Stránka 1 z 1

Po spuštění se otvírá složka Počítač

Napsal: 27 led 2014 21:55
od marquesb51
Dobrý den!
Na mém notebooku Lenovo Y580 se po spuštění otevírá složka počítač. Už vím, že za to může software Adobe Master Collection CS6.
I když jsem v TuneUp Utilities odstranil veškeré vstupy na spuštění po startu od Adobe, složka se pořád otevírá. Ani v Autoruns jsem nanašel žádnou novou službu Adobe, která by to mohla působit.

Zde je log s FRST :

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-01-2014
Ran by Marek (administrator) on MAREK-PC on 27-01-2014 21:56:54
Running from C:\Users\Marek\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Autodesk, Inc.) C:\Program Files\Autodesk\Inventor 2014\Moldflow\bin\mitsijm.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\NLSSRV32.EXE
() C:\Windows\SysWOW64\PnkBstrA.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe
(Autodesk Inc.) C:\Program Files\Autodesk\Simulation Job Manager 2013\dssp_jobserver.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
() C:\Program Files\Realtek\Audio\HDA\FMAPP.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\Marek\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2866960 2011-12-16] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12343400 2011-12-27] (Realtek Semiconductor)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM\...\Run: [EnergyUtility] - C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [6202416 2012-08-16] (Lenovo(beijing) Limited)
HKLM\...\Run: [EvtMgr6] - C:\Program Files\Logitech\SetPointP\SetPoint.exe [3091224 2013-07-31] (Logitech, Inc.)
HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation)
HKLM-x32\...\Run: [] - [x]
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKCU\...\Run: [ShowBatteryBar] - C:\Program Files\BatteryBar\ShowBatteryBar.exe [89600 2009-05-28] ()
HKCU\...\Policies\Explorer: []
HKCU\...\Policies\Explorer: [NoDrives] 8388608
AppInit_DLLs: C:\Windows\System32\nvinitx.dll,C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-12-19] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [141336 2013-12-19] (NVIDIA Corporation)
Lsa: [Notification Packages] scecli C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/?clid=13415
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs =
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKCU - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?sourceid=i ... OH_csCZ559
SearchScopes: HKCU - {0BA5A696-0F38-4A15-8735-74B99419421B} URL = http://www.mapy.cz/?query={searchTerms} ... arch_13415
SearchScopes: HKCU - {291CF939-DA9F-42C9-BA00-B0D8280C158B} URL = http://www.novinky.cz/hledej?w={searchT ... arch_13415
SearchScopes: HKCU - {42B0778F-6534-40FC-9BDC-CFF3C3F215E6} URL = http://www.zbozi.cz/?q={searchTerms}&r= ... arch_13415
SearchScopes: HKCU - {63C85725-2602-4C00-B039-5D9036D096D5} URL = http://www.firmy.cz/?q={searchTerms}&so ... arch_13415
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?sourceid=i ... OH_csCZ559
SearchScopes: HKCU - {912A8532-D272-4780-A020-F999D8D98341} URL = http://encyklopedie.seznam.cz/search?q= ... arch_13415
SearchScopes: HKCU - {AAB0F430-85E1-4360-9DA9-AB995BA817D9} URL = http://search.seznam.cz/?q={searchTerms ... arch_13415
SearchScopes: HKCU - {B319C24C-B69F-44C4-BB83-103139843E2B} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
SearchScopes: HKCU - {BC668481-57FF-415C-B8CC-425EEEE19049} URL = http://tv.seznam.cz/hledej?w={searchTer ... arch_13415
SearchScopes: HKCU - {DA0ECAAE-07B2-4EFA-AFD4-5DA86864BB15} URL = http://slovnik.seznam.cz/?q={searchTerm ... arch_13415
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/f ... wflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @Nero.com/KM - C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF Plugin-x32: @nitropdf.com/NitroPDF - C:\Program Files (x86)\Nitro PDF\Professional 7\npnitromozilla.dll ( )
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Acrobat - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeExManDetect - C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll No File
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2013-10-30]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2014-01-27]

Chrome:
=======
CHR HomePage: hxxp://www.google.com/ig/redirectdomain?brand=KMOH&bmod=KMOH
CHR Extension: (Google Docs) - C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-10-24]
CHR Extension: (Google Drive) - C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-10-24]
CHR Extension: (YouTube) - C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-10-24]
CHR Extension: (Google Search) - C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-10-24]
CHR Extension: (Logitech Smooth Scrolling) - C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk [2013-10-24]
CHR Extension: (Google Wallet) - C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-24]
CHR Extension: (Gmail) - C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-10-24]
CHR HKLM-x32\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam] - C:\Program Files (x86)\Amazon\ABB\AmazonChrome-lenovo-abb.crx [2012-02-18]

