] (AVEO)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5512912 2015-04-01] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (Avast Software s.r.o.)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-4262833941-4066352713-1487433503-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-4262833941-4066352713-1487433503-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKLM-x32 -> Backup.Old.DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64}
SearchScopes: HKLM-x32 -> {2FA04F4A-D2B7-374D-E7FA-3607B268C2D8} URL = http://www.google.com/search?sourceid=i ... lz=1I7ACPW
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-4262833941-4066352713-1487433503-1000 -> Backup.Old.DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64}
SearchScopes: HKU\S-1-5-21-4262833941-4066352713-1487433503-1000 -> {2FA04F4A-D2B7-374D-E7FA-3607B268C2D8} URL = http://www.google.com/search?sourceid=i ... PW_csCZ451
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-04-01] (Avast Software s.r.o.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08] (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2015-02-12] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-01] (Avast Software s.r.o.)
BHO-x32: No Name -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2015-02-12] (Oracle Corporation)
BHO-x32: Lištička -> {EA837F48-5AD1-443E-AE34-FFE03CBF3099} -> C:\Program Files (x86)\Seznam.cz\listicka.dll [2011-03-15] ()
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM-x32 - Nástroje Lištičky - {1EA00BE1-6E54-4E2A-8099-680300BF23E1} - C:\Program Files (x86)\Seznam.cz\toolbar\toolbar.dll [2011-03-10] ()
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36
FireFox:
========
FF ProfilePath: C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\0uh1qjao.default-1417867545051
FF Homepage: https://www.google.cz/?gws_rd=ssl
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_134.dll [2015-04-05] ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-04-05] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2011-10-17] (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.76.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2015-02-12] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.76.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2015-02-12] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll No File
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-07-10] (Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2013-05-08] (Adobe Systems Inc.)
FF Extension: Adblock Plus - C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\0uh1qjao.default-1417867545051\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-02-22]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-02-26]
FF HKLM-x32\...\Firefox\Extensions: [fmdownloader@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com
FF Extension: Freemake Video Downloader Plugin - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com [2014-04-05]
FF HKLM-x32\...\Firefox\Extensions: [ytfmdownloader@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com
FF Extension: Freemake Youtube Download Button - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com [2014-04-05]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default
CHR HKLM-x32\...\Chrome\Extension: [bpegkgagfojjbcpkihigfmkojdmmimdf] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2014-04-05]
CHR HKLM-x32\...\Chrome\Extension: [ehgldbbpchgpcfagfpfjgoomddhccfgh] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\ChromeYoutubePlugin.crx [2014-04-05]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-01]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [34392 2010-04-01] (Atheros Communications) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-01] (Avast Software s.r.o.)
R2 ePowerSvc; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [866336 2010-03-17] (Acer Incorporated)
S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2014-03-12] (Freemake) [File not signed]
S2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2014-03-12] (Ellora Assets Corp.) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 NTI IScheduleSvc; C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe [250368 2010-03-09] (NewTech Infosystems, Inc.) [File not signed]
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2012-05-16] ()
R2 Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [243232 2010-01-29] (Acer Group)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-04-01] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [88408 2015-04-01] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-04-01] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-04-01] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-04-01] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-04-01] (Avast Software s.r.o.)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [136752 2015-04-01] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [271200 2015-04-01] ()
