Stránka 1 z 1

Kontrola logu

Napsal: 11 úno 2014 14:34
od freeco
Addition.rar
(10.78 KiB) Staženo 73 x
Dobrý den, chtěl bych Vás poprosit o kontrolu logu,
předem moc děkuji!

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-02-2014 01
Ran by sigi (administrator) on SIGI-PC on 11-02-2014 14:30:16
Running from C:\Users\sigi\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\windows\system32\WLANExt.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
(Microsoft Corporation) C:\windows\SYSTEM32\WISPTIS.EXE
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\windows\SYSTEM32\WISPTIS.EXE
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe
(AddGadgets) C:\Users\sigi\Desktop\Programy\PCMeter\PCMeterV0.3.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Konica Minolta) C:\Program Files (x86)\KONICA MINOLTA\magicolor 1690MF\LinkMagic for magicolor 1690MF\lmmc1690.exe
(Macrovision Corporation) C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe
(Microsoft Corporation) C:\Windows\System32\StikyNot.exe
(Spotify Ltd) C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(ZONER software) C:\Programy\Zoner\Photo Studio 15\Program32\ZPSTray.exe
(Spotify Ltd) C:\Users\sigi\AppData\Roaming\Spotify\spotify.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe
(Dropbox, Inc.) C:\Users\sigi\AppData\Roaming\Dropbox\bin\Dropbox.exe
(JME) C:\Program Files (x86)\jmesoft\hotkey.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Eye Distance System\Lenovo Eye Distance System.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Brightness System\Lenovo Dynamic Brightness System.exe
(CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
() C:\Program Files (x86)\Lenovo\Lenovo EBook&QuickNotes\TMCMonitor.exe
(CyberLink) C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe
() C:\Program Files\Lenovo\Bluetooth Manager\BluetoothManager.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(Razer USA Ltd) C:\Program Files (x86)\Razer\Imperator\RazerImperatorSysTray.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe
() C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Ai Charger\AiChargerAP.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
() C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Intel Corporation) C:\windows\system32\IProsetMonitor.exe
(CybelSoft) C:\Program Files\ma-config.com\MaConfigAgent.exe
(McAfee, Inc.) C:\windows\system32\mfevtps.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
() C:\windows\SysWOW64\PnkBstrA.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\loggingserver.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe
() C:\Hry\LOL\League of Legends\RADS\system\rads_user_kernel.exe
() C:\Hry\LOL\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.199\deploy\LoLLauncher.exe
() C:\Hry\LOL\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.70\deploy\LolClient.exe
(VideoLAN) C:\Programy\VideoLAN\VLC\vlc.exe
(TeamSpeak Systems GmbH) C:\Programy\TeamSpeak 3 Client\ts3client_win64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\sigi\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11785832 2011-03-10] (Realtek Semiconductor)
HKLM\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App\Lenovo Rescue System\MUITransfer\MUIStartMenu.exe [222504 2009-05-14] (CyberLink Corp.)
HKLM\...\Run: [Lenovo EE Boot Optimizer] - C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [114688 2012-02-23] (Lenovo)
HKLM\...\Run: [BCSSync] - C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [1832760 2012-09-20] (Logitech, Inc.)
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-08] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] - C:\windows\system32\nvspcap64.dll [1100248 2013-12-10] (NVIDIA Corporation)
HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation)
HKLM-x32\...\Run: [jmekey] - C:\Program Files (x86)\jmesoft\hotkey.exe [225280 2009-08-25] (JME)
HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [Lenovo Eye Distance System] - C:\Program Files\Lenovo\Lenovo Eye Distance System\Lenovo Eye Distance System.exe [265216 2010-09-09] (Lenovo)
HKLM-x32\...\Run: [Lenovo Dynamic Brightness System] - C:\Program Files\Lenovo\Lenovo Brightness System\Lenovo Dynamic Brightness System.exe [287232 2011-02-25] (Lenovo)
HKLM-x32\...\Run: [YouCam Mirage] - C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [136488 2011-01-29] (CyberLink)
HKLM-x32\...\Run: [YouCam Tray] - C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe [228448 2011-01-29] (CyberLink Corp.)
HKLM-x32\...\Run: [TMCMonitor] - C:\Program Files (x86)\Lenovo\Lenovo EBook&QuickNotes\TMCMonitor.exe [53248 2009-11-10] ()
HKLM-x32\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App\Lenovo Rescue System\MUITransfer\MUIStartMenu.exe [222504 2009-05-14] (CyberLink Corp.)
HKLM-x32\...\Run: [Lenovo SplitScreen] - C:\Program Files\Lenovo\Lenovo SplitScreen\SplitScreen\AutoRunSpS.exe [773632 2010-10-14] (Lenovo)
HKLM-x32\...\Run: [SetDefaultSCR] - C:\Program Files (x86)\Lenovo\Lenovo Screensaver\SetDefaultSCR.exe [102400 2009-12-31] (Lenovo)
HKLM-x32\...\Run: [CLMLServer] - C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe [103720 2009-12-05] (CyberLink)
HKLM-x32\...\Run: [UpdateP2GoShortCut] - C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [Bluetooth Manager] - C:\Program Files\Lenovo\Bluetooth Manager\BluetoothManager.exe [552448 2010-07-16] ()
HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-01-20] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Razer Imperator Driver] - C:\Program Files (x86)\Razer\Imperator\RazerImperatorSysTray.exe [979360 2012-02-09] (Razer USA Ltd)
HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2014\avgui.exe [4956176 2013-11-07] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [vProt] - C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe [2535448 2014-02-07] ()
HKLM-x32\...\Run: [ASUS Ai Charger] - C:\Program Files (x86)\ASUS\ASUS Ai Charger\AiChargerAP.exe [547984 2012-08-13] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [Facebook Update] - C:\Users\sigi\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-12-07] (Facebook Inc.)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [LinkMagic for magicolor 1690MF] - C:\Program Files (x86)\KONICA MINOLTA\magicolor 1690MF\LinkMagic for magicolor 1690MF\lmmc1690.exe [5005312 2008-08-26] (Konica Minolta)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [ISUSPM] - C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [213936 2006-03-20] (Macrovision Corporation)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [Spotify Web Helper] - C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-01-16] (Spotify Ltd)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [iCloudServices] - C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [ApplePhotoStreams] - C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [Zoner Photo Studio Autoupdate] - C:\Programy\Zoner\Photo Studio 15\Program32\ZPSTRAY.EXE [774680 2013-06-07] (ZONER software)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [DAEMON Tools Lite] - C:\Programy\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [Spotify] - C:\Users\sigi\AppData\Roaming\Spotify\spotify.exe [6118400 2014-01-16] (Spotify Ltd)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\MountPoints2: {bf510026-9538-11e2-af35-dc0ea1802858} - E:\INSTALL.EXE
Startup: C:\Users\sigi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\sigi\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/redirectdomain ... &bmod=LEND
URLSearchHook: HKCU - (No Name) - {b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} - No File
SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = http://mysearch.avg.com/search?cid={6EE ... 2014-02-07 12:31:30&v=17.3.1.204&pid=safeguard&sg=0&sap=dsp&q={searchTerms}
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20121225202311.dll (McAfee, Inc.)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Hotspot Shield Class - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - C:\Program Files (x86)\Hotspot Shield\HssIE\HssIE_64.dll No File
BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20121225202311.dll (McAfee, Inc.)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\17.3.1.204\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SweetPacks Browser Helper - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll No File
Toolbar: HKLM-x32 - SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll No File
Toolbar: HKLM-x32 - AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\17.3.1.204\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKCU - No Name - {B6AC5E3C-5CEB-4E72-B451-F0E1BA983C14} - No File
Toolbar: HKCU - No Name - {EEE6C35B-6118-11DC-9C72-001320C79847} - No File
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\17.3.0\ViProtocol.dll (AVG Secure Search)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

Chrome:
=======
CHR HomePage: https://www.google.cz/
CHR Plugin: (Widevine Content Decryption Module) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.1.377\_platform_specific\win_x86\widevinecdmadapter.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll ()
CHR Plugin: (iCloud Control Panel) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah\1.2.12_0\win-x32/AppleChromeDAV.dll (Apple Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (ESN Launch Mozilla Plugin) - C:\Program Files (x86)\Battlelog Web Plugins\2.1.3\npesnlaunch.dll (ESN Social Software AB)
CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\17.3.0\\npsitesafety.dll (AVG Technologies)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.510.13) - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
CHR Plugin: (Java(TM) Platform SE 7 U51) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Microsoft Office 2013) - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (VLC Web Plugin) - C:\Programy\VideoLAN\VLC\npvlc.dll (VideoLAN)
CHR Plugin: (Facebook Video Calling Plugin) - C:\Users\sigi\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
CHR Plugin: (Shockwave Flash) - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
CHR Extension: (Disk Google) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-11-22]
CHR Extension: (YouTube) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-11-22]
CHR Extension: (Vyhledávání Google) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-11-22]
CHR Extension: (backgroundPage) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2012-11-22]
CHR Extension: (Záložky na iCloudu) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah [2013-12-12]
CHR Extension: (AdBlock) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-11-18]
CHR Extension: (World Weather) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\jefnaahehlimdapgicdacbgklnedgoje [2012-11-22]
CHR Extension: (Mapy Google) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2013-04-25]
CHR Extension: (Kontrola e-mailu Google) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2012-11-22]
CHR Extension: (Peněženka Google) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-31]
CHR Extension: (Gmail) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-11-22]
CHR HKCU\...\Chrome\Extension: [dknkjnkhedbanphkkpbpcgoblmkbfhlf] - C:\Users\sigi\AppData\Local\CRE\dknkjnkhedbanphkkpbpcgoblmkbfhlf.crx [2012-11-19]
CHR HKLM-x32\...\Chrome\Extension: [dknkjnkhedbanphkkpbpcgoblmkbfhlf] - C:\Users\sigi\AppData\Local\CRE\dknkjnkhedbanphkkpbpcgoblmkbfhlf.crx [2012-11-19]
CHR HKLM-x32\...\Chrome\Extension: [jcdgjdiieiljkfkdcloehkohchhpekkn] - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetFB.crx [2012-12-16]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-10-09]
CHR HKLM-x32\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\ProgramData\AVG SafeGuard toolbar\ChromeExt\17.3.2.113\avg.crx [2014-01-11]

==================== Services (Whitelisted) =================

S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3478544 2013-11-11] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [966432 2011-01-20] (Broadcom Corporation.)
R2 MaConfigAgent; C:\Program Files\ma-config.com\MaConfigAgent.exe [2818896 2014-01-20] (CybelSoft)
R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [241016 2012-11-09] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [218320 2012-11-09] (McAfee, Inc.)
R2 mfevtp; C:\windows\system32\mfevtps.exe [177680 2012-11-09] (McAfee, Inc.)
U2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation)
R2 PnkBstrA; C:\windows\SysWOW64\PnkBstrA.exe [76888 2013-06-20] ()
R2 vToolbarUpdater17.3.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe [1772056 2014-01-11] (AVG Secure Search)

