CPU na 100% - bezdůvodně
Napsal: 13 říj 2013 11:09
Zdravíčko,
mám menší potíže s notebookem. Buď se jednoduše urazil za to, jak o něm mluvím, nebo je nemocen.
Počítač je někdy v klidu, a pak spustím třeba Word a prohlížeč zároveň a CPU je na 100%. Občas to za pár vteřin klesne, ale včera se to docela drželo, ntb se začal sekat, no prostě se choval divně.
Prohlížeče střídám, protože někdy zabírají fakt moc místa, odstranila jsem všechna rozšíření, zakázala jsem nepoužívané moduly v prohlížečích, všechny zbytečné programy po spuštění jsem vypnula - nic, nic nic. Prostě jednou za čas tomu hrábne, jede to na sto procent a já se pak klepu strachy, aby to přežil. Avast nic nenašel (a rozhodně mi sám moc místa nezabírá) a Process Explorer neukazuje nic divného.
Proto vás žádám o radu.
Předem díky.
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-10-2013
Ran by uživatel (ATTENTION: The logged in user is not administrator) on UŽIVATEL-HP on 13-10-2013 12:01:58
Running from C:\Users\uživatel\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\system32\taskmgr.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\uživatel\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2480936 2010-12-21] (Synaptics Incorporated)
HKLM\...\RunOnce: [*WerKernelReporting] - %SYSTEMROOT%\SYSTEM32\WerFault.exe -k -rq [415232 2009-07-14] (Microsoft Corporation)
HKLM-x32\...\RunOnce: [aswAhAScr.dll] - "C:\Program Files\AVAST Software\Avast\aswRegSvr.exe" "C:\Program Files\AVAST Software\Avast\AhAScr.dll" [140544 2013-08-30] (AVAST Software)
HKLM-x32\...\RunOnce: [aswasOutExt.dll] - "C:\Program Files\AVAST Software\Avast\aswRegSvr.exe" "C:\Program Files\AVAST Software\Avast\asOutExt.dll" [289888 2013-08-30] (AVAST Software)
HKLM-x32\...\RunOnce: [aswasOutExt64.dll] - "C:\Program Files\AVAST Software\Avast\aswRegSvr64.exe" "C:\Program Files\AVAST Software\Avast\asOutExt64.dll" [461856 2013-08-30] (AVAST Software)
HKLM-x32\...\RunOnce: [SymInstallStub] - C:\Windows\SysWOW64\Adobe\Shockwave 12\SymInstallStub.exe /partnerid=adobe /productlist=nss /staging=false /delay=5 /desktopshortcut=1 /startmenushortcut=1 /launchedby=3 [335776 2013-08-23] (Symantec Corporation)
HKLM-x32\...\RunOnce: [20131011] - C:\Program Files\AVAST Software\Avast\setup\emupdate\85a58fa3-bd4d-475d-a766-8017bc67d200.exe /check [164240 2013-10-11] (AVAST Software)
HKCU\...\Run: [StudentDOG] - C:\Program Files (x86)\Student DOG\StudentDOG.exe [2108928 2011-08-31] ()
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd)
HKCU\...\Run: [Facebook Update] - C:\Users\uživatel\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-12-08] (Facebook Inc.)
HKCU\...\Run: [Google Update] - C:\Users\uživatel\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-07-08] (Google Inc.)
MountPoints2: {de3b141c-3480-11e2-a5de-d0df9aa76b9b} - F:\Setup.exe
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-08-30] (AVAST Software)
HKLM-x32\...\Run: [] - [x]
Startup: C:\Users\uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk
ShortcutTarget: Facebook Messenger.lnk -> C:\Users\uživatel\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe (Facebook)
Startup: C:\Users\uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\IMVU.lnk
ShortcutTarget: IMVU.lnk -> C:\Users\uživatel\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/ig
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKLM-x32 - DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKCU - DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKCU - {2fa28606-de77-4029-af96-b231e3b8f827} URL =
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Yontoo - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll (Yontoo LLC)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 77.48.65.3 10.90.24.1
FireFox:
========
FF ProfilePath: C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\9xdwi9bf.default
FF Homepage: google.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1203133.dll (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.0.4 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\uživatel\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\uživatel\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\uživatel\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\uživatel\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\uživatel\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\uživatel\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: facebook.com/fbDesktopPlugin - C:\Users\uživatel\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF
Chrome:
=======
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\u\u017Eivatel\AppData\Local\Google\Chrome\Application\30.0.1599.69\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Users\u\u017Eivatel\AppData\Local\Google\Chrome\Application\30.0.1599.69\pdf.dll No File