S3 AVEO; C:\Windows\System32\DRIVERS\AVEOdcnt.sys [346496 2012-02-08] (AVEO)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-03-23] (DT Soft Ltd)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-13 20:25 - 2015-04-13 20:28 - 00014681 _____ () C:\Users\Honza\Desktop\FRST.txt
2015-04-13 20:25 - 2015-04-13 20:26 - 00000000 ____D () C:\FRST
2015-04-13 20:21 - 2015-04-13 20:23 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Desktop\FRSTLauncher.exe
2015-04-13 20:05 - 2015-04-13 20:05 - 02096640 _____ (Farbar) C:\Users\Honza\Desktop\FRST64.exe
2015-04-13 17:37 - 2015-04-13 17:37 - 00021646 _____ () C:\ComboFix.txt
2015-04-12 17:33 - 2015-04-13 17:37 - 00000000 ____D () C:\Qoobox
2015-04-12 17:33 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-04-12 17:33 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-04-12 17:33 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-04-12 17:33 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-04-12 17:33 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-04-12 17:33 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2015-04-12 17:33 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2015-04-12 17:33 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2015-04-12 17:32 - 2015-04-13 17:19 - 00000000 ____D () C:\Windows\erdnt
2015-04-12 17:10 - 2015-04-12 17:10 - 05617275 ____R (Swearware) C:\Users\Honza\Desktop\ComboFix.exe
2015-04-11 16:31 - 2015-04-11 17:16 - 00000000 ____D () C:\Users\Honza\Desktop\Bot
2015-04-10 19:55 - 2015-04-10 19:58 - 00000000 ____D () C:\AdwCleaner
2015-04-10 15:26 - 2015-04-10 15:27 - 00000000 ____D () C:\rsit
2015-04-08 22:26 - 2015-04-08 22:26 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-04-05 01:34 - 2015-04-05 01:35 - 00000000 ___SD () C:\Windows\system32\GWX
2015-04-05 01:34 - 2015-04-05 01:34 - 00000000 ___SD () C:\Windows\SysWOW64\GWX
2015-04-01 13:56 - 2015-04-13 17:22 - 00029798 _____ () C:\Windows\PFRO.log
2015-04-01 13:53 - 2015-04-01 13:53 - 00364472 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
2015-04-01 13:53 - 2015-04-01 13:53 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr
2015-04-01 13:41 - 2015-04-13 20:12 - 00002184 _____ () C:\Windows\setupact.log
2015-04-01 13:41 - 2015-04-01 13:41 - 00000000 _____ () C:\Windows\setuperr.log
2015-03-30 17:10 - 2015-03-30 22:30 - 00000000 ____D () C:\Users\Honza\Desktop\Starset---Transmissions
2015-03-30 09:46 - 2015-03-30 09:55 - 163528192 _____ () C:\Users\Honza\Downloads\Starset---Transmissions.rar
2015-03-27 22:19 - 2015-04-11 16:41 - 00000000 ____D () C:\Users\Honza\Desktop\Fyz
2015-03-25 18:45 - 2015-03-25 19:29 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\.minecraft
2015-03-25 10:46 - 2015-03-11 06:06 - 00943616 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-03-25 10:46 - 2015-03-11 06:06 - 00760832 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-03-25 10:46 - 2015-03-11 06:06 - 00677888 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-03-25 10:46 - 2015-03-11 06:06 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-03-25 10:46 - 2015-03-11 06:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-03-25 10:46 - 2015-03-11 06:05 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-03-25 10:46 - 2015-03-11 06:05 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-03-25 10:46 - 2015-03-11 06:02 - 01107456 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-13 20:23 - 2012-01-22 17:20 - 01863551 _____ () C:\Windows\WindowsUpdate.log
2015-04-13 20:21 - 2009-07-14 06:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-13 20:21 - 2009-07-14 06:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-13 20:14 - 2012-07-05 11:54 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-04-13 20:12 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-13 20:06 - 2012-08-06 09:20 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-04-13 17:23 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini
2015-04-13 17:05 - 2011-10-02 01:15 - 06673176 _____ () C:\Windows\system32\perfh005.dat
2015-04-13 17:05 - 2011-10-02 01:15 - 02234980 _____ () C:\Windows\system32\perfc005.dat
2015-04-13 17:05 - 2009-07-14 07:13 - 00006252 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-12 23:45 - 2014-04-06 00:04 - 00000208 _____ () C:\Users\Honza\Desktop\usagi d.txt
2015-04-12 22:40 - 2013-11-22 17:19 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Forge