==================== Drivers (Whitelisted) ====================

R3 AiCharger; C:\Windows\SysWow64\drivers\AiCharger.sys [14848 2012-03-22] (ASUSTek Computer Inc.)
S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [303616 2012-11-15] ()
S3 AVerAF35; C:\Windows\System32\Drivers\HPAF35.sys [511104 2009-10-19] (Hewlett-Packard)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [150808 2013-11-05] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [240920 2013-11-04] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [194872 2013-10-24] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [212280 2013-10-31] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [294712 2013-10-31] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123704 2013-10-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31544 2013-09-10] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [251192 2013-08-01] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\windows\system32\drivers\avgtpx64.sys [46368 2013-11-20] (AVG Technologies)
R3 BTWDPAN; C:\Windows\System32\DRIVERS\btwdpan.sys [89128 2011-01-20] (Broadcom Corporation.)
S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [69672 2012-11-09] (McAfee, Inc.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-11] (Disc Soft Ltd)
S3 HPIR; C:\Windows\System32\DRIVERS\HPIR.sys [93184 2009-11-16] (Hewlett-Packard)
S2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [35328 2012-11-15] ()
S3 ma-config_amd64; C:\Program Files\ma-config.com\Drivers\ma-config_amd64.sys [17568 2013-10-23] (CybelSoft)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [178840 2012-11-09] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [309400 2012-11-09] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [515528 2012-11-09] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [771096 2012-11-09] (McAfee, Inc.)
S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [106112 2012-11-09] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [339776 2012-11-09] (McAfee, Inc.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation)
S3 RSP2STOR; C:\Windows\System32\DRIVERS\RtsP2Stor.sys [259688 2011-10-27] (Realtek Semiconductor Corp.)
R3 RTWlanE; C:\Windows\System32\DRIVERS\rtwlane.sys [1514568 2013-05-02] (Realtek Semiconductor Corporation )
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-04-24] (Anchorfree Inc.)
R3 VMC412; C:\Windows\System32\Drivers\VMC412.sys [251648 2011-09-02] (Vimicro Corporation)
R0 WinI2C-DDC; C:\Windows\System32\drivers\DDCDrv.sys [20832 2008-04-08] (Nicomsoft Ltd.)
R0 WinI2C-DDC; C:\Windows\SysWOW64\drivers\DDCDrv.sys [15712 2010-03-23] (Nicomsoft Ltd.)
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X]
S3 USBPNPA; system32\drivers\CM10864.sys [X]
R3 WinRing0_1_2_0; \??\C:\Users\sigi\AppData\Local\Temp\tmpC35E.tmp [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-02-11 14:30 - 2014-02-11 14:30 - 00030132 _____ () C:\Users\sigi\Desktop\FRST.txt
2014-02-11 14:29 - 2014-02-11 14:30 - 00000000 ____D () C:\FRST
2014-02-11 14:28 - 2014-02-11 14:28 - 00112640 _____ (forum.viry.cz) C:\Users\sigi\Desktop\FRSTLauncher.exe
2014-02-11 14:27 - 2014-02-11 14:27 - 02151424 _____ (Farbar) C:\Users\sigi\Desktop\FRST64.exe
2014-02-07 23:25 - 2014-02-07 22:30 - 00026738 _____ () C:\Users\sigi\Desktop\The.Big.Bang.Theory.S07E15.HDTV.XviD-FUM.srt
2014-02-07 22:32 - 2014-02-07 22:35 - 180387788 _____ () C:\Users\sigi\Desktop\The.Big.Bang.Theory.S07E15.HDTV.XviD-FUM.avi
2014-02-04 23:20 - 2014-02-04 23:20 - 03544968 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerInstaller.exe
2014-02-02 19:39 - 2013-12-29 00:50 - 00000000 ____D () C:\Users\sigi\Desktop\DJ WICH YEARBOOK 2013
2014-02-01 18:59 - 2014-02-07 17:20 - 00000000 ____D () C:\Users\sigi\Desktop\Igor klauni
2014-02-01 13:05 - 2014-02-01 13:05 - 00000000 ____D () C:\Driver_allOS
2014-02-01 13:03 - 2014-02-01 13:08 - 00000000 ____D () C:\ProgramData\Intel
2014-02-01 13:03 - 2014-02-01 13:03 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Intel Corporation
2014-02-01 13:01 - 2014-02-01 13:01 - 00000000 ____D () C:\Users\sigi\Intel
2014-02-01 12:59 - 2014-02-01 12:59 - 00000000 ____D () C:\Intel
2014-02-01 12:58 - 2014-02-01 12:58 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-02-01 12:20 - 2014-02-01 12:20 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-02-01 11:58 - 2014-02-01 20:10 - 00000000 ____D () C:\Program Files\ma-config.com
2014-02-01 11:58 - 2014-02-01 11:58 - 00000000 ____D () C:\ProgramData\ma-config.com
2014-01-30 13:22 - 2014-01-30 13:22 - 00000780 _____ () C:\Users\sigi\Desktop\Mafia II.lnk
2014-01-30 12:35 - 2014-01-30 12:35 - 00000000 ____D () C:\Users\sigi\AppData\Local\2K Games
2014-01-24 14:41 - 2014-01-24 14:42 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-01-24 14:41 - 2014-01-24 14:42 - 00000000 ____D () C:\Program Files\iTunes
2014-01-24 14:41 - 2014-01-24 14:42 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-01-24 14:41 - 2014-01-24 14:41 - 00000000 ____D () C:\Program Files\iPod
2014-01-24 14:22 - 2014-01-26 14:27 - 00000000 ____D () C:\Users\sigi\Desktop\Adél
2014-01-21 22:21 - 2014-01-22 11:33 - 00000000 ____D () C:\Program Files (x86)\NirSoft
2014-01-21 19:01 - 2014-01-21 19:28 - 1467211776 _____ () C:\Users\sigi\Desktop\2001-vesmírná-odysea.avi
2014-01-20 12:50 - 2014-01-20 12:50 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\chc
2014-01-20 12:48 - 2014-01-20 12:48 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2014-01-20 12:41 - 2014-01-20 12:47 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-01-20 12:41 - 2014-01-20 12:41 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\com.adobe.dmp.contentviewer
2014-01-19 13:43 - 2014-02-01 19:00 - 00000000 ____D () C:\Users\sigi\Desktop\Zabijačka Igor
2014-01-17 10:16 - 2014-01-19 12:51 - 00000000 ____D () C:\Fraps
2014-01-17 10:16 - 2014-01-17 10:16 - 00000562 _____ () C:\Users\Public\Desktop\Fraps.lnk
2014-01-16 10:23 - 2014-01-20 10:46 - 00000000 ____D () C:\Users\sigi\Box Sync
2014-01-16 10:17 - 2014-01-16 10:18 - 00000000 ____D () C:\ProgramData\Package Cache
2014-01-16 09:51 - 2014-01-16 09:51 - 05839872 _____ () C:\Users\sigi\Desktop\zdravotní osvc_2013.xlsx
2014-01-16 09:51 - 2014-01-16 09:51 - 00394752 _____ () C:\Users\sigi\Desktop\Tom daně 2013.xls
2014-01-16 09:16 - 2014-01-16 09:16 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Oracle
2014-01-16 09:14 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2014-01-16 09:14 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2014-01-16 09:14 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2014-01-16 09:14 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2014-01-16 09:10 - 2014-01-16 09:14 - 00005175 _____ () C:\windows\SysWOW64\jupdate-1.7.0_51-b13.log
2014-01-15 18:00 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbhub.sys
2014-01-15 18:00 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbport.sys
2014-01-15 18:00 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbccgp.sys
2014-01-15 18:00 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbehci.sys
2014-01-15 18:00 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbuhci.sys
2014-01-15 18:00 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbohci.sys
2014-01-15 18:00 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbd.sys
2014-01-15 18:00 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-01-15 17:59 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\windows\system32\Drivers\netio.sys