==================== Services (Whitelisted) =================

R2 adsk_dssp_job_server; C:\Program Files\Autodesk\Simulation Job Manager 2013\dssp_jobServer.exe [380416 2013-05-15] (Autodesk Inc.)
S3 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [945440 2012-02-02] (Broadcom Corporation.)
S3 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [487936 2013-11-05] (Connectify)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-28] (Intel Corporation)
R2 mitsijm2014; C:\Program Files\Autodesk\Inventor 2014\Moldflow\bin\mitsijm.exe [952608 2013-01-25] (Autodesk, Inc.)
R3 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
S4 NitroDriverReadSpool2; C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe [216072 2012-06-21] (Nitro PDF Software)
S2 NSDSvc; C:\Windows\System32\NSDSvc.exe [120160 2011-12-24] (Lenovo)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2013-11-11] ()
S4 SolutoLauncherService; C:\Program Files\Soluto\SolutoLauncherService.exe [182848 2013-11-14] (Soluto)
S4 SolutoRemoteService; C:\Program Files\Soluto\SolutoRemoteService.exe [1942016 2013-11-14] (GlavSoft LLC.)
S4 ST2012_Svc; C:\Program Files (x86)\Spyware Terminator\st_rsser64.exe [1148664 2012-09-07] (Crawler.com)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2365792 2012-09-19] (TuneUp Software)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)