CHR Plugin: (Shockwave Flash) - C:\Users\u\u017Eivatel\AppData\Local\Google\Chrome\Application\30.0.1599.69\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Users\u\u017Eivatel\AppData\Local\Google\Chrome\User Data\PepperFlash\11.1.31.203\pepflashplayer.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_262.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Microsoft\u00AE Windows Media Player Firefox Plugin) - C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll No File
CHR Plugin: (Shockwave for Director) - C:\Program Files (x86)\Mozilla Firefox\plugins\np32dsw.dll No File
CHR Plugin: (BitCometAgent) - C:\Program Files (x86)\Mozilla Firefox\plugins\npBitCometAgent.dll (BitComet)
CHR Plugin: (Java Deployment Toolkit 6.0.310.5) - C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Facebook Desktop) - C:\Users\u\u017Eivatel\AppData\Local\Facebook\Messenger\2.1.4554.0\npFbDesktopPlugin.dll No File
CHR Plugin: (Google Update) - C:\Users\u\u017Eivatel\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
CHR Extension: (Angry Birds) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.5.0.7_0
CHR Extension: (Theme Creator) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc\2.5_0
CHR Extension: (YouTube) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Facebook) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm\1.0.3_0
CHR Extension: (Google Search) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Billy Talent) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdemmifcnaacldiipagadnkehphdefje\1_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0
CHR Extension: (Gmail) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR HKLM-x32\...\Chrome\Extension: [niapdbllcanepiiimjjndipklodoedlc] - C:\Users\SPRVCE~1\AppData\Local\Temp\YontooLayers.crx
CHR HKLM-x32\...\Chrome\Extension: [pmlghpafmmnmmkjdhacccolfgnkiboco] - C:\Program Files (x86)\1ClickDownload\oneclickdownloader10.crx
CHR StartMenuInternet: Google Chrome - C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) =================
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [354304 2011-03-04] (Advanced Micro Devices, Inc.)
R2 AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [194496 2010-06-17] (Advanced Micro Devices)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-01-06] (Atheros)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software)
R2 lmhosts; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 NlaSvc; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 nsi; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1127448 2011-02-01] (PDF Complete Inc)
==================== Drivers (Whitelisted) ====================
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-08-30] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-08-30] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-08-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-08-30] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-08-30] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-08-30] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-08-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [204880 2013-08-30] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-11-22] (DT Soft Ltd)
S3 cpuz135; \??\C:\Users\SPRVCE~1\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-13 12:01 - 2013-10-13 12:01 - 00000000 ____D C:\FRST
2013-10-13 12:00 - 2013-10-13 12:00 - 01954124 _____ (Farbar) C:\Users\uživatel\Desktop\FRST64.exe
2013-10-13 11:58 - 2013-10-13 11:59 - 00112128 _____ (forum.viry.cz) C:\Users\uživatel\Desktop\FRSTLauncher.exe
2013-10-13 10:55 - 2013-10-13 11:57 - 00000000 ____D C:\Program Files\trend micro
2013-10-13 10:55 - 2013-10-13 11:56 - 00000000 ____D C:\rsit
2013-10-13 10:55 - 2013-10-13 10:55 - 00935175 _____ C:\Users\uživatel\Downloads\RSITx64.exe
2013-10-13 00:57 - 2013-07-31 13:08 - 02799296 _____ (Sysinternals - http://www.sysinternals.com) C:\Users\uživatel\Desktop\procexp.exe
2013-10-13 00:33 - 2013-10-13 00:33 - 01191834 _____ C:\Users\uživatel\Downloads\ProcessExplorer.zip
2013-10-13 00:02 - 2013-10-13 00:02 - 00001922 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-10-12 23:56 - 2013-10-12 23:59 - 131918888 _____ C:\Users\uživatel\Downloads\avast_free_antivirus_setup.exe
2013-10-07 01:22 - 2013-10-07 01:25 - 00000000 ____D C:\Users\uživatel\Documents\blog - články
2013-10-03 15:11 - 2013-10-03 16:28 - 701092714 _____ C:\Users\uživatel\Downloads\How.I.Met.Your.Mother.S09E03.Jak-jsem-poznal-vaši-matku-9x3-720p.HDTV.X264-DIMENSION-+-CzSub.rar