2015-04-12 18:35 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default
2015-04-12 17:21 - 2014-08-22 23:43 - 00000000 ____D () C:\Users\Honza\Desktop\Pokémon Projects
2015-04-11 18:24 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-04-11 17:52 - 2011-10-30 00:17 - 00000000 ____D () C:\Users\Honza\AppData\Local\CrashDumps
2015-04-11 10:32 - 2014-12-06 14:05 - 00000000 ____D () C:\Users\Honza\Desktop\Původní data aplikace Firefox
2015-04-10 19:58 - 2011-10-01 15:33 - 00000000 ____D () C:\Users\Honza
2015-04-10 19:48 - 2014-06-17 14:24 - 00000000 ____D () C:\Program Files\McAfee Security Scan
2015-04-10 19:48 - 2013-04-10 14:23 - 00000000 ____D () C:\Program Files\McAfee
2015-04-10 15:26 - 2011-11-03 19:17 - 00000000 ____D () C:\Program Files\trend micro
2015-04-09 17:29 - 2012-05-04 14:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-04-07 12:38 - 2013-07-02 22:19 - 00000000 ____D () C:\Users\Honza\Desktop\MEME
2015-04-05 23:48 - 2011-10-06 17:16 - 00000000 ____D () C:\Users\Honza\AppData\Local\Adobe
2015-04-05 23:43 - 2012-07-07 21:02 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-04-05 23:42 - 2012-07-07 21:02 - 00778928 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-04-05 23:42 - 2011-10-02 15:37 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-04-03 23:56 - 2011-10-15 15:41 - 00000000 ___RD () C:\Users\Honza\Desktop\Hry
2015-04-01 13:53 - 2014-08-09 16:33 - 00136752 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys
2015-04-01 13:53 - 2014-08-09 16:33 - 00029168 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2015-04-01 13:53 - 2013-03-23 11:20 - 00271200 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-04-01 13:53 - 2013-03-23 11:20 - 00065736 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-04-01 13:53 - 2012-02-26 21:53 - 01047320 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
2015-04-01 13:53 - 2012-02-26 21:53 - 00442264 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys
2015-04-01 13:53 - 2012-02-26 21:53 - 00093528 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys
2015-04-01 13:53 - 2012-02-26 21:52 - 00088408 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-03-25 20:16 - 2011-10-01 17:17 - 00000000 ____D () C:\Stahování
2015-03-25 13:45 - 2014-12-11 12:29 - 00000000 ____D () C:\Windows\system32\appraiser
2015-03-25 13:45 - 2014-05-07 01:31 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-03-16 21:01 - 2011-10-01 18:29 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-15 13:13 - 2009-07-14 07:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD
2015-03-14 19:01 - 2009-07-14 06:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
==================== Files in the root of some directories =======
2014-11-02 17:45 - 2003-04-02 02:50 - 0290816 ____N () C:\Program Files (x86)\BinkW32.dll
2014-11-02 17:45 - 2002-08-29 13:40 - 0489984 ____N (Microsoft Corporation) C:\Program Files (x86)\dbghelp.dll
2014-11-02 17:45 - 2010-06-19 02:07 - 7004160 _____ (Gas Powered Games) C:\Program Files (x86)\DSLOA.exe
2014-11-02 17:45 - 2002-03-20 12:00 - 0421888 ____N () C:\Program Files (x86)\DSVideoConfig.exe
2014-11-02 17:45 - 2010-06-19 02:07 - 6815744 _____ (Gas Powered Games) C:\Program Files (x86)\DungeonSiege.exe
2014-11-02 17:45 - 2002-08-08 02:15 - 0162120 ____N (Microsoft Corporation) C:\Program Files (x86)\Dw15.exe
2014-11-02 17:45 - 2003-10-07 02:56 - 0069722 ____N (Microsoft Corporation) C:\Program Files (x86)\EBUEula.dll
2014-11-02 17:45 - 2003-08-27 02:57 - 0786304 ____N () C:\Program Files (x86)\EULA.RTF
2014-11-02 17:45 - 2002-08-08 02:15 - 0380989 ____N (Microsoft Corporation) C:\Program Files (x86)\GunDll.dll
2014-11-02 17:45 - 2003-08-16 02:14 - 0077824 ____N (Microsoft Corporation) C:\Program Files (x86)\mgspid.dll
2014-11-02 17:45 - 2002-08-08 02:15 - 0348160 ____N () C:\Program Files (x86)\Mss32.dll
2014-11-02 17:45 - 2010-06-19 11:01 - 0049856 _____ () C:\Program Files (x86)\Odinstalovat.exe
2014-11-02 17:45 - 2003-10-14 18:40 - 0195686 ____N () C:\Program Files (x86)\Readme.rtf
2014-11-02 17:45 - 2003-10-21 00:35 - 10297344 ____N (Microsoft Corporation) C:\Program Files (x86)\SETUPENU.DLL
2014-11-02 17:45 - 2003-08-05 07:46 - 0081920 ____N (Microsoft Corporation) C:\Program Files (x86)\Splash.exe
2014-11-02 17:45 - 2003-08-20 03:57 - 0921656 ____N () C:\Program Files (x86)\SplashImage.bmp
2014-11-02 17:45 - 2003-09-21 00:51 - 0061647 ____N () C:\Program Files (x86)\system_detail.gas
2014-11-02 17:45 - 2003-10-21 00:35 - 0573440 ____N (Microsoft Corporation) C:\Program Files (x86)\UNINSTAL.EXE
2014-11-02 17:45 - 2002-07-20 07:41 - 0155712 ____N (Microsoft Corporation) C:\Program Files (x86)\UpdateClient.exe
