Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-01-2014 03
Ran by Oksanka (administrator) on ACER-PC on 18-01-2014 22:33:22
Running from C:\Users\Oksanka\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(Egis Technology Inc. ) C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Synaptics, Inc.) C:\Program Files (x86)\Synaptics\Scrybe\Service\ScrybeUpdater.exe
(StarWind Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe
(GARMIN Corp.) C:\Program Files (x86)\Garmin\Express Fit\ExpressFit.exe
(Siber Systems) C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Ai Charger\AiChargerAP.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Users\Oksanka\AppData\Local\Google\Update\GoogleUpdate.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Oksanka\Desktop\FRSTLauncher (1).exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [1832760 2012-09-20] (Logitech, Inc.)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2531624 2010-12-17] (Synaptics Incorporated)
HKLM-x32\...\Run: [ASUS Ai Charger] - C:\Program Files (x86)\ASUS\ASUS Ai Charger\AiChargerAP.exe [547984 2012-08-13] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ArcadeMovieService] - C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [177448 2011-05-09] (CyberLink Corp.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.)
HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2014-01-16] (AVAST Software)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [Google Update] - C:\Users\Oksanka\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-12-13] (Google Inc.)
HKCU\...\Run: [SpeedUpMyComputer] - C:\Program Files (x86)\SmartTweak\SpeedUpMyComputer\SpeedUpMyComputer.exe /ot /as
HKCU\...\Run: [ExpressFit] - C:\Program Files (x86)\Garmin\Express Fit\ExpressFit.exe [16576512 2013-12-11] (GARMIN Corp.)
HKCU\...\Run: [RoboForm] - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [100200 2014-01-16] (Siber Systems)
MountPoints2: {7d732749-f6bf-11e0-b4c9-806e6f6e6963} - D:\dosutils\autorun\autorun.exe
MountPoints2: {b6b8edc0-5964-11e1-bb53-806e6f6e6963} - E:\start.exe
HKU\Default\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [154144 2010-07-29] ()
HKU\Default User\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [154144 2010-07-29] ()
AppInit_DLLs: C:\Program Files (x86)\GS Supporter\Assistant_x64.dll [2759168 2014-01-12] ()
AppInit_DLLs-x32: c:\progra~2\gssupp~1\assist~1.dll [3041792 2014-01-12] ()
Startup: C:\Users\Oksanka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://acer.msn.com
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.google.com/ie
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.google.com/ie
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.mail.ru/?homepage=1
URLSearchHook: ATTENTION ==> Default URLSearchHook is missing.
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0BE4231A-B8A1-4037-80E4-9D3511123E97} URL =
http://search.conduit.com/ResultsExt.as ... =CT3220468
SearchScopes: HKCU - {5220EE9B-ED34-47D7-850A-1A0308C42034} URL =
http://websearch.ask.com/redirect?clien ... BD1B865981
SearchScopes: HKCU - {696D8D61-8936-406A-8517-63E512E842DE} URL =
http://www.mysearchresults.com/search?c ... earchTerms}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
http://www.google.com/search?q={sear
BHO: avast! EasyPass Toolbar Helper - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll (AVAST Software)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GbR)
BHO-x32: jZip Webmail plugin - {647FD14A-C4F1-46F4-8FC3-0B40F54226F7} - C:\Program Files (x86)\jZip\WebmailPlugin.dll No File
BHO-x32: avast! EasyPass Toolbar Helper - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (AVAST Software)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: No Name - {8984B388-A5BB-4DF7-B274-77B879E179DB} - No File
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Free Download Manager - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll ()
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! EasyPass Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll (AVAST Software)
Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - avast! EasyPass Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (AVAST Software)
Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKCU - No Name - {ECDEE021-0D17-467F-A1FF-C7A115230949} - No File
Toolbar: HKCU - No Name - {09900DE8-1DCA-443F-9243-26FF581438AF} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1
FireFox:
========
FF ProfilePath: C:\Users\Oksanka\AppData\Roaming\Mozilla\Firefox\Profiles\dsh37k4r.default
FF DefaultSearchEngine: ?????@Mail.Ru
FF SelectedSearchEngine: ?????@Mail.Ru
FF Homepage: hxxp://go.mail.ru/?homepage=1
FF Keyword.URL: hxxp://go.mail.ru/search?fr=fftb&q=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @garmin.com/GpsControl - C:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @garmin.com/GpsControl - C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @microsoft.com/Office on Demand;version=1 - C:\Users\Oksanka\AppData\Local\Microsoft\Internet Explorer\Downloaded Program Files\Microsoft Office 15\npofficeondemand.dll (Microsoft Corporation)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Oksanka\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Oksanka\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Oksanka\AppData\Local\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Users\Oksanka\AppData\Roaming\Mozilla\Firefox\Profiles\dsh37k4r.default\searchplugins\yandex.ru-204047.xml
FF HKLM\...\Thunderbird\Extensions: [
eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012-07-30]
FF HKLM-x32\...\Firefox\Extensions: [
FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013-03-25]
FF HKLM-x32\...\Thunderbird\Extensions: [
eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
Chrome:
=======
CHR Extension: (Dokumenty Google) - C:\Users\Oksanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-18]
CHR Extension: (Disk Google) - C:\Users\Oksanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-18]
CHR Extension: (YouTube) - C:\Users\Oksanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-18]
CHR Extension: (Vyhled\u00E1v\u00E1n\u00ED Google) - C:\Users\Oksanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-18]
CHR Extension: (avast! Online Security) - C:\Users\Oksanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-01-18]
CHR Extension: (Pen\u011B\u017Eenka Google) - C:\Users\Oksanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-18]
CHR Extension: (DivX Plus Web Player HTML5 \u003Cvideo\u003E) - C:\Users\Oksanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm [2014-01-18]
CHR Extension: (Gmail) - C:\Users\Oksanka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-18]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-01-16]
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx [2011-12-12]
==================== Services (Whitelisted) =================
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-16] (AVAST Software)
R2 e9f32388; C:\Program Files (x86)\GS Supporter\AssistantSvc.dll [146768 2014-01-12] ()
S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.)
R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256536 2012-01-05] (NTI Corporation)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR)
R2 ScrybeUpdater; C:\Program Files (x86)\Synaptics\Scrybe\Service\ScrybeUpdater.exe [1300264 2011-05-27] (Synaptics, Inc.)
==================== Drivers (Whitelisted) ====================
R3 AiCharger; C:\Windows\SysWow64\drivers\AiCharger.sys [14848 2012-03-22] (ASUSTek Computer Inc.)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-01-16] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2014-01-16] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-01-16] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1034464 2014-01-16] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [422216 2014-01-16] (AVAST Software)
S3 aswStm; C:\Windows\system32\drivers\aswStm.sys [79672 2014-01-16] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-16] ()
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-06-01] (Duplex Secure Ltd.)