2013-10-03 11:38 - 2013-10-03 11:58 - 181961433 _____ C:\Users\uživatel\Downloads\How-I-Met-Your-Mother-s09e02-jak-jsem-poznal-vaši-matku-9x2+-cz-titulky.zip
2013-09-29 15:57 - 2013-09-29 15:57 - 00034346 _____ C:\Users\uživatel\Downloads\Balada - vrajová.odt
2013-09-25 23:05 - 2013-09-25 23:08 - 153063750 _____ C:\Users\uživatel\Downloads\smartnotebookinteractiveviewer2_0win.zip
2013-09-24 19:05 - 2013-09-24 19:05 - 02801386 _____ C:\Users\uživatel\Downloads\Antošová-Svatava---Nordickou-blondýnu-jsem-nikdy-nelízala.zip
2013-09-24 18:45 - 2013-09-24 18:45 - 00012592 _____ C:\Users\uživatel\Downloads\jak-jsem-poznal-vasi-matku-S09E01-web-dl-By-jingspiral.zip
2013-09-22 21:59 - 2013-09-22 21:59 - 00100476 _____ C:\Users\uživatel\Downloads\mhd.apk
2013-09-22 19:51 - 2013-09-22 19:51 - 07440150 _____ C:\Users\uživatel\Downloads\prilohy_8179.zip
2013-09-13 11:57 - 2013-09-13 11:58 - 22256664 _____ (Mozilla) C:\Users\uživatel\Downloads\Firefox Setup 23.0.1.exe
==================== One Month Modified Files and Folders =======
2013-10-13 12:01 - 2013-10-13 12:01 - 00000000 ____D C:\FRST
2013-10-13 12:00 - 2013-10-13 12:00 - 01954124 _____ (Farbar) C:\Users\uživatel\Desktop\FRST64.exe
2013-10-13 11:59 - 2013-10-13 11:58 - 00112128 _____ (forum.viry.cz) C:\Users\uživatel\Desktop\FRSTLauncher.exe
2013-10-13 11:57 - 2013-10-13 10:55 - 00000000 ____D C:\Program Files\trend micro
2013-10-13 11:56 - 2013-10-13 10:55 - 00000000 ____D C:\rsit
2013-10-13 11:38 - 2012-07-08 13:44 - 00000974 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001UA.job
2013-10-13 11:38 - 2012-04-22 13:01 - 00000940 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001UA.job
2013-10-13 11:23 - 2013-08-24 13:57 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-13 10:55 - 2013-10-13 10:55 - 00935175 _____ C:\Users\uživatel\Downloads\RSITx64.exe
2013-10-13 10:48 - 2013-02-28 15:22 - 00000000 ____D C:\Users\uživatel\Documents\Microsoft Office
2013-10-13 10:47 - 2012-10-07 18:45 - 00000000 ____D C:\Users\uživatel\vš
2013-10-13 10:46 - 2012-07-08 13:44 - 00000922 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001Core.job
2013-10-13 10:44 - 2011-08-11 04:43 - 01725390 _____ C:\Windows\WindowsUpdate.log
2013-10-13 00:33 - 2013-10-13 00:33 - 01191834 _____ C:\Users\uživatel\Downloads\ProcessExplorer.zip
2013-10-13 00:27 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-13 00:27 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-13 00:12 - 2013-07-21 18:39 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-13 00:10 - 2011-05-11 01:54 - 00631970 _____ C:\Windows\system32\perfh005.dat
2013-10-13 00:10 - 2011-05-11 01:54 - 00122334 _____ C:\Windows\system32\perfc005.dat
2013-10-13 00:10 - 2009-07-14 07:13 - 01471810 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-13 00:04 - 2011-05-10 16:45 - 00000000 ____D C:\ProgramData\PDFC
2013-10-13 00:03 - 2012-09-16 14:33 - 00041814 _____ C:\Windows\setupact.log
2013-10-13 00:03 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-13 00:02 - 2013-10-13 00:02 - 00001922 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-10-13 00:02 - 2011-10-05 11:50 - 00000000 _____ C:\Windows\SysWOW64\config.nt
2013-10-12 23:59 - 2013-10-12 23:56 - 131918888 _____ C:\Users\uživatel\Downloads\avast_free_antivirus_setup.exe
2013-10-12 23:58 - 2011-10-21 21:05 - 00007605 _____ C:\Users\Správce\AppData\Local\Resmon.ResmonCfg
2013-10-12 14:38 - 2012-04-22 13:01 - 00000918 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001Core.job
2013-10-09 22:11 - 2013-08-20 22:11 - 00000300 _____ C:\Windows\Tasks\WinZipDriverUpdater_UPDATES.job
2013-10-09 20:24 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2013-10-09 14:24 - 2012-07-06 13:03 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-09 14:24 - 2012-07-05 11:32 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-08 19:30 - 2013-08-23 17:41 - 00000624 ____H C:\Windows\Tasks\Norton Product InstallerIdle.job
2013-10-07 08:45 - 2012-12-09 22:41 - 00000000 ____D C:\Users\uživatel\Documents\knihy pdf
2013-10-07 01:25 - 2013-10-07 01:22 - 00000000 ____D C:\Users\uživatel\Documents\blog - články
2013-10-05 23:50 - 2012-03-05 19:05 - 00000000 ____D C:\Users\uživatel\AppData\Roaming\Skype
2013-10-04 10:37 - 2012-07-08 13:53 - 00000000 ____D C:\Users\uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2013-10-03 17:17 - 2013-08-23 19:23 - 00000000 ____D C:\Users\uživatel\AppData\Roaming\vlc
2013-10-03 16:28 - 2013-10-03 15:11 - 701092714 _____ C:\Users\uživatel\Downloads\How.I.Met.Your.Mother.S09E03.Jak-jsem-poznal-vaši-matku-9x3-720p.HDTV.X264-DIMENSION-+-CzSub.rar
2013-10-03 11:58 - 2013-10-03 11:38 - 181961433 _____ C:\Users\uživatel\Downloads\How-I-Met-Your-Mother-s09e02-jak-jsem-poznal-vaši-matku-9x2+-cz-titulky.zip