2014-11-02 17:45 - 2002-07-20 07:41 - 0168003 ____N (Microsoft Corporation) C:\Program Files (x86)\UpdateClientDll.dll
2013-05-20 20:29 - 2013-05-20 20:44 - 0000000 _____ () C:\Users\Honza\AppData\Roaming\Project Templates
2011-11-12 20:56 - 2014-12-29 15:39 - 0003584 _____ () C:\Users\Honza\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-05-20 20:29 - 2013-05-20 20:44 - 0000000 ____H () C:\ProgramData\PKP_DLes.DAT
2013-05-20 20:29 - 2013-05-20 20:44 - 0000000 ____H () C:\ProgramData\PKP_DLet.DAT
2013-05-20 20:29 - 2013-05-20 20:44 - 0000000 ____H () C:\ProgramData\PKP_DLev.DAT
2013-05-20 20:44 - 2013-05-20 20:44 - 0000000 _____ () C:\ProgramData\Planets
2013-05-20 20:44 - 2013-05-20 20:44 - 0000000 _____ () C:\ProgramData\Profiles
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Honza\Desktop" je 18213 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-04-2015
Ran by Honza (administrator) on HONZA-PC on 13-04-2015 20:25:54
Running from C:\Users\Honza\Desktop
Loaded Profiles: Honza (Available profiles: Honza)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(AVEO) C:\Program Files (x86)\AVEO USB2.0 PC Camera(U2HGCV3P31048)\AveoSTI.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Acer Group) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
(Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\Honza\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [9644576 2009-12-15] (Realtek Semiconductor)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [558168 2010-04-01] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [349272 2010-04-01] (Atheros Communications)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1890088 2009-12-10] (Synaptics Incorporated)
HKLM\...\Run: [Acer ePower Management] => C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [860704 2010-03-17] (Acer Incorporated)
HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe [258560 2010-03-09] (NewTech Infosystems, Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-03-29] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1300560 2010-03-03] (Dritek System Inc.)
HKLM-x32\...\Run: [AveoSTI.exe] => C:\Program Files (x86)\AVEO USB2.0 PC Camera(U2HGCV3P31048)\AveoSTI.exe [32768 2010-12-02] (AVEO)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5512912 2015-04-01] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (Avast Software s.r.o.)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-4262833941-4066352713-1487433503-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-4262833941-4066352713-1487433503-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
SearchScopes: HKLM-x32 -> Backup.Old.DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64}
SearchScopes: HKLM-x32 -> {2FA04F4A-D2B7-374D-E7FA-3607B268C2D8} URL = http://www.google.com/search?sourceid=i ... lz=1I7ACPW
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-4262833941-4066352713-1487433503-1000 -> Backup.Old.DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64}
SearchScopes: HKU\S-1-5-21-4262833941-4066352713-1487433503-1000 -> {2FA04F4A-D2B7-374D-E7FA-3607B268C2D8} URL = http://www.google.com/search?sourceid=i ... PW_csCZ451
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-04-01] (Avast Software s.r.o.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08] (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2015-02-12] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-01] (Avast Software s.r.o.)
BHO-x32: No Name -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2015-02-12] (Oracle Corporation)
BHO-x32: Lištička -> {EA837F48-5AD1-443E-AE34-FFE03CBF3099} -> C:\Program Files (x86)\Seznam.cz\listicka.dll [2011-03-15] ()
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM-x32 - Nástroje Lištičky - {1EA00BE1-6E54-4E2A-8099-680300BF23E1} - C:\Program Files (x86)\Seznam.cz\toolbar\toolbar.dll [2011-03-10] ()
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36
FireFox:
========
FF ProfilePath: C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\0uh1qjao.default-1417867545051
FF Homepage: https://www.google.cz/?gws_rd=ssl
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_134.dll [2015-04-05] ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-04-05] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2011-10-17] (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.76.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2015-02-12] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.76.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2015-02-12] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll No File
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-07-10] (Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2013-05-08] (Adobe Systems Inc.)