S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [117040 2012-04-12] (Oracle Corporation)
U3 axuo1ztj; C:\Windows\System32\Drivers\axuo1ztj.sys [0 ] (Intel Corporation)
S3 cleanhlp; \??\C:\Program Files (x86)\Emsisoft Anti-Malware\cleanhlp64.sys [x]
S3 PCIDATA; \??\D:\PCIDATA.sys [x]
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-01-18 22:33 - 2014-01-18 22:34 - 00020566 _____ C:\Users\Oksanka\Desktop\FRST.txt
2014-01-18 22:32 - 2014-01-18 22:32 - 00000000 ___DC C:\FRST
2014-01-18 22:31 - 2014-01-18 22:31 - 02076160 _____ (Farbar) C:\Users\Oksanka\Desktop\FRST64.exe
2014-01-18 22:30 - 2014-01-18 22:30 - 00112640 _____ (forum.viry.cz) C:\Users\Oksanka\Desktop\FRSTLauncher (1).exe
2014-01-18 22:29 - 2014-01-18 22:29 - 00112640 _____ (forum.viry.cz) C:\Users\Oksanka\Desktop\Nepotvrzeno 47448.crdownload
2014-01-18 22:23 - 2014-01-18 22:23 - 00112640 _____ (forum.viry.cz) C:\Users\Oksanka\Downloads\Nepotvrzeno 119936.crdownload
2014-01-18 22:21 - 2014-01-18 22:21 - 00001138 _____ C:\Users\Oksanka\Downloads\Nepotvrzeno 80003.crdownload
2014-01-18 22:20 - 2014-01-18 22:20 - 02076160 _____ (Farbar) C:\Users\Oksanka\Downloads\FRST64.exe
2014-01-18 15:48 - 2014-01-18 15:48 - 00002220 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2014-01-18 11:33 - 2014-01-18 11:33 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\newnext.me
2014-01-18 11:31 - 2014-01-18 11:33 - 00000000 ___DC C:\AdwCleaner
2014-01-18 11:31 - 2014-01-18 11:31 - 01236282 _____ C:\Users\Oksanka\Downloads\adwcleaner.exe
2014-01-18 11:15 - 2014-01-18 11:15 - 00987425 _____ C:\Users\Oksanka\Downloads\SecurityCheck.exe
2014-01-18 11:05 - 2014-01-18 11:05 - 00007832 ____C C:\FixitRegBackup.reg
2014-01-18 10:57 - 2014-01-18 10:58 - 00000000 ___DC C:\WINSSLog
2014-01-18 10:56 - 2014-01-18 11:09 - 00000000 ____D C:\Users\Oksanka\Documents\vir
2014-01-17 21:53 - 2014-01-17 21:54 - 00000000 ___DC C:\rsit
2014-01-17 21:53 - 2014-01-17 21:54 - 00000000 ___DC C:\Program Files\trend micro
2014-01-17 21:53 - 2014-01-17 21:53 - 00935175 _____ C:\Users\Oksanka\Downloads\RSITx64.exe
2014-01-16 23:52 - 2014-01-16 23:52 - 00003669 _____ C:\Users\Oksanka\Desktop\RKreport[0]_S_01162014_235213.txt
2014-01-16 23:50 - 2014-01-16 23:50 - 00003635 _____ C:\Users\Oksanka\Desktop\RKreport[0]_S_01162014_235049.txt
2014-01-16 23:32 - 2014-01-16 23:32 - 00003602 _____ C:\Users\Oksanka\Desktop\RKreport[0]_S_01162014_233227.txt
2014-01-16 23:30 - 2014-01-16 23:53 - 00000000 ____D C:\Users\Oksanka\Desktop\RK_Quarantine
2014-01-16 23:28 - 2014-01-16 23:29 - 03809280 _____ C:\Users\Oksanka\Downloads\RogueKiller.exe
2014-01-16 23:16 - 2014-01-18 15:35 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2014-01-16 23:16 - 2014-01-16 23:16 - 00003494 _____ C:\Windows\System32\Tasks\Run RoboForm TaskBar Icon
2014-01-16 23:16 - 2014-01-16 23:16 - 00001967 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-01-16 23:16 - 2014-01-16 23:16 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\AVAST Software
2014-01-16 23:16 - 2014-01-16 23:16 - 00000000 ____D C:\ProgramData\RoboForm
2014-01-16 23:15 - 2014-01-16 23:16 - 00079672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-01-16 23:15 - 2014-01-16 23:15 - 00000000 ___DC C:\Program Files (x86)\Siber Systems
2014-01-16 23:15 - 2014-01-16 23:15 - 00000000 ____D C:\Users\Oksanka\Documents\My Avast EasyPass Data
2014-01-16 23:15 - 2014-01-16 23:14 - 01034464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-01-16 23:15 - 2014-01-16 23:14 - 00422216 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-01-16 23:15 - 2014-01-16 23:14 - 00207904 _____ C:\Windows\system32\Drivers\aswVmm.sys
2014-01-16 23:15 - 2014-01-16 23:14 - 00092544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-01-16 23:15 - 2014-01-16 23:14 - 00078648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-01-16 23:15 - 2014-01-16 23:14 - 00065776 _____ C:\Windows\system32\Drivers\aswRvrt.sys
2014-01-16 23:14 - 2014-01-16 23:14 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-01-16 23:11 - 2014-01-16 23:11 - 04689480 _____ (AVAST Software) C:\Users\Oksanka\Downloads\avast_free_antivirus_setup_online.exe
2014-01-16 20:53 - 2014-01-16 20:53 - 00637581 _____ C:\Users\Oksanka\Downloads\activity_427929855.tcx
2014-01-16 20:53 - 2014-01-16 20:53 - 00279773 _____ C:\Users\Oksanka\Downloads\activity_430956747 (1).tcx
2014-01-16 20:52 - 2014-01-16 20:52 - 00486044 _____ C:\Users\Oksanka\Downloads\activity_430956765.tcx
2014-01-16 20:52 - 2014-01-16 20:52 - 00279773 _____ C:\Users\Oksanka\Downloads\activity_430956747.tcx
2014-01-16 20:51 - 2014-01-16 20:51 - 00275829 _____ C:\Users\Oksanka\Downloads\activity_430956806.tcx
2014-01-15 17:40 - 2014-01-15 17:40 - 00010592 _____ C:\Users\Oksanka\Downloads\rufus.log
2014-01-15 06:33 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-15 06:33 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-15 06:33 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-15 06:33 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-15 06:33 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-15 06:33 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-15 06:33 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-15 06:33 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-15 06:33 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-14 14:33 - 2014-01-14 14:33 - 00018489 _____ C:\Users\Oksanka\Downloads\[rutracker.org].t4607703.torrent
2014-01-13 15:08 - 2014-01-13 15:38 - 00002267 _____ C:\Users\Oksanka\Documents\ZAKOVE.odb
2014-01-12 18:28 - 2014-01-12 18:50 - 1489594368 _____ C:\Users\Oksanka\Downloads\pclinuxos-kde-cs-sk-latest.iso
2014-01-12 18:14 - 2014-01-12 18:26 - 744540160 _____ C:\Users\Oksanka\Downloads\pclinuxos-kde-mini-cs-sk-latest.iso
2014-01-12 00:44 - 2014-01-12 00:45 - 00000000 ____D C:\Users\Oksanka\Downloads\Marathon-(Malaton---Yun-cheol-Jeong)-2005
2014-01-12 00:41 - 2014-01-18 11:32 - 00000000 ____D C:\ProgramData\6ce95ca74ad2ad43
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ___DC C:\Program Files (x86)\GS Supporter
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Oksanka\AppData\Local\Packages
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Torch
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Google
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Comodo
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\HomeGroupUser$
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Guest\AppData\Local\Torch
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Guest\AppData\Local\Google
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Guest\AppData\Local\Comodo
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Guest