==================== Drivers (Whitelisted) ====================

R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [134696 2012-02-02] (Broadcom Corporation.)
R1 cnnctfy3; C:\Windows\System32\DRIVERS\cnnctfy3.sys [35352 2013-10-29] (Connectify)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-10-24] (Disc Soft Ltd)
R3 hswpan; C:\Windows\System32\DRIVERS\hswpan.sys [109056 2012-01-27] (Ozmo Inc)
R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [104048 2012-03-02] (Qualcomm Atheros Co., Ltd.)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
R0 NSD; C:\Windows\System32\drivers\nsd.sys [24160 2011-12-24] (Lenovo Corporation")
R1 Nsdfltr; C:\Windows\System32\drivers\Nsdfltr.sys [59488 2011-12-22] (Lenovo Corporation)
R3 rtsuvc; C:\Windows\System32\DRIVERS\rtsuvc.sys [8208488 2011-09-06] (Realtek Semiconductor Corp.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-10-24] (Duplex Secure Ltd.)
R2 sp_rsdrv2; C:\Windows\System32\DRIVERS\stflt.sys [51496 2013-10-29] (Windows (R) Win 7 DDK provider)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-09-18] (TuneUp Software)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S4 catchme; \??\C:\ComboFix\catchme.sys [x]
S4 cpuz134; \??\C:\Users\Marek\AppData\Local\Temp\cpuz134\cpuz134_x64.sys [x]
S4 GPU-Z; \??\C:\Users\Marek\AppData\Local\Temp\GPU-Z.sys [x]
S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-27 21:56 - 2014-01-27 21:57 - 00019465 _____ C:\Users\Marek\Desktop\FRST.txt
2014-01-27 21:56 - 2014-01-27 21:56 - 00000000 ____D C:\FRST
2014-01-27 21:40 - 2014-01-27 21:40 - 00000155 _____ C:\Users\Marek\Desktop\Call of Duty- Black Ops 2 Fixes and Tweaks for Crashes, Errors, Freezing, Poor FPS, Lag - FFF Squad.url
2014-01-27 21:40 - 2014-01-27 21:40 - 00000096 _____ C:\Users\Marek\Desktop\Master List of BO2 Fixes -- Call of Duty- Black Ops II Obecné diskuze.url
2014-01-27 21:25 - 2014-01-27 21:25 - 00000000 ____D C:\Users\Marek\AppData\Local\NVIDIA
2014-01-27 21:24 - 2014-01-27 21:24 - 00000000 ____D C:\Windows\SysWOW64\NV
2014-01-27 21:24 - 2014-01-27 21:24 - 00000000 ____D C:\Windows\system32\NV
2014-01-27 21:24 - 2014-01-27 21:24 - 00000000 ____D C:\ProgramData\NVIDIA
2014-01-27 21:23 - 2013-12-19 19:53 - 06671648 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-01-27 21:23 - 2013-12-19 19:53 - 03490080 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-01-27 21:23 - 2013-12-19 19:53 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-01-27 21:23 - 2013-12-19 19:53 - 01065248 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2014-01-27 21:23 - 2013-12-19 19:53 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-01-27 21:23 - 2013-12-19 19:53 - 00598304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\oemdspif.dll
2014-01-27 21:23 - 2013-12-19 19:53 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-01-27 21:23 - 2013-12-19 19:53 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2014-01-27 21:23 - 2013-12-19 19:53 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-01-27 21:23 - 2013-12-19 06:01 - 03539040 _____ C:\Windows\system32\nvcoproc.bin
2014-01-27 21:16 - 2013-12-19 21:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 18310112 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 15230352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-01-27 21:16 - 2013-12-19 21:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 03071656 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 02698272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433221.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433221.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 00357152 _____ C:\Windows\system32\NvIFROpenGL.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 00314656 _____ C:\Windows\SysWOW64\NvIFROpenGL.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-01-27 21:16 - 2013-12-19 21:33 - 00032544 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2014-01-27 21:16 - 2013-12-19 21:33 - 00023754 _____ C:\Windows\system32\nvinfo.pb
2014-01-27 19:50 - 2014-01-27 19:50 - 00000266 _____ C:\Windows\game.ini
2014-01-27 19:29 - 2014-01-27 19:29 - 00003502 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-Marek-PC-Marek
2014-01-27 15:01 - 2014-01-27 15:01 - 00000000 ____D C:\ProgramData\ALM
2014-01-27 14:56 - 2014-01-27 14:56 - 00000000 ____D C:\Users\Marek\Adobe Flash Builder 4.6
2014-01-27 14:16 - 2014-01-27 14:16 - 00000000 ____D C:\Program Files (x86)\Nsasoft
2014-01-27 14:09 - 2014-01-27 14:09 - 00000000 ____D C:\Users\Marek\Documents\Fragments
2014-01-27 14:08 - 2014-01-27 14:08 - 00000000 ____D C:\Users\Public\Documents\Adobe
2014-01-27 14:08 - 2014-01-27 14:08 - 00000000 ____D C:\Users\Marek\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2014-01-27 11:56 - 2014-01-27 15:07 - 00000000 ____D C:\Program Files\Adobe
2014-01-27 11:09 - 2014-01-27 11:11 - 00000000 ____D C:\Users\Marek\Documents\Autodesk Showcase 2014