==================== One Month Modified Files and Folders =======

2014-02-11 14:30 - 2014-02-11 14:30 - 00030132 _____ () C:\Users\sigi\Desktop\FRST.txt
2014-02-11 14:30 - 2014-02-11 14:29 - 00000000 ____D () C:\FRST
2014-02-11 14:28 - 2014-02-11 14:28 - 00112640 _____ (forum.viry.cz) C:\Users\sigi\Desktop\FRSTLauncher.exe
2014-02-11 14:27 - 2014-02-11 14:27 - 02151424 _____ (Farbar) C:\Users\sigi\Desktop\FRST64.exe
2014-02-11 14:20 - 2012-11-15 12:35 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-02-11 14:00 - 2013-03-04 07:38 - 00107413 _____ () C:\Users\sigi\Network_Meter_Data.js
2014-02-11 13:45 - 2013-12-12 13:11 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Spotify
2014-02-11 13:38 - 2013-06-18 10:30 - 00000266 _____ () C:\windows\Tasks\AutoKMS.job
2014-02-11 13:32 - 2012-02-23 06:07 - 00000966 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-11 12:44 - 2013-11-21 08:55 - 00030596 _____ () C:\windows\setupact.log
2014-02-11 12:44 - 2012-11-06 14:23 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\TS3Client
2014-02-11 12:43 - 2012-12-07 12:38 - 00000924 _____ () C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3150807972-3095419254-192983401-1001UA.job
2014-02-11 12:43 - 2012-12-07 12:38 - 00000902 _____ () C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3150807972-3095419254-192983401-1001Core.job
2014-02-11 11:48 - 2012-02-23 05:07 - 01926624 _____ () C:\windows\WindowsUpdate.log
2014-02-11 11:45 - 2009-07-14 05:45 - 00028336 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-11 11:45 - 2009-07-14 05:45 - 00028336 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-11 11:39 - 2013-01-16 14:57 - 00000000 ____D () C:\ProgramData\MFAData
2014-02-11 11:34 - 2013-10-27 20:25 - 00014405 _____ () C:\Users\sigi\IP_Log_Data.js
2014-02-11 11:32 - 2013-12-10 16:19 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Dropbox
2014-02-11 11:31 - 2013-12-10 16:41 - 00000000 ___RD () C:\Users\sigi\Desktop\Dropbox
2014-02-11 11:30 - 2013-12-22 20:42 - 00000000 ___RD () C:\Users\sigi\Shared
2014-02-11 11:30 - 2013-12-22 20:42 - 00000000 ___RD () C:\Users\sigi\My Photo Stream
2014-02-11 11:30 - 2013-12-22 20:41 - 00000000 ___RD () C:\Users\sigi\Uploads
2014-02-11 11:30 - 2012-02-23 06:07 - 00000962 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-11 11:30 - 2012-02-23 06:06 - 00219477 _____ () C:\windows\system32\fastboot.set
2014-02-11 11:30 - 2012-02-23 05:08 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-02-11 11:30 - 2009-07-14 06:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-02-11 00:35 - 2013-03-04 19:43 - 00000027 _____ () C:\Users\sigi\AppData\Roaming\Network Meter_Usage.ini
2014-02-09 16:27 - 2012-02-23 06:07 - 00003962 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-02-09 16:27 - 2012-02-23 06:07 - 00003710 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-02-09 11:43 - 2012-11-07 18:49 - 00000000 ____D () C:\Users\sigi\Desktop\Hasiči
2014-02-07 23:47 - 2012-11-06 16:50 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\vlc
2014-02-07 22:35 - 2014-02-07 22:32 - 180387788 _____ () C:\Users\sigi\Desktop\The.Big.Bang.Theory.S07E15.HDTV.XviD-FUM.avi
2014-02-07 22:30 - 2014-02-07 23:25 - 00026738 _____ () C:\Users\sigi\Desktop\The.Big.Bang.Theory.S07E15.HDTV.XviD-FUM.srt
2014-02-07 17:20 - 2014-02-01 18:59 - 00000000 ____D () C:\Users\sigi\Desktop\Igor klauni
2014-02-07 17:11 - 2012-11-06 14:31 - 00000000 ___RD () C:\Users\sigi\Desktop\Programy
2014-02-07 16:55 - 2013-01-15 21:39 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\AIMP3
2014-02-07 15:16 - 2012-02-23 04:49 - 00668866 _____ () C:\windows\system32\perfh005.dat
2014-02-07 15:16 - 2012-02-23 04:49 - 00141526 _____ () C:\windows\system32\perfc005.dat
2014-02-07 15:16 - 2009-07-14 06:13 - 01584554 _____ () C:\windows\system32\PerfStringBackup.INI
2014-02-07 13:30 - 2012-12-11 21:51 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Skype
2014-02-07 12:31 - 2013-08-17 16:45 - 00000000 ____D () C:\Program Files (x86)\AVG SafeGuard toolbar
2014-02-07 12:27 - 2013-12-12 13:12 - 00000000 ____D () C:\Users\sigi\AppData\Local\Spotify
2014-02-04 23:20 - 2014-02-04 23:20 - 03544968 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerInstaller.exe
2014-02-04 23:20 - 2012-11-15 12:35 - 00003852 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2014-02-04 23:20 - 2012-11-11 22:07 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-02-04 23:20 - 2012-11-11 22:07 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-01 20:10 - 2014-02-01 11:58 - 00000000 ____D () C:\Program Files\ma-config.com
2014-02-01 20:00 - 2013-11-04 17:16 - 00000000 ____D () C:\Users\UpdatusUser.sigi-PC
2014-02-01 20:00 - 2012-11-06 13:14 - 00000000 ____D () C:\Users\sigi
2014-02-01 19:58 - 2012-11-06 13:15 - 00000000 ____D () C:\Users\sigi\AppData\Local\Lenovo
2014-02-01 19:58 - 2012-02-23 05:21 - 00000000 ____D () C:\windows\VMC412
2014-02-01 19:58 - 2012-02-23 05:14 - 00000000 ____D () C:\windows\SysWOW64\sda
2014-02-01 19:58 - 2012-02-23 05:11 - 00000000 ____D () C:\windows\SysWOW64\RTCOM
2014-02-01 19:58 - 2012-02-23 05:11 - 00000000 ____D () C:\windows\system32\SRSLabs
2014-02-01 19:58 - 2012-02-23 05:11 - 00000000 ____D () C:\Program Files\Realtek
2014-02-01 19:58 - 2012-02-23 05:11 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-02-01 19:58 - 2012-02-23 05:08 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-02-01 19:58 - 2012-02-23 05:08 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-02-01 19:58 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\security
2014-02-01 19:58 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\registration
2014-02-01 19:58 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\Help
2014-02-01 19:56 - 2012-02-23 05:07 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-02-01 19:56 - 2012-02-23 05:05 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-02-01 19:00 - 2014-01-19 13:43 - 00000000 ____D () C:\Users\sigi\Desktop\Zabijačka Igor
2014-02-01 17:35 - 2012-12-25 20:25 - 00000000 ____D () C:\Users\sigi\AppData\Local\CrashDumps
2014-02-01 13:08 - 2014-02-01 13:03 - 00000000 ____D () C:\ProgramData\Intel
2014-02-01 13:05 - 2014-02-01 13:05 - 00000000 ____D () C:\Driver_allOS
2014-02-01 13:03 - 2014-02-01 13:03 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Intel Corporation
2014-02-01 13:01 - 2014-02-01 13:01 - 00000000 ____D () C:\Users\sigi\Intel
2014-02-01 12:59 - 2014-02-01 12:59 - 00000000 ____D () C:\Intel
2014-02-01 12:58 - 2014-02-01 12:58 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-02-01 12:20 - 2014-02-01 12:20 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-02-01 11:58 - 2014-02-01 11:58 - 00000000 ____D () C:\ProgramData\ma-config.com
2014-01-30 13:22 - 2014-01-30 13:22 - 00000780 _____ () C:\Users\sigi\Desktop\Mafia II.lnk
2014-01-30 13:21 - 2012-11-06 14:51 - 00000000 ____D () C:\Users\sigi\Documents\Youcam
2014-01-30 12:35 - 2014-01-30 12:35 - 00000000 ____D () C:\Users\sigi\AppData\Local\2K Games
2014-01-30 12:16 - 2012-11-06 13:51 - 00000000 ____D () C:\Hry
2014-01-28 12:26 - 2013-04-13 14:07 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-01-27 09:02 - 2012-12-12 20:19 - 00000000 ____D () C:\Users\sigi\Desktop\Fotky
2014-01-26 14:27 - 2014-01-24 14:22 - 00000000 ____D () C:\Users\sigi\Desktop\Adél
2014-01-24 14:42 - 2014-01-24 14:41 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-01-24 14:42 - 2014-01-24 14:41 - 00000000 ____D () C:\Program Files\iTunes
2014-01-24 14:42 - 2014-01-24 14:41 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-01-24 14:41 - 2014-01-24 14:41 - 00000000 ____D () C:\Program Files\iPod
2014-01-24 14:37 - 2012-11-06 15:11 - 00000000 ____D () C:\ProgramData\Apple
2014-01-24 14:32 - 2012-12-12 20:07 - 00000000 ____D () C:\Users\sigi\Desktop\iPhone
2014-01-23 09:00 - 2013-11-21 08:55 - 00232202 _____ () C:\windows\PFRO.log
2014-01-22 11:34 - 2012-12-18 10:17 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\uTorrent
2014-01-22 11:34 - 2012-11-06 14:17 - 00000000 ____D () C:\Programy
2014-01-22 11:33 - 2014-01-21 22:21 - 00000000 ____D () C:\Program Files (x86)\NirSoft
2014-01-22 10:55 - 2012-11-15 13:28 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-01-22 10:55 - 2012-11-11 22:06 - 00000000 ____D () C:\ProgramData\Adobe
2014-01-22 10:54 - 2012-11-06 13:29 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Adobe
2014-01-22 10:47 - 2012-11-12 17:00 - 00000000 ____D () C:\windows\Driver Cache
2014-01-21 19:28 - 2014-01-21 19:01 - 1467211776 _____ () C:\Users\sigi\Desktop\2001-vesmírná-odysea.avi
2014-01-21 16:06 - 2009-07-14 05:45 - 02423824 _____ () C:\windows\system32\FNTCACHE.DAT
2014-01-20 12:50 - 2014-01-20 12:50 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\chc
2014-01-20 12:48 - 2014-01-20 12:48 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2014-01-20 12:47 - 2014-01-20 12:41 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-01-20 12:47 - 2012-12-16 13:06 - 00000000 ____D () C:\Users\sigi\AppData\Local\Adobe
2014-01-20 12:41 - 2014-01-20 12:41 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\com.adobe.dmp.contentviewer
2014-01-20 12:41 - 2012-11-06 13:15 - 00115296 _____ () C:\Users\sigi\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-20 10:46 - 2014-01-16 10:23 - 00000000 ____D () C:\Users\sigi\Box Sync
2014-01-19 12:51 - 2014-01-17 10:16 - 00000000 ____D () C:\Fraps
2014-01-17 10:16 - 2014-01-17 10:16 - 00000562 _____ () C:\Users\Public\Desktop\Fraps.lnk
2014-01-17 09:34 - 2012-11-06 13:14 - 00000000 ___RD () C:\Users\sigi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-17 09:33 - 2013-12-10 16:21 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-01-16 10:18 - 2014-01-16 10:17 - 00000000 ____D () C:\ProgramData\Package Cache
2014-01-16 09:51 - 2014-01-16 09:51 - 05839872 _____ () C:\Users\sigi\Desktop\zdravotní osvc_2013.xlsx
2014-01-16 09:51 - 2014-01-16 09:51 - 00394752 _____ () C:\Users\sigi\Desktop\Tom daně 2013.xls
2014-01-16 09:16 - 2014-01-16 09:16 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Oracle
2014-01-16 09:16 - 2013-10-27 20:27 - 00000000 ____D () C:\ProgramData\Oracle
2014-01-16 09:14 - 2014-01-16 09:10 - 00005175 _____ () C:\windows\SysWOW64\jupdate-1.7.0_51-b13.log
2014-01-16 09:14 - 2013-10-27 20:26 - 00000000 ____D () C:\Program Files (x86)\Java
2014-01-15 22:26 - 2013-08-09 19:35 - 00000000 ____D () C:\windows\system32\MRT
2014-01-15 22:26 - 2012-11-06 19:26 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-01-15 22:26 - 2009-07-14 03:34 - 00000478 _____ () C:\windows\win.ini
2014-01-15 22:22 - 2012-11-06 14:56 - 86054176 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-01-13 22:01 - 2013-12-08 15:53 - 00000000 ____D () C:\Users\sigi\Desktop\Verča
2014-01-13 21:54 - 2012-12-07 12:38 - 00000000 ____D () C:\Users\sigi\AppData\Local\Facebook

Files to move or delete:
====================
C:\ProgramData\flashax10.exe
C:\Users\sigi\IP_Log_Data.js
C:\Users\sigi\Network_Meter_Data.js


Some content of TEMP:
====================
C:\Users\sigi\AppData\Local\Temp\DTLite4481-0347.exe
C:\Users\sigi\AppData\Local\Temp\htmlayout.dll
C:\Users\sigi\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe
C:\Users\sigi\AppData\Local\Temp\NOSEventMessages.dll
C:\Users\sigi\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\sigi\AppData\Local\Temp\nvStInst.exe
C:\Users\sigi\AppData\Local\Temp\vlc-2.1.2-win32.exe
C:\Users\sigi\AppData\Local\Temp\vlc-2.1.3-win32.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-02-01 10:57




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:906.34 GB) (Free:163.26 GB) NTFS
Drive g: (EX HDD) (Fixed) (Total:595.97 GB) (Free:123 GB) NTFS

Available physical RAM: 3668.09 MB
Total physical RAM: 8171.63 MB
Percentage of memory in use: 55%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: EEAF5B8E)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=906 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=25 GB) - (Type=12)
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 596 GB) (Disk ID: 5B8B7A9D)
Partition 1: (Not Active) - (Size=596 GB) - (Type=07 NTFS)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe
Task: C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3150807972-3095419254-192983401-1001Core.job => C:\Users\sigi\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3150807972-3095419254-192983401-1001UA.job => C:\Users\sigi\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\ROC_REG_JAN_DELETE.job => C:\ProgramData\AVG January 2013 Campaign\ROC.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\ProgramData\Temp:9A870F8B

==================== Security Center ==================

AV: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition 2014 (Disabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\sigi\Desktop" je 80467 MB.