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Administrator\AppData\Local\Torch
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Administrator
2014-01-12 00:36 - 2014-01-12 00:36 - 00028586 _____ C:\Users\Oksanka\Documents\2005 Malaton [Jeong Yun-cheol] cd1.srt
2014-01-12 00:36 - 2014-01-12 00:36 - 00000432 _____ C:\Users\Oksanka\Documents\2005 Malaton [Jeong Yun-cheol] cd1.srt.style
2014-01-12 00:35 - 2014-01-12 00:35 - 00000000 ____D C:\Users\Oksanka\Downloads\Marathon(0000016864)
2014-01-12 00:34 - 2014-01-12 00:34 - 00028970 _____ C:\Users\Oksanka\Downloads\Marathon(0000016864).zip
2014-01-11 22:57 - 2014-01-12 00:20 - 1474289781 _____ C:\Users\Oksanka\Downloads\Marathon-(Malaton---Yun-cheol-Jeong)-2005.rar
2014-01-11 20:24 - 2014-01-11 20:24 - 00000055 _____ C:\Users\Oksanka\Desktop\micak.rba
2014-01-11 17:52 - 2014-01-11 18:12 - 1204813824 _____ C:\Users\Oksanka\Downloads\linuxmint-16-xfce-dvd-32bit.iso
2014-01-11 15:41 - 2014-01-11 15:41 - 00058734 _____ C:\Users\Oksanka\Documents\zakony socialni.odt
2014-01-11 15:33 - 2014-01-11 15:33 - 00000000 ____D C:\ProgramData\Garmin
2014-01-11 15:29 - 2014-01-11 17:29 - 00002266 _____ C:\Users\Oksanka\Documents\Nová databáze.odb
2014-01-11 15:29 - 2014-01-11 15:29 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\OpenOffice
2014-01-11 15:28 - 2014-01-11 15:28 - 00001100 _____ C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk
2014-01-11 15:27 - 2014-01-11 15:28 - 00000000 ___DC C:\Program Files (x86)\OpenOffice 4
2014-01-11 15:26 - 2014-01-11 15:26 - 00000000 ____D C:\Users\Oksanka\Desktop\OpenOffice 4.0.1 (cs) Installation Files
2014-01-11 15:23 - 2014-01-11 15:26 - 130785256 _____ C:\Users\Oksanka\Downloads\Apache_OpenOffice_4.0.1_Win_x86_install_cs.exe
2014-01-11 15:20 - 2014-01-11 15:20 - 00033075 _____ C:\Users\Oksanka\Downloads\Rodičovský příspěvek.htm
2014-01-11 15:20 - 2014-01-11 15:20 - 00000000 ____D C:\Users\Oksanka\Downloads\Rodičovský příspěvek_files
2014-01-10 19:35 - 2014-01-10 19:35 - 00044637 _____ C:\Users\Oksanka\Downloads\Temnaja_Bashnja_IV.torrent
2014-01-10 19:27 - 2013-12-06 00:00 - 00018677 _____ C:\Users\Oksanka\Desktop\king-stiven-temnaya-bashnya-4-5-veter-skvoz-zamochnuyu-skvazhinu-_torrentino.torrent
2014-01-09 16:22 - 2014-01-09 16:22 - 00002222 _____ C:\Users\Oksanka\Downloads\zorin-wcg_1.0.2_i386.deb
2014-01-09 16:17 - 2014-01-09 16:32 - 824180736 _____ C:\Users\Oksanka\Downloads\zorin-os-7.1-lite.iso
2014-01-08 18:52 - 2014-01-11 20:44 - 00003495 _____ C:\Users\Oksanka\Desktop\Zrandom.bat
2014-01-08 18:10 - 2014-01-08 18:10 - 01048576 _____ C:\Users\Oksanka\Downloads\ipxe (1).iso
2014-01-08 18:02 - 2014-01-08 18:02 - 01048576 _____ C:\Users\Oksanka\Downloads\ipxe.iso
2014-01-08 17:59 - 2014-01-08 18:09 - 553648128 _____ C:\Users\Oksanka\Downloads\archlinux-2014.01.05-dual.iso
2014-01-07 20:06 - 2014-01-07 20:06 - 00273917 _____ C:\Users\Oksanka\Downloads\activity_426309457.tcx
2014-01-07 20:05 - 2014-01-07 20:05 - 00302325 _____ C:\Users\Oksanka\Downloads\activity_426309473.tcx
2014-01-07 18:59 - 2014-01-07 18:59 - 00000000 ___DC C:\mdv
2014-01-07 18:54 - 2009-11-02 17:16 - 16717824 ____R C:\Users\Oksanka\all.img
2014-01-07 10:24 - 2014-01-07 10:24 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup
2014-01-06 21:12 - 2014-01-06 21:12 - 00000000 ____D C:\Users\Oksanka\Desktop\tom9
2014-01-06 21:11 - 2014-01-06 21:11 - 00000000 ____D C:\Users\Oksanka\Desktop\tom8
2014-01-06 21:01 - 2014-01-06 21:02 - 00000000 ____D C:\Users\Oksanka\Desktop\tom7
2014-01-06 20:16 - 2014-01-06 20:16 - 00000489 _____ C:\Users\Oksanka\Desktop\inpr.gklo.gklc – zástupce.lnk
2014-01-06 17:20 - 2014-01-06 17:50 - 1289748480 _____ C:\Users\Oksanka\Downloads\linuxmint-16-mate-dvd-32bit.iso
2014-01-06 17:14 - 2014-01-06 17:14 - 00015351 _____ C:\Users\Oksanka\Desktop\presi_edit.pptx – zástupce.lnk
2014-01-06 15:50 - 2014-01-06 15:50 - 00585216 _____ C:\Users\Oksanka\Downloads\Cenik_doporucenych_cen.xls
2014-01-06 13:25 - 2014-01-06 13:25 - 00000000 ____D C:\Users\Oksanka\AppData\Local\{3D37CA2D-4DE1-4039-B24B-F05CC50676E7}
2014-01-06 13:23 - 2014-01-06 13:23 - 00000000 ____D C:\Users\Oksanka\Desktop\VSERS2
2014-01-06 13:22 - 2014-01-06 13:25 - 00000000 ____D C:\Users\Oksanka\Desktop\VSERS
2014-01-05 15:42 - 2014-01-05 15:42 - 00001809 _____ C:\Users\Oksanka\Desktop\HRPT.lnk
2014-01-04 21:42 - 2014-01-04 21:42 - 00278640 _____ C:\Users\Oksanka\Downloads\activity_424606260.tcx
2014-01-04 20:26 - 2014-01-04 20:26 - 00000000 ____D C:\Users\Oksanka\Downloads\Noty---River-Flows-in-You
2014-01-04 20:25 - 2014-01-04 20:25 - 03046938 _____ C:\Users\Oksanka\Downloads\Noty---River-Flows-in-You.rar
2014-01-04 09:11 - 2014-01-04 09:23 - 808452096 _____ C:\Users\Oksanka\Downloads\crunchbang-11-20130506-i686.iso
2014-01-03 22:24 - 2014-01-03 22:24 - 00031107 _____ C:\Users\Oksanka\Downloads\crunchbang-11-20130506-i686.iso.torrent
2014-01-03 21:49 - 2014-01-03 21:49 - 00000421 _____ C:\Users\Oksanka\Desktop\inpr.gklo.gklc
2014-01-03 14:48 - 2014-01-03 15:06 - 1031405569 _____ C:\Users\Oksanka\Downloads\Wall-Street---Penize-nikdy-nespi-CZ-2010.avi
2014-01-02 16:37 - 2014-01-16 19:56 - 00009122 _____ C:\Users\Oksanka\daemonprocess.txt
2014-01-02 16:37 - 2014-01-02 16:37 - 00000000 ____D C:\Users\Oksanka\AppData\Local\cache
2014-01-02 16:37 - 2014-01-02 16:37 - 00000000 ____D C:\Users\Oksanka\.android
2014-01-02 16:35 - 2014-01-02 16:35 - 00211302 _____ C:\Users\Oksanka\Downloads\GotClip_Setup.exe
2014-01-02 14:52 - 2014-01-02 14:52 - 00282809 _____ C:\Users\Oksanka\Downloads\activity_423308454 (1).tcx
2014-01-02 14:32 - 2014-01-02 14:32 - 01100330 _____ C:\Users\Oksanka\Downloads\activity_421816958 (3).tcx
2014-01-02 14:28 - 2014-01-02 14:28 - 00282809 _____ C:\Users\Oksanka\Downloads\activity_423308454.tcx
2014-01-02 14:27 - 2014-01-02 14:27 - 01100330 _____ C:\Users\Oksanka\Downloads\activity_421816958 (2).tcx
2014-01-02 14:26 - 2014-01-02 14:26 - 00417124 _____ C:\Users\Oksanka\Downloads\activity_420526154.tcx
2014-01-02 14:25 - 2014-01-02 14:25 - 00281599 _____ C:\Users\Oksanka\Downloads\activity_420105537.tcx
2014-01-02 14:24 - 2014-01-02 14:24 - 00269755 _____ C:\Users\Oksanka\Downloads\activity_419789798.tcx
2014-01-02 13:19 - 2014-01-02 13:35 - 1055916032 _____ C:\Users\Oksanka\Downloads\kubuntu-13.10-desktop-i386.iso
2014-01-02 13:10 - 2014-01-06 19:23 - 00000000 ____D C:\Users\Oksanka\PcitVdi
2014-01-02 01:11 - 2014-01-02 01:12 - 05102492 _____ C:\Users\Oksanka\Documents\Můj film.wmv
2014-01-02 01:08 - 2014-01-02 01:09 - 00000000 ____D C:\Users\Oksanka\AppData\Local\{34E6264C-112E-4434-A0DF-0E4322F73728}
2014-01-01 21:09 - 2014-01-10 19:26 - 00012570 _____ C:\Users\Oksanka\Desktop\stiven-king-tyomnaya-bashnya-4-koldun-i-kristall-mp3-[torrentino].torrent