FF Extension: Adblock Plus - C:\Users\Honza\AppData\Roaming\Mozilla\Firefox\Profiles\0uh1qjao.default-1417867545051\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-02-22]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-02-26]
FF HKLM-x32\...\Firefox\Extensions: [fmdownloader@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com
FF Extension: Freemake Video Downloader Plugin - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com [2014-04-05]
FF HKLM-x32\...\Firefox\Extensions: [ytfmdownloader@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com
FF Extension: Freemake Youtube Download Button - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com [2014-04-05]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Honza\AppData\Local\Google\Chrome\User Data\Default
CHR HKLM-x32\...\Chrome\Extension: [bpegkgagfojjbcpkihigfmkojdmmimdf] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2014-04-05]
CHR HKLM-x32\...\Chrome\Extension: [ehgldbbpchgpcfagfpfjgoomddhccfgh] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Chrome\ChromeYoutubePlugin.crx [2014-04-05]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-01]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [34392 2010-04-01] (Atheros Communications) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-01] (Avast Software s.r.o.)
R2 ePowerSvc; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [866336 2010-03-17] (Acer Incorporated)
S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2014-03-12] (Freemake) [File not signed]
S2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216 2014-03-12] (Ellora Assets Corp.) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 NTI IScheduleSvc; C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe [250368 2010-03-09] (NewTech Infosystems, Inc.) [File not signed]
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2012-05-16] ()
R2 Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [243232 2010-01-29] (Acer Group)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-04-01] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [88408 2015-04-01] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-04-01] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-04-01] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-04-01] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-04-01] (Avast Software s.r.o.)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [136752 2015-04-01] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [271200 2015-04-01] ()
S3 AVEO; C:\Windows\System32\DRIVERS\AVEOdcnt.sys [346496 2012-02-08] (AVEO)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-03-23] (DT Soft Ltd)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-13 20:25 - 2015-04-13 20:28 - 00014681 _____ () C:\Users\Honza\Desktop\FRST.txt
2015-04-13 20:25 - 2015-04-13 20:26 - 00000000 ____D () C:\FRST
2015-04-13 20:21 - 2015-04-13 20:23 - 00112640 _____ (forum.viry.cz) C:\Users\Honza\Desktop\FRSTLauncher.exe
2015-04-13 20:05 - 2015-04-13 20:05 - 02096640 _____ (Farbar) C:\Users\Honza\Desktop\FRST64.exe
2015-04-13 17:37 - 2015-04-13 17:37 - 00021646 _____ () C:\ComboFix.txt
2015-04-12 17:33 - 2015-04-13 17:37 - 00000000 ____D () C:\Qoobox
2015-04-12 17:33 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-04-12 17:33 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-04-12 17:33 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-04-12 17:33 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-04-12 17:33 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-04-12 17:33 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2015-04-12 17:33 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2015-04-12 17:33 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2015-04-12 17:32 - 2015-04-13 17:19 - 00000000 ____D () C:\Windows\erdnt
2015-04-12 17:10 - 2015-04-12 17:10 - 05617275 ____R (Swearware) C:\Users\Honza\Desktop\ComboFix.exe
2015-04-11 16:31 - 2015-04-11 17:16 - 00000000 ____D () C:\Users\Honza\Desktop\Bot
2015-04-10 19:55 - 2015-04-10 19:58 - 00000000 ____D () C:\AdwCleaner
2015-04-10 15:26 - 2015-04-10 15:27 - 00000000 ____D () C:\rsit