***** Startup Programs *****

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sweetpacks Communicator
C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe [x]


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

Re: Kontrola logu

Napsal: 12 úno 2014 15:04
od vyosek
Zdravim :)

:arrow: Odinstalujte McAfee

:arrow: Trvate na antiviru AVG - u nas neni moc obliben - vysoka zatez systemu, slabsi detekce :?:

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte

Re: Kontrola logu

Napsal: 12 úno 2014 15:29
od freeco
:arrow: McAfee jsem již dávno odinstaloval, avšak když se dívám pořádně, tak se stále ve složce "Program files" nachází nějaké zbytky, které ale nejdou smazat - píše mi to že je potřeba oprávnění správce - to samozřejmě jsem, tak nevím :/

:arrow: Na AVGčku určitě netrvám, pokud mi poradíte nějaký jiný a lepší FREE antivirus, budu jedině rád (je mi jasné, že obecně FREE verze nejsou žádná pecka)

:arrow: no a tady přikládám Vámi požadovaný log :)

# AdwCleaner v3.018 - Report created 12/02/2014 at 15:18:52
# Updated 28/01/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : sigi - SIGI-PC
# Running from : C:\Users\sigi\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Partner
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Program Files (x86)\Common Files\AVG Secure Search
Folder Deleted : C:\Users\sigi\AppData\Local\Conduit
Folder Deleted : C:\Users\sigi\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\sigi\AppData\LocalLow\PriceGong
Folder Deleted : C:\Users\sigi\AppData\LocalLow\SweetIM
Folder Deleted : C:\Users\sigi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com

***** [ Shortcuts ] *****


***** [ Registry ] *****

Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar
Key Deleted : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar.1
Key Deleted : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook
Key Deleted : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook.1
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.sweetie
Key Deleted : HKLM\SOFTWARE\Classes\Toolbar3.sweetie.1
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\sweetpacksupdatemanager_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASMANCS
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\1ClickDownload
Key Deleted : HKCU\Software\anchorfree
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\ImInstaller
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\smartbar
Key Deleted : HKLM\Software\AVG Security Toolbar
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\SimplyGen

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Google Chrome v32.0.1700.107

[ File : C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [10211 octets] - [12/02/2014 15:17:28]
AdwCleaner[S0].txt - [9902 octets] - [12/02/2014 15:18:52]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [9962 octets] ##########

Re: Kontrola logu

Napsal: 15 úno 2014 08:10
od vyosek
:arrow: AVG je spise parodie na AV

:arrow: Doporucuji Avast - je to velmi kvalitni ochrana i kdyz je zdarma

:arrow: Takze odinstalujte AVG, nainstalujte Avast a pak dejte novy log z FRSTLauncheru

Re: Kontrola logu

Napsal: 15 úno 2014 16:55
od freeco
:arrow: přikládám požadovaný log po odinstalaci AVG a instalaci Avastu :-)

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-02-2014 01
Ran by sigi (administrator) on SIGI-PC on 15-02-2014 16:53:16
Running from C:\Users\sigi\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\windows\system32\WLANExt.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\windows\system32\nvvsvc.exe
(Microsoft Corporation) C:\windows\SYSTEM32\WISPTIS.EXE
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\windows\SYSTEM32\WISPTIS.EXE
(AddGadgets) C:\Users\sigi\Desktop\Programy\PCMeter\PCMeterV0.3.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Konica Minolta) C:\Program Files (x86)\KONICA MINOLTA\magicolor 1690MF\LinkMagic for magicolor 1690MF\lmmc1690.exe
(Macrovision Corporation) C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Windows\System32\StikyNot.exe
(Spotify Ltd) C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Spotify Ltd) C:\Users\sigi\AppData\Roaming\Spotify\spotify.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe
(Dropbox, Inc.) C:\Users\sigi\AppData\Roaming\Dropbox\bin\Dropbox.exe
(CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
(JME) C:\Program Files (x86)\jmesoft\hotkey.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Eye Distance System\Lenovo Eye Distance System.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Brightness System\Lenovo Dynamic Brightness System.exe
() C:\Program Files (x86)\Lenovo\Lenovo EBook&QuickNotes\TMCMonitor.exe
(CyberLink) C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe
() C:\Program Files\Lenovo\Bluetooth Manager\BluetoothManager.exe
(Razer USA Ltd) C:\Program Files (x86)\Razer\Imperator\RazerImperatorSysTray.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Ai Charger\AiChargerAP.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
() C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel Corporation) C:\windows\system32\IProsetMonitor.exe
(CybelSoft) C:\Program Files\ma-config.com\MaConfigAgent.exe
(McAfee, Inc.) C:\windows\system32\mfevtps.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
() C:\windows\SysWOW64\PnkBstrA.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastUi.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(forum.viry.cz) C:\Users\sigi\Desktop\FRSTLauncher (2).exe
(Microsoft Corporation) C:\windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\windows\SysWOW64\PING.EXE


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11785832 2011-03-10] (Realtek Semiconductor)
HKLM\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App\Lenovo Rescue System\MUITransfer\MUIStartMenu.exe [222504 2009-05-14] (CyberLink Corp.)
HKLM\...\Run: [Lenovo EE Boot Optimizer] - C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [114688 2012-02-23] (Lenovo)
HKLM\...\Run: [BCSSync] - C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [1832760 2012-09-20] (Logitech, Inc.)
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-08] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] - C:\windows\system32\nvspcap64.dll [1100248 2013-12-10] (NVIDIA Corporation)
HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation)
HKLM-x32\...\Run: [jmekey] - C:\Program Files (x86)\jmesoft\hotkey.exe [225280 2009-08-25] (JME)
HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [Lenovo Eye Distance System] - C:\Program Files\Lenovo\Lenovo Eye Distance System\Lenovo Eye Distance System.exe [265216 2010-09-09] (Lenovo)
HKLM-x32\...\Run: [Lenovo Dynamic Brightness System] - C:\Program Files\Lenovo\Lenovo Brightness System\Lenovo Dynamic Brightness System.exe [287232 2011-02-25] (Lenovo)
HKLM-x32\...\Run: [YouCam Mirage] - C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [136488 2011-01-29] (CyberLink)
HKLM-x32\...\Run: [YouCam Tray] - C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe [228448 2011-01-29] (CyberLink Corp.)
HKLM-x32\...\Run: [TMCMonitor] - C:\Program Files (x86)\Lenovo\Lenovo EBook&QuickNotes\TMCMonitor.exe [53248 2009-11-10] ()
HKLM-x32\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App\Lenovo Rescue System\MUITransfer\MUIStartMenu.exe [222504 2009-05-14] (CyberLink Corp.)
HKLM-x32\...\Run: [Lenovo SplitScreen] - C:\Program Files\Lenovo\Lenovo SplitScreen\SplitScreen\AutoRunSpS.exe [773632 2010-10-14] (Lenovo)
HKLM-x32\...\Run: [SetDefaultSCR] - C:\Program Files (x86)\Lenovo\Lenovo Screensaver\SetDefaultSCR.exe [102400 2009-12-31] (Lenovo)
HKLM-x32\...\Run: [CLMLServer] - C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe [103720 2009-12-05] (CyberLink)
HKLM-x32\...\Run: [UpdateP2GoShortCut] - C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [Bluetooth Manager] - C:\Program Files\Lenovo\Bluetooth Manager\BluetoothManager.exe [552448 2010-07-16] ()
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-01-20] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Razer Imperator Driver] - C:\Program Files (x86)\Razer\Imperator\RazerImperatorSysTray.exe [979360 2012-02-09] (Razer USA Ltd)
HKLM-x32\...\Run: [ASUS Ai Charger] - C:\Program Files (x86)\ASUS\ASUS Ai Charger\AiChargerAP.exe [547984 2012-08-13] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.)
HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-02-15] (AVAST Software)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [Facebook Update] - C:\Users\sigi\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-12-07] (Facebook Inc.)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [LinkMagic for magicolor 1690MF] - C:\Program Files (x86)\KONICA MINOLTA\magicolor 1690MF\LinkMagic for magicolor 1690MF\lmmc1690.exe [5005312 2008-08-26] (Konica Minolta)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [ISUSPM] - C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [213936 2006-03-20] (Macrovision Corporation)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [Spotify Web Helper] - C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-01-16] (Spotify Ltd)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [iCloudServices] - C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [ApplePhotoStreams] - C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [DAEMON Tools Lite] - C:\Programy\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [Spotify] - C:\Users\sigi\AppData\Roaming\Spotify\spotify.exe [6118400 2014-01-16] (Spotify Ltd)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\MountPoints2: {bf510026-9538-11e2-af35-dc0ea1802858} - E:\INSTALL.EXE
Startup: C:\Users\sigi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\sigi\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/redirectdomain ... &bmod=LEND
URLSearchHook: HKCU - (No Name) - {b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} - No File
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20121225202311.dll (McAfee, Inc.)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20121225202311.dll (McAfee, Inc.)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Pomocná služba pro přihlášení k účtu Microsoft - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKCU - No Name - {B6AC5E3C-5CEB-4E72-B451-F0E1BA983C14} - No File
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

Chrome:
=======
CHR HomePage: hxxp://www.seznam.cz/
CHR Plugin: (Widevine Content Decryption Module) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.1.377\_platform_specific\win_x86\widevinecdmadapter.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll ()
CHR Plugin: (iCloud Control Panel) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah\1.2.12_0\win-x32/AppleChromeDAV.dll (Apple Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (ESN Launch Mozilla Plugin) - C:\Program Files (x86)\Battlelog Web Plugins\2.1.3\npesnlaunch.dll (ESN Social Software AB)
CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\17.3.0\\npsitesafety.dll No File
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.510.13) - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
CHR Plugin: (Java(TM) Platform SE 7 U51) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Microsoft Office 2013) - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (VLC Web Plugin) - C:\Programy\VideoLAN\VLC\npvlc.dll (VideoLAN)
CHR Plugin: (Facebook Video Calling Plugin) - C:\Users\sigi\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
CHR Plugin: (Shockwave Flash) - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
CHR Extension: (Disk Google) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-11-22]
CHR Extension: (YouTube) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-11-22]
CHR Extension: (Vyhledávání Google) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-11-22]
CHR Extension: (backgroundPage) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2012-11-22]
CHR Extension: (Záložky na iCloudu) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah [2013-12-12]
CHR Extension: (AdBlock) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-11-18]
CHR Extension: (World Weather) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\jefnaahehlimdapgicdacbgklnedgoje [2012-11-22]
CHR Extension: (Mapy Google) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2013-04-25]
CHR Extension: (Kontrola e-mailu Google) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2012-11-22]
CHR Extension: (Peněženka Google) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-31]
CHR Extension: (Gmail) - C:\Users\sigi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-11-22]
CHR HKCU\...\Chrome\Extension: [dknkjnkhedbanphkkpbpcgoblmkbfhlf] - C:\Users\sigi\AppData\Local\CRE\dknkjnkhedbanphkkpbpcgoblmkbfhlf.crx [2012-11-19]
CHR HKLM-x32\...\Chrome\Extension: [dknkjnkhedbanphkkpbpcgoblmkbfhlf] - C:\Users\sigi\AppData\Local\CRE\dknkjnkhedbanphkkpbpcgoblmkbfhlf.crx [2012-11-19]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-02-15]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-01-03]