2014-01-01 21:08 - 2014-01-01 21:08 - 00211536 _____ (Destiny Media) C:\Users\Oksanka\Downloads\stiven_king_-_tyomnaya_bashnya_4_koldun_i_kristall_2012_mp3.exe
2014-01-01 21:08 - 2014-01-01 21:08 - 00106920 _____ (LLC Pentagon) C:\Users\Oksanka\Downloads\stiven-king-tyomnaya-bashnya-4-koldun-i-kristall-mp3-[torrentino].exe
2013-12-31 09:21 - 2013-12-31 09:32 - 489327760 _____ C:\Users\Oksanka\Downloads\Návrat do budoucnosti III (1990).avi
2013-12-30 20:40 - 2013-12-30 20:40 - 01100330 _____ C:\Users\Oksanka\Downloads\activity_421816958 (1).tcx
2013-12-30 20:40 - 2013-12-30 20:40 - 00462824 _____ C:\Users\Oksanka\Downloads\activity_421816958.gpx
2013-12-30 20:29 - 2013-12-30 20:29 - 01014436 _____ C:\Users\Oksanka\Downloads\activity_421816958 (1).kml
2013-12-30 18:14 - 2013-12-30 18:14 - 01014436 _____ C:\Users\Oksanka\Downloads\activity_421816958.kml
2013-12-30 18:13 - 2013-12-30 18:13 - 01100330 _____ C:\Users\Oksanka\Downloads\activity_421816958.tcx
2013-12-29 12:57 - 2013-12-29 13:27 - 00000000 ____D C:\Users\Oksanka\Desktop\dev sdc1
2013-12-29 12:26 - 2013-12-29 12:42 - 1362100224 _____ C:\Users\Oksanka\Downloads\linuxmint-16-kde-dvd-32bit.iso
2013-12-28 00:12 - 2013-12-28 00:12 - 00000000 ____D C:\Users\Oksanka\Downloads\Lykke Li
2013-12-27 18:51 - 2013-12-27 18:59 - 741343232 _____ C:\Users\Oksanka\Downloads\ubuntu-12.04.3-desktop-i386.iso
2013-12-27 18:50 - 2013-12-27 18:50 - 00003825 _____ C:\Users\Oksanka\Downloads\ubuntu-12.04.3-desktop-i386.list
2013-12-26 14:14 - 2013-12-26 14:14 - 00553008 _____ C:\Users\Oksanka\Downloads\140400-gdm3.tar.gz
2013-12-26 09:48 - 2013-12-26 10:00 - 729808896 _____ C:\Users\Oksanka\Downloads\lubuntu-13.10-desktop-i386.iso
2013-12-25 22:28 - 2013-12-25 22:28 - 15478976 _____ C:\Users\Oksanka\Downloads\ExpressFit_201 (2).exe
2013-12-25 17:30 - 2013-12-25 17:35 - 00000386 _____ C:\Users\Oksanka\Desktop\navod.txt
2013-12-25 12:02 - 2014-01-10 19:36 - 00000000 ____D C:\Users\Oksanka\Downloads\UGNM
2013-12-25 12:02 - 2013-12-25 12:25 - 918552576 _____ C:\Users\Oksanka\Downloads\ubuntu-gnome-13.10-desktop-i386.iso
2013-12-25 12:02 - 2013-12-25 12:02 - 00035276 _____ C:\Users\Oksanka\Downloads\ubuntu-gnome-13.10-desktop-i386.iso.torrent
2013-12-25 11:39 - 2013-12-25 11:39 - 00547256 _____ (Akeo Consulting (
http://akeo.ie)) C:\Users\Oksanka\Downloads\rufus_v1.4.1.exe
2013-12-25 11:35 - 2013-12-25 11:37 - 00000000 ____D C:\Users\Oksanka\Desktop\pcitvdientlinuxfiles
2013-12-25 00:13 - 2013-12-25 00:41 - 300519424 _____ C:\Users\Oksanka\Downloads\Topo_Czech_2013.exe
2013-12-24 23:56 - 2013-12-24 23:57 - 18864072 _____ C:\Users\Oksanka\Downloads\CommunicatorPlugin_410 (1).exe
2013-12-24 23:51 - 2013-12-24 23:51 - 00000000 ___DC C:\Program Files\Garmin GPS Plugin
2013-12-24 23:51 - 2013-12-24 23:51 - 00000000 ___DC C:\Program Files (x86)\Garmin GPS Plugin
2013-12-24 23:49 - 2013-12-24 23:49 - 18864072 _____ C:\Users\Oksanka\Downloads\CommunicatorPlugin_410.exe
2013-12-24 23:20 - 2013-12-24 23:21 - 15478976 _____ C:\Users\Oksanka\Downloads\ExpressFit_201 (1).exe
2013-12-24 22:59 - 2013-12-24 22:59 - 00000000 ___DC C:\Program Files (x86)\Garmin
2013-12-24 22:59 - 2013-12-24 22:59 - 00000000 ___DC C:\Garmin
2013-12-24 22:58 - 2014-01-11 15:33 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\Garmin
2013-12-24 22:58 - 2013-12-24 22:58 - 15478976 _____ C:\Users\Oksanka\Downloads\ExpressFit_201.exe
2013-12-23 22:04 - 2014-01-11 20:45 - 03063451 _____ C:\Users\Oksanka\Desktop\ios_ryclost.ipad
2013-12-23 20:32 - 2013-12-23 20:32 - 04558848 _____ (Google Inc.) C:\Windows\SysWOW64\GPhotos.scr
2013-12-23 15:00 - 2013-12-23 15:00 - 00024256 _____ C:\Users\Oksanka\Downloads\plutil.pl
2013-12-23 10:52 - 2013-12-23 10:52 - 00034320 _____ C:\Users\Oksanka\Downloads\ubuntu-drivers-common_0.2.71.1_amd64.deb
2013-12-23 10:52 - 2013-12-23 10:52 - 00034320 _____ C:\Users\Oksanka\Downloads\ubuntu-drivers-common_0.2.71.1_amd64 (1).deb
2013-12-23 10:36 - 2013-12-23 13:10 - 3942645760 _____ C:\Users\Oksanka\Downloads\debian-7.3.0-amd64-DVD-1.iso
2013-12-23 10:35 - 2013-12-23 10:58 - 652214272 _____ C:\Users\Oksanka\Downloads\debian-7.3.0-amd64-CD-1.iso
2013-12-23 10:35 - 2013-12-23 10:35 - 00075621 _____ C:\Users\Oksanka\Downloads\debian-7.3.0-amd64-DVD-1.iso.torrent
2013-12-23 09:18 - 2013-12-23 09:34 - 946864128 _____ C:\Users\Oksanka\Downloads\openSUSE-13.1-KDE-Live-i686.iso
2013-12-22 17:19 - 2013-12-22 17:19 - 02560216 _____ C:\Users\Oksanka\Downloads\wubi.exe
2013-12-21 18:39 - 2013-12-21 18:40 - 00387775 _____ C:\Users\Oksanka\Downloads\Baltie.zip
2013-12-20 14:07 - 2013-12-20 14:31 - 1209864481 _____ C:\Users\Oksanka\Downloads\NOOBS_v1_3_2 (1).zip
2013-12-20 13:31 - 2013-12-20 13:31 - 00002050 _____ C:\Users\Public\Desktop\SDFormatter.lnk
2013-12-20 13:31 - 2013-12-20 13:31 - 00000000 ___DC C:\Program Files (x86)\SDA
2013-12-20 13:30 - 2013-12-20 13:30 - 00236194 _____ C:\Users\Oksanka\Downloads\SDFormatter_4.00B.pkg
2013-12-20 13:29 - 2013-12-20 13:29 - 06286748 _____ C:\Users\Oksanka\Downloads\SDFormatterv4.zip
2013-12-20 13:28 - 2013-12-20 13:28 - 20918392 _____ C:\Users\Oksanka\Downloads\NOOBS_lite_v1_3_2.zip
2013-12-19 14:27 - 2013-12-25 11:45 - 00000000 ____D C:\Users\Oksanka\Desktop\linux_magic_tweak
2013-12-19 14:10 - 2013-12-19 14:17 - 00000000 ____D C:\Users\Oksanka\Downloads\Темная Башня III - Бесплодные земли
2013-12-19 14:08 - 2013-12-19 14:43 - 727711744 _____ C:\Users\Oksanka\Downloads\Mageia-3-LiveCD-KDE4-en-i586-CD.iso
2013-12-19 14:07 - 2013-12-19 14:07 - 00000056 _____ C:\Users\Oksanka\Downloads\Mageia-3-i586-DVD.iso.md5
2013-12-19 13:05 - 2013-12-19 13:28 - 00198389 _____ C:\Users\Oksanka\presi_edit.pptx
2013-12-19 13:04 - 2014-01-06 20:14 - 00000000 ____D C:\Users\Oksanka\Desktop\PRZ
==================== One Month Modified Files and Folders =======
2014-01-18 22:34 - 2014-01-18 22:33 - 00020566 _____ C:\Users\Oksanka\Desktop\FRST.txt
2014-01-18 22:32 - 2014-01-18 22:32 - 00000000 ___DC C:\FRST
2014-01-18 22:32 - 2011-10-15 00:55 - 01266168 _____ C:\Windows\WindowsUpdate.log
2014-01-18 22:31 - 2014-01-18 22:31 - 02076160 _____ (Farbar) C:\Users\Oksanka\Desktop\FRST64.exe
2014-01-18 22:30 - 2014-01-18 22:30 - 00112640 _____ (forum.viry.cz) C:\Users\Oksanka\Desktop\FRSTLauncher (1).exe
2014-01-18 22:29 - 2014-01-18 22:29 - 00112640 _____ (forum.viry.cz) C:\Users\Oksanka\Desktop\Nepotvrzeno 47448.crdownload
2014-01-18 22:23 - 2014-01-18 22:23 - 00112640 _____ (forum.viry.cz) C:\Users\Oksanka\Downloads\Nepotvrzeno 119936.crdownload
2014-01-18 22:21 - 2014-01-18 22:21 - 00001138 _____ C:\Users\Oksanka\Downloads\Nepotvrzeno 80003.crdownload
2014-01-18 22:20 - 2014-01-18 22:20 - 02076160 _____ (Farbar) C:\Users\Oksanka\Downloads\FRST64.exe