2014-01-27 11:03 - 2014-01-27 11:03 - 00000000 ____D C:\Users\Marek\Documents\Inventor Server x64 Showcase2014
2014-01-26 10:20 - 2014-01-26 10:20 - 00000000 ____D C:\Users\Marek\AppData\Local\Autodesk,_Inc
2014-01-26 10:10 - 2014-01-26 10:10 - 00000000 ____D C:\Users\Marek\AppData\Local\Granta Design
2014-01-25 22:12 - 2014-01-25 22:12 - 00000098 _____ C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
2014-01-25 22:12 - 2014-01-25 22:12 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin
2014-01-25 22:11 - 2014-01-25 22:21 - 00000000 ____D C:\ProgramData\Soluto
2014-01-25 22:11 - 2014-01-25 22:11 - 00000000 ____D C:\Program Files\Soluto
2014-01-25 22:11 - 2013-11-14 14:26 - 00054728 _____ (Soluto LTD.) C:\Windows\system32\Drivers\Soluto.sys
2014-01-25 20:18 - 2014-01-27 21:10 - 00000000 ____D C:\Qoobox
2014-01-25 20:18 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe
2014-01-25 20:18 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe
2014-01-25 20:18 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-01-25 20:18 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-01-25 20:18 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-01-25 20:18 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe
2014-01-25 20:18 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe
2014-01-25 20:18 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe
2014-01-25 20:17 - 2014-01-25 21:27 - 00000000 ____D C:\Windows\erdnt
2014-01-23 21:22 - 2014-01-23 21:22 - 00000000 ____D C:\ProgramData\r2 Studios
2014-01-23 21:22 - 2014-01-23 21:22 - 00000000 ____D C:\Program Files\r2 Studios
2014-01-23 21:15 - 2014-01-23 21:15 - 00000202 _____ C:\Users\Marek\Desktop\QARK.net — Testováno na ženách....URL
2014-01-23 15:56 - 2014-01-23 15:56 - 00000000 ____D C:\Users\Marek\AppData\Roaming\Malwarebytes
2014-01-23 15:30 - 2014-01-23 15:30 - 00112640 _____ (forum.viry.cz) C:\Users\Marek\Desktop\FRSTLauncher.exe
2014-01-23 15:28 - 2014-01-23 15:29 - 02077184 _____ (Farbar) C:\Users\Marek\Desktop\FRST64.exe
2014-01-23 14:36 - 2014-01-23 14:45 - 01655934 _____ C:\Windows\system32\PsBoot.log
2014-01-23 14:36 - 2014-01-23 14:45 - 01247174 _____ C:\Windows\system32\defragLog.log
2014-01-15 21:14 - 2014-01-15 21:14 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-15 21:14 - 2014-01-15 21:14 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-15 21:14 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-01-15 18:17 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-15 18:17 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-15 18:17 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-15 18:17 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-15 18:17 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-15 18:17 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-15 18:17 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-15 18:17 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-15 18:17 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-14 22:12 - 2014-01-27 21:05 - 00000000 ____D C:\Program Files (x86)\Steam
2014-01-14 22:11 - 2014-01-14 22:11 - 00000000 ____D C:\Users\Marek\AppData\Local\SKIDROW
2014-01-14 17:51 - 2014-01-14 17:51 - 00000000 ____D C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk
2014-01-14 17:45 - 2014-01-14 17:45 - 00000000 ____D C:\Users\Marek\Documents\Inventor Server x64 Autodesk Simulation 2014
2014-01-14 17:45 - 2014-01-14 17:45 - 00000000 ____D C:\ProgramData\Autodesk, Inc
2014-01-14 17:40 - 2014-01-14 19:23 - 00000000 ____D C:\Users\Marek\AppData\Roaming\.algor
2014-01-14 17:38 - 2014-01-14 17:38 - 00000000 ____D C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft WSE 3.0
2014-01-14 17:38 - 2014-01-14 17:38 - 00000000 ____D C:\Program Files (x86)\Microsoft WSE
2014-01-14 16:21 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-01-14 16:21 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2014-01-14 16:21 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-01-14 16:21 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2014-01-14 16:21 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-01-14 16:21 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2014-01-14 15:27 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2014-01-14 15:27 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-01-14 15:27 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2014-01-14 15:27 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2014-01-14 15:27 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-01-14 15:27 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2014-01-14 13:03 - 2014-01-14 13:08 - 00000000 ____D C:\Users\Marek\AppData\Roaming\BatteryBar
2014-01-14 13:03 - 2014-01-14 13:03 - 00000000 ____D C:\Program Files\BatteryBar
2014-01-01 00:11 - 2014-01-24 13:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox

==================== One Month Modified Files and Folders =======

2014-01-27 21:57 - 2014-01-27 21:56 - 00019465 _____ C:\Users\Marek\Desktop\FRST.txt
2014-01-27 21:56 - 2014-01-27 21:56 - 00000000 ____D C:\FRST
2014-01-27 21:40 - 2014-01-27 21:40 - 00000155 _____ C:\Users\Marek\Desktop\Call of Duty- Black Ops 2 Fixes and Tweaks for Crashes, Errors, Freezing, Poor FPS, Lag - FFF Squad.url
2014-01-27 21:40 - 2014-01-27 21:40 - 00000096 _____ C:\Users\Marek\Desktop\Master List of BO2 Fixes -- Call of Duty- Black Ops II Obecné diskuze.url
2014-01-27 21:30 - 2012-08-16 03:11 - 01064539 _____ C:\Windows\WindowsUpdate.log
2014-01-27 21:30 - 2009-07-14 05:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-27 21:30 - 2009-07-14 05:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-27 21:25 - 2014-01-27 21:25 - 00000000 ____D C:\Users\Marek\AppData\Local\NVIDIA
2014-01-27 21:24 - 2014-01-27 21:24 - 00000000 ____D C:\Windows\SysWOW64\NV
2014-01-27 21:24 - 2014-01-27 21:24 - 00000000 ____D C:\Windows\system32\NV
2014-01-27 21:24 - 2014-01-27 21:24 - 00000000 ____D C:\ProgramData\NVIDIA
2014-01-27 21:24 - 2012-08-16 04:07 - 00424118 _____ C:\Windows\system32\fastboot.set
2014-01-27 21:24 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-27 21:24 - 2009-07-14 05:51 - 00074479 _____ C:\Windows\setupact.log
2014-01-27 21:23 - 2013-10-24 07:07 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2014-01-27 21:23 - 2012-08-16 03:22 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2014-01-27 21:23 - 2012-08-16 02:56 - 00669116 _____ C:\Windows\system32\perfh005.dat
2014-01-27 21:23 - 2012-08-16 02:56 - 00141744 _____ C:\Windows\system32\perfc005.dat
2014-01-27 21:23 - 2009-07-14 06:13 - 01584554 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-27 21:23 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Help
2014-01-27 21:22 - 2013-10-24 07:07 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2014-01-27 21:18 - 2009-07-14 06:08 - 00032612 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2014-01-27 21:18 - 2009-07-14 05:45 - 05223656 _____ C:\Windows\system32\FNTCACHE.DAT
2014-01-27 21:17 - 2010-11-21 04:47 - 00107804 _____ C:\Windows\PFRO.log
2014-01-27 21:10 - 2014-01-25 20:18 - 00000000 ____D C:\Qoobox
2014-01-27 21:05 - 2014-01-14 22:12 - 00000000 ____D C:\Program Files (x86)\Steam
2014-01-27 19:55 - 2013-10-23 22:57 - 00000000 ____D C:\Users\Marek\Desktop\Hry
2014-01-27 19:54 - 2012-08-16 03:55 - 00049004 _____ C:\Windows\DirectX.log
2014-01-27 19:54 - 2012-08-16 03:28 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-27 19:50 - 2014-01-27 19:50 - 00000266 _____ C:\Windows\game.ini
2014-01-27 19:48 - 2013-11-11 18:17 - 00000000 ____D C:\Hry
2014-01-27 19:37 - 2013-10-30 19:48 - 00000000 ____D C:\Program Files (x86)\Adobe
2014-01-27 19:36 - 2013-10-23 22:57 - 00000000 ____D C:\Users\Marek\Desktop\Programy a systém
2014-01-27 19:29 - 2014-01-27 19:29 - 00003502 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-Marek-PC-Marek
2014-01-27 19:29 - 2013-10-30 20:20 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2014-01-27 19:29 - 2013-10-24 06:41 - 00000000 ____D C:\Users\Marek\AppData\Roaming\Adobe
2014-01-27 19:28 - 2013-10-23 22:55 - 00178160 _____ C:\Users\Marek\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-27 15:07 - 2014-01-27 11:56 - 00000000 ____D C:\Program Files\Adobe
2014-01-27 15:07 - 2013-10-30 19:46 - 00000000 ____D C:\Program Files\Common Files\Adobe
2014-01-27 15:06 - 2013-10-24 10:31 - 00000000 ____D C:\Users\Marek\AppData\Local\Adobe
2014-01-27 15:01 - 2014-01-27 15:01 - 00000000 ____D C:\ProgramData\ALM
2014-01-27 14:56 - 2014-01-27 14:56 - 00000000 ____D C:\Users\Marek\Adobe Flash Builder 4.6
2014-01-27 14:56 - 2013-10-23 22:53 - 00000000 ____D C:\Users\Marek
2014-01-27 14:46 - 2013-10-24 10:32 - 00000000 ____D C:\ProgramData\Adobe
2014-01-27 14:16 - 2014-01-27 14:16 - 00000000 ____D C:\Program Files (x86)\Nsasoft
2014-01-27 14:09 - 2014-01-27 14:09 - 00000000 ____D C:\Users\Marek\Documents\Fragments
2014-01-27 14:08 - 2014-01-27 14:08 - 00000000 ____D C:\Users\Public\Documents\Adobe
2014-01-27 14:08 - 2014-01-27 14:08 - 00000000 ____D C:\Users\Marek\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2014-01-27 11:11 - 2014-01-27 11:09 - 00000000 ____D C:\Users\Marek\Documents\Autodesk Showcase 2014
2014-01-27 11:11 - 2013-10-24 09:50 - 00000000 ____D C:\ProgramData\boost_interprocess
2014-01-27 11:11 - 2013-10-24 09:17 - 00000000 ____D C:\Users\Marek\AppData\Roaming\Autodesk
2014-01-27 11:11 - 2013-10-24 09:17 - 00000000 ____D C:\ProgramData\Autodesk
2014-01-27 11:07 - 2013-10-24 09:33 - 00000000 ____D C:\Users\Marek\AppData\Local\Autodesk
2014-01-27 11:03 - 2014-01-27 11:03 - 00000000 ____D C:\Users\Marek\Documents\Inventor Server x64 Showcase2014
2014-01-27 11:03 - 2013-10-24 09:26 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared
2014-01-27 10:51 - 2013-10-24 09:26 - 00000000 ____D C:\Program Files\Autodesk