==================== Services (Whitelisted) =================

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-02-15] (AVAST Software)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [966432 2011-01-20] (Broadcom Corporation.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1363616 2014-01-03] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1748640 2014-01-03] (Microsoft Corporation)
R2 MaConfigAgent; C:\Program Files\ma-config.com\MaConfigAgent.exe [2818896 2014-01-20] (CybelSoft)
R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [241016 2012-11-09] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [218320 2012-11-09] (McAfee, Inc.)
R2 mfevtp; C:\windows\system32\mfevtps.exe [177680 2012-11-09] (McAfee, Inc.)
U2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation)
R2 PnkBstrA; C:\windows\SysWOW64\PnkBstrA.exe [76888 2013-06-20] ()
S2 vToolbarUpdater17.3.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe [X]

==================== Drivers (Whitelisted) ====================

R3 AiCharger; C:\Windows\SysWow64\drivers\AiCharger.sys [14848 2012-03-22] (ASUSTek Computer Inc.)
R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [78648 2014-02-15] (AVAST Software)
R1 aswRdr; C:\windows\system32\drivers\aswRdr2.sys [92544 2014-02-15] (AVAST Software)
S0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-02-15] ()
R1 aswSnx; C:\windows\system32\drivers\aswSnx.sys [1038072 2014-02-15] (AVAST Software)
R1 aswSP; C:\windows\system32\drivers\aswSP.sys [421704 2014-02-15] (AVAST Software)
S3 aswStm; C:\windows\system32\drivers\aswStm.sys [80184 2014-02-15] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-02-15] ()
S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [303616 2012-11-15] ()
S3 AVerAF35; C:\Windows\System32\Drivers\HPAF35.sys [511104 2009-10-19] (Hewlett-Packard)
R1 avgtp; C:\windows\system32\drivers\avgtpx64.sys [46368 2013-11-20] (AVG Technologies)
R3 BTWDPAN; C:\Windows\System32\DRIVERS\btwdpan.sys [89128 2011-01-20] (Broadcom Corporation.)
S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [69672 2012-11-09] (McAfee, Inc.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-11] (Disc Soft Ltd)
S3 HPIR; C:\Windows\System32\DRIVERS\HPIR.sys [93184 2009-11-16] (Hewlett-Packard)
S2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [35328 2012-11-15] ()
S3 ma-config_amd64; C:\Program Files\ma-config.com\Drivers\ma-config_amd64.sys [17568 2013-10-23] (CybelSoft)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [178840 2012-11-09] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [309400 2012-11-09] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [515528 2012-11-09] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [771096 2012-11-09] (McAfee, Inc.)
S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [106112 2012-11-09] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [339776 2012-11-09] (McAfee, Inc.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation)
S3 RSP2STOR; C:\Windows\System32\DRIVERS\RtsP2Stor.sys [259688 2011-10-27] (Realtek Semiconductor Corp.)
R3 RTWlanE; C:\Windows\System32\DRIVERS\rtwlane.sys [1514568 2013-05-02] (Realtek Semiconductor Corporation )
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-04-24] (Anchorfree Inc.)
R3 VMC412; C:\Windows\System32\Drivers\VMC412.sys [251648 2011-09-02] (Vimicro Corporation)
R0 WinI2C-DDC; C:\Windows\System32\drivers\DDCDrv.sys [20832 2008-04-08] (Nicomsoft Ltd.)
R0 WinI2C-DDC; C:\Windows\SysWOW64\drivers\DDCDrv.sys [15712 2010-03-23] (Nicomsoft Ltd.)
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X]
S3 USBPNPA; system32\drivers\CM10864.sys [X]
R3 WinRing0_1_2_0; \??\C:\Users\sigi\AppData\Local\Temp\tmpBF19.tmp [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-02-15 16:53 - 2014-02-15 16:53 - 00015327 _____ () C:\Users\sigi\Desktop\LM.bat
2014-02-15 16:52 - 2014-02-15 16:52 - 00112640 _____ (forum.viry.cz) C:\Users\sigi\Desktop\FRSTLauncher (2).exe
2014-02-15 16:51 - 2014-02-15 16:53 - 00029696 _____ () C:\Users\sigi\AppData\Local\MSGBOX.EXE
2014-02-15 16:44 - 2014-02-15 16:44 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\AVAST Software
2014-02-15 16:43 - 2014-02-15 16:44 - 00004182 _____ () C:\windows\System32\Tasks\avast! Emergency Update
2014-02-15 16:43 - 2014-02-15 16:43 - 01038072 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00421704 _____ (AVAST Software) C:\windows\system32\Drivers\aswSP.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00334136 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2014-02-15 16:43 - 2014-02-15 16:43 - 00207904 _____ () C:\windows\system32\Drivers\aswVmm.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00092544 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00080184 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00078648 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00065776 _____ () C:\windows\system32\Drivers\aswRvrt.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-02-15 16:38 - 2014-02-15 16:38 - 00000000 ____D () C:\Program Files\AVAST Software
2014-02-15 16:35 - 2014-02-15 16:36 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-02-15 16:22 - 2014-02-15 16:22 - 04697744 _____ (AVAST Software) C:\Users\sigi\Desktop\avast_free_antivirus_setup_online.exe
2014-02-13 16:32 - 2014-02-13 16:32 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-02-12 23:24 - 2014-02-12 23:24 - 00000000 ____D () C:\Program Files\EMCO
2014-02-12 18:01 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-02-12 18:01 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-02-12 18:00 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-02-12 18:00 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-02-12 18:00 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-02-12 18:00 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-02-12 18:00 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-02-12 18:00 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-02-12 18:00 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-02-12 18:00 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-02-12 18:00 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-02-12 18:00 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-02-12 18:00 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-02-12 18:00 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-02-12 18:00 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-02-12 18:00 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-02-12 18:00 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-02-12 18:00 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-02-12 18:00 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-02-12 18:00 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-02-12 18:00 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-02-12 18:00 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-02-12 18:00 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-02-12 18:00 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-02-12 18:00 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-02-12 18:00 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-02-12 18:00 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-02-12 18:00 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-02-12 18:00 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-02-12 18:00 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-02-12 18:00 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-02-12 18:00 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-02-12 18:00 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-02-12 18:00 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-02-12 18:00 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-02-12 18:00 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-02-12 18:00 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-02-12 18:00 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-02-12 18:00 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-02-12 18:00 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-02-12 18:00 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-02-12 15:17 - 2014-02-12 15:19 - 00000000 ____D () C:\AdwCleaner
2014-02-12 15:16 - 2014-02-12 15:16 - 01166132 _____ () C:\Users\sigi\Desktop\adwcleaner.exe
2014-02-12 11:28 - 2014-01-01 00:05 - 00420008 _____ () C:\windows\SysWOW64\locale.nls
2014-02-12 11:28 - 2014-01-01 00:04 - 00420008 _____ () C:\windows\system32\locale.nls
2014-02-12 11:28 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2014-02-12 11:28 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll
2014-02-12 11:28 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll
2014-02-12 11:28 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3r.dll
2014-02-12 11:27 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2014-02-12 11:27 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2014-02-12 11:27 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\windows\system32\secproc.dll
2014-02-12 11:27 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\windows\system32\secproc_isv.dll
2014-02-12 11:27 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\windows\system32\secproc_ssp_isv.dll
2014-02-12 11:27 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\windows\system32\secproc_ssp.dll
2014-02-12 11:27 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\windows\system32\msdrm.dll
2014-02-12 11:27 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\windows\system32\RMActivate_isv.exe
2014-02-12 11:27 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\windows\system32\RMActivate.exe
2014-02-12 11:27 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\windows\system32\RMActivate_ssp.exe
2014-02-12 11:27 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\windows\system32\RMActivate_ssp_isv.exe
2014-02-12 11:27 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc.dll
2014-02-12 11:27 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc_isv.dll
2014-02-12 11:27 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc_ssp_isv.dll
2014-02-12 11:27 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\windows\SysWOW64\secproc_ssp.dll
2014-02-12 11:27 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdrm.dll
2014-02-12 11:27 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate_isv.exe
2014-02-12 11:27 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate.exe
2014-02-12 11:27 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate_ssp.exe
2014-02-12 11:27 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\windows\SysWOW64\RMActivate_ssp_isv.exe
2014-02-12 11:27 - 2013-11-27 00:29 - 05693440 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2014-02-12 11:27 - 2013-11-26 23:49 - 06573056 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2014-02-12 11:27 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll
2014-02-12 11:27 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll
2014-02-11 14:35 - 2014-02-15 16:52 - 00000000 ____D () C:\Users\sigi\Desktop\Viry.cz
2014-02-11 14:32 - 2014-02-11 14:32 - 00011035 _____ () C:\Users\sigi\Desktop\Addition.rar
2014-02-11 14:30 - 2014-02-15 16:53 - 00027785 _____ () C:\Users\sigi\Desktop\FRST.txt
2014-02-11 14:29 - 2014-02-15 16:53 - 00000000 ____D () C:\FRST
2014-02-11 14:27 - 2014-02-11 14:27 - 02151424 _____ (Farbar) C:\Users\sigi\Desktop\FRST64.exe
2014-02-07 23:25 - 2014-02-07 22:30 - 00026738 _____ () C:\Users\sigi\Desktop\The.Big.Bang.Theory.S07E15.HDTV.XviD-FUM.srt
2014-02-07 22:32 - 2014-02-07 22:35 - 180387788 _____ () C:\Users\sigi\Desktop\The.Big.Bang.Theory.S07E15.HDTV.XviD-FUM.avi
2014-02-04 23:20 - 2014-02-04 23:20 - 03544968 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerInstaller.exe
2014-02-02 19:39 - 2013-12-29 00:50 - 00000000 ____D () C:\Users\sigi\Desktop\DJ WICH YEARBOOK 2013
2014-02-01 18:59 - 2014-02-07 17:20 - 00000000 ____D () C:\Users\sigi\Desktop\Igor klauni
2014-02-01 13:05 - 2014-02-01 13:05 - 00000000 ____D () C:\Driver_allOS
2014-02-01 13:03 - 2014-02-01 13:08 - 00000000 ____D () C:\ProgramData\Intel
2014-02-01 13:03 - 2014-02-01 13:03 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Intel Corporation
2014-02-01 13:01 - 2014-02-01 13:01 - 00000000 ____D () C:\Users\sigi\Intel
2014-02-01 12:59 - 2014-02-01 12:59 - 00000000 ____D () C:\Intel
2014-02-01 12:58 - 2014-02-01 12:58 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-02-01 12:20 - 2014-02-01 12:20 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-02-01 11:58 - 2014-02-01 20:10 - 00000000 ____D () C:\Program Files\ma-config.com
2014-02-01 11:58 - 2014-02-01 11:58 - 00000000 ____D () C:\ProgramData\ma-config.com
2014-01-30 13:22 - 2014-01-30 13:22 - 00000780 _____ () C:\Users\sigi\Desktop\Mafia II.lnk
2014-01-30 12:35 - 2014-01-30 12:35 - 00000000 ____D () C:\Users\sigi\AppData\Local\2K Games
2014-01-24 14:41 - 2014-01-24 14:42 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-01-24 14:41 - 2014-01-24 14:42 - 00000000 ____D () C:\Program Files\iTunes
2014-01-24 14:41 - 2014-01-24 14:42 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-01-24 14:41 - 2014-01-24 14:41 - 00000000 ____D () C:\Program Files\iPod
2014-01-21 22:21 - 2014-01-22 11:33 - 00000000 ____D () C:\Program Files (x86)\NirSoft
2014-01-21 19:01 - 2014-01-21 19:28 - 1467211776 _____ () C:\Users\sigi\Desktop\2001-vesmírná-odysea.avi
2014-01-20 12:50 - 2014-01-20 12:50 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\chc
2014-01-20 12:48 - 2014-01-20 12:48 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2014-01-20 12:41 - 2014-01-20 12:47 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-01-20 12:41 - 2014-01-20 12:41 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\com.adobe.dmp.contentviewer
2014-01-19 13:43 - 2014-02-01 19:00 - 00000000 ____D () C:\Users\sigi\Desktop\Zabijačka Igor
2014-01-17 10:16 - 2014-01-19 12:51 - 00000000 ____D () C:\Fraps
2014-01-17 10:16 - 2014-01-17 10:16 - 00000562 _____ () C:\Users\Public\Desktop\Fraps.lnk
2014-01-16 10:23 - 2014-01-20 10:46 - 00000000 ____D () C:\Users\sigi\Box Sync
2014-01-16 10:17 - 2014-01-16 10:18 - 00000000 ____D () C:\ProgramData\Package Cache
2014-01-16 09:51 - 2014-01-16 09:51 - 05839872 _____ () C:\Users\sigi\Desktop\zdravotní osvc_2013.xlsx
2014-01-16 09:51 - 2014-01-16 09:51 - 00394752 _____ () C:\Users\sigi\Desktop\Tom daně 2013.xls
2014-01-16 09:16 - 2014-01-16 09:16 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Oracle
2014-01-16 09:14 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll
2014-01-16 09:14 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2014-01-16 09:14 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation) C:\windows\SysWOW64\javaw.exe
2014-01-16 09:14 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation) C:\windows\SysWOW64\java.exe
2014-01-16 09:10 - 2014-01-16 09:14 - 00005175 _____ () C:\windows\SysWOW64\jupdate-1.7.0_51-b13.log