2015-04-08 22:26 - 2015-04-08 22:26 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-04-05 01:34 - 2015-04-05 01:35 - 00000000 ___SD () C:\Windows\system32\GWX
2015-04-05 01:34 - 2015-04-05 01:34 - 00000000 ___SD () C:\Windows\SysWOW64\GWX
2015-04-01 13:56 - 2015-04-13 17:22 - 00029798 _____ () C:\Windows\PFRO.log
2015-04-01 13:53 - 2015-04-01 13:53 - 00364472 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
2015-04-01 13:53 - 2015-04-01 13:53 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr
2015-04-01 13:41 - 2015-04-13 20:12 - 00002184 _____ () C:\Windows\setupact.log
2015-04-01 13:41 - 2015-04-01 13:41 - 00000000 _____ () C:\Windows\setuperr.log
2015-03-30 17:10 - 2015-03-30 22:30 - 00000000 ____D () C:\Users\Honza\Desktop\Starset---Transmissions
2015-03-30 09:46 - 2015-03-30 09:55 - 163528192 _____ () C:\Users\Honza\Downloads\Starset---Transmissions.rar
2015-03-27 22:19 - 2015-04-11 16:41 - 00000000 ____D () C:\Users\Honza\Desktop\Fyz
2015-03-25 18:45 - 2015-03-25 19:29 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\.minecraft
2015-03-25 10:46 - 2015-03-11 06:06 - 00943616 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-03-25 10:46 - 2015-03-11 06:06 - 00760832 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-03-25 10:46 - 2015-03-11 06:06 - 00677888 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-03-25 10:46 - 2015-03-11 06:06 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-03-25 10:46 - 2015-03-11 06:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-03-25 10:46 - 2015-03-11 06:05 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-03-25 10:46 - 2015-03-11 06:05 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-03-25 10:46 - 2015-03-11 06:02 - 01107456 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-13 20:23 - 2012-01-22 17:20 - 01863551 _____ () C:\Windows\WindowsUpdate.log
2015-04-13 20:21 - 2009-07-14 06:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-13 20:21 - 2009-07-14 06:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-13 20:14 - 2012-07-05 11:54 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-04-13 20:12 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-13 20:06 - 2012-08-06 09:20 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-04-13 17:23 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini
2015-04-13 17:05 - 2011-10-02 01:15 - 06673176 _____ () C:\Windows\system32\perfh005.dat
2015-04-13 17:05 - 2011-10-02 01:15 - 02234980 _____ () C:\Windows\system32\perfc005.dat
2015-04-13 17:05 - 2009-07-14 07:13 - 00006252 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-12 23:45 - 2014-04-06 00:04 - 00000208 _____ () C:\Users\Honza\Desktop\usagi d.txt
2015-04-12 22:40 - 2013-11-22 17:19 - 00000000 ____D () C:\Users\Honza\AppData\Roaming\Forge
2015-04-12 18:35 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default
2015-04-12 17:21 - 2014-08-22 23:43 - 00000000 ____D () C:\Users\Honza\Desktop\Pokémon Projects
2015-04-11 18:24 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-04-11 17:52 - 2011-10-30 00:17 - 00000000 ____D () C:\Users\Honza\AppData\Local\CrashDumps
2015-04-11 10:32 - 2014-12-06 14:05 - 00000000 ____D () C:\Users\Honza\Desktop\Původní data aplikace Firefox
2015-04-10 19:58 - 2011-10-01 15:33 - 00000000 ____D () C:\Users\Honza
2015-04-10 19:48 - 2014-06-17 14:24 - 00000000 ____D () C:\Program Files\McAfee Security Scan
2015-04-10 19:48 - 2013-04-10 14:23 - 00000000 ____D () C:\Program Files\McAfee
2015-04-10 15:26 - 2011-11-03 19:17 - 00000000 ____D () C:\Program Files\trend micro
2015-04-09 17:29 - 2012-05-04 14:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-04-07 12:38 - 2013-07-02 22:19 - 00000000 ____D () C:\Users\Honza\Desktop\MEME
2015-04-05 23:48 - 2011-10-06 17:16 - 00000000 ____D () C:\Users\Honza\AppData\Local\Adobe
2015-04-05 23:43 - 2012-07-07 21:02 - 00003852 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-04-05 23:42 - 2012-07-07 21:02 - 00778928 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-04-05 23:42 - 2011-10-02 15:37 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-04-03 23:56 - 2011-10-15 15:41 - 00000000 ___RD () C:\Users\Honza\Desktop\Hry