2014-01-26 10:20 - 2014-01-26 10:20 - 00000000 ____D C:\Users\Marek\AppData\Local\Autodesk,_Inc
2014-01-26 10:10 - 2014-01-26 10:10 - 00000000 ____D C:\Users\Marek\AppData\Local\Granta Design
2014-01-26 10:10 - 2013-10-28 22:11 - 00000000 ____D C:\Users\Marek\Documents\Inventor
2014-01-26 10:09 - 2013-10-24 09:48 - 00124271 _____ C:\Windows\system32\webservice4.log
2014-01-26 00:54 - 2013-10-24 06:41 - 00000914 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-26 00:46 - 2013-10-31 15:19 - 00003696 _____ C:\Windows\System32\Tasks\Adobe online aktualizační program
2014-01-26 00:46 - 2013-10-24 06:41 - 00003854 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-01-25 22:21 - 2014-01-25 22:11 - 00000000 ____D C:\ProgramData\Soluto
2014-01-25 22:12 - 2014-01-25 22:12 - 00000098 _____ C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
2014-01-25 22:12 - 2014-01-25 22:12 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin
2014-01-25 22:11 - 2014-01-25 22:11 - 00000000 ____D C:\Program Files\Soluto
2014-01-25 21:28 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini
2014-01-25 21:27 - 2014-01-25 20:17 - 00000000 ____D C:\Windows\erdnt
2014-01-25 20:29 - 2009-07-14 04:20 - 00000000 ___HD C:\Users\Default
2014-01-24 13:30 - 2014-01-01 00:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2014-01-23 21:22 - 2014-01-23 21:22 - 00000000 ____D C:\ProgramData\r2 Studios
2014-01-23 21:22 - 2014-01-23 21:22 - 00000000 ____D C:\Program Files\r2 Studios
2014-01-23 21:16 - 2013-10-24 06:48 - 00000000 ____D C:\Users\Marek\AppData\Roaming\Mozilla
2014-01-23 21:15 - 2014-01-23 21:15 - 00000202 _____ C:\Users\Marek\Desktop\QARK.net — Testováno na ženách....URL
2014-01-23 15:56 - 2014-01-23 15:56 - 00000000 ____D C:\Users\Marek\AppData\Roaming\Malwarebytes
2014-01-23 15:44 - 2013-11-07 10:07 - 00007607 _____ C:\Users\Marek\AppData\Local\Resmon.ResmonCfg
2014-01-23 15:30 - 2014-01-23 15:30 - 00112640 _____ (forum.viry.cz) C:\Users\Marek\Desktop\FRSTLauncher.exe
2014-01-23 15:29 - 2014-01-23 15:28 - 02077184 _____ (Farbar) C:\Users\Marek\Desktop\FRST64.exe
2014-01-23 14:45 - 2014-01-23 14:36 - 01655934 _____ C:\Windows\system32\PsBoot.log
2014-01-23 14:45 - 2014-01-23 14:36 - 01247174 _____ C:\Windows\system32\defragLog.log
2014-01-23 13:38 - 2013-10-28 22:32 - 00002772 _____ C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013
2014-01-23 13:38 - 2013-10-24 07:31 - 00002774 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-01-19 08:33 - 2010-11-21 04:27 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-01-15 21:41 - 2013-10-24 06:41 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-01-15 21:41 - 2013-10-24 06:41 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-01-15 21:14 - 2014-01-15 21:14 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-15 21:14 - 2014-01-15 21:14 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-15 18:29 - 2013-10-24 07:37 - 00000000 ____D C:\Program Files\CPUID
2014-01-15 18:23 - 2013-10-24 06:08 - 00000000 ____D C:\ProgramData\Microsoft Help
2014-01-15 18:23 - 2009-07-14 03:34 - 00000478 _____ C:\Windows\win.ini
2014-01-15 18:22 - 2013-10-24 08:07 - 00000000 ____D C:\Windows\system32\MRT
2014-01-15 18:19 - 2013-10-24 08:07 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-15 18:12 - 2013-10-24 07:43 - 00000000 ____D C:\Program Files (x86)\SpeedFan
2014-01-15 13:20 - 2013-10-23 22:55 - 00000000 ___RD C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-14 22:11 - 2014-01-14 22:11 - 00000000 ____D C:\Users\Marek\AppData\Local\SKIDROW
2014-01-14 19:23 - 2014-01-14 17:40 - 00000000 ____D C:\Users\Marek\AppData\Roaming\.algor
2014-01-14 17:51 - 2014-01-14 17:51 - 00000000 ____D C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk
2014-01-14 17:51 - 2013-10-24 09:26 - 00000000 ____D C:\Program Files (x86)\Autodesk
2014-01-14 17:45 - 2014-01-14 17:45 - 00000000 ____D C:\Users\Marek\Documents\Inventor Server x64 Autodesk Simulation 2014
2014-01-14 17:45 - 2014-01-14 17:45 - 00000000 ____D C:\ProgramData\Autodesk, Inc
2014-01-14 17:38 - 2014-01-14 17:38 - 00000000 ____D C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft WSE 3.0
2014-01-14 17:38 - 2014-01-14 17:38 - 00000000 ____D C:\Program Files (x86)\Microsoft WSE
2014-01-14 17:36 - 2013-10-24 09:48 - 00000000 ____D C:\Users\Marek\AppData\Local\cache
2014-01-14 15:32 - 2013-10-24 09:27 - 00000000 ____D C:\Users\Public\Documents\Autodesk
2014-01-14 13:08 - 2014-01-14 13:03 - 00000000 ____D C:\Users\Marek\AppData\Roaming\BatteryBar
2014-01-14 13:03 - 2014-01-14 13:03 - 00000000 ____D C:\Program Files\BatteryBar
2014-01-09 14:34 - 2013-11-11 18:22 - 00111928 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2014-01-07 19:08 - 2013-10-24 08:33 - 00000000 ____D C:\Users\Marek\AppData\Roaming\Nitro PDF
2014-01-07 13:51 - 2013-10-24 09:11 - 00000000 ____D C:\Users\Marek\.maplesoft
2014-01-07 12:39 - 2013-11-26 22:52 - 00000000 ____D C:\Users\Marek\Documents\Youcam
2013-12-31 22:27 - 2013-10-24 06:56 - 00000000 ____D C:\Program Files (x86)\Opera

Some content of TEMP:
====================
C:\Users\Marek\AppData\Local\Temp\AcDeltree.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-01-25 12:23




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (Windows7_OS) (Fixed) (Total:886.32 GB) (Free:634.35 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (LENOVO) (Fixed) (Total:25.47 GB) (Free:21.62 GB) NTFS

Available physical RAM: 1938.21 MB
Total physical RAM: 3998.36 MB
Percentage of memory in use: 51%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: D03DD624)
Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=886 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=25 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=20 GB) - (Type=12)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\MATLAB R2012b Startup Accelerator.job => C:\Program Files\MATLAB\R2012b\bin\win64\MATLABStartupAccelerator.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\Windows:nlsPreferences
AlternateDataStreams: C:\ProgramData\Temp:C5760A8B

==================== Security Center ==================

AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Marek\Desktop" je 8 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper
"C:\Users\Marek\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Re: Po spuštění se otvírá složka Počítač

Napsal: 27 led 2014 22:23
od Rudy
Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Run: [] - [x]
HKCU\...\Policies\Explorer: []
HKCU\...\Policies\Explorer: [NoDrives] 8388608
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
C:\Users\Marek\AppData\Local\Temp
AlternateDataStreams: C:\Windows:nlsPreferences
AlternateDataStreams: C:\ProgramData\Temp:C5760A8B
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Po spuštění se otvírá složka Počítač

Napsal: 28 led 2014 10:54
od marquesb51
Tak složka už se po startu neotvírá. Děkuji mockrát!
Pokud se nepletu, smazali jsme tímto vstupy v registru, ale posledním 3 řádkům v opravě nerozumím.
Je zde na fóru nějaký návod nebo rady jak se alespoň trochu naučit číst logy?

Pro jistotu, zde je fixlog:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 27-01-2014 02
Ran by Marek at 2014-01-28 10:43:27 Run:1
Running from C:\Users\Marek\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [] - [x]
HKCU\...\Policies\Explorer: []
HKCU\...\Policies\Explorer: [NoDrives] 8388608
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
C:\Users\Marek\AppData\Local\Temp
AlternateDataStreams: C:\Windows:nlsPreferences
AlternateDataStreams: C:\ProgramData\Temp:C5760A8B
End
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\ => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoDrives => Value deleted successfully.
HKLM\Software\Wow6432Node\MozillaPlugins\FF Plugin-x32: @microsoft.com/GENUINE - disabled No File => Key not found.
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File not found.

"C:\Users\Marek\AppData\Local\Temp" directory move:

C:\Users\Marek\AppData\Local\Temp\AcDeltree.exe => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\aec705F.xml => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\aec7060.xml => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\AIBB_id1f2e3d4b5a.tmp => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\AI_ResourceCleanerLog.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\amt3.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\appIndex.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Autodesk Revit Showcase Interop.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Autodesk_Showcase_2014_Setup.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera18.0.1284.68opera_autoupdate.lock => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\cp_Install.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\dd_vcredistMSI5E1A.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\dd_vcredistMSI5EE5.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\dd_vcredistMSI608B.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\dd_vcredistMSI60E3.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\dd_vcredistUI5E1A.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\dd_vcredistUI5EE5.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\dd_vcredistUI608B.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\dd_vcredistUI60E3.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\DirectConnect2014Install.log => Moved successfully.
Could not move "C:\Users\Marek\AppData\Local\Temp\etilqs_76YQM7JRAhHynzg" => Scheduled to move on reboot.
Could not move "C:\Users\Marek\AppData\Local\Temp\etilqs_MsOeHbcWItDAgfY" => Scheduled to move on reboot.
Could not move "C:\Users\Marek\AppData\Local\Temp\etilqs_R4ACraJ1Q6I4VJY" => Scheduled to move on reboot.
C:\Users\Marek\AppData\Local\Temp\fla1B46.tmp => Moved successfully.
Could not move "C:\Users\Marek\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => Scheduled to move on reboot.
C:\Users\Marek\AppData\Local\Temp\InventorRegistrationLog_5944.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\LuUpdater.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Microsoft Visual C++ 2010 x64 Redistributable Setup_20140127_115552672-MSI_vc_red.msi.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Microsoft Visual C++ 2010 x64 Redistributable Setup_20140127_115552672.html => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Microsoft Visual C++ 2010 x64 Redistributable Setup_20140127_144030533-MSI_vc_red.msi.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Microsoft Visual C++ 2010 x64 Redistributable Setup_20140127_144030533.html => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20140127_115525674-MSI_vc_red.msi.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20140127_115525674.html => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20140127_143928718-MSI_vc_red.msi.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20140127_143928718.html => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\NitroSysFonts01.dat => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\oobelib.log => Moved successfully.
Could not move "C:\Users\Marek\AppData\Local\Temp\opera_crashreporter.log" => Scheduled to move on reboot.
C:\Users\Marek\AppData\Local\Temp\opera_installer_20140128103902.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\patchlist.xml => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\PDApp.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\ProductInformation.pit => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\RevitCustom.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Showcase 2014Log.cerr.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Showcase 2014Log.cout.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Showcase 2014Log.perr.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Showcase 2014Log.pout.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Showcase2014Install.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\swtag.log => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\users00 => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\~2961.tmp => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\~3581.bat => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\~3581.tmp => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\~8391.tmp => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\~DF518DDCE2942EB2B7.TMP => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\Soluto\AppConfigurations => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\d3dcompiler_46.dll => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\ffmpegsumo.dll => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\files_list => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\icudt.dll => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\launcher.exe => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\launcher_lib.dll => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\libEGL.dll => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\libGLESv2.dll => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\msvcp100.dll => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\msvcr100.dll => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\npTestNetscapePlugIn.dll => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera.dll => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera.exe => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\Opera.lnk => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera_100_percent.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera_125_percent.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera_150_percent.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\Opera_19.0.1326.47_Autoupdate.exe => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera_200_percent.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera_autoupdate.exe => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera_autoupdate.licenses => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera_autoupdate.version => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\opera_crashreporter.exe => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\osmesa.dll => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\wow_helper.exe => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\0CD5F3A0-8BF6-11E2-9E96-0800200C9A66.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\1AF2CDD0-8BF3-11E2-9E96-0800200C9A66.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\1CF37043-6733-479C-9086-7B21A2292DDA.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\1CFF9287-F5FE-4970-B2A0-3245021CE63A.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\2A3F5C20-8BF5-11E2-9E96-0800200C9A66.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\3B6191A0-8BF3-11E2-9E96-0800200C9A66.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\5BBBDD5B-EDC7-4168-9F5D-290AF826E716.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\66DD4BB6-A3BA-4B11-AF7A-F4BF23E073B2.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\6D3582E1-6013-429F-BB34-C75B90CDD1F8.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\8D754F20-8BF5-11E2-9E96-0800200C9A66.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\C665D993-1B49-4C2E-962C-BEB19993BB86.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\CCCED631-6DA2-4060-9824-95737E64350C.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\default_partner_content.json => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\dictionaries.xml => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\F3F34CBB-24FF-4830-9E87-1663E7A0A5EE.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\FDC2CCAB-E8F9-4620-91DD-B0B67285997C.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\FF57F01A-0718-44B7-8A1F-8B15BC33A50B.ico => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\resources\license.txt => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\af.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\ar.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\az.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\be.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\bg.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\bn.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\ca.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\cs.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\da.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\de.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\el.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\en-GB.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\en-US.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\es-419.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\es.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\fi.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\fr-CA.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\fr.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\fy.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\gd.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\hi.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\hr.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\hu.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\id.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\it.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\ja.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\kk.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\ko.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\lt.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\lv.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\me.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\mk.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\ms.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\nb.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\nl.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\nn.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\pa.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\pl.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\pt-BR.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\pt-PT.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\ro.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\ru.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\sk.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\sr.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\sv.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\sw.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\ta.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\te.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\th.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\tl.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\tr.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\uk.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\uz.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\vi.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\zh-CN.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\zh-TW.pak => Moved successfully.
C:\Users\Marek\AppData\Local\Temp\CProgram Files (x86)Opera\installing\localization\zu.pak => Moved successfully.
Could not move "C:\Users\Marek\AppData\Local\Temp" directory. => Scheduled to move on reboot.

C:\Windows => ":nlsPreferences" ADS removed successfully.
C:\ProgramData\Temp => ":C5760A8B" ADS removed successfully.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-01-28 10:44:51)<=

C:\Users\Marek\AppData\Local\Temp\etilqs_76YQM7JRAhHynzg => Is moved successfully.
C:\Users\Marek\AppData\Local\Temp\etilqs_MsOeHbcWItDAgfY => Is moved successfully.
C:\Users\Marek\AppData\Local\Temp\etilqs_R4ACraJ1Q6I4VJY => Is moved successfully.
C:\Users\Marek\AppData\Local\Temp\FXSAPIDebugLogFile.txt => Is moved successfully.
C:\Users\Marek\AppData\Local\Temp\opera_crashreporter.log => Is moved successfully.
"C:\Users\Marek\AppData\Local\Temp" => Directory could not move.

==== End of Fixlog ====

Re: Po spuštění se otvírá složka Počítač

Napsal: 28 led 2014 14:21
od marquesb51
Ještě mám dotaz: Jak úplně odstranit FRST a ComboFix?
Stačí jen smazat .exe soubory a logy nebo je třeba jiný postup?

Re: Po spuštění se otvírá složka Počítač

Napsal: 28 led 2014 18:40
od Rudy
CF odinstalujte pomocí T-Cleaneru: http://vyosek.tym.cz/pro_usery/T-Cleaner.exe a FRST normálně smažte. Nemáte zač! :)