2013-10-02 10:10 - 2011-10-18 09:40 - 00000000 ____D C:\Users\uživatel\AppData\Roaming\Media Player Classic
2013-10-01 20:49 - 2011-10-17 18:13 - 00000000 ____D C:\Users\Správce
2013-10-01 19:20 - 2011-10-17 17:18 - 00000000 ____D C:\Users\uživatel\AppData\Roaming\ICQ
2013-10-01 17:34 - 2012-09-16 18:59 - 00013784 _____ C:\Windows\PFRO.log
2013-10-01 17:34 - 2012-07-05 09:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-29 15:57 - 2013-09-29 15:57 - 00034346 _____ C:\Users\uživatel\Downloads\Balada - vrajová.odt
2013-09-26 15:21 - 2011-11-01 20:10 - 00000000 ____D C:\Users\uživatel\AppData\Roaming\Mozilla
2013-09-25 23:08 - 2013-09-25 23:05 - 153063750 _____ C:\Users\uživatel\Downloads\smartnotebookinteractiveviewer2_0win.zip
2013-09-24 20:25 - 2011-05-10 16:46 - 00000000 ____D C:\ProgramData\Skype
2013-09-24 20:24 - 2013-05-03 19:33 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-09-24 19:05 - 2013-09-24 19:05 - 02801386 _____ C:\Users\uživatel\Downloads\Antošová-Svatava---Nordickou-blondýnu-jsem-nikdy-nelízala.zip
2013-09-24 18:45 - 2013-09-24 18:45 - 00012592 _____ C:\Users\uživatel\Downloads\jak-jsem-poznal-vasi-matku-S09E01-web-dl-By-jingspiral.zip
2013-09-22 21:59 - 2013-09-22 21:59 - 00100476 _____ C:\Users\uživatel\Downloads\mhd.apk
2013-09-22 19:51 - 2013-09-22 19:51 - 07440150 _____ C:\Users\uživatel\Downloads\prilohy_8179.zip
2013-09-18 11:53 - 2012-07-08 15:40 - 00000000 ____D C:\Users\uživatel\Documents\¨cv
2013-09-13 11:59 - 2011-11-01 20:09 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-09-13 11:58 - 2013-09-13 11:57 - 22256664 _____ (Mozilla) C:\Users\uživatel\Downloads\Firefox Setup 23.0.1.exe
Some content of TEMP:
====================
C:\Users\Správce\AppData\Local\Temp\AutoRun.exe
C:\Users\Správce\AppData\Local\Temp\AutoRunGUI.dll
C:\Users\Správce\AppData\Local\Temp\eauninstall.exe
C:\Users\Správce\AppData\Local\Temp\First15.exe
C:\Users\Správce\AppData\Local\Temp\htmlayout.dll
C:\Users\Správce\AppData\Local\Temp\Second Life Setup.exe
C:\Users\Správce\AppData\Local\Temp\The Sims 2_uninst.exe
C:\Users\Správce\AppData\Local\Temp\uninstall29756894.exe
C:\Users\Správce\AppData\Local\Temp\VP6Install.exe
C:\Users\Správce\AppData\Local\Temp\VP6VFW.dll
C:\Users\uživatel\AppData\Local\Temp\KMP_3.6.0.87.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:449.82 GB) (Free:162.1 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:15.64 GB) (Free:1.93 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Available physical RAM: 1979.54 MB
Total physical RAM: 3690.9 MB
Percentage of memory in use: 46%
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => ?
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001Core.job => C:\Users\u~ivatel\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001UA.job => C:\Users\u~ivatel\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001Core.job => C:\Users\u~ivatel\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001UA.job => C:\Users\u~ivatel\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Norton Product InstallerIdle.job => ?
Task: C:\Windows\Tasks\WinZipDriverUpdater_UPDATES.job => ?
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: avast! Antivirus (Enabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C}
AS: avast! Antivirus (Enabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 28_09_2013 (06)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\u�ivatel\Desktop" je 658 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AthBtTray
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AtherosBtStack
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitComet
C:\Program Files (x86)\BitComet\BitComet.exe /tray [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Quick Launch
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update
C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPOSD
C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPWirelessAssistant
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe /hidden [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper
C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDF Complete
C:\Program Files (x86)\PDF Complete\pdfsty.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk
C:\PROGRA~2\HP\DIGITA~1\bin\hpqtra08.exe
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001
==================== End Of Log ==============================
mám menší potíže s notebookem. Buď se jednoduše urazil za to, jak o něm mluvím, nebo je nemocen.
Počítač je někdy v klidu, a pak spustím třeba Word a prohlížeč zároveň a CPU je na 100%. Občas to za pár vteřin klesne, ale včera se to docela drželo, ntb se začal sekat, no prostě se choval divně.
Prohlížeče střídám, protože někdy zabírají fakt moc místa, odstranila jsem všechna rozšíření, zakázala jsem nepoužívané moduly v prohlížečích, všechny zbytečné programy po spuštění jsem vypnula - nic, nic nic. Prostě jednou za čas tomu hrábne, jede to na sto procent a já se pak klepu strachy, aby to přežil. Avast nic nenašel (a rozhodně mi sám moc místa nezabírá) a Process Explorer neukazuje nic divného.
Proto vás žádám o radu.

Předem díky.
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-10-2013
Ran by uživatel (ATTENTION: The logged in user is not administrator) on UŽIVATEL-HP on 13-10-2013 12:01:58
Running from C:\Users\uživatel\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\system32\taskmgr.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\uživatel\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2480936 2010-12-21] (Synaptics Incorporated)
HKLM\...\RunOnce: [*WerKernelReporting] - %SYSTEMROOT%\SYSTEM32\WerFault.exe -k -rq [415232 2009-07-14] (Microsoft Corporation)
HKLM-x32\...\RunOnce: [aswAhAScr.dll] - "C:\Program Files\AVAST Software\Avast\aswRegSvr.exe" "C:\Program Files\AVAST Software\Avast\AhAScr.dll" [140544 2013-08-30] (AVAST Software)
HKLM-x32\...\RunOnce: [aswasOutExt.dll] - "C:\Program Files\AVAST Software\Avast\aswRegSvr.exe" "C:\Program Files\AVAST Software\Avast\asOutExt.dll" [289888 2013-08-30] (AVAST Software)
HKLM-x32\...\RunOnce: [aswasOutExt64.dll] - "C:\Program Files\AVAST Software\Avast\aswRegSvr64.exe" "C:\Program Files\AVAST Software\Avast\asOutExt64.dll" [461856 2013-08-30] (AVAST Software)
HKLM-x32\...\RunOnce: [SymInstallStub] - C:\Windows\SysWOW64\Adobe\Shockwave 12\SymInstallStub.exe /partnerid=adobe /productlist=nss /staging=false /delay=5 /desktopshortcut=1 /startmenushortcut=1 /launchedby=3 [335776 2013-08-23] (Symantec Corporation)
HKLM-x32\...\RunOnce: [20131011] - C:\Program Files\AVAST Software\Avast\setup\emupdate\85a58fa3-bd4d-475d-a766-8017bc67d200.exe /check [164240 2013-10-11] (AVAST Software)
HKCU\...\Run: [StudentDOG] - C:\Program Files (x86)\Student DOG\StudentDOG.exe [2108928 2011-08-31] ()
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd)
HKCU\...\Run: [Facebook Update] - C:\Users\uživatel\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-12-08] (Facebook Inc.)
HKCU\...\Run: [Google Update] - C:\Users\uživatel\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-07-08] (Google Inc.)
MountPoints2: {de3b141c-3480-11e2-a5de-d0df9aa76b9b} - F:\Setup.exe
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-08-30] (AVAST Software)
HKLM-x32\...\Run: [] - [x]
Startup: C:\Users\uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk
ShortcutTarget: Facebook Messenger.lnk -> C:\Users\uživatel\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe (Facebook)
Startup: C:\Users\uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\IMVU.lnk
ShortcutTarget: IMVU.lnk -> C:\Users\uživatel\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/ig
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDF
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDF
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKLM-x32 - DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF
SearchScopes: HKCU - DefaultScope {ec29edf6-ad3c-4e1c-a087-d6cb81400c43} URL = http://www.bing.com/search?q={searchTer ... -SearchBox
SearchScopes: HKCU - {2fa28606-de77-4029-af96-b231e3b8f827} URL =
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Yontoo - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll (Yontoo LLC)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 77.48.65.3 10.90.24.1
FireFox:
========
FF ProfilePath: C:\Users\uživatel\AppData\Roaming\Mozilla\Firefox\Profiles\9xdwi9bf.default
FF Homepage: google.cz/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1203133.dll (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.0.4 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\uživatel\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\uživatel\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\uživatel\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\uživatel\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\uživatel\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\uživatel\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: facebook.com/fbDesktopPlugin - C:\Users\uživatel\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF
Chrome:
=======
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\u\u017Eivatel\AppData\Local\Google\Chrome\Application\30.0.1599.69\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Users\u\u017Eivatel\AppData\Local\Google\Chrome\Application\30.0.1599.69\pdf.dll No File
CHR Plugin: (Shockwave Flash) - C:\Users\u\u017Eivatel\AppData\Local\Google\Chrome\Application\30.0.1599.69\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Users\u\u017Eivatel\AppData\Local\Google\Chrome\User Data\PepperFlash\11.1.31.203\pepflashplayer.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_262.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Microsoft\u00AE Windows Media Player Firefox Plugin) - C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll No File
CHR Plugin: (Shockwave for Director) - C:\Program Files (x86)\Mozilla Firefox\plugins\np32dsw.dll No File
CHR Plugin: (BitCometAgent) - C:\Program Files (x86)\Mozilla Firefox\plugins\npBitCometAgent.dll (BitComet)
CHR Plugin: (Java Deployment Toolkit 6.0.310.5) - C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Facebook Desktop) - C:\Users\u\u017Eivatel\AppData\Local\Facebook\Messenger\2.1.4554.0\npFbDesktopPlugin.dll No File
CHR Plugin: (Google Update) - C:\Users\u\u017Eivatel\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
CHR Extension: (Angry Birds) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.5.0.7_0
CHR Extension: (Theme Creator) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc\2.5_0
CHR Extension: (YouTube) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Facebook) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\boeajhmfdjldchidhphikilcgdacljfm\1.0.3_0
CHR Extension: (Google Search) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Billy Talent) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdemmifcnaacldiipagadnkehphdefje\1_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0
CHR Extension: (Gmail) - C:\Users\UIVATE~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR HKLM-x32\...\Chrome\Extension: [niapdbllcanepiiimjjndipklodoedlc] - C:\Users\SPRVCE~1\AppData\Local\Temp\YontooLayers.crx
CHR HKLM-x32\...\Chrome\Extension: [pmlghpafmmnmmkjdhacccolfgnkiboco] - C:\Program Files (x86)\1ClickDownload\oneclickdownloader10.crx
CHR StartMenuInternet: Google Chrome - C:\Users\uživatel\AppData\Local\Google\Chrome\Application\chrome.exe
==================== Services (Whitelisted) =================
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [354304 2011-03-04] (Advanced Micro Devices, Inc.)
R2 AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [194496 2010-06-17] (Advanced Micro Devices)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-01-06] (Atheros)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-08-30] (AVAST Software)
R2 lmhosts; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 NlaSvc; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 nsi; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1127448 2011-02-01] (PDF Complete Inc)
==================== Drivers (Whitelisted) ====================
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-08-30] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-08-30] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-08-30] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-08-30] ()
R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-08-30] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-08-30] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-08-30] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [204880 2013-08-30] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-11-22] (DT Soft Ltd)
S3 cpuz135; \??\C:\Users\SPRVCE~1\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-13 12:01 - 2013-10-13 12:01 - 00000000 ____D C:\FRST
2013-10-13 12:00 - 2013-10-13 12:00 - 01954124 _____ (Farbar) C:\Users\uživatel\Desktop\FRST64.exe
2013-10-13 11:58 - 2013-10-13 11:59 - 00112128 _____ (forum.viry.cz) C:\Users\uživatel\Desktop\FRSTLauncher.exe
2013-10-13 10:55 - 2013-10-13 11:57 - 00000000 ____D C:\Program Files\trend micro
2013-10-13 10:55 - 2013-10-13 11:56 - 00000000 ____D C:\rsit
2013-10-13 10:55 - 2013-10-13 10:55 - 00935175 _____ C:\Users\uživatel\Downloads\RSITx64.exe
2013-10-13 00:57 - 2013-07-31 13:08 - 02799296 _____ (Sysinternals - http://www.sysinternals.com) C:\Users\uživatel\Desktop\procexp.exe
2013-10-13 00:33 - 2013-10-13 00:33 - 01191834 _____ C:\Users\uživatel\Downloads\ProcessExplorer.zip
2013-10-13 00:02 - 2013-10-13 00:02 - 00001922 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-10-12 23:56 - 2013-10-12 23:59 - 131918888 _____ C:\Users\uživatel\Downloads\avast_free_antivirus_setup.exe
2013-10-07 01:22 - 2013-10-07 01:25 - 00000000 ____D C:\Users\uživatel\Documents\blog - články
2013-10-03 15:11 - 2013-10-03 16:28 - 701092714 _____ C:\Users\uživatel\Downloads\How.I.Met.Your.Mother.S09E03.Jak-jsem-poznal-vaši-matku-9x3-720p.HDTV.X264-DIMENSION-+-CzSub.rar
2013-10-03 11:38 - 2013-10-03 11:58 - 181961433 _____ C:\Users\uživatel\Downloads\How-I-Met-Your-Mother-s09e02-jak-jsem-poznal-vaši-matku-9x2+-cz-titulky.zip
2013-09-29 15:57 - 2013-09-29 15:57 - 00034346 _____ C:\Users\uživatel\Downloads\Balada - vrajová.odt
2013-09-25 23:05 - 2013-09-25 23:08 - 153063750 _____ C:\Users\uživatel\Downloads\smartnotebookinteractiveviewer2_0win.zip
2013-09-24 19:05 - 2013-09-24 19:05 - 02801386 _____ C:\Users\uživatel\Downloads\Antošová-Svatava---Nordickou-blondýnu-jsem-nikdy-nelízala.zip
2013-09-24 18:45 - 2013-09-24 18:45 - 00012592 _____ C:\Users\uživatel\Downloads\jak-jsem-poznal-vasi-matku-S09E01-web-dl-By-jingspiral.zip
2013-09-22 21:59 - 2013-09-22 21:59 - 00100476 _____ C:\Users\uživatel\Downloads\mhd.apk
2013-09-22 19:51 - 2013-09-22 19:51 - 07440150 _____ C:\Users\uživatel\Downloads\prilohy_8179.zip
2013-09-13 11:57 - 2013-09-13 11:58 - 22256664 _____ (Mozilla) C:\Users\uživatel\Downloads\Firefox Setup 23.0.1.exe
==================== One Month Modified Files and Folders =======
2013-10-13 12:01 - 2013-10-13 12:01 - 00000000 ____D C:\FRST
2013-10-13 12:00 - 2013-10-13 12:00 - 01954124 _____ (Farbar) C:\Users\uživatel\Desktop\FRST64.exe
2013-10-13 11:59 - 2013-10-13 11:58 - 00112128 _____ (forum.viry.cz) C:\Users\uživatel\Desktop\FRSTLauncher.exe
2013-10-13 11:57 - 2013-10-13 10:55 - 00000000 ____D C:\Program Files\trend micro
2013-10-13 11:56 - 2013-10-13 10:55 - 00000000 ____D C:\rsit
2013-10-13 11:38 - 2012-07-08 13:44 - 00000974 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001UA.job
2013-10-13 11:38 - 2012-04-22 13:01 - 00000940 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001UA.job
2013-10-13 11:23 - 2013-08-24 13:57 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-13 10:55 - 2013-10-13 10:55 - 00935175 _____ C:\Users\uživatel\Downloads\RSITx64.exe
2013-10-13 10:48 - 2013-02-28 15:22 - 00000000 ____D C:\Users\uživatel\Documents\Microsoft Office
2013-10-13 10:47 - 2012-10-07 18:45 - 00000000 ____D C:\Users\uživatel\vš
2013-10-13 10:46 - 2012-07-08 13:44 - 00000922 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001Core.job
2013-10-13 10:44 - 2011-08-11 04:43 - 01725390 _____ C:\Windows\WindowsUpdate.log
2013-10-13 00:33 - 2013-10-13 00:33 - 01191834 _____ C:\Users\uživatel\Downloads\ProcessExplorer.zip
2013-10-13 00:27 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-13 00:27 - 2009-07-14 06:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-13 00:12 - 2013-07-21 18:39 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-13 00:10 - 2011-05-11 01:54 - 00631970 _____ C:\Windows\system32\perfh005.dat
2013-10-13 00:10 - 2011-05-11 01:54 - 00122334 _____ C:\Windows\system32\perfc005.dat
2013-10-13 00:10 - 2009-07-14 07:13 - 01471810 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-13 00:04 - 2011-05-10 16:45 - 00000000 ____D C:\ProgramData\PDFC
2013-10-13 00:03 - 2012-09-16 14:33 - 00041814 _____ C:\Windows\setupact.log
2013-10-13 00:03 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-13 00:02 - 2013-10-13 00:02 - 00001922 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-10-13 00:02 - 2011-10-05 11:50 - 00000000 _____ C:\Windows\SysWOW64\config.nt
2013-10-12 23:59 - 2013-10-12 23:56 - 131918888 _____ C:\Users\uživatel\Downloads\avast_free_antivirus_setup.exe
2013-10-12 23:58 - 2011-10-21 21:05 - 00007605 _____ C:\Users\Správce\AppData\Local\Resmon.ResmonCfg
2013-10-12 14:38 - 2012-04-22 13:01 - 00000918 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001Core.job
2013-10-09 22:11 - 2013-08-20 22:11 - 00000300 _____ C:\Windows\Tasks\WinZipDriverUpdater_UPDATES.job
2013-10-09 20:24 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2013-10-09 14:24 - 2012-07-06 13:03 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-09 14:24 - 2012-07-05 11:32 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-08 19:30 - 2013-08-23 17:41 - 00000624 ____H C:\Windows\Tasks\Norton Product InstallerIdle.job
2013-10-07 08:45 - 2012-12-09 22:41 - 00000000 ____D C:\Users\uživatel\Documents\knihy pdf
2013-10-07 01:25 - 2013-10-07 01:22 - 00000000 ____D C:\Users\uživatel\Documents\blog - články
2013-10-05 23:50 - 2012-03-05 19:05 - 00000000 ____D C:\Users\uživatel\AppData\Roaming\Skype
2013-10-04 10:37 - 2012-07-08 13:53 - 00000000 ____D C:\Users\uživatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2013-10-03 17:17 - 2013-08-23 19:23 - 00000000 ____D C:\Users\uživatel\AppData\Roaming\vlc
2013-10-03 16:28 - 2013-10-03 15:11 - 701092714 _____ C:\Users\uživatel\Downloads\How.I.Met.Your.Mother.S09E03.Jak-jsem-poznal-vaši-matku-9x3-720p.HDTV.X264-DIMENSION-+-CzSub.rar
2013-10-03 11:58 - 2013-10-03 11:38 - 181961433 _____ C:\Users\uživatel\Downloads\How-I-Met-Your-Mother-s09e02-jak-jsem-poznal-vaši-matku-9x2+-cz-titulky.zip
2013-10-02 10:10 - 2011-10-18 09:40 - 00000000 ____D C:\Users\uživatel\AppData\Roaming\Media Player Classic
2013-10-01 20:49 - 2011-10-17 18:13 - 00000000 ____D C:\Users\Správce
2013-10-01 19:20 - 2011-10-17 17:18 - 00000000 ____D C:\Users\uživatel\AppData\Roaming\ICQ
2013-10-01 17:34 - 2012-09-16 18:59 - 00013784 _____ C:\Windows\PFRO.log
2013-10-01 17:34 - 2012-07-05 09:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-29 15:57 - 2013-09-29 15:57 - 00034346 _____ C:\Users\uživatel\Downloads\Balada - vrajová.odt
2013-09-26 15:21 - 2011-11-01 20:10 - 00000000 ____D C:\Users\uživatel\AppData\Roaming\Mozilla
2013-09-25 23:08 - 2013-09-25 23:05 - 153063750 _____ C:\Users\uživatel\Downloads\smartnotebookinteractiveviewer2_0win.zip
2013-09-24 20:25 - 2011-05-10 16:46 - 00000000 ____D C:\ProgramData\Skype
2013-09-24 20:24 - 2013-05-03 19:33 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-09-24 19:05 - 2013-09-24 19:05 - 02801386 _____ C:\Users\uživatel\Downloads\Antošová-Svatava---Nordickou-blondýnu-jsem-nikdy-nelízala.zip
2013-09-24 18:45 - 2013-09-24 18:45 - 00012592 _____ C:\Users\uživatel\Downloads\jak-jsem-poznal-vasi-matku-S09E01-web-dl-By-jingspiral.zip
2013-09-22 21:59 - 2013-09-22 21:59 - 00100476 _____ C:\Users\uživatel\Downloads\mhd.apk
2013-09-22 19:51 - 2013-09-22 19:51 - 07440150 _____ C:\Users\uživatel\Downloads\prilohy_8179.zip
2013-09-18 11:53 - 2012-07-08 15:40 - 00000000 ____D C:\Users\uživatel\Documents\¨cv
2013-09-13 11:59 - 2011-11-01 20:09 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-09-13 11:58 - 2013-09-13 11:57 - 22256664 _____ (Mozilla) C:\Users\uživatel\Downloads\Firefox Setup 23.0.1.exe
Some content of TEMP:
====================
C:\Users\Správce\AppData\Local\Temp\AutoRun.exe
C:\Users\Správce\AppData\Local\Temp\AutoRunGUI.dll
C:\Users\Správce\AppData\Local\Temp\eauninstall.exe
C:\Users\Správce\AppData\Local\Temp\First15.exe
C:\Users\Správce\AppData\Local\Temp\htmlayout.dll
C:\Users\Správce\AppData\Local\Temp\Second Life Setup.exe
C:\Users\Správce\AppData\Local\Temp\The Sims 2_uninst.exe
C:\Users\Správce\AppData\Local\Temp\uninstall29756894.exe
C:\Users\Správce\AppData\Local\Temp\VP6Install.exe
C:\Users\Správce\AppData\Local\Temp\VP6VFW.dll
C:\Users\uživatel\AppData\Local\Temp\KMP_3.6.0.87.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:449.82 GB) (Free:162.1 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (RECOVERY) (Fixed) (Total:15.64 GB) (Free:1.93 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Available physical RAM: 1979.54 MB
Total physical RAM: 3690.9 MB
Percentage of memory in use: 46%
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => ?
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001Core.job => C:\Users\u~ivatel\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001UA.job => C:\Users\u~ivatel\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001Core.job => C:\Users\u~ivatel\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1858172234-783288351-896099780-1001UA.job => C:\Users\u~ivatel\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Norton Product InstallerIdle.job => ?
Task: C:\Windows\Tasks\WinZipDriverUpdater_UPDATES.job => ?
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: avast! Antivirus (Enabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C}
AS: avast! Antivirus (Enabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 28_09_2013 (06)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\u�ivatel\Desktop" je 658 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AthBtTray
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AtherosBtStack
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitComet
C:\Program Files (x86)\BitComet\BitComet.exe /tray [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Quick Launch
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update
C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPOSD
C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPWirelessAssistant
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe 120 C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe /hidden [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper
C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDF Complete
C:\Program Files (x86)\PDF Complete\pdfsty.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDVCPL
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk
C:\PROGRA~2\HP\DIGITA~1\bin\hpqtra08.exe
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000001
==================== End Of Log ==============================