2015-04-01 13:53 - 2014-08-09 16:33 - 00136752 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys
2015-04-01 13:53 - 2014-08-09 16:33 - 00029168 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2015-04-01 13:53 - 2013-03-23 11:20 - 00271200 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-04-01 13:53 - 2013-03-23 11:20 - 00065736 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-04-01 13:53 - 2012-02-26 21:53 - 01047320 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
2015-04-01 13:53 - 2012-02-26 21:53 - 00442264 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys
2015-04-01 13:53 - 2012-02-26 21:53 - 00093528 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys
2015-04-01 13:53 - 2012-02-26 21:52 - 00088408 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-03-25 20:16 - 2011-10-01 17:17 - 00000000 ____D () C:\Stahování
2015-03-25 13:45 - 2014-12-11 12:29 - 00000000 ____D () C:\Windows\system32\appraiser
2015-03-25 13:45 - 2014-05-07 01:31 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-03-16 21:01 - 2011-10-01 18:29 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-15 13:13 - 2009-07-14 07:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD
2015-03-14 19:01 - 2009-07-14 06:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
==================== Files in the root of some directories =======
2014-11-02 17:45 - 2003-04-02 02:50 - 0290816 ____N () C:\Program Files (x86)\BinkW32.dll
2014-11-02 17:45 - 2002-08-29 13:40 - 0489984 ____N (Microsoft Corporation) C:\Program Files (x86)\dbghelp.dll
2014-11-02 17:45 - 2010-06-19 02:07 - 7004160 _____ (Gas Powered Games) C:\Program Files (x86)\DSLOA.exe
2014-11-02 17:45 - 2002-03-20 12:00 - 0421888 ____N () C:\Program Files (x86)\DSVideoConfig.exe
2014-11-02 17:45 - 2010-06-19 02:07 - 6815744 _____ (Gas Powered Games) C:\Program Files (x86)\DungeonSiege.exe
2014-11-02 17:45 - 2002-08-08 02:15 - 0162120 ____N (Microsoft Corporation) C:\Program Files (x86)\Dw15.exe
2014-11-02 17:45 - 2003-10-07 02:56 - 0069722 ____N (Microsoft Corporation) C:\Program Files (x86)\EBUEula.dll
2014-11-02 17:45 - 2003-08-27 02:57 - 0786304 ____N () C:\Program Files (x86)\EULA.RTF
2014-11-02 17:45 - 2002-08-08 02:15 - 0380989 ____N (Microsoft Corporation) C:\Program Files (x86)\GunDll.dll
2014-11-02 17:45 - 2003-08-16 02:14 - 0077824 ____N (Microsoft Corporation) C:\Program Files (x86)\mgspid.dll
2014-11-02 17:45 - 2002-08-08 02:15 - 0348160 ____N () C:\Program Files (x86)\Mss32.dll
2014-11-02 17:45 - 2010-06-19 11:01 - 0049856 _____ () C:\Program Files (x86)\Odinstalovat.exe
2014-11-02 17:45 - 2003-10-14 18:40 - 0195686 ____N () C:\Program Files (x86)\Readme.rtf
2014-11-02 17:45 - 2003-10-21 00:35 - 10297344 ____N (Microsoft Corporation) C:\Program Files (x86)\SETUPENU.DLL
2014-11-02 17:45 - 2003-08-05 07:46 - 0081920 ____N (Microsoft Corporation) C:\Program Files (x86)\Splash.exe
2014-11-02 17:45 - 2003-08-20 03:57 - 0921656 ____N () C:\Program Files (x86)\SplashImage.bmp
2014-11-02 17:45 - 2003-09-21 00:51 - 0061647 ____N () C:\Program Files (x86)\system_detail.gas
2014-11-02 17:45 - 2003-10-21 00:35 - 0573440 ____N (Microsoft Corporation) C:\Program Files (x86)\UNINSTAL.EXE
2014-11-02 17:45 - 2002-07-20 07:41 - 0155712 ____N (Microsoft Corporation) C:\Program Files (x86)\UpdateClient.exe
2014-11-02 17:45 - 2002-07-20 07:41 - 0168003 ____N (Microsoft Corporation) C:\Program Files (x86)\UpdateClientDll.dll
2013-05-20 20:29 - 2013-05-20 20:44 - 0000000 _____ () C:\Users\Honza\AppData\Roaming\Project Templates
2011-11-12 20:56 - 2014-12-29 15:39 - 0003584 _____ () C:\Users\Honza\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-05-20 20:29 - 2013-05-20 20:44 - 0000000 ____H () C:\ProgramData\PKP_DLes.DAT
2013-05-20 20:29 - 2013-05-20 20:44 - 0000000 ____H () C:\ProgramData\PKP_DLet.DAT
2013-05-20 20:29 - 2013-05-20 20:44 - 0000000 ____H () C:\ProgramData\PKP_DLev.DAT
2013-05-20 20:44 - 2013-05-20 20:44 - 0000000 _____ () C:\ProgramData\Planets
2013-05-20 20:44 - 2013-05-20 20:44 - 0000000 _____ () C:\ProgramData\Profiles
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Honza\Desktop" je 18213 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================