==================== One Month Modified Files and Folders =======

2014-02-15 16:53 - 2014-02-15 16:53 - 00015327 _____ () C:\Users\sigi\Desktop\LM.bat
2014-02-15 16:53 - 2014-02-15 16:51 - 00029696 _____ () C:\Users\sigi\AppData\Local\MSGBOX.EXE
2014-02-15 16:53 - 2014-02-11 14:30 - 00027785 _____ () C:\Users\sigi\Desktop\FRST.txt
2014-02-15 16:53 - 2014-02-11 14:29 - 00000000 ____D () C:\FRST
2014-02-15 16:52 - 2014-02-15 16:52 - 00112640 _____ (forum.viry.cz) C:\Users\sigi\Desktop\FRSTLauncher (2).exe
2014-02-15 16:52 - 2014-02-11 14:35 - 00000000 ____D () C:\Users\sigi\Desktop\Viry.cz
2014-02-15 16:51 - 2012-11-06 14:31 - 00000000 ___RD () C:\Users\sigi\Desktop\Programy
2014-02-15 16:44 - 2014-02-15 16:44 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\AVAST Software
2014-02-15 16:44 - 2014-02-15 16:43 - 00004182 _____ () C:\windows\System32\Tasks\avast! Emergency Update
2014-02-15 16:44 - 2013-10-27 20:25 - 00015433 _____ () C:\Users\sigi\IP_Log_Data.js
2014-02-15 16:43 - 2014-02-15 16:43 - 01038072 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00421704 _____ (AVAST Software) C:\windows\system32\Drivers\aswSP.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00334136 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2014-02-15 16:43 - 2014-02-15 16:43 - 00207904 _____ () C:\windows\system32\Drivers\aswVmm.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00092544 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00080184 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00078648 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00065776 _____ () C:\windows\system32\Drivers\aswRvrt.sys
2014-02-15 16:43 - 2014-02-15 16:43 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-02-15 16:41 - 2009-07-14 05:45 - 00028336 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-15 16:41 - 2009-07-14 05:45 - 00028336 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-15 16:38 - 2014-02-15 16:38 - 00000000 ____D () C:\Program Files\AVAST Software
2014-02-15 16:38 - 2013-12-12 13:11 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Spotify
2014-02-15 16:36 - 2014-02-15 16:35 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-02-15 16:34 - 2012-02-23 06:07 - 00000966 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-15 16:32 - 2013-11-21 08:55 - 00032780 _____ () C:\windows\setupact.log
2014-02-15 16:32 - 2012-02-23 06:07 - 00000962 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-15 16:31 - 2013-12-22 20:42 - 00000000 ___RD () C:\Users\sigi\Shared
2014-02-15 16:31 - 2013-12-22 20:42 - 00000000 ___RD () C:\Users\sigi\My Photo Stream
2014-02-15 16:31 - 2013-12-22 20:41 - 00000000 ___RD () C:\Users\sigi\Uploads
2014-02-15 16:31 - 2013-12-10 16:41 - 00000000 ___RD () C:\Users\sigi\Desktop\Dropbox
2014-02-15 16:31 - 2013-12-10 16:19 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Dropbox
2014-02-15 16:30 - 2013-06-18 10:30 - 00000266 _____ () C:\windows\Tasks\AutoKMS.job
2014-02-15 16:30 - 2012-02-23 06:06 - 00221505 _____ () C:\windows\system32\fastboot.set
2014-02-15 16:30 - 2012-02-23 05:08 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-02-15 16:30 - 2009-07-14 06:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-02-15 16:29 - 2013-11-21 08:55 - 00254220 _____ () C:\windows\PFRO.log
2014-02-15 16:29 - 2013-01-16 14:57 - 00000000 ____D () C:\ProgramData\MFAData
2014-02-15 16:29 - 2012-02-23 05:07 - 01271553 _____ () C:\windows\WindowsUpdate.log
2014-02-15 16:28 - 2013-03-04 19:43 - 00000027 _____ () C:\Users\sigi\AppData\Roaming\Network Meter_Usage.ini
2014-02-15 16:27 - 2014-02-13 16:32 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-02-15 16:22 - 2014-02-15 16:22 - 04697744 _____ (AVAST Software) C:\Users\sigi\Desktop\avast_free_antivirus_setup_online.exe
2014-02-15 16:20 - 2012-11-15 12:35 - 00000914 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-02-15 16:14 - 2013-03-04 07:38 - 00108706 _____ () C:\Users\sigi\Network_Meter_Data.js
2014-02-15 00:19 - 2012-11-06 14:23 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\TS3Client
2014-02-14 12:43 - 2012-12-07 12:38 - 00000924 _____ () C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3150807972-3095419254-192983401-1001UA.job
2014-02-14 12:43 - 2012-12-07 12:38 - 00000902 _____ () C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3150807972-3095419254-192983401-1001Core.job
2014-02-13 20:27 - 2012-12-12 20:07 - 00000000 ____D () C:\Users\sigi\Desktop\iPhone
2014-02-13 18:08 - 2012-12-12 21:27 - 00000000 ___SD () C:\Users\sigi\Desktop\Různé
2014-02-13 16:44 - 2012-11-06 15:11 - 00000624 _____ () C:\Users\sigi\AppData\Roaming\All CPU MeterV3_Settings.ini
2014-02-13 16:41 - 2013-03-30 12:45 - 00000000 ____D () C:\Program Files\Xilisoft
2014-02-13 16:37 - 2013-08-17 16:45 - 00000000 ____D () C:\Program Files (x86)\AVG SafeGuard toolbar
2014-02-13 16:37 - 2013-06-01 08:07 - 00000000 ____D () C:\windows\Minidump
2014-02-13 16:37 - 2013-04-13 14:07 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-02-13 16:37 - 2013-01-23 19:46 - 00000000 ____D () C:\ProgramData\AVG January 2013 Campaign
2014-02-13 16:37 - 2012-12-25 20:25 - 00000000 ____D () C:\Users\sigi\AppData\Local\CrashDumps
2014-02-13 16:37 - 2012-12-18 10:17 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\uTorrent
2014-02-13 16:37 - 2012-12-12 21:29 - 00000000 ____D () C:\Users\sigi\Desktop\Škola
2014-02-13 16:37 - 2012-12-12 21:28 - 00000000 ____D () C:\Users\sigi\Desktop\Staňa a Lenka dokumenty
2014-02-13 16:37 - 2012-12-12 20:19 - 00000000 ____D () C:\Users\sigi\Desktop\Fotky
2014-02-13 16:37 - 2012-11-06 14:51 - 00000000 ____D () C:\Users\sigi\Documents\Youcam
2014-02-13 15:06 - 2012-12-11 21:51 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-02-13 15:06 - 2012-12-11 21:51 - 00000000 ____D () C:\ProgramData\Skype
2014-02-13 00:00 - 2012-11-06 21:04 - 00000293 _____ () C:\Users\sigi\AppData\Roaming\GPU MeterV2_Settings.ini
2014-02-12 23:24 - 2014-02-12 23:24 - 00000000 ____D () C:\Program Files\EMCO
2014-02-12 18:58 - 2012-11-06 14:43 - 00000961 _____ () C:\Users\sigi\AppData\Roaming\Network Meter_Settings.ini
2014-02-12 18:10 - 2012-11-06 19:26 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-02-12 18:07 - 2013-08-09 19:35 - 00000000 ____D () C:\windows\system32\MRT
2014-02-12 18:07 - 2012-11-06 14:56 - 88567024 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-02-12 18:04 - 2012-02-23 05:19 - 01559268 _____ () C:\windows\SysWOW64\PerfStringBackup.INI
2014-02-12 18:04 - 2012-02-23 04:49 - 00668866 _____ () C:\windows\system32\perfh005.dat
2014-02-12 18:04 - 2012-02-23 04:49 - 00141526 _____ () C:\windows\system32\perfc005.dat
2014-02-12 18:04 - 2009-07-14 06:13 - 01559268 _____ () C:\windows\system32\PerfStringBackup.INI
2014-02-12 15:19 - 2014-02-12 15:17 - 00000000 ____D () C:\AdwCleaner
2014-02-12 15:17 - 2013-01-15 21:39 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\AIMP3
2014-02-12 15:17 - 2012-11-06 16:50 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\vlc
2014-02-12 15:16 - 2014-02-12 15:16 - 01166132 _____ () C:\Users\sigi\Desktop\adwcleaner.exe
2014-02-11 16:46 - 2012-12-11 21:51 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Skype
2014-02-11 14:54 - 2012-11-07 18:49 - 00000000 ____D () C:\Users\sigi\Desktop\Hasiči
2014-02-11 14:32 - 2014-02-11 14:32 - 00011035 _____ () C:\Users\sigi\Desktop\Addition.rar
2014-02-11 14:27 - 2014-02-11 14:27 - 02151424 _____ (Farbar) C:\Users\sigi\Desktop\FRST64.exe
2014-02-09 16:27 - 2012-02-23 06:07 - 00003962 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-02-09 16:27 - 2012-02-23 06:07 - 00003710 _____ () C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-02-07 22:35 - 2014-02-07 22:32 - 180387788 _____ () C:\Users\sigi\Desktop\The.Big.Bang.Theory.S07E15.HDTV.XviD-FUM.avi
2014-02-07 22:30 - 2014-02-07 23:25 - 00026738 _____ () C:\Users\sigi\Desktop\The.Big.Bang.Theory.S07E15.HDTV.XviD-FUM.srt
2014-02-07 17:20 - 2014-02-01 18:59 - 00000000 ____D () C:\Users\sigi\Desktop\Igor klauni
2014-02-07 12:27 - 2013-12-12 13:12 - 00000000 ____D () C:\Users\sigi\AppData\Local\Spotify