2014-01-18 22:20 - 2011-12-16 14:47 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\Skype
2014-01-18 22:03 - 2011-12-13 13:13 - 00000970 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1198225589-1884671980-4053545476-1000UA.job
2014-01-18 21:55 - 2012-08-12 11:05 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-18 21:44 - 2011-12-16 12:59 - 00000954 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-18 21:03 - 2011-12-13 13:13 - 00000918 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1198225589-1884671980-4053545476-1000Core.job
2014-01-18 20:49 - 2011-10-15 01:43 - 07853448 _____ C:\Windows\system32\perfh005.dat
2014-01-18 20:49 - 2011-10-15 01:43 - 02651812 _____ C:\Windows\system32\perfc005.dat
2014-01-18 20:49 - 2009-07-14 06:13 - 00005466 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-18 20:48 - 2011-08-16 08:09 - 00000000 ___RD C:\Program Files (x86)\Skype
2014-01-18 20:48 - 2011-08-16 08:09 - 00000000 ____D C:\ProgramData\Skype
2014-01-18 20:47 - 2012-02-15 09:04 - 00000990 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1198225589-1884671980-4053545476-1000UA.job
2014-01-18 20:47 - 2012-02-15 09:04 - 00000968 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1198225589-1884671980-4053545476-1000Core.job
2014-01-18 17:44 - 2011-12-16 12:59 - 00000950 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-18 15:48 - 2014-01-18 15:48 - 00002220 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2014-01-18 15:48 - 2011-12-13 13:13 - 00000000 ____D C:\Users\Oksanka\AppData\Local\Google
2014-01-18 15:47 - 2011-12-16 12:59 - 00000000 ____D C:\Program Files (x86)\Google
2014-01-18 15:41 - 2009-07-14 05:45 - 00016976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-18 15:41 - 2009-07-14 05:45 - 00016976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-18 15:36 - 2011-12-13 08:56 - 00000000 ____D C:\ProgramData\clear.fi
2014-01-18 15:35 - 2014-01-16 23:16 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2014-01-18 15:34 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-18 15:33 - 2013-11-21 19:31 - 00008188 _____ C:\Windows\setupact.log
2014-01-18 11:35 - 2009-07-14 06:08 - 00032626 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2014-01-18 11:34 - 2013-08-31 11:44 - 00066214 _____ C:\Windows\PFRO.log
2014-01-18 11:33 - 2014-01-18 11:33 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\newnext.me
2014-01-18 11:33 - 2014-01-18 11:31 - 00000000 ___DC C:\AdwCleaner
2014-01-18 11:32 - 2014-01-12 00:41 - 00000000 ____D C:\ProgramData\6ce95ca74ad2ad43
2014-01-18 11:31 - 2014-01-18 11:31 - 01236282 _____ C:\Users\Oksanka\Downloads\adwcleaner.exe
2014-01-18 11:15 - 2014-01-18 11:15 - 00987425 _____ C:\Users\Oksanka\Downloads\SecurityCheck.exe
2014-01-18 11:09 - 2014-01-18 10:56 - 00000000 ____D C:\Users\Oksanka\Documents\vir
2014-01-18 11:05 - 2014-01-18 11:05 - 00007832 ____C C:\FixitRegBackup.reg
2014-01-18 10:58 - 2014-01-18 10:57 - 00000000 ___DC C:\WINSSLog
2014-01-18 10:55 - 2013-12-16 17:06 - 00093696 ___SH C:\Users\Oksanka\Desktop\Thumbs.db
2014-01-17 23:27 - 2012-05-09 18:15 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\Free Download Manager
2014-01-17 21:54 - 2014-01-17 21:53 - 00000000 ___DC C:\rsit
2014-01-17 21:54 - 2014-01-17 21:53 - 00000000 ___DC C:\Program Files\trend micro
2014-01-17 21:53 - 2014-01-17 21:53 - 00935175 _____ C:\Users\Oksanka\Downloads\RSITx64.exe
2014-01-17 08:08 - 2012-12-07 21:46 - 00000000 ____D C:\Users\Oksanka\AppData\Local\MediaGet2
2014-01-17 08:00 - 2013-10-05 09:03 - 00000000 ____D C:\ProgramData\Guard.Mail.Ru
2014-01-16 23:53 - 2014-01-16 23:30 - 00000000 ____D C:\Users\Oksanka\Desktop\RK_Quarantine
2014-01-16 23:52 - 2014-01-16 23:52 - 00003669 _____ C:\Users\Oksanka\Desktop\RKreport[0]_S_01162014_235213.txt
2014-01-16 23:50 - 2014-01-16 23:50 - 00003635 _____ C:\Users\Oksanka\Desktop\RKreport[0]_S_01162014_235049.txt
2014-01-16 23:32 - 2014-01-16 23:32 - 00003602 _____ C:\Users\Oksanka\Desktop\RKreport[0]_S_01162014_233227.txt
2014-01-16 23:29 - 2014-01-16 23:28 - 03809280 _____ C:\Users\Oksanka\Downloads\RogueKiller.exe
2014-01-16 23:17 - 2012-01-11 18:22 - 00000000 ____D C:\Users\Oksanka\AppData\Local\CrashDumps
2014-01-16 23:16 - 2014-01-16 23:16 - 00003494 _____ C:\Windows\System32\Tasks\Run RoboForm TaskBar Icon
2014-01-16 23:16 - 2014-01-16 23:16 - 00001967 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-01-16 23:16 - 2014-01-16 23:16 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\AVAST Software
2014-01-16 23:16 - 2014-01-16 23:16 - 00000000 ____D C:\ProgramData\RoboForm
2014-01-16 23:16 - 2014-01-16 23:15 - 00079672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-01-16 23:16 - 2013-04-25 15:02 - 00000000 ___DC C:\Program Files (x86)\Mozilla Thunderbird
2014-01-16 23:15 - 2014-01-16 23:15 - 00000000 ___DC C:\Program Files (x86)\Siber Systems
2014-01-16 23:15 - 2014-01-16 23:15 - 00000000 ____D C:\Users\Oksanka\Documents\My Avast EasyPass Data
2014-01-16 23:14 - 2014-01-16 23:15 - 01034464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-01-16 23:14 - 2014-01-16 23:15 - 00422216 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-01-16 23:14 - 2014-01-16 23:15 - 00207904 _____ C:\Windows\system32\Drivers\aswVmm.sys
2014-01-16 23:14 - 2014-01-16 23:15 - 00092544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-01-16 23:14 - 2014-01-16 23:15 - 00078648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-01-16 23:14 - 2014-01-16 23:15 - 00065776 _____ C:\Windows\system32\Drivers\aswRvrt.sys
2014-01-16 23:14 - 2014-01-16 23:14 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-01-16 23:14 - 2011-12-13 13:14 - 00334136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-01-16 23:12 - 2011-12-13 13:14 - 00000000 ____D C:\ProgramData\AVAST Software
2014-01-16 23:11 - 2014-01-16 23:11 - 04689480 _____ (AVAST Software) C:\Users\Oksanka\Downloads\avast_free_antivirus_setup_online.exe
2014-01-16 20:53 - 2014-01-16 20:53 - 00637581 _____ C:\Users\Oksanka\Downloads\activity_427929855.tcx
2014-01-16 20:53 - 2014-01-16 20:53 - 00279773 _____ C:\Users\Oksanka\Downloads\activity_430956747 (1).tcx
2014-01-16 20:52 - 2014-01-16 20:52 - 00486044 _____ C:\Users\Oksanka\Downloads\activity_430956765.tcx
2014-01-16 20:52 - 2014-01-16 20:52 - 00279773 _____ C:\Users\Oksanka\Downloads\activity_430956747.tcx
2014-01-16 20:51 - 2014-01-16 20:51 - 00275829 _____ C:\Users\Oksanka\Downloads\activity_430956806.tcx
2014-01-16 19:56 - 2014-01-02 16:37 - 00009122 _____ C:\Users\Oksanka\daemonprocess.txt
2014-01-16 13:11 - 2009-07-14 05:45 - 00460976 _____ C:\Windows\system32\FNTCACHE.DAT
2014-01-15 23:04 - 2011-12-30 00:11 - 00000000 ____D C:\ProgramData\Microsoft Help
2014-01-15 23:03 - 2013-07-21 11:39 - 00000000 ____D C:\Windows\system32\MRT
2014-01-15 22:59 - 2011-12-13 13:34 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-15 22:58 - 2012-09-01 21:43 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\uTorrent
2014-01-15 18:07 - 2013-11-09 17:13 - 00000270 __RSH C:\ProgramData\ntuser.pol
2014-01-15 17:40 - 2014-01-15 17:40 - 00010592 _____ C:\Users\Oksanka\Downloads\rufus.log
2014-01-14 14:33 - 2014-01-14 14:33 - 00018489 _____ C:\Users\Oksanka\Downloads\[rutracker.org].t4607703.torrent
2014-01-13 15:38 - 2014-01-13 15:08 - 00002267 _____ C:\Users\Oksanka\Documents\ZAKOVE.odb
2014-01-12 18:50 - 2014-01-12 18:28 - 1489594368 _____ C:\Users\Oksanka\Downloads\pclinuxos-kde-cs-sk-latest.iso
2014-01-12 18:26 - 2014-01-12 18:14 - 744540160 _____ C:\Users\Oksanka\Downloads\pclinuxos-kde-mini-cs-sk-latest.iso
2014-01-12 00:45 - 2014-01-12 00:44 - 00000000 ____D C:\Users\Oksanka\Downloads\Marathon-(Malaton---Yun-cheol-Jeong)-2005
2014-01-12 00:42 - 2013-07-07 18:15 - 00000000 ____D C:\ProgramData\InstallMate
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ___DC C:\Program Files (x86)\GS Supporter
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Oksanka\AppData\Local\Packages
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Torch
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Google
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\HomeGroupUser$\AppData\Local\Comodo
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\HomeGroupUser$
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Guest\AppData\Local\Torch
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Guest\AppData\Local\Google
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Guest\AppData\Local\Comodo
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Guest
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Administrator\AppData\Local\Torch
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo
2014-01-12 00:41 - 2014-01-12 00:41 - 00000000 ____D C:\Users\Administrator
2014-01-12 00:36 - 2014-01-12 00:36 - 00028586 _____ C:\Users\Oksanka\Documents\2005 Malaton [Jeong Yun-cheol] cd1.srt
2014-01-12 00:36 - 2014-01-12 00:36 - 00000432 _____ C:\Users\Oksanka\Documents\2005 Malaton [Jeong Yun-cheol] cd1.srt.style
2014-01-12 00:35 - 2014-01-12 00:35 - 00000000 ____D C:\Users\Oksanka\Downloads\Marathon(0000016864)
2014-01-12 00:34 - 2014-01-12 00:34 - 00028970 _____ C:\Users\Oksanka\Downloads\Marathon(0000016864).zip
2014-01-12 00:20 - 2014-01-11 22:57 - 1474289781 _____ C:\Users\Oksanka\Downloads\Marathon-(Malaton---Yun-cheol-Jeong)-2005.rar
2014-01-11 20:45 - 2013-12-23 22:04 - 03063451 _____ C:\Users\Oksanka\Desktop\ios_ryclost.ipad
2014-01-11 20:44 - 2014-01-08 18:52 - 00003495 _____ C:\Users\Oksanka\Desktop\Zrandom.bat
2014-01-11 20:24 - 2014-01-11 20:24 - 00000055 _____ C:\Users\Oksanka\Desktop\micak.rba
2014-01-11 18:12 - 2014-01-11 17:52 - 1204813824 _____ C:\Users\Oksanka\Downloads\linuxmint-16-xfce-dvd-32bit.iso
2014-01-11 17:29 - 2014-01-11 15:29 - 00002266 _____ C:\Users\Oksanka\Documents\Nová databáze.odb
2014-01-11 15:46 - 2013-03-03 22:14 - 00217600 ___SH C:\Users\Oksanka\Documents\Thumbs.db
2014-01-11 15:41 - 2014-01-11 15:41 - 00058734 _____ C:\Users\Oksanka\Documents\zakony socialni.odt
2014-01-11 15:33 - 2014-01-11 15:33 - 00000000 ____D C:\ProgramData\Garmin
2014-01-11 15:33 - 2013-12-24 22:58 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\Garmin
2014-01-11 15:29 - 2014-01-11 15:29 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\OpenOffice
2014-01-11 15:29 - 2011-12-13 08:35 - 00118456 _____ C:\Users\Oksanka\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-11 15:28 - 2014-01-11 15:28 - 00001100 _____ C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk
2014-01-11 15:28 - 2014-01-11 15:27 - 00000000 ___DC C:\Program Files (x86)\OpenOffice 4
2014-01-11 15:26 - 2014-01-11 15:26 - 00000000 ____D C:\Users\Oksanka\Desktop\OpenOffice 4.0.1 (cs) Installation Files
2014-01-11 15:26 - 2014-01-11 15:23 - 130785256 _____ C:\Users\Oksanka\Downloads\Apache_OpenOffice_4.0.1_Win_x86_install_cs.exe
2014-01-11 15:26 - 2009-07-14 04:20 - 00000000 ___DC C:\Program Files\Common Files\Microsoft Shared
2014-01-11 15:20 - 2014-01-11 15:20 - 00033075 _____ C:\Users\Oksanka\Downloads\Rodičovský příspěvek.htm
2014-01-11 15:20 - 2014-01-11 15:20 - 00000000 ____D C:\Users\Oksanka\Downloads\Rodičovský příspěvek_files
2014-01-10 19:36 - 2013-12-25 12:02 - 00000000 ____D C:\Users\Oksanka\Downloads\UGNM
2014-01-10 19:35 - 2014-01-10 19:35 - 00044637 _____ C:\Users\Oksanka\Downloads\Temnaja_Bashnja_IV.torrent
2014-01-10 19:26 - 2014-01-01 21:09 - 00012570 _____ C:\Users\Oksanka\Desktop\stiven-king-tyomnaya-bashnya-4-koldun-i-kristall-mp3-[torrentino].torrent
2014-01-09 16:32 - 2014-01-09 16:17 - 824180736 _____ C:\Users\Oksanka\Downloads\zorin-os-7.1-lite.iso
2014-01-09 16:22 - 2014-01-09 16:22 - 00002222 _____ C:\Users\Oksanka\Downloads\zorin-wcg_1.0.2_i386.deb
2014-01-08 18:10 - 2014-01-08 18:10 - 01048576 _____ C:\Users\Oksanka\Downloads\ipxe (1).iso
2014-01-08 18:09 - 2014-01-08 17:59 - 553648128 _____ C:\Users\Oksanka\Downloads\archlinux-2014.01.05-dual.iso
2014-01-08 18:02 - 2014-01-08 18:02 - 01048576 _____ C:\Users\Oksanka\Downloads\ipxe.iso
2014-01-07 20:06 - 2014-01-07 20:06 - 00273917 _____ C:\Users\Oksanka\Downloads\activity_426309457.tcx
2014-01-07 20:05 - 2014-01-07 20:05 - 00302325 _____ C:\Users\Oksanka\Downloads\activity_426309473.tcx
2014-01-07 18:59 - 2014-01-07 18:59 - 00000000 ___DC C:\mdv
2014-01-07 18:54 - 2011-12-13 08:35 - 00000000 ____D C:\Users\Oksanka
2014-01-07 10:24 - 2014-01-07 10:24 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup
2014-01-06 21:12 - 2014-01-06 21:12 - 00000000 ____D C:\Users\Oksanka\Desktop\tom9
2014-01-06 21:11 - 2014-01-06 21:11 - 00000000 ____D C:\Users\Oksanka\Desktop\tom8
2014-01-06 21:02 - 2014-01-06 21:01 - 00000000 ____D C:\Users\Oksanka\Desktop\tom7
2014-01-06 20:16 - 2014-01-06 20:16 - 00000489 _____ C:\Users\Oksanka\Desktop\inpr.gklo.gklc – zástupce.lnk
2014-01-06 20:14 - 2013-12-19 13:04 - 00000000 ____D C:\Users\Oksanka\Desktop\PRZ
2014-01-06 19:23 - 2014-01-02 13:10 - 00000000 ____D C:\Users\Oksanka\PcitVdi
2014-01-06 17:50 - 2014-01-06 17:20 - 1289748480 _____ C:\Users\Oksanka\Downloads\linuxmint-16-mate-dvd-32bit.iso
2014-01-06 17:14 - 2014-01-06 17:14 - 00015351 _____ C:\Users\Oksanka\Desktop\presi_edit.pptx – zástupce.lnk
2014-01-06 15:50 - 2014-01-06 15:50 - 00585216 _____ C:\Users\Oksanka\Downloads\Cenik_doporucenych_cen.xls
2014-01-06 13:25 - 2014-01-06 13:25 - 00000000 ____D C:\Users\Oksanka\AppData\Local\{3D37CA2D-4DE1-4039-B24B-F05CC50676E7}
2014-01-06 13:25 - 2014-01-06 13:22 - 00000000 ____D C:\Users\Oksanka\Desktop\VSERS
2014-01-06 13:23 - 2014-01-06 13:23 - 00000000 ____D C:\Users\Oksanka\Desktop\VSERS2
2014-01-05 15:59 - 2011-12-13 09:14 - 00000000 ____D C:\Users\Oksanka\AppData\Roaming\PowerCinema
2014-01-05 15:59 - 2011-12-13 08:35 - 00000000 ____D C:\Users\Oksanka\AppData\Local\PowerCinema
2014-01-05 15:42 - 2014-01-05 15:42 - 00001809 _____ C:\Users\Oksanka\Desktop\HRPT.lnk
2014-01-04 21:42 - 2014-01-04 21:42 - 00278640 _____ C:\Users\Oksanka\Downloads\activity_424606260.tcx
2014-01-04 20:26 - 2014-01-04 20:26 - 00000000 ____D C:\Users\Oksanka\Downloads\Noty---River-Flows-in-You
2014-01-04 20:25 - 2014-01-04 20:25 - 03046938 _____ C:\Users\Oksanka\Downloads\Noty---River-Flows-in-You.rar
2014-01-04 09:23 - 2014-01-04 09:11 - 808452096 _____ C:\Users\Oksanka\Downloads\crunchbang-11-20130506-i686.iso
2014-01-03 22:24 - 2014-01-03 22:24 - 00031107 _____ C:\Users\Oksanka\Downloads\crunchbang-11-20130506-i686.iso.torrent
2014-01-03 21:49 - 2014-01-03 21:49 - 00000421 _____ C:\Users\Oksanka\Desktop\inpr.gklo.gklc
2014-01-03 15:06 - 2014-01-03 14:48 - 1031405569 _____ C:\Users\Oksanka\Downloads\Wall-Street---Penize-nikdy-nespi-CZ-2010.avi
2014-01-02 16:37 - 2014-01-02 16:37 - 00000000 ____D C:\Users\Oksanka\AppData\Local\cache
2014-01-02 16:37 - 2014-01-02 16:37 - 00000000 ____D C:\Users\Oksanka\.android
2014-01-02 16:35 - 2014-01-02 16:35 - 00211302 _____ C:\Users\Oksanka\Downloads\GotClip_Setup.exe
2014-01-02 14:52 - 2014-01-02 14:52 - 00282809 _____ C:\Users\Oksanka\Downloads\activity_423308454 (1).tcx
2014-01-02 14:32 - 2014-01-02 14:32 - 01100330 _____ C:\Users\Oksanka\Downloads\activity_421816958 (3).tcx
2014-01-02 14:28 - 2014-01-02 14:28 - 00282809 _____ C:\Users\Oksanka\Downloads\activity_423308454.tcx
2014-01-02 14:27 - 2014-01-02 14:27 - 01100330 _____ C:\Users\Oksanka\Downloads\activity_421816958 (2).tcx
2014-01-02 14:26 - 2014-01-02 14:26 - 00417124 _____ C:\Users\Oksanka\Downloads\activity_420526154.tcx
2014-01-02 14:25 - 2014-01-02 14:25 - 00281599 _____ C:\Users\Oksanka\Downloads\activity_420105537.tcx
2014-01-02 14:24 - 2014-01-02 14:24 - 00269755 _____ C:\Users\Oksanka\Downloads\activity_419789798.tcx
2014-01-02 13:35 - 2014-01-02 13:19 - 1055916032 _____ C:\Users\Oksanka\Downloads\kubuntu-13.10-desktop-i386.iso
2014-01-02 01:24 - 2013-01-16 22:22 - 00000000 ___DC C:\FFOutput
2014-01-02 01:12 - 2014-01-02 01:11 - 05102492 _____ C:\Users\Oksanka\Documents\Můj film.wmv
2014-01-02 01:09 - 2014-01-02 01:08 - 00000000 ____D C:\Users\Oksanka\AppData\Local\{34E6264C-112E-4434-A0DF-0E4322F73728}
2014-01-02 01:04 - 2011-12-25 10:30 - 00035840 _____ C:\Users\Oksanka\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-01-01 23:48 - 2011-12-24 23:57 - 00000000 ____D C:\Users\Oksanka\AppData\Local\Apple Computer
2014-01-01 21:08 - 2014-01-01 21:08 - 00211536 _____ (Destiny Media) C:\Users\Oksanka\Downloads\stiven_king_-_tyomnaya_bashnya_4_koldun_i_kristall_2012_mp3.exe
2014-01-01 21:08 - 2014-01-01 21:08 - 00106920 _____ (LLC Pentagon) C:\Users\Oksanka\Downloads\stiven-king-tyomnaya-bashnya-4-koldun-i-kristall-mp3-[torrentino].exe
2014-01-01 15:05 - 2013-07-09 19:51 - 00003067 ____H C:\Users\Oksanka\Downloads\.picasa.ini
2014-01-01 15:05 - 2013-07-09 19:51 - 00000000 ___HD C:\Users\Oksanka\Downloads\.picasaoriginals
2013-12-31 09:32 - 2013-12-31 09:21 - 489327760 _____ C:\Users\Oksanka\Downloads\Návrat do budoucnosti III (1990).avi
2013-12-30 20:40 - 2013-12-30 20:40 - 01100330 _____ C:\Users\Oksanka\Downloads\activity_421816958 (1).tcx
2013-12-30 20:40 - 2013-12-30 20:40 - 00462824 _____ C:\Users\Oksanka\Downloads\activity_421816958.gpx
2013-12-30 20:29 - 2013-12-30 20:29 - 01014436 _____ C:\Users\Oksanka\Downloads\activity_421816958 (1).kml
2013-12-30 18:14 - 2013-12-30 18:14 - 01014436 _____ C:\Users\Oksanka\Downloads\activity_421816958.kml
2013-12-30 18:13 - 2013-12-30 18:13 - 01100330 _____ C:\Users\Oksanka\Downloads\activity_421816958.tcx
2013-12-29 13:27 - 2013-12-29 12:57 - 00000000 ____D C:\Users\Oksanka\Desktop\dev sdc1
2013-12-29 12:42 - 2013-12-29 12:26 - 1362100224 _____ C:\Users\Oksanka\Downloads\linuxmint-16-kde-dvd-32bit.iso
2013-12-28 00:12 - 2013-12-28 00:12 - 00000000 ____D C:\Users\Oksanka\Downloads\Lykke Li
2013-12-27 18:59 - 2013-12-27 18:51 - 741343232 _____ C:\Users\Oksanka\Downloads\ubuntu-12.04.3-desktop-i386.iso
2013-12-27 18:50 - 2013-12-27 18:50 - 00003825 _____ C:\Users\Oksanka\Downloads\ubuntu-12.04.3-desktop-i386.list
2013-12-26 14:14 - 2013-12-26 14:14 - 00553008 _____ C:\Users\Oksanka\Downloads\140400-gdm3.tar.gz
2013-12-26 10:00 - 2013-12-26 09:48 - 729808896 _____ C:\Users\Oksanka\Downloads\lubuntu-13.10-desktop-i386.iso
2013-12-25 22:28 - 2013-12-25 22:28 - 15478976 _____ C:\Users\Oksanka\Downloads\ExpressFit_201 (2).exe
2013-12-25 17:35 - 2013-12-25 17:30 - 00000386 _____ C:\Users\Oksanka\Desktop\navod.txt
2013-12-25 12:25 - 2013-12-25 12:02 - 918552576 _____ C:\Users\Oksanka\Downloads\ubuntu-gnome-13.10-desktop-i386.iso
2013-12-25 12:02 - 2013-12-25 12:02 - 00035276 _____ C:\Users\Oksanka\Downloads\ubuntu-gnome-13.10-desktop-i386.iso.torrent
2013-12-25 11:45 - 2013-12-19 14:27 - 00000000 ____D C:\Users\Oksanka\Desktop\linux_magic_tweak
2013-12-25 11:39 - 2013-12-25 11:39 - 00547256 _____ (Akeo Consulting (
http://akeo.ie)) C:\Users\Oksanka\Downloads\rufus_v1.4.1.exe
2013-12-25 11:37 - 2013-12-25 11:35 - 00000000 ____D C:\Users\Oksanka\Desktop\pcitvdientlinuxfiles
2013-12-25 00:41 - 2013-12-25 00:13 - 300519424 _____ C:\Users\Oksanka\Downloads\Topo_Czech_2013.exe
2013-12-24 23:57 - 2013-12-24 23:56 - 18864072 _____ C:\Users\Oksanka\Downloads\CommunicatorPlugin_410 (1).exe
2013-12-24 23:51 - 2013-12-24 23:51 - 00000000 ___DC C:\Program Files\Garmin GPS Plugin
2013-12-24 23:51 - 2013-12-24 23:51 - 00000000 ___DC C:\Program Files (x86)\Garmin GPS Plugin
2013-12-24 23:49 - 2013-12-24 23:49 - 18864072 _____ C:\Users\Oksanka\Downloads\CommunicatorPlugin_410.exe
2013-12-24 23:21 - 2013-12-24 23:20 - 15478976 _____ C:\Users\Oksanka\Downloads\ExpressFit_201 (1).exe
2013-12-24 22:59 - 2013-12-24 22:59 - 00000000 ___DC C:\Program Files (x86)\Garmin
2013-12-24 22:59 - 2013-12-24 22:59 - 00000000 ___DC C:\Garmin
2013-12-24 22:58 - 2013-12-24 22:58 - 15478976 _____ C:\Users\Oksanka\Downloads\ExpressFit_201.exe
2013-12-23 22:04 - 2013-06-13 21:20 - 00000000 ____D C:\Users\Oksanka\Desktop\materialy na praci
2013-12-23 20:32 - 2013-12-23 20:32 - 04558848 _____ (Google Inc.) C:\Windows\SysWOW64\GPhotos.scr
2013-12-23 15:00 - 2013-12-23 15:00 - 00024256 _____ C:\Users\Oksanka\Downloads\plutil.pl
2013-12-23 13:10 - 2013-12-23 10:36 - 3942645760 _____ C:\Users\Oksanka\Downloads\debian-7.3.0-amd64-DVD-1.iso
2013-12-23 10:58 - 2013-12-23 10:35 - 652214272 _____ C:\Users\Oksanka\Downloads\debian-7.3.0-amd64-CD-1.iso
2013-12-23 10:52 - 2013-12-23 10:52 - 00034320 _____ C:\Users\Oksanka\Downloads\ubuntu-drivers-common_0.2.71.1_amd64.deb
2013-12-23 10:52 - 2013-12-23 10:52 - 00034320 _____ C:\Users\Oksanka\Downloads\ubuntu-drivers-common_0.2.71.1_amd64 (1).deb
2013-12-23 10:35 - 2013-12-23 10:35 - 00075621 _____ C:\Users\Oksanka\Downloads\debian-7.3.0-amd64-DVD-1.iso.torrent
2013-12-23 09:34 - 2013-12-23 09:18 - 946864128 _____ C:\Users\Oksanka\Downloads\openSUSE-13.1-KDE-Live-i686.iso
2013-12-22 17:19 - 2013-12-22 17:19 - 02560216 _____ C:\Users\Oksanka\Downloads\wubi.exe
2013-12-21 18:40 - 2013-12-21 18:39 - 00387775 _____ C:\Users\Oksanka\Downloads\Baltie.zip
2013-12-20 14:31 - 2013-12-20 14:07 - 1209864481 _____ C:\Users\Oksanka\Downloads\NOOBS_v1_3_2 (1).zip
2013-12-20 13:31 - 2013-12-20 13:31 - 00002050 _____ C:\Users\Public\Desktop\SDFormatter.lnk
2013-12-20 13:31 - 2013-12-20 13:31 - 00000000 ___DC C:\Program Files (x86)\SDA
2013-12-20 13:30 - 2013-12-20 13:30 - 00236194 _____ C:\Users\Oksanka\Downloads\SDFormatter_4.00B.pkg
2013-12-20 13:29 - 2013-12-20 13:29 - 06286748 _____ C:\Users\Oksanka\Downloads\SDFormatterv4.zip
2013-12-20 13:29 - 2012-07-31 14:17 - 00000000 ____D C:\Users\Oksanka\AppData\Local\Downloaded Installations
2013-12-20 13:28 - 2013-12-20 13:28 - 20918392 _____ C:\Users\Oksanka\Downloads\NOOBS_lite_v1_3_2.zip
2013-12-19 14:43 - 2013-12-19 14:08 - 727711744 _____ C:\Users\Oksanka\Downloads\Mageia-3-LiveCD-KDE4-en-i586-CD.iso
2013-12-19 14:17 - 2013-12-19 14:10 - 00000000 ____D C:\Users\Oksanka\Downloads\Темная Башня III - Бесплодные земли
2013-12-19 14:07 - 2013-12-19 14:07 - 00000056 _____ C:\Users\Oksanka\Downloads\Mageia-3-i586-DVD.iso.md5
2013-12-19 13:28 - 2013-12-19 13:05 - 00198389 _____ C:\Users\Oksanka\presi_edit.pptx
Some content of TEMP:
====================
C:\Users\Oksanka\AppData\Local\Temp\mediahitbrowsersetup.exe
C:\Users\Oksanka\AppData\Local\Temp\ntdll_dump.dll
C:\Users\Oksanka\AppData\Local\Temp\pyl623C.tmp.exe
C:\Users\Oksanka\AppData\Local\Temp\pylD421.tmp.exe
C:\Users\Oksanka\AppData\Local\Temp\pylEA2E.tmp.exe
C:\Users\Oksanka\AppData\Local\Temp\Quarantine.exe
C:\Users\Oksanka\AppData\Local\Temp\runprog.exe
C:\Users\Oksanka\AppData\Local\Temp\tmp5482.exe
C:\Users\Oksanka\AppData\Local\Temp\Tsu663FE862.dll
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-17 13:36
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (/) (Fixed) (Total:450.66 GB) (Free:122.97 GB) NTFS
Available physical RAM: 1719.18 MB
Total physical RAM: 3946.73 MB
Percentage of memory in use: 56%
==================== MBR and Partition Table ==================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: C3683201)
Partition 1: (Not Active) - (Size=15 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=451 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1198225589-1884671980-4053545476-1000Core.job => C:\Users\Oksanka\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1198225589-1884671980-4053545476-1000UA.job => C:\Users\Oksanka\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1198225589-1884671980-4053545476-1000Core.job => C:\Users\Oksanka\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1198225589-1884671980-4053545476-1000UA.job => C:\Users\Oksanka\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\ProgramData\Temp:373E1720
AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1
AlternateDataStreams: C:\Users\Oksanka\Downloads\chanel_botky_vel_38_100%_original.eml:OECustomProperty
==================== Security Center ==================
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Oksanka\Desktop" je 687 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount
"C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ApnUpdater
"C:\Program Files (x86)\Ask.com\Updater\Updater.exe" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ApplePhotoStreams
C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon
"C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcadeMovieService
"C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AthBtTray
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AtherosBtStack
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BackupManagerTray
"C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate
"C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dolby Advanced Audio v2
"C:\Dolby PCEE4\pcee4.exe" -autostart [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EgisTecPMMUpdate
"C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EgisUpdate
"C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Facebook Update
"C:\Users\Oksanka\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update
"C:\Users\Oksanka\AppData\Local\Google\Update\GoogleUpdate.exe" /c [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor
"C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds
C:\Windows\system32\hkcmd.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iCloudServices
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray
C:\Windows\system32\igfxtray.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper
"C:\Program Files (x86)\iTunes\iTunesHelper.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LManager
C:\Program Files (x86)\Launch Manager\LManager.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MailRuUpdater
C:\Users\Oksanka\AppData\Local\Mail.Ru\MailRuUpdater.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC
"c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MyTomTomSA.exe
"C:\Program Files (x86)\MyTomTom 3\MyTomTomSA.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Orbitum
C:\Users\Oksanka\AppData\Local\Orbitum\Application\chrome.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence
C:\Windows\system32\igfxpers.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Power Management
C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task
"C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVBg
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE4 [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SuiteTray
"C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe
"C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zona
C:\Program Files (x86)\Zona\Zona.exe /MINIMIZED [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk
C:\PROGRA~2\MCAFEE~1\307523~1.318\SSSCHE~1.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Scrybe.lnk
C:\Windows\Installer\{147DFAD8-34C3-4DE1-9FCA-ACEFDE9EF810}\NewShortcut11_8ACB210B42E44145A8C31F8E3DD765A3.exe
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================