2014-02-06 13:16 - 2014-02-12 18:00 - 23170048 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-02-06 12:30 - 2014-02-12 18:00 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-02-06 12:30 - 2014-02-12 18:00 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-02-06 12:12 - 2014-02-12 18:00 - 02765824 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-02-06 12:07 - 2014-02-12 18:00 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-02-06 12:06 - 2014-02-12 18:00 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-02-06 11:57 - 2014-02-12 18:00 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-02-06 11:56 - 2014-02-12 18:00 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-02-06 11:52 - 2014-02-12 18:00 - 00574976 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-02-06 11:49 - 2014-02-12 18:00 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-02-06 11:48 - 2014-02-12 18:00 - 00708608 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-02-06 11:48 - 2014-02-12 18:00 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-02-06 11:38 - 2014-02-12 18:00 - 17103872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-02-06 11:32 - 2014-02-12 18:00 - 00218624 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-02-06 11:20 - 2014-02-12 18:00 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-02-06 11:17 - 2014-02-12 18:00 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-02-06 11:11 - 2014-02-12 18:00 - 05768704 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-02-06 11:01 - 2014-02-12 18:00 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-02-06 11:00 - 2014-02-12 18:00 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-02-06 10:57 - 2014-02-12 18:00 - 02168320 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-02-06 10:57 - 2014-02-12 18:00 - 00627200 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-02-06 10:52 - 2014-02-12 18:00 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-02-06 10:52 - 2014-02-12 18:00 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-02-06 10:50 - 2014-02-12 18:00 - 02041856 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-02-06 10:49 - 2014-02-12 18:00 - 00440832 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-02-06 10:47 - 2014-02-12 18:00 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-02-06 10:46 - 2014-02-12 18:00 - 00553472 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-02-06 10:25 - 2014-02-12 18:00 - 04244480 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-02-06 10:25 - 2014-02-12 18:00 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-02-06 10:24 - 2014-02-12 18:00 - 02334208 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-02-06 10:22 - 2014-02-12 18:00 - 13051392 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-02-06 10:13 - 2014-02-12 18:00 - 00524288 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-02-06 10:09 - 2014-02-12 18:00 - 01964032 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-02-06 10:03 - 2014-02-12 18:00 - 11266048 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-02-06 09:55 - 2014-02-12 18:00 - 01393664 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-02-06 09:41 - 2014-02-12 18:00 - 01820160 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-02-06 09:40 - 2014-02-12 18:00 - 00817664 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-02-06 09:36 - 2014-02-12 18:00 - 01156096 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-02-06 09:34 - 2014-02-12 18:00 - 00703488 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-02-04 23:20 - 2014-02-04 23:20 - 03544968 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerInstaller.exe
2014-02-04 23:20 - 2012-11-15 12:35 - 00003852 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2014-02-04 23:20 - 2012-11-11 22:07 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2014-02-04 23:20 - 2012-11-11 22:07 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-01 20:10 - 2014-02-01 11:58 - 00000000 ____D () C:\Program Files\ma-config.com
2014-02-01 20:00 - 2013-11-04 17:16 - 00000000 ____D () C:\Users\UpdatusUser.sigi-PC
2014-02-01 20:00 - 2012-11-06 13:14 - 00000000 ____D () C:\Users\sigi
2014-02-01 19:58 - 2012-11-06 13:15 - 00000000 ____D () C:\Users\sigi\AppData\Local\Lenovo
2014-02-01 19:58 - 2012-02-23 05:21 - 00000000 ____D () C:\windows\VMC412
2014-02-01 19:58 - 2012-02-23 05:14 - 00000000 ____D () C:\windows\SysWOW64\sda
2014-02-01 19:58 - 2012-02-23 05:11 - 00000000 ____D () C:\windows\SysWOW64\RTCOM
2014-02-01 19:58 - 2012-02-23 05:11 - 00000000 ____D () C:\windows\system32\SRSLabs
2014-02-01 19:58 - 2012-02-23 05:11 - 00000000 ____D () C:\Program Files\Realtek
2014-02-01 19:58 - 2012-02-23 05:11 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-02-01 19:58 - 2012-02-23 05:08 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-02-01 19:58 - 2012-02-23 05:08 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-02-01 19:58 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\security
2014-02-01 19:58 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\registration
2014-02-01 19:58 - 2009-07-14 04:20 - 00000000 ____D () C:\windows\Help
2014-02-01 19:56 - 2012-02-23 05:07 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-02-01 19:56 - 2012-02-23 05:05 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-02-01 19:00 - 2014-01-19 13:43 - 00000000 ____D () C:\Users\sigi\Desktop\Zabijačka Igor
2014-02-01 13:08 - 2014-02-01 13:03 - 00000000 ____D () C:\ProgramData\Intel
2014-02-01 13:05 - 2014-02-01 13:05 - 00000000 ____D () C:\Driver_allOS
2014-02-01 13:03 - 2014-02-01 13:03 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Intel Corporation
2014-02-01 13:01 - 2014-02-01 13:01 - 00000000 ____D () C:\Users\sigi\Intel
2014-02-01 12:59 - 2014-02-01 12:59 - 00000000 ____D () C:\Intel
2014-02-01 12:58 - 2014-02-01 12:58 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-02-01 12:20 - 2014-02-01 12:20 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-02-01 11:58 - 2014-02-01 11:58 - 00000000 ____D () C:\ProgramData\ma-config.com
2014-01-30 13:22 - 2014-01-30 13:22 - 00000780 _____ () C:\Users\sigi\Desktop\Mafia II.lnk
2014-01-30 12:35 - 2014-01-30 12:35 - 00000000 ____D () C:\Users\sigi\AppData\Local\2K Games
2014-01-30 12:16 - 2012-11-06 13:51 - 00000000 ____D () C:\Hry
2014-01-24 14:42 - 2014-01-24 14:41 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-01-24 14:42 - 2014-01-24 14:41 - 00000000 ____D () C:\Program Files\iTunes
2014-01-24 14:42 - 2014-01-24 14:41 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-01-24 14:41 - 2014-01-24 14:41 - 00000000 ____D () C:\Program Files\iPod
2014-01-24 14:37 - 2012-11-06 15:11 - 00000000 ____D () C:\ProgramData\Apple
2014-01-22 11:34 - 2012-11-06 14:17 - 00000000 ____D () C:\Programy
2014-01-22 11:33 - 2014-01-21 22:21 - 00000000 ____D () C:\Program Files (x86)\NirSoft
2014-01-22 10:55 - 2012-11-15 13:28 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-01-22 10:55 - 2012-11-11 22:06 - 00000000 ____D () C:\ProgramData\Adobe
2014-01-22 10:54 - 2012-11-06 13:29 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Adobe
2014-01-22 10:47 - 2012-11-12 17:00 - 00000000 ____D () C:\windows\Driver Cache
2014-01-21 19:28 - 2014-01-21 19:01 - 1467211776 _____ () C:\Users\sigi\Desktop\2001-vesmírná-odysea.avi
2014-01-21 16:06 - 2009-07-14 05:45 - 02423824 _____ () C:\windows\system32\FNTCACHE.DAT
2014-01-20 12:50 - 2014-01-20 12:50 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\chc
2014-01-20 12:48 - 2014-01-20 12:48 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2014-01-20 12:47 - 2014-01-20 12:41 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-01-20 12:47 - 2012-12-16 13:06 - 00000000 ____D () C:\Users\sigi\AppData\Local\Adobe
2014-01-20 12:41 - 2014-01-20 12:41 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\com.adobe.dmp.contentviewer
2014-01-20 12:41 - 2012-11-06 13:15 - 00115296 _____ () C:\Users\sigi\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-20 10:46 - 2014-01-16 10:23 - 00000000 ____D () C:\Users\sigi\Box Sync
2014-01-19 12:51 - 2014-01-17 10:16 - 00000000 ____D () C:\Fraps
2014-01-17 10:16 - 2014-01-17 10:16 - 00000562 _____ () C:\Users\Public\Desktop\Fraps.lnk
2014-01-17 09:34 - 2012-11-06 13:14 - 00000000 ___RD () C:\Users\sigi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-17 09:33 - 2013-12-10 16:21 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-01-16 10:18 - 2014-01-16 10:17 - 00000000 ____D () C:\ProgramData\Package Cache
2014-01-16 09:51 - 2014-01-16 09:51 - 05839872 _____ () C:\Users\sigi\Desktop\zdravotní osvc_2013.xlsx
2014-01-16 09:51 - 2014-01-16 09:51 - 00394752 _____ () C:\Users\sigi\Desktop\Tom daně 2013.xls
2014-01-16 09:16 - 2014-01-16 09:16 - 00000000 ____D () C:\Users\sigi\AppData\Roaming\Oracle
2014-01-16 09:16 - 2013-10-27 20:27 - 00000000 ____D () C:\ProgramData\Oracle
2014-01-16 09:14 - 2014-01-16 09:10 - 00005175 _____ () C:\windows\SysWOW64\jupdate-1.7.0_51-b13.log
2014-01-16 09:14 - 2013-10-27 20:26 - 00000000 ____D () C:\Program Files (x86)\Java

Files to move or delete:
====================
C:\ProgramData\flashax10.exe
C:\Users\sigi\IP_Log_Data.js
C:\Users\sigi\Network_Meter_Data.js


Some content of TEMP:
====================
C:\Users\sigi\AppData\Local\Temp\DTLite4481-0347.exe
C:\Users\sigi\AppData\Local\Temp\htmlayout.dll
C:\Users\sigi\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe
C:\Users\sigi\AppData\Local\Temp\NOSEventMessages.dll
C:\Users\sigi\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\sigi\AppData\Local\Temp\nvStInst.exe
C:\Users\sigi\AppData\Local\Temp\Quarantine.exe
C:\Users\sigi\AppData\Local\Temp\vlc-2.1.2-win32.exe
C:\Users\sigi\AppData\Local\Temp\vlc-2.1.3-win32.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-02-14 09:22

==================== End Of Log ============================

Re: Kontrola logu

Napsal: 16 úno 2014 13:42
od vyosek
:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    HKLM\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App\Lenovo Rescue System\MUITransfer\MUIStartMenu.exe [222504 2009-05-14] (CyberLink Corp.)
    HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-08] (NVIDIA Corporation)
    HKLM-x32\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App\Lenovo Rescue System\MUITransfer\MUIStartMenu.exe [222504 2009-05-14] (CyberLink Corp.)
    HKLM-x32\...\Run: [UpdateP2GoShortCut] - C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
    HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-01-20] (Apple Inc.)
    HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.)
    HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [Facebook Update] - C:\Users\sigi\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-12-07] (Facebook Inc.)
    HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [LinkMagic for magicolor 1690MF] - C:\Program Files (x86)\KONICA MINOLTA\magicolor 1690MF\LinkMagic for magicolor 1690MF\lmmc1690.exe [5005312 2008-08-26] (Konica Minolta)
    HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [ISUSPM] - C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [213936 2006-03-20] (Macrovision Corporation)
    HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [Spotify Web Helper] - C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-01-16] (Spotify Ltd)
    HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [DAEMON Tools Lite] - C:\Programy\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
    HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [Spotify] - C:\Users\sigi\AppData\Roaming\Spotify\spotify.exe [6118400 2014-01-16] (Spotify Ltd)
    HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\MountPoints2: {bf510026-9538-11e2-af35-dc0ea1802858} - E:\INSTALL.EXE
    
    HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/redirectdomain ... &bmod=LEND
    URLSearchHook: HKCU - (No Name) - {b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} - No File
    Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
    Toolbar: HKCU - No Name - {B6AC5E3C-5CEB-4E72-B451-F0E1BA983C14} - No File
    CHR HKCU\...\Chrome\Extension: [dknkjnkhedbanphkkpbpcgoblmkbfhlf] - C:\Users\sigi\AppData\Local\CRE\dknkjnkhedbanphkkpbpcgoblmkbfhlf.crx [2012-11-19]
    CHR HKLM-x32\...\Chrome\Extension: [dknkjnkhedbanphkkpbpcgoblmkbfhlf] - C:\Users\sigi\AppData\Local\CRE\dknkjnkhedbanphkkpbpcgoblmkbfhlf.crx [2012-11-19]
    CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-01-03]
    S2 vToolbarUpdater17.3.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe [X]
    S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X]
    S3 USBPNPA; system32\drivers\CM10864.sys [X]
    R3 WinRing0_1_2_0; \??\C:\Users\sigi\AppData\Local\Temp\tmpBF19.tmp [X]
    2014-02-15 16:53 - 2014-02-15 16:53 - 00015327 _____ () C:\Users\sigi\Desktop\LM.bat
    2014-02-15 16:52 - 2014-02-15 16:52 - 00112640 _____ (forum.viry.cz) C:\Users\sigi\Desktop\FRSTLauncher (2).exe
    2014-02-15 16:51 - 2014-02-15 16:53 - 00029696 _____ () C:\Users\sigi\AppData\Local\MSGBOX.EXE
    2014-02-12 15:16 - 2014-02-12 15:16 - 01166132 _____ () C:\Users\sigi\Desktop\adwcleaner.exe
    2014-02-11 14:32 - 2014-02-11 14:32 - 00011035 _____ () C:\Users\sigi\Desktop\Addition.rar
    2014-02-11 14:30 - 2014-02-15 16:53 - 00027785 _____ () C:\Users\sigi\Desktop\FRST.txt
    C:\ProgramData\flashax10.exe
    C:\Users\sigi\IP_Log_Data.js
    C:\Users\sigi\Network_Meter_Data.js
    
    Hosts:
    CMD: shutdown /r /f /t 2
    
    End
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt

Re: Kontrola logu

Napsal: 16 úno 2014 15:54
od freeco
Zde přikládám Fixlog :-)

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 13-02-2014 01
Ran by sigi at 2014-02-16 15:45:24 Run:1
Running from C:\Users\sigi\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App\Lenovo Rescue System\MUITransfer\MUIStartMenu.exe [222504 2009-05-14] (CyberLink Corp.)
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-08] (NVIDIA Corporation)
HKLM-x32\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App\Lenovo Rescue System\MUITransfer\MUIStartMenu.exe [222504 2009-05-14] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GoShortCut] - C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-01-20] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [Facebook Update] - C:\Users\sigi\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-12-07] (Facebook Inc.)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [LinkMagic for magicolor 1690MF] - C:\Program Files (x86)\KONICA MINOLTA\magicolor 1690MF\LinkMagic for magicolor 1690MF\lmmc1690.exe [5005312 2008-08-26] (Konica Minolta)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [ISUSPM] - C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [213936 2006-03-20] (Macrovision Corporation)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [Spotify Web Helper] - C:\Users\sigi\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-01-16] (Spotify Ltd)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [DAEMON Tools Lite] - C:\Programy\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\Run: [Spotify] - C:\Users\sigi\AppData\Roaming\Spotify\spotify.exe [6118400 2014-01-16] (Spotify Ltd)
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\...\MountPoints2: {bf510026-9538-11e2-af35-dc0ea1802858} - E:\INSTALL.EXE

HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/redirectdomain ... &bmod=LEND
URLSearchHook: HKCU - (No Name) - {b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} - No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKCU - No Name - {B6AC5E3C-5CEB-4E72-B451-F0E1BA983C14} - No File
CHR HKCU\...\Chrome\Extension: [dknkjnkhedbanphkkpbpcgoblmkbfhlf] - C:\Users\sigi\AppData\Local\CRE\dknkjnkhedbanphkkpbpcgoblmkbfhlf.crx [2012-11-19]
CHR HKLM-x32\...\Chrome\Extension: [dknkjnkhedbanphkkpbpcgoblmkbfhlf] - C:\Users\sigi\AppData\Local\CRE\dknkjnkhedbanphkkpbpcgoblmkbfhlf.crx [2012-11-19]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-01-03]
S2 vToolbarUpdater17.3.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X]
S3 USBPNPA; system32\drivers\CM10864.sys [X]
R3 WinRing0_1_2_0; \??\C:\Users\sigi\AppData\Local\Temp\tmpBF19.tmp [X]
2014-02-15 16:53 - 2014-02-15 16:53 - 00015327 _____ () C:\Users\sigi\Desktop\LM.bat
2014-02-15 16:52 - 2014-02-15 16:52 - 00112640 _____ (forum.viry.cz) C:\Users\sigi\Desktop\FRSTLauncher (2).exe
2014-02-15 16:51 - 2014-02-15 16:53 - 00029696 _____ () C:\Users\sigi\AppData\Local\MSGBOX.EXE
2014-02-12 15:16 - 2014-02-12 15:16 - 01166132 _____ () C:\Users\sigi\Desktop\adwcleaner.exe
2014-02-11 14:32 - 2014-02-11 14:32 - 00011035 _____ () C:\Users\sigi\Desktop\Addition.rar
2014-02-11 14:30 - 2014-02-15 16:53 - 00027785 _____ () C:\Users\sigi\Desktop\FRST.txt
C:\ProgramData\flashax10.exe
C:\Users\sigi\IP_Log_Data.js
C:\Users\sigi\Network_Meter_Data.js

Hosts:
CMD: shutdown /r /f /t 2

End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\UpdatePRCShortCut => Value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Nvtmru => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\UpdatePRCShortCut => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\UpdateP2GoShortCut => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\APSDaemon => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => Value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper => Value deleted successfully.
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Facebook Update => Value deleted successfully.
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\Software\Microsoft\Windows\CurrentVersion\Run\\LinkMagic for magicolor 1690MF => Value deleted successfully.
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\Software\Microsoft\Windows\CurrentVersion\Run\\ISUSPM => Value deleted successfully.
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Spotify Web Helper => Value deleted successfully.
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => Value deleted successfully.
HKU\S-1-5-21-3150807972-3095419254-192983401-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Spotify => Value deleted successfully.
HKU\1\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bf510026-9538-11e2-af35-dc0ea1802858} => Key not found.
HKCR\CLSID\{bf510026-9538-11e2-af35-dc0ea1802858} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value deleted successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{B6AC5E3C-5CEB-4E72-B451-F0E1BA983C14} => Value deleted successfully.
HKCR\CLSID\{B6AC5E3C-5CEB-4E72-B451-F0E1BA983C14} => Key not found.
HKCU\SOFTWARE\Google\Chrome\Extensions\dknkjnkhedbanphkkpbpcgoblmkbfhlf => Key deleted successfully.
C:\Users\sigi\AppData\Local\CRE\dknkjnkhedbanphkkpbpcgoblmkbfhlf.crx => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\dknkjnkhedbanphkkpbpcgoblmkbfhlf => Key deleted successfully.
"C:\Users\sigi\AppData\Local\CRE\dknkjnkhedbanphkkpbpcgoblmkbfhlf.crx" => File/Directory not found.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl => Key deleted successfully.
C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx => Moved successfully.
vToolbarUpdater17.3.0 => Service deleted successfully.
pccsmcfd => Service deleted successfully.
USBPNPA => Service deleted successfully.
WinRing0_1_2_0 => Service deleted successfully.
C:\Users\sigi\Desktop\LM.bat => Moved successfully.
"C:\Users\sigi\Desktop\FRSTLauncher (2).exe" => File/Directory not found.
C:\Users\sigi\AppData\Local\MSGBOX.EXE => Moved successfully.
"C:\Users\sigi\Desktop\adwcleaner.exe" => File/Directory not found.
"C:\Users\sigi\Desktop\Addition.rar" => File/Directory not found.
"C:\Users\sigi\Desktop\FRST.txt" => File/Directory not found.
C:\ProgramData\flashax10.exe => Moved successfully.
C:\Users\sigi\IP_Log_Data.js => Moved successfully.
C:\Users\sigi\Network_Meter_Data.js => Moved successfully.
"C:\Windows\System32\Drivers\etc\hosts" => Could not move.
Could not reset Hosts.

========= shutdown /r /f /t 2 =========


========= End of CMD: =========



The system needs a manual reboot.

==== End of Fixlog ====

Re: Kontrola logu

Napsal: 17 úno 2014 15:07
od vyosek
Tak jeste uklidime :James008:

:arrow: T-Cleaner http://vyosek.tym.cz/pro_usery/T-Cleaner.exe
  • Stahnete a spustte
  • Pro potvrzeni volby mackejte A, Enter
  • Po pouziti utilitu smazte
  • Antiviry touhou utilitu chybne oznacit jako vir - jedna se o falesny poplach - takze v pohode stahnete (pripadne vypnete pri stahovani antivir)
:arrow: OTC http://oldtimer.geekstogo.com/OTC.exe
  • Stahnete a spustte
  • Kliknete na CleanUp a potvrdte YES
  • Program uklidi a restartuje PC

:arrow: TFC http://oldtimer.geekstogo.com/TFC.exe
  • Stahnete a spustte
  • Kliknete na Start a potvrdte OK
  • Program uklidi a restartuje pc
  • Po pouziti utilitu smazte
:arrow: Stahnete Ccleaner http://forum.viry.cz/viewtopic.php?t=7478
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|

Re: Kontrola logu

Napsal: 17 úno 2014 22:14
od freeco
Vše provedeno, další dotazy a problémy nejsou.
Mockrát děkuji a přeji příjemný zbytek dne ;-)

Re: Kontrola logu

Napsal: 18 úno 2014 08:12
od vyosek
Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek

A na zaklade Pravidla o zamykani temat :lock: