Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Sken AdwCleanerom 2

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
rastislav123456
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 30 pro 2012 21:17

Sken AdwCleanerom 2

#1 Příspěvek od rastislav123456 »

Log č.1 - Sken AdwCleanerom po reštarte PC

# Operating System : Windows 8.1 Pro with Media Center (64 bits)
# Username : Kostík a Irenočka - PC-POKOJÍČEK
# Running from : C:\Users\Kostík a Irenočka\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : Application Updater

***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files (x86)\Application Updater
Folder Deleted : C:\Program Files (x86)\IObit Apps Toolbar
Folder Deleted : C:\Program Files (x86)\Common Files\Spigot
Folder Deleted : C:\Users\Kostík a Irenočka\AppData\Local\Conduit
Folder Deleted : C:\Users\Kostík a Irenočka\AppData\Local\NativeMessaging
Folder Deleted : C:\Users\Kostík a Irenočka\AppData\Local\Searchprotect
Folder Deleted : C:\Users\Kostík a Irenočka\AppData\Local\Slick Savings
Folder Deleted : C:\Users\Kostík a Irenočka\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Kostík a Irenočka\AppData\LocalLow\Search Settings
File Deleted : C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\59cia5kz.default\searchplugins\conduit-search.xml
File Deleted : C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\59cia5kz.default\user.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SearchSettings]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Search Settings
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\Search Settings
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKLM\Software\Application Updater
Key Deleted : HKLM\Software\Search Settings

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16518


-\\ Mozilla Firefox v27.0.1 (cs)

[ File : C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\59cia5kz.default\prefs.js ]


-\\ Google Chrome v33.0.1750.117

[ File : C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : search_url
Deleted : suggest_url
Deleted : keyword

*************************

AdwCleaner[R2].txt - [5118 octets] - [22/02/2014 12:58:11]
AdwCleaner[S0].txt - [4938 octets] - [22/02/2014 12:59:02]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4998 octets] ##########

rastislav123456
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 30 pro 2012 21:17

Re: Sken AdwCleanerom 2

#2 Příspěvek od rastislav123456 »

Log FRST + log vo WinRare Addition
Bolo to zamknuté tak som založil nové téma.Ommlouvám se.skôr to nešlo,bol som od rána do večera v práci od stredy do včera.

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-02-2014 01
Ran by Kostík a Irenočka (administrator) on PC-POKOJÍČEK on 22-02-2014 13:04:52
Running from C:\Users\Kostík a Irenočka\Desktop
Windows 8.1 Pro with Media Center (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

() C:\Program Files (x86)\WinArchiver\WAService.exe
(AMD) C:\WINDOWS\system32\atiesrxx.exe
(AMD) C:\WINDOWS\system32\atieclxx.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\WINDOWS\SysWOW64\svchost.exe
(Microsoft Corporation) C:\WINDOWS\system32\dashost.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Pandora.TV) C:\Program Files (x86)\PANDORA.TV\PanService\KMPService.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(NETGATE Technologies s.r.o.) C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe
(PandoraTV) C:\Program Files (x86)\PANDORA.TV\PanService\KMPProcess.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe\LiveComm.exe
(Microsoft Corporation) C:\Windows\System32\skydrive.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(cyberlink) C:\Program Files (x86)\CyberLink\Shared files\brs.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\WMIADAP.EXE


==================== Registry (Whitelisted) ==================

HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM-x32\...\Run: [CLMLServer] - C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [103720 2009-12-15] (CyberLink)
HKLM-x32\...\Run: [UpdateP2GoShortCut] - C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
HKLM-x32\...\Run: [UCam_Menu] - C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.)
HKLM-x32\...\Run: [LGODDFU] - C:\Program Files (x86)\lg_fwupdate\lgfw.exe [27760 2014-01-08] (Bitleader)
HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [93296 2012-07-13] (CyberLink Corp.)
HKLM-x32\...\Run: [BDRegion] - C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [78352 2012-08-27] (cyberlink)
HKLM-x32\...\Run: [IObit Malware Fighter] - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [1573184 2013-12-13] (IObit)
HKLM-x32\...\Run: [] - [X]
HKU\S-1-5-21-1848220903-3089343494-3484960918-1001\...\Run: [DVSSkypeRecorder] - C:\Program Files (x86)\DVDVideoSoft\Free Video Call Recorder for Skype\skyui.exe [889912 2014-02-18] (DVDVideoSoft Ltd.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear
SearchScopes: HKCU - {AB127681-9983-4332-8528-A7360886054F} URL = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\59cia5kz.default
FF Homepage: http://www.seznam.cz
FF DefaultSearchEngine: Yahoo!
FF SelectedSearchEngine: Yahoo!
FF Keyword.URL: hxxp://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=198484&p=
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_13_0_0_130.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.2 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_130.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1209149.dll (Adobe Systems, Inc.)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nokia.com/EnablerPlugin - C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\59cia5kz.default\searchplugins\yahoo_ff.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\slunecnice-cz.xml
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\59cia5kz.default\Extensions\ascsurfingprotection@iobit.com [2014-01-17]
FF Extension: Start Page - C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\59cia5kz.default\Extensions\{58d2a791-6199-482f-a9aa-9b725ec61362}.xpi [2014-02-04]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-02-15]

Chrome:
=======
CHR HomePage: hxxp://www.centrum.cz/
CHR DefaultSearchKeyword: conduit.search
CHR DefaultSearchProvider: Conduit Search
CHR DefaultSearchURL: http://search.conduit.com/Results.aspx? ... rms}&SSPV=
CHR DefaultNewTabURL:
CHR Extension: (Google Translate) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2014-02-22]
CHR Extension: (Dokumenty Google) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-08]
CHR Extension: (Disk Google) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-08]
CHR Extension: (Meteopress - předpověď počasí) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcpnncnkejclcjokemijhkikfeojpgno [2014-02-22]
CHR Extension: (Seznam Lištička - Email) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2014-02-22]
CHR Extension: (Seznam Lištička - Slovník) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2014-02-22]
CHR Extension: (YouTube) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-08]
CHR Extension: (Pool) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\cedbddnnmhgnedpamoenmdkhnpnfbpjb [2014-02-22]
CHR Extension: (Digital clock) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\cehoiekgopjlnkinohiclellfpkfgfek [2014-02-22]
CHR Extension: (Hľadať v Google) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-08]
CHR Extension: (FlipClock) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\copjokjinhlflggeifkidlmodfepbpgl [2014-02-22]
CHR Extension: (8 Ball Pool Multiplayer) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddfplgpeamcbpecnihfpikllkfojgkai [2014-02-22]
CHR Extension: (YouTube Search) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\deanblnndglbaahbnjkimnggpbjchoip [2014-02-22]
CHR Extension: (Kalendár Google) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-02-22]
CHR Extension: (Hodiny pre Google Chrome ™) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\emakkfldeggiinnfcdjkakdfcppbfhdg [2014-02-22]
CHR Extension: (Skype Links) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\epbmllnadbdnppblcebkkmapkinkdchd [2014-02-22]
CHR Extension: (YoWindow Weather) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef [2014-02-22]
CHR Extension: (Goolge mapy s prehľadávaním okolia) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbfnldkfkplmmmbfnjkdbbhjbopnocda [2014-02-22]
CHR Extension: (Facebook for Chrome) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdalhedleemkkdjddjgfjmcnbpejpapp [2014-02-22]
CHR Extension: (Hodiny) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdkjifoifglkpcdffkenpinlbjgephlo [2014-02-22]
CHR Extension: (AdBlock) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-02-22]
CHR Extension: (IP adresa) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjndloejlcbpkholmagjbddfkjmmploh [2014-02-22]
CHR Extension: (Uložiť na Disk Google) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2014-02-22]
CHR Extension: (avast! Online Security) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-02-22]
CHR Extension: (Quick Search for YouTube) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpbafppimimmedndofjgbcljjdmgogmc [2014-02-22]
CHR Extension: (YouTube Video Preview) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmggjocpafbpjdhoknaneokaklekakeh [2014-02-22]
CHR Extension: (Downloads) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfchnphgogjhineanplmfkofljiagjfb [2014-02-22]
CHR Extension: (Prekladač Google pre Google+) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfppgkomfopklagggkjiaddgndkgopgl [2014-02-22]
CHR Extension: (Tlačidlo Google +1) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgoepmocgafhnchmokaimcmlojpnlkhp [2014-02-22]
CHR Extension: (*Ultimate Football Results*) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpnpobggldcjebejmndignliobeifocj [2014-02-22]
CHR Extension: (Absolute Radio Live Scores) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgmkadilkeimcolingoooifhoknpkifi [2014-02-22]
CHR Extension: (World Clock) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\klalbmkcicglbbedmdlkidhkiaelhdog [2014-02-22]
CHR Extension: (Earth TV) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpnmncjdpbehanjnmpmodhbheohhcpdn [2014-02-22]
CHR Extension: (Satellite Finder) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\laadpcgmfdkmmkhnhoaalgbjoahkjlpn [2014-02-22]
CHR Extension: (Watch Live Football Streaming Online For Free) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\legocaboiicfjgofnmlgnogcngeokmga [2014-02-22]
CHR Extension: (Vyhledávání na Uložto.cz) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmkajlpofgoacniacbaappohkglliini [2014-02-22]
CHR Extension: (Twoo Notifications) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\mggafhpkgkfebnjfbiefbbbicikgchlf [2014-02-22]
CHR Extension: (Hodiny) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjocghlclkpgheifflemilcnblodjohg [2014-02-22]
CHR Extension: (Peňaženka Google) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-08]
CHR Extension: (9-Ball Pool) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\oafdgpdaojfjhcolidaakebmnbibdbpb [2014-02-22]
CHR Extension: (Live Sports) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\oamjbefinnglappklpabmhpbcdiephoo [2014-02-22]
CHR Extension: (Checker Plus for Gmail™) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj [2014-02-22]
CHR Extension: (Seznam Lištička - Rychlá volba) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2014-02-22]
CHR Extension: (Desktop) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pafkcccccfmnjkhhndjfffifnflhkpdo [2014-02-22]
CHR Extension: (Gmail) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-08]
CHR HKCU\...\Chrome\Extension: [cflheckfmhopnialghigdlggahiomebp] - C:\Users\Kostík a Irenočka\AppData\Local\CRE\cflheckfmhopnialghigdlggahiomebp.crx [2014-01-09]
CHR HKLM-x32\...\Chrome\Extension: [cflheckfmhopnialghigdlggahiomebp] - C:\Users\Kostík a Irenočka\AppData\Local\CRE\cflheckfmhopnialghigdlggahiomebp.crx [2014-01-09]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-01-03]
CHR HKLM-x32\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - \BrowerProtect\ASC_GhromePlugin.crx [2014-01-03]

==================== Services (Whitelisted) =================

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [144152 2013-10-10] (SUPERAntiSpyware.com)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1363616 2014-01-03] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1748640 2014-01-03] (Microsoft Corporation)
S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [243728 2012-08-27] (CyberLink)
R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [341824 2013-11-11] (IObit)
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 PanService; C:\Program Files (x86)\PANDORA.TV\PanService\KMPService.exe [1922600 2013-07-08] (Pandora.TV)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2009-07-02] ()
R2 SpyEmrgSrv; C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe [3284008 2013-03-11] (NETGATE Technologies s.r.o.)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
R2 WinArchiver Service; C:\Program Files (x86)\WinArchiver\WAService.exe [202264 2013-11-10] ()
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-09-25] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-09-25] (Windows (R) Win 7 DDK provider)
R3 dvdfab; C:\Windows\System32\drivers\dvdfab.sys [79232 2011-08-15] (Fengtao Software Inc.)
S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [17480 2013-03-07] ()
S3 epmntdrv; C:\WINDOWS\SysWOW64\epmntdrv.sys [14920 2013-03-07] ()
S3 EuGdiDrv; C:\WINDOWS\system32\EuGdiDrv.sys [9800 2013-03-07] ()
S3 EuGdiDrv; C:\WINDOWS\SysWOW64\EuGdiDrv.sys [9160 2013-03-07] ()
R1 Eve; C:\Windows\system32\DRIVERS\eve.sys [41304 2013-03-28] ()
S4 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2013-03-23] (IObit)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2014-01-08] (Microsoft Corporation)
S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-11-14] (Microsoft Corporation)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2010-07-16] (CACE Technologies, Inc.)
R3 PciSPorts; C:\Windows\system32\DRIVERS\PciSPorts.sys [122880 2008-12-19] ()
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
S3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2013-11-19] (IObit.com)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2014-01-08] (Microsoft Corporation)
R1 SpyEmrg; C:\Windows\System32\Drivers\spyemrg.sys [17240 2011-04-21] (NETGATE Technologies s.r.o.)
S3 SpyEmrgAccess; C:\Windows\System32\Drivers\spyemrg_access.sys [24408 2011-04-21] (NETGATE Technologies s.r.o.)
R3 SpyEmrgGuard; C:\Windows\System32\Drivers\spyemrg_guard.sys [18776 2011-04-21] (NETGATE Technologies s.r.o.)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-11-14] (Microsoft Corporation)
R3 TBS6928_64; C:\Windows\system32\DRIVERS\TBS6928_64.sys [1934792 2012-12-19] (http://www.tbsdtv.com)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
S3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2013-11-19] (IObit.com)
R0 waemu; C:\Windows\System32\Drivers\waemu.sys [140184 2013-11-10] (Power Software Ltd)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
U3 DfSdkS;

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-02-22 13:04 - 2014-02-22 13:05 - 00025640 _____ () C:\Users\Kostík a Irenočka\Desktop\FRST.txt
2014-02-22 13:04 - 2014-02-22 13:04 - 00000000 ____D () C:\FRST
2014-02-22 13:03 - 2014-02-22 13:03 - 02154496 _____ (Farbar) C:\Users\Kostík a Irenočka\Desktop\FRST64.exe
2014-02-22 12:59 - 2014-02-22 12:59 - 00004550 _____ () C:\WINDOWS\PFRO.log
2014-02-22 12:58 - 2014-02-22 12:58 - 00001186 _____ () C:\Users\Kostík a Irenočka\Desktop\Nový textový dokument.txt
2014-02-22 12:57 - 2014-02-22 12:59 - 00000000 ____D () C:\AdwCleaner
2014-02-22 12:56 - 2014-02-22 12:56 - 00000000 ____D () C:\Program Files (x86)\MPEG2_Decoders
2014-02-22 12:44 - 2014-02-22 12:44 - 30396025 _____ () C:\Users\Kostík a Irenočka\Desktop\dvbdream_codecs.zip
2014-02-22 12:44 - 2009-03-08 10:52 - 00622592 _____ (MONOGRAM Multimedia s.r.o.) C:\Users\Kostík a Irenočka\Desktop\mmaacd.ax
2014-02-22 12:33 - 2014-02-22 12:33 - 00284905 _____ () C:\Users\Kostík a Irenočka\Desktop\mm_aac_dec_0.9.6.0_bin.zip
2014-02-22 12:18 - 2014-02-22 12:18 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2014-02-22 12:15 - 2014-02-22 12:15 - 00002729 _____ () C:\Users\Public\Desktop\Skype 6.14.73.104.lnk
2014-02-22 12:15 - 2014-02-22 12:15 - 00002729 _____ () C:\ProgramData\Desktop\Skype 6.14.73.104.lnk
2014-02-22 12:14 - 2014-02-22 12:14 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2014-02-22 12:12 - 2014-02-22 12:12 - 00001483 _____ () C:\Users\Public\Desktop\Free Video Call Recorder for Skype.lnk
2014-02-22 12:12 - 2014-02-22 12:12 - 00001483 _____ () C:\ProgramData\Desktop\Free Video Call Recorder for Skype.lnk
2014-02-22 12:12 - 2014-02-22 12:12 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-02-22 12:10 - 2014-02-22 12:10 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\23383
2014-02-22 12:09 - 2014-02-22 12:10 - 00000000 ____D () C:\Program Files (x86)\DVDFab 9
2014-02-22 12:09 - 2014-02-22 12:09 - 00001011 _____ () C:\Users\Public\Desktop\DVDFab 9.lnk
2014-02-22 12:09 - 2014-02-22 12:09 - 00001011 _____ () C:\ProgramData\Desktop\DVDFab 9.lnk
2014-02-22 11:48 - 2014-02-22 13:02 - 00002215 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-02-22 11:48 - 2014-02-22 13:02 - 00002215 _____ () C:\ProgramData\Desktop\Google Chrome.lnk
2014-02-22 11:47 - 2014-02-22 13:00 - 00000996 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-22 11:47 - 2014-02-22 12:58 - 00001000 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-22 11:47 - 2014-02-22 11:53 - 00003972 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2014-02-22 11:47 - 2014-02-22 11:53 - 00003736 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2014-02-22 11:29 - 2014-02-14 17:13 - 00000000 ____D () C:\Users\Kostík a Irenočka\Desktop\VUplus
2014-02-22 11:24 - 2014-02-22 11:24 - 00000913 _____ () C:\Users\Kostík a Irenočka\Desktop\µTorrent.lnk
2014-02-22 11:24 - 2014-02-22 11:24 - 00000893 _____ () C:\Users\Kostík a Irenočka\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2014-02-22 11:21 - 2014-02-22 13:03 - 00120913 _____ () C:\WINDOWS\WindowsUpdate.log
2014-02-17 19:29 - 2013-02-07 01:44 - 22443764 _____ () C:\Users\Kostík a Irenočka\Desktop\Ariva EromUpgrade Editor 25-01-2013.rar
2014-02-17 19:03 - 2014-02-17 19:03 - 00000000 ____D () C:\Program Files\MOSCHIP
2014-02-17 19:03 - 2010-12-15 15:42 - 00340992 _____ () C:\WINDOWS\system32\MOSCHIP_StnUninst.exe
2014-02-17 19:03 - 2010-07-22 16:13 - 00022774 _____ () C:\WINDOWS\system32\StnLang.ini
2014-02-17 18:28 - 2014-02-17 18:28 - 00000000 ____D () C:\Users\Kostík a Irenočka\Desktop\Postup setting z A200 do A100
2014-02-16 16:17 - 2014-02-16 16:17 - 00000000 ____D () C:\sťahovanie
2014-02-15 18:12 - 2014-02-15 18:12 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Local\Macromedia
2014-02-15 16:26 - 2014-02-15 16:26 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\31957
2014-02-15 09:32 - 2014-02-15 09:32 - 00002703 _____ () C:\Users\Kostík a Irenočka\Desktop\The Bat! E-Mail Client.lnk
2014-02-15 09:29 - 2014-02-15 09:29 - 00001362 _____ () C:\Users\Kostík a Irenočka\Desktop\Ashampoo Slideshow Studio HD 3.lnk
2014-02-15 09:23 - 2014-02-15 09:23 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-13 17:36 - 2014-01-08 02:46 - 00325464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2014-02-13 17:36 - 2014-01-08 02:41 - 01530712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2014-02-13 17:36 - 2014-01-08 02:41 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2014-02-13 17:36 - 2014-01-04 15:08 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2014-02-13 17:36 - 2014-01-04 14:53 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll
2014-02-13 17:36 - 2014-01-03 00:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2014-02-13 17:36 - 2014-01-03 00:48 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-02-13 17:36 - 2014-01-03 00:40 - 05770752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-02-13 17:36 - 2014-01-03 00:38 - 06640640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-02-13 17:36 - 2014-01-01 02:55 - 01720560 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2014-02-13 17:36 - 2014-01-01 02:52 - 00481944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2014-02-13 17:36 - 2014-01-01 01:56 - 01472048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2014-02-13 17:36 - 2014-01-01 01:55 - 00381168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2014-02-13 17:36 - 2014-01-01 00:59 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-02-13 17:36 - 2014-01-01 00:57 - 01214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2014-02-13 17:36 - 2014-01-01 00:56 - 00960512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-02-13 17:36 - 2013-12-31 00:33 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2014-02-13 17:36 - 2013-12-31 00:32 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2014-02-13 17:36 - 2013-12-31 00:31 - 00947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2014-02-13 17:36 - 2013-12-31 00:31 - 00914944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2014-02-13 17:36 - 2013-12-27 16:09 - 00419160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2014-02-13 17:36 - 2013-12-27 09:57 - 00842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2014-02-13 17:36 - 2013-12-27 09:57 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2014-02-13 17:36 - 2013-12-27 09:23 - 00749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2014-02-13 17:36 - 2013-12-27 08:03 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2014-02-13 17:36 - 2013-12-27 08:03 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2014-02-13 17:36 - 2013-12-27 07:37 - 00588800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2014-02-13 17:36 - 2013-12-21 08:21 - 00376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2014-02-13 17:36 - 2013-12-17 08:21 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2014-02-13 17:36 - 2013-12-14 07:31 - 13949440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-02-13 17:36 - 2013-12-14 07:19 - 18576384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-02-13 17:36 - 2013-12-13 11:54 - 00131160 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2014-02-13 17:36 - 2013-12-13 07:36 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2014-02-13 17:36 - 2013-12-09 09:05 - 21199256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-02-13 17:36 - 2013-12-09 05:51 - 18643560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-02-13 17:36 - 2013-12-09 04:25 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-02-13 17:35 - 2014-01-04 16:54 - 00138240 _____ () C:\WINDOWS\system32\OEMLicense.dll
2014-02-13 17:35 - 2014-01-04 16:08 - 00103936 _____ () C:\WINDOWS\SysWOW64\OEMLicense.dll
2014-02-13 17:35 - 2013-12-31 00:34 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2014-02-13 17:35 - 2013-12-27 11:38 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2014-02-13 17:35 - 2013-12-27 09:16 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-02-13 17:35 - 2013-12-13 08:24 - 00121088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBAUDIO.sys
2014-02-13 17:35 - 2013-12-13 06:32 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2014-02-13 16:36 - 2013-12-09 01:19 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll
2014-02-13 16:36 - 2013-12-09 00:55 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll
2014-02-13 16:34 - 2014-01-07 06:00 - 02397184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2014-02-13 16:34 - 2014-01-07 05:30 - 02071552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2014-02-13 16:34 - 2013-12-09 01:27 - 02152448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2014-02-13 16:34 - 2013-12-09 00:54 - 01317376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2014-02-13 16:34 - 2013-11-21 07:42 - 04604416 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2014-02-13 16:34 - 2013-11-21 06:44 - 03936256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2014-02-13 16:33 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-02-13 16:33 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2014-02-13 16:33 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll
2014-02-13 16:33 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-02-13 16:33 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-02-13 16:33 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-02-13 16:33 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-02-13 16:33 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-02-13 16:33 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-02-13 16:33 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-02-13 16:33 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-02-13 16:33 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-02-13 16:33 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-02-13 16:33 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2014-02-13 16:33 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-02-13 16:33 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-02-13 16:33 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-02-13 16:33 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-02-13 16:33 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-02-13 16:33 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-02-13 16:33 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-02-13 16:33 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-02-13 16:33 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-02-13 16:33 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-02-13 16:33 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-02-13 16:33 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-02-13 16:33 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-02-13 16:33 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-02-13 16:33 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-02-13 16:33 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-02-13 16:33 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-02-13 16:33 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-02-13 16:33 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-02-13 16:33 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-02-13 16:33 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-02-13 16:33 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-02-13 16:33 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-02-13 16:31 - 2014-01-04 21:50 - 01462216 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-02-13 16:31 - 2014-01-04 20:22 - 01202888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-02-13 16:31 - 2014-01-04 15:30 - 13209088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-02-13 16:31 - 2014-01-04 15:23 - 11702272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-02-13 16:31 - 2014-01-04 14:42 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-02-13 16:31 - 2014-01-04 14:40 - 07416832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-02-13 16:31 - 2014-01-04 14:36 - 00830976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-02-13 16:31 - 2014-01-04 14:28 - 04961792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-02-13 16:31 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\SysWOW64\connectedsearch-results.searchconnector-ms
2014-02-13 16:31 - 2013-12-21 03:10 - 00009701 _____ () C:\WINDOWS\system32\connectedsearch-results.searchconnector-ms
2014-02-13 16:31 - 2013-12-09 03:57 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2014-02-13 16:31 - 2013-12-09 02:51 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2014-02-13 16:30 - 2013-12-20 11:10 - 01113040 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2014-02-13 16:30 - 2013-12-20 07:13 - 00835584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2014-02-13 16:29 - 2014-01-07 08:03 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2014-02-13 16:29 - 2014-01-07 06:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2014-02-13 16:28 - 2014-01-09 09:25 - 02804224 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2014-02-13 16:28 - 2014-01-09 08:59 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2014-02-13 16:28 - 2014-01-09 08:59 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2014-02-13 16:28 - 2014-01-09 08:49 - 00919040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2014-02-13 16:28 - 2014-01-09 08:44 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-02-13 16:28 - 2014-01-09 08:43 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll
2014-02-13 16:28 - 2014-01-09 08:29 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll
2014-02-13 16:28 - 2014-01-09 08:28 - 04217344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-02-13 16:28 - 2014-01-09 08:28 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2014-02-13 16:28 - 2014-01-09 08:18 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-02-12 19:10 - 2014-02-12 19:10 - 00000000 ____D () C:\WINDOWS\SysWOW64\Adobe
2014-02-12 19:06 - 2014-02-12 19:06 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\3264
2014-02-12 19:04 - 2014-02-12 19:04 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\2869
2014-02-09 19:44 - 2014-02-09 19:44 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Ashampoo Slideshow Studio HD 3
2014-02-09 12:36 - 2014-02-09 12:36 - 00001252 _____ () C:\Users\Kostík a Irenočka\Desktop\ConvertXToDVD 5.lnk
2014-02-09 12:35 - 2014-02-09 12:35 - 00000000 ____D () C:\Users\Kostík a Irenočka\Documents\ConvertXtoDVD
2014-02-08 14:51 - 2014-02-08 14:56 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Spy Emergency
2014-02-08 14:51 - 2014-02-08 14:51 - 00001005 _____ () C:\Users\Public\Desktop\Spy Emergency.lnk
2014-02-08 14:51 - 2014-02-08 14:51 - 00001005 _____ () C:\ProgramData\Desktop\Spy Emergency.lnk
2014-02-08 14:51 - 2014-02-08 14:51 - 00000000 ____D () C:\ProgramData\NETGATE
2014-02-08 14:51 - 2011-04-21 10:31 - 00024408 _____ (NETGATE Technologies s.r.o.) C:\WINDOWS\system32\Drivers\spyemrg_access.sys
2014-02-08 14:51 - 2011-04-21 10:31 - 00018776 _____ (NETGATE Technologies s.r.o.) C:\WINDOWS\system32\Drivers\spyemrg_guard.sys
2014-02-08 14:51 - 2011-04-21 10:31 - 00017240 _____ (NETGATE Technologies s.r.o.) C:\WINDOWS\system32\Drivers\spyemrg.sys
2014-02-07 15:50 - 2014-02-07 15:50 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Local\DM
2014-02-01 18:14 - 2014-02-01 18:14 - 00000921 _____ () C:\Users\Public\Desktop\AIMP3.lnk
2014-02-01 18:14 - 2014-02-01 18:14 - 00000921 _____ () C:\ProgramData\Desktop\AIMP3.lnk
2014-02-01 18:10 - 2014-02-01 18:10 - 00000000 ____D () C:\ProgramData\Licenses
2014-02-01 16:00 - 2014-02-01 16:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2014-02-01 09:17 - 2014-02-01 09:17 - 00001023 _____ () C:\Users\Public\Desktop\UltraISO.lnk
2014-02-01 09:17 - 2014-02-01 09:17 - 00001023 _____ () C:\ProgramData\Desktop\UltraISO.lnk
2014-02-01 09:17 - 2014-02-01 09:17 - 00000000 ____D () C:\Users\Kostík a Irenočka\Documents\My ISO Files
2014-02-01 09:15 - 2014-02-16 13:06 - 00000896 _____ () C:\Users\Kostík a Irenočka\Desktop\KMPlayer.lnk
2014-02-01 09:15 - 2014-02-01 09:15 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2014-02-01 09:15 - 2014-02-01 09:15 - 00000000 ____D () C:\Program Files\The KMPlayer
2014-01-25 10:51 - 2014-01-25 10:51 - 00003692 _____ () C:\WINDOWS\System32\Tasks\One-Click Optimizer
2014-01-25 10:51 - 2014-01-25 10:51 - 00001246 _____ () C:\Users\Kostík a Irenočka\Desktop\Ashampoo WinOptimizer 10.lnk
2014-01-25 10:51 - 2009-08-24 21:13 - 00034304 _____ (mst software GmbH, Germany) C:\WINDOWS\system32\DfSdkBt.exe
2014-01-25 10:45 - 2014-02-22 12:18 - 00001021 _____ () C:\Users\Kostík a Irenočka\Desktop\Total Commander 64 bit.lnk
2014-01-25 10:31 - 2014-01-25 10:31 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Local\Skype
2014-01-25 10:09 - 2014-01-25 10:09 - 00000000 ____D () C:\Users\Default\AppData\Roaming\IObit
2014-01-25 10:09 - 2014-01-25 10:09 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\IObit

==================== One Month Modified Files and Folders =======

2014-02-22 13:05 - 2014-02-22 13:04 - 00025640 _____ () C:\Users\Kostík a Irenočka\Desktop\FRST.txt
2014-02-22 13:04 - 2014-02-22 13:04 - 00000000 ____D () C:\FRST
2014-02-22 13:03 - 2014-02-22 13:03 - 02154496 _____ (Farbar) C:\Users\Kostík a Irenočka\Desktop\FRST64.exe
2014-02-22 13:03 - 2014-02-22 11:21 - 00120913 _____ () C:\WINDOWS\WindowsUpdate.log
2014-02-22 13:02 - 2014-02-22 11:48 - 00002215 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-02-22 13:02 - 2014-02-22 11:48 - 00002215 _____ () C:\ProgramData\Desktop\Google Chrome.lnk
2014-02-22 13:00 - 2014-02-22 11:47 - 00000996 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-22 13:00 - 2014-01-08 14:02 - 00000000 __RDO () C:\Users\Kostík a Irenočka\SkyDrive
2014-02-22 13:00 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-02-22 12:59 - 2014-02-22 12:59 - 00004550 _____ () C:\WINDOWS\PFRO.log
2014-02-22 12:59 - 2014-02-22 12:57 - 00000000 ____D () C:\AdwCleaner
2014-02-22 12:59 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-02-22 12:58 - 2014-02-22 12:58 - 00001186 _____ () C:\Users\Kostík a Irenočka\Desktop\Nový textový dokument.txt
2014-02-22 12:58 - 2014-02-22 11:47 - 00001000 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-22 12:56 - 2014-02-22 12:56 - 00000000 ____D () C:\Program Files (x86)\MPEG2_Decoders
2014-02-22 12:53 - 2014-01-08 07:18 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1848220903-3089343494-3484960918-1001
2014-02-22 12:48 - 2014-01-17 13:18 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-02-22 12:48 - 2014-01-08 16:23 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-02-22 12:44 - 2014-02-22 12:44 - 30396025 _____ () C:\Users\Kostík a Irenočka\Desktop\dvbdream_codecs.zip
2014-02-22 12:36 - 2014-01-08 20:15 - 00000000 ____D () C:\dvbdream
2014-02-22 12:33 - 2014-02-22 12:33 - 00284905 _____ () C:\Users\Kostík a Irenočka\Desktop\mm_aac_dec_0.9.6.0_bin.zip
2014-02-22 12:23 - 2014-01-09 16:13 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\uTorrent
2014-02-22 12:18 - 2014-02-22 12:18 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2014-02-22 12:18 - 2014-01-25 10:45 - 00001021 _____ () C:\Users\Kostík a Irenočka\Desktop\Total Commander 64 bit.lnk
2014-02-22 12:18 - 2014-01-08 15:00 - 00000000 ____D () C:\Program Files\totalcmd
2014-02-22 12:16 - 2014-01-08 18:53 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Skype
2014-02-22 12:16 - 2014-01-08 16:07 - 00001106 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-02-22 12:16 - 2014-01-08 16:07 - 00001106 _____ () C:\ProgramData\Desktop\TeamViewer 9.lnk
2014-02-22 12:15 - 2014-02-22 12:15 - 00002729 _____ () C:\Users\Public\Desktop\Skype 6.14.73.104.lnk
2014-02-22 12:15 - 2014-02-22 12:15 - 00002729 _____ () C:\ProgramData\Desktop\Skype 6.14.73.104.lnk
2014-02-22 12:15 - 2014-01-08 18:53 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-02-22 12:15 - 2014-01-08 18:53 - 00000000 ____D () C:\ProgramData\Skype
2014-02-22 12:14 - 2014-02-22 12:14 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2014-02-22 12:14 - 2014-01-17 16:29 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Notepad++
2014-02-22 12:14 - 2014-01-17 16:29 - 00000000 ____D () C:\Program Files (x86)\Notepad++
2014-02-22 12:12 - 2014-02-22 12:12 - 00001483 _____ () C:\Users\Public\Desktop\Free Video Call Recorder for Skype.lnk
2014-02-22 12:12 - 2014-02-22 12:12 - 00001483 _____ () C:\ProgramData\Desktop\Free Video Call Recorder for Skype.lnk
2014-02-22 12:12 - 2014-02-22 12:12 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-02-22 12:12 - 2014-01-08 18:58 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\DVDVideoSoft
2014-02-22 12:10 - 2014-02-22 12:10 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\23383
2014-02-22 12:10 - 2014-02-22 12:09 - 00000000 ____D () C:\Program Files (x86)\DVDFab 9
2014-02-22 12:09 - 2014-02-22 12:09 - 00001011 _____ () C:\Users\Public\Desktop\DVDFab 9.lnk
2014-02-22 12:09 - 2014-02-22 12:09 - 00001011 _____ () C:\ProgramData\Desktop\DVDFab 9.lnk
2014-02-22 12:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-02-22 11:53 - 2014-02-22 11:47 - 00003972 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2014-02-22 11:53 - 2014-02-22 11:47 - 00003736 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2014-02-22 11:48 - 2014-01-17 13:18 - 00003802 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-02-22 11:48 - 2014-01-08 07:43 - 00000000 ____D () C:\Program Files (x86)\Google
2014-02-22 11:26 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-02-22 11:25 - 2014-01-08 18:59 - 00004034 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{50FE7E49-E7FD-42A5-A351-FD970AB85E5C}
2014-02-22 11:25 - 2013-11-14 13:42 - 01745984 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-02-22 11:25 - 2013-11-14 13:25 - 00738682 _____ () C:\WINDOWS\system32\perfh005.dat
2014-02-22 11:25 - 2013-11-14 13:25 - 00151404 _____ () C:\WINDOWS\system32\perfc005.dat
2014-02-22 11:24 - 2014-02-22 11:24 - 00000913 _____ () C:\Users\Kostík a Irenočka\Desktop\µTorrent.lnk
2014-02-22 11:24 - 2014-02-22 11:24 - 00000893 _____ () C:\Users\Kostík a Irenočka\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2014-02-18 19:54 - 2014-01-09 18:40 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\The Bat!
2014-02-18 17:22 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-02-18 14:15 - 2014-01-17 18:42 - 00000560 _____ () C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task d161b374-411d-4372-8f3c-a8a063d73d28.job
2014-02-18 13:47 - 2014-01-08 19:09 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\vlc
2014-02-18 07:52 - 2014-01-09 16:03 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\YouTube Downloader
2014-02-17 22:00 - 2013-08-22 16:38 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-02-17 22:00 - 2013-08-22 16:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-17 19:03 - 2014-02-17 19:03 - 00000000 ____D () C:\Program Files\MOSCHIP
2014-02-17 18:28 - 2014-02-17 18:28 - 00000000 ____D () C:\Users\Kostík a Irenočka\Desktop\Postup setting z A200 do A100
2014-02-17 17:07 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-02-16 16:17 - 2014-02-16 16:17 - 00000000 ____D () C:\sťahovanie
2014-02-16 14:14 - 2014-01-08 07:05 - 00000000 ___RD () C:\Users\Kostík a Irenočka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-02-16 13:06 - 2014-02-01 09:15 - 00000896 _____ () C:\Users\Kostík a Irenočka\Desktop\KMPlayer.lnk
2014-02-15 18:12 - 2014-02-15 18:12 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Local\Macromedia
2014-02-15 16:26 - 2014-02-15 16:26 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\31957
2014-02-15 09:36 - 2014-01-09 16:27 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-02-15 09:32 - 2014-02-15 09:32 - 00002703 _____ () C:\Users\Kostík a Irenočka\Desktop\The Bat! E-Mail Client.lnk
2014-02-15 09:32 - 2014-01-09 18:39 - 00000000 ____D () C:\Program Files (x86)\The Bat!
2014-02-15 09:30 - 2014-01-08 19:15 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-02-15 09:29 - 2014-02-15 09:29 - 00001362 _____ () C:\Users\Kostík a Irenočka\Desktop\Ashampoo Slideshow Studio HD 3.lnk
2014-02-15 09:29 - 2014-01-08 19:15 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-02-15 09:29 - 2014-01-08 19:15 - 00000000 ____D () C:\Program Files (x86)\Ashampoo
2014-02-15 09:23 - 2014-02-15 09:23 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-14 17:13 - 2014-02-22 11:29 - 00000000 ____D () C:\Users\Kostík a Irenočka\Desktop\VUplus
2014-02-13 17:41 - 2014-01-08 07:05 - 00000000 ___RD () C:\Users\Kostík a Irenočka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-02-13 17:39 - 2013-08-22 15:44 - 00493552 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-02-13 17:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-02-13 17:28 - 2014-01-08 15:18 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-02-13 17:28 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer
2014-02-13 17:28 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager
2014-02-13 17:28 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera
2014-02-13 17:26 - 2014-01-08 08:22 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-02-13 17:26 - 2013-08-22 14:25 - 00000202 _____ () C:\WINDOWS\win.ini
2014-02-13 17:22 - 2014-01-08 08:22 - 88567024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-02-12 19:10 - 2014-02-12 19:10 - 00000000 ____D () C:\WINDOWS\SysWOW64\Adobe
2014-02-12 19:06 - 2014-02-12 19:06 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\3264
2014-02-12 19:04 - 2014-02-12 19:04 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\2869
2014-02-12 18:15 - 2014-01-08 17:16 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\AIMP3
2014-02-09 19:44 - 2014-02-09 19:44 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Ashampoo Slideshow Studio HD 3
2014-02-09 12:36 - 2014-02-09 12:36 - 00001252 _____ () C:\Users\Kostík a Irenočka\Desktop\ConvertXToDVD 5.lnk
2014-02-09 12:36 - 2014-01-08 20:00 - 00099384 _____ () C:\Users\Kostík a Irenočka\AppData\Roaming\inst.exe
2014-02-09 12:36 - 2014-01-08 20:00 - 00082816 _____ (VSO Software) C:\Users\Kostík a Irenočka\AppData\Roaming\pcouffin.sys
2014-02-09 12:36 - 2014-01-08 20:00 - 00007859 _____ () C:\Users\Kostík a Irenočka\AppData\Roaming\pcouffin.cat
2014-02-09 12:36 - 2014-01-08 20:00 - 00000055 _____ () C:\Users\Kostík a Irenočka\AppData\Roaming\pcouffin.log
2014-02-09 12:36 - 2014-01-08 20:00 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Vso
2014-02-09 12:36 - 2014-01-08 19:57 - 00000000 ____D () C:\Program Files (x86)\VSO
2014-02-09 12:35 - 2014-02-09 12:35 - 00000000 ____D () C:\Users\Kostík a Irenočka\Documents\ConvertXtoDVD
2014-02-08 16:12 - 2014-01-08 19:09 - 00000887 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-02-08 16:12 - 2014-01-08 19:09 - 00000887 _____ () C:\ProgramData\Desktop\VLC media player.lnk
2014-02-08 14:56 - 2014-02-08 14:51 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Spy Emergency
2014-02-08 14:51 - 2014-02-08 14:51 - 00001005 _____ () C:\Users\Public\Desktop\Spy Emergency.lnk
2014-02-08 14:51 - 2014-02-08 14:51 - 00001005 _____ () C:\ProgramData\Desktop\Spy Emergency.lnk
2014-02-08 14:51 - 2014-02-08 14:51 - 00000000 ____D () C:\ProgramData\NETGATE
2014-02-08 14:38 - 2014-01-08 15:09 - 00000000 ____D () C:\Program Files (x86)\K-Lite Codec Pack
2014-02-07 15:50 - 2014-02-07 15:50 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Local\DM
2014-02-07 11:04 - 2014-01-08 07:04 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Local\VirtualStore
2014-02-06 13:16 - 2014-02-13 16:33 - 23170048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-02-06 12:30 - 2014-02-13 16:33 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2014-02-06 12:30 - 2014-02-13 16:33 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll
2014-02-06 12:12 - 2014-02-13 16:33 - 02765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-02-06 12:07 - 2014-02-13 16:33 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-02-06 12:06 - 2014-02-13 16:33 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-02-06 11:57 - 2014-02-13 16:33 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-02-06 11:56 - 2014-02-13 16:33 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-02-06 11:49 - 2014-02-13 16:33 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-02-06 11:48 - 2014-02-13 16:33 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-02-06 11:48 - 2014-02-13 16:33 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-02-06 11:38 - 2014-02-13 16:33 - 17103872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-02-06 11:32 - 2014-02-13 16:33 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-02-06 11:20 - 2014-02-13 16:33 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2014-02-06 11:17 - 2014-02-13 16:33 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-02-06 11:11 - 2014-02-13 16:33 - 05768704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-02-06 11:01 - 2014-02-13 16:33 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-02-06 11:00 - 2014-02-13 16:33 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-02-06 10:57 - 2014-02-13 16:33 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-02-06 10:57 - 2014-02-13 16:33 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-02-06 10:52 - 2014-02-13 16:33 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-02-06 10:52 - 2014-02-13 16:33 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-02-06 10:50 - 2014-02-13 16:33 - 02041856 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-02-06 10:47 - 2014-02-13 16:33 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-02-06 10:46 - 2014-02-13 16:33 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-02-06 10:25 - 2014-02-13 16:33 - 04244480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-02-06 10:25 - 2014-02-13 16:33 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-02-06 10:24 - 2014-02-13 16:33 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-02-06 10:22 - 2014-02-13 16:33 - 13051392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-02-06 10:13 - 2014-02-13 16:33 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-02-06 10:09 - 2014-02-13 16:33 - 01964032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-02-06 10:03 - 2014-02-13 16:33 - 11266048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-02-06 09:55 - 2014-02-13 16:33 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-02-06 09:41 - 2014-02-13 16:33 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-02-06 09:40 - 2014-02-13 16:33 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-02-06 09:36 - 2014-02-13 16:33 - 01156096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-02-06 09:34 - 2014-02-13 16:33 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-02-03 17:18 - 2014-01-08 14:56 - 00138240 ___SH () C:\Users\Kostík a Irenočka\Desktop\Thumbs.db
2014-02-01 18:14 - 2014-02-01 18:14 - 00000921 _____ () C:\Users\Public\Desktop\AIMP3.lnk
2014-02-01 18:14 - 2014-02-01 18:14 - 00000921 _____ () C:\ProgramData\Desktop\AIMP3.lnk
2014-02-01 18:14 - 2014-01-08 17:16 - 00000000 ____D () C:\Program Files (x86)\AIMP3
2014-02-01 18:10 - 2014-02-01 18:10 - 00000000 ____D () C:\ProgramData\Licenses
2014-02-01 16:57 - 2014-01-17 18:42 - 00001864 _____ () C:\Users\Kostík a Irenočka\Desktop\SUPERAntiSpyware Professional.lnk
2014-02-01 16:00 - 2014-02-01 16:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2014-02-01 09:17 - 2014-02-01 09:17 - 00001023 _____ () C:\Users\Public\Desktop\UltraISO.lnk
2014-02-01 09:17 - 2014-02-01 09:17 - 00001023 _____ () C:\ProgramData\Desktop\UltraISO.lnk
2014-02-01 09:17 - 2014-02-01 09:17 - 00000000 ____D () C:\Users\Kostík a Irenočka\Documents\My ISO Files
2014-02-01 09:17 - 2014-01-08 19:04 - 00000000 ____D () C:\Program Files (x86)\UltraISO
2014-02-01 09:15 - 2014-02-01 09:15 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
2014-02-01 09:15 - 2014-02-01 09:15 - 00000000 ____D () C:\Program Files\The KMPlayer
2014-01-25 10:51 - 2014-01-25 10:51 - 00003692 _____ () C:\WINDOWS\System32\Tasks\One-Click Optimizer
2014-01-25 10:51 - 2014-01-25 10:51 - 00001246 _____ () C:\Users\Kostík a Irenočka\Desktop\Ashampoo WinOptimizer 10.lnk
2014-01-25 10:48 - 2014-01-08 18:33 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-01-25 10:36 - 2014-01-08 19:57 - 00000000 ____D () C:\ProgramData\VSO
2014-01-25 10:35 - 2014-01-08 20:00 - 00000000 ____D () C:\Users\Kostík a Irenočka\Documents\PcSetup
2014-01-25 10:31 - 2014-01-25 10:31 - 00000000 ____D () C:\Users\Kostík a Irenočka\AppData\Local\Skype
2014-01-25 10:09 - 2014-01-25 10:09 - 00000000 ____D () C:\Users\Default\AppData\Roaming\IObit
2014-01-25 10:09 - 2014-01-25 10:09 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\IObit
2014-01-23 11:54 - 2014-01-17 18:42 - 00000560 _____ () C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task bcffb18f-08e3-4db6-a2d2-27349388aea3.job

Some content of TEMP:
====================
C:\Users\Kostík a Irenočka\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
Přílohy
Addition.rar
(10.68 KiB) Staženo 56 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119534
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Sken AdwCleanerom 2

#3 Příspěvek od Rudy »

Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start
C:\Program Files (x86)\Skype\Toolbars
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
CHR DefaultSearchKeyword: conduit.search
CHR DefaultSearchProvider: Conduit Search
CHR DefaultSearchURL: http://search.conduit.com/Results.aspx? ... D25E814&q={searchTerms}&SSPV=
CHR DefaultNewTabURL:
CHR Extension: (YoWindow Weather) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef [2014-02-22]
CHR Extension: (Absolute Radio Live Scores) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgmkadilkeimcolingoooifhoknpkifi [2014-02-22]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-01-03]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1363616 2014-01-03] (Microsoft Corporation)
U3 DfSdkS;
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\Kostík a Irenočka\AppData\Local\Temp
AlternateDataStreams: C:\ProgramData\Temp:0888F409
AlternateDataStreams: C:\ProgramData\Temp:3440EB47
AlternateDataStreams: C:\ProgramData\Temp:66633281
AlternateDataStreams: C:\Users\Kostík a Irenočka\SkyDrive:ms-properties
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rastislav123456
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 30 pro 2012 21:17

Re: Sken AdwCleanerom 2

#4 Příspěvek od rastislav123456 »

Tady to je a předem děkuji

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 22-02-2014 01
Ran by Kostík a Irenočka at 2014-02-22 18:31:38 Run:1
Running from C:\Users\Kostík a Irenočka\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
C:\Program Files (x86)\Skype\Toolbars
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
CHR DefaultSearchKeyword: conduit.search
CHR DefaultSearchProvider: Conduit Search
CHR DefaultSearchURL: http://search.conduit.com/Results.aspx? ... D25E814&q={searchTerms}&SSPV=
CHR DefaultNewTabURL:
CHR Extension: (YoWindow Weather) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef [2014-02-22]
CHR Extension: (Absolute Radio Live Scores) - C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgmkadilkeimcolingoooifhoknpkifi [2014-02-22]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-01-03]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1363616 2014-01-03] (Microsoft Corporation)
U3 DfSdkS;
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\Kostík a Irenočka\AppData\Local\Temp
AlternateDataStreams: C:\ProgramData\Temp:0888F409
AlternateDataStreams: C:\ProgramData\Temp:3440EB47
AlternateDataStreams: C:\ProgramData\Temp:66633281
AlternateDataStreams: C:\Users\Kostík a Irenočka\SkyDrive:ms-properties
End
*****************

C:\Program Files (x86)\Skype\Toolbars => Moved successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => Value deleted successfully.
HKCR\PROTOCOLS\Handler\skype-ie-addon-data => Key deleted successfully.
HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8} => Key deleted successfully.
HKCR\Wow6432Node\PROTOCOLS\Handler\skype-ie-addon-data => Key not found.
HKCR\Wow6432Node\CLSID\{91774881-D725-4E58-B298-07617B9B86A8} => Key deleted successfully.
CHR DefaultSearchKeyword: conduit.search ==> The Chrome "Settings" can be used to fix the entry.
CHR DefaultSearchProvider: Conduit Search ==> The Chrome "Settings" can be used to fix the entry.
CHR DefaultSearchURL: http://search.conduit.com/Results.aspx? ... D25E814&q={searchTerms}&SSPV= ==> The Chrome "Settings" can be used to fix the entry.
C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\fanogbnclpilemkifpjeglokomebpnef => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgmkadilkeimcolingoooifhoknpkifi => Moved successfully.
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl => Key deleted successfully.
"C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx" => File/Directory not found.
c2cautoupdatesvc => Service deleted successfully.
DfSdkS => Service deleted successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => Moved successfully.
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => Moved successfully.

"C:\Users\Kostík a Irenočka\AppData\Local\Temp" directory move:

C:\Users\Kostík a Irenočka\AppData\Local\Temp\AdwCleaner.jpg => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\ArcBC9D.tmp => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\ArcBCFD.tmp => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\chrome_installer.log => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\Cleaning.ico => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\Donate.ico => Moved successfully.
Could not move "C:\Users\Kostík a Irenočka\AppData\Local\Temp\etilqs_BfSbqIvbnPJoYB2" => Scheduled to move on reboot.
Could not move "C:\Users\Kostík a Irenočka\AppData\Local\Temp\etilqs_p7tgEnummfEyOTL" => Scheduled to move on reboot.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\jusched.log => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\MpCmdRun.log => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\paypal.bmp => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\Report.ico => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\Scan.ico => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\ShareCPLlog00.sqm => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\Uninstall.ico => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\winstore.log => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\wmplog00.sqm => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\{E8DBF0D5-6337-4B97-A97C-2B153338D223}\Readme.txt => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\nst94A.tmp\CdcHlp.dll => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\nst94A.tmp\InstActivation.dll => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\nst94A.tmp\InstallOptions.dll => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\nst94A.tmp\ioSpecial.ini => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\nst94A.tmp\modern-header.bmp => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\nst94A.tmp\modern-wizard.bmp => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\msohtmlclip1\01\clip_colorschememapping.xml => Moved successfully.
C:\Users\Kostík a Irenočka\AppData\Local\Temp\msohtmlclip1\01\clip_themedata.thmx => Moved successfully.
Could not move "C:\Users\Kostík a Irenočka\AppData\Local\Temp" directory. => Scheduled to move on reboot.

C:\ProgramData\Temp => ":0888F409" ADS removed successfully.
C:\ProgramData\Temp => ":3440EB47" ADS removed successfully.
C:\ProgramData\Temp => ":66633281" ADS removed successfully.
"C:\Users\Kostík a Irenočka\SkyDrive" => ":ms-properties" ADS not found.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-02-22 18:33:13)<=

"C:\Users\Kostík a Irenočka\AppData\Local\Temp\etilqs_BfSbqIvbnPJoYB2" => File could not move.
"C:\Users\Kostík a Irenočka\AppData\Local\Temp\etilqs_p7tgEnummfEyOTL" => File could not move.
C:\Users\Kostík a Irenočka\AppData\Local\Temp => Is moved successfully.

==== End of Fixlog ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119534
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Sken AdwCleanerom 2

#5 Příspěvek od Rudy »

Vše smazáno.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rastislav123456
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 30 pro 2012 21:17

Re: Sken AdwCleanerom 2

#6 Příspěvek od rastislav123456 »

Moc díky.

Ešte jedna otázočka,môžem takto postupovať znovu ked sa mi do PC dostane nejaká háved.Dekuji.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119534
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Sken AdwCleanerom 2

#7 Příspěvek od Rudy »

Samozřejmě můžete. Je ale nutné pak napsat skript. Co do něj napíšete, bude smazáno. Pokud se tedy spletete, znefunkčníte buś některou aplikaci, nebo systém. Na to pozor!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rastislav123456
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 30 pro 2012 21:17

Re: Sken AdwCleanerom 2

#8 Příspěvek od rastislav123456 »

OK,MOC Díky.To čo mám v PC uložené na systémovom disku C tie logy AdwCleaner a FRST + to čo je v karanténe môžem vymazať,alebo to mám na disku radšej ponechať.Ešte raz moc dakujem.
Hezký den,nashle.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119534
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Sken AdwCleanerom 2

#9 Příspěvek od Rudy »

Vše smažte, jen ADW spusťte a klikněte na >uninstall<.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rastislav123456
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 30 pro 2012 21:17

Re: Sken AdwCleanerom 2

#10 Příspěvek od rastislav123456 »

DObrý den,zasa sa mi tam dostala nejaká háved,vůbec nevím odkud to chodí.

Tady je log z AdwCleanera

# AdwCleaner v3.019 - Report created 23/02/2014 at 15:04:18
# Updated 17/02/2014 by Xplode
# Operating System : Windows 8.1 Pro with Media Center (64 bits)
# Username : Kostík a Irenočka - PC-POKOJÍČEK
# Running from : C:\Users\Kostík a Irenočka\Desktop\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\59cia5kz.default\user.js
Folder Found C:\Program Files (x86)\Common Files\Spigot
Folder Found C:\Users\Kostík a Irenočka\AppData\Local\Conduit
Folder Found C:\Users\Kostík a Irenočka\AppData\Local\NativeMessaging

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\Search Settings
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Softonic
Key Found : [x64] HKCU\Software\Conduit
Key Found : [x64] HKCU\Software\Softonic
Key Found : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Found : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16518


-\\ Mozilla Firefox v27.0.1 (cs)

[ File : C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\59cia5kz.default\prefs.js ]


-\\ Google Chrome v33.0.1750.117

[ File : C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Found : search_url
Found : suggest_url
Found : keyword
Found : search_url
Found : search_url
Found : suggest_url

*************************

AdwCleaner[R2].txt - [9960 octets] - [22/02/2014 12:58:11]
AdwCleaner[R4].txt - [3639 octets] - [23/02/2014 15:04:18]
AdwCleaner[S0].txt - [5106 octets] - [22/02/2014 12:59:02]

########## EOF - C:\AdwCleaner\AdwCleaner[R4].txt - [3759 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119534
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Sken AdwCleanerom 2

#11 Příspěvek od Rudy »

Proboha, kam to chodíte? Spusťte znovu ADW a klikněte na >Clean<. po restartu se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rastislav123456
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 30 pro 2012 21:17

Re: Sken AdwCleanerom 2

#12 Příspěvek od rastislav123456 »

Tady je

# AdwCleaner v3.019 - Report created 23/02/2014 at 17:19:32
# Updated 17/02/2014 by Xplode
# Operating System : Windows 8.1 Pro with Media Center (64 bits)
# Username : Kostík a Irenočka - PC-POKOJÍČEK
# Running from : C:\Users\Kostík a Irenočka\Desktop\adwcleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****

File Found : C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\59cia5kz.default\user.js
Folder Found C:\Program Files (x86)\Common Files\Spigot
Folder Found C:\Users\Kostík a Irenočka\AppData\Local\Conduit
Folder Found C:\Users\Kostík a Irenočka\AppData\Local\NativeMessaging

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\Search Settings
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKCU\Software\Softonic
Key Found : [x64] HKCU\Software\Conduit
Key Found : [x64] HKCU\Software\Softonic
Key Found : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Found : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Found : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16518


-\\ Mozilla Firefox v27.0.1 (cs)

[ File : C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\59cia5kz.default\prefs.js ]


-\\ Google Chrome v33.0.1750.117

[ File : C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Found : search_url
Found : suggest_url
Found : keyword
Found : search_url
Found : search_url
Found : suggest_url

*************************

AdwCleaner[R5].txt - [3579 octets] - [23/02/2014 17:19:32]

########## EOF - C:\AdwCleaner\AdwCleaner[R5].txt - [3639 octets] ##########

Tady je ešte druhý log,tak nevím který je správný tak som skopíroval oba.


# AdwCleaner v3.019 - Report created 23/02/2014 at 17:19:58
# Updated 17/02/2014 by Xplode
# Operating System : Windows 8.1 Pro with Media Center (64 bits)
# Username : Kostík a Irenočka - PC-POKOJÍČEK
# Running from : C:\Users\Kostík a Irenočka\Desktop\adwcleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files (x86)\Common Files\Spigot
Folder Deleted : C:\Users\Kostík a Irenočka\AppData\Local\Conduit
Folder Deleted : C:\Users\Kostík a Irenočka\AppData\Local\NativeMessaging
File Deleted : C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\59cia5kz.default\user.js

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\Search Settings
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.16518


-\\ Mozilla Firefox v27.0.1 (cs)

[ File : C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\59cia5kz.default\prefs.js ]


-\\ Google Chrome v33.0.1750.117

[ File : C:\Users\Kostík a Irenočka\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted : search_url
Deleted : suggest_url
Deleted : keyword

*************************

AdwCleaner[R5].txt - [3751 octets] - [23/02/2014 17:19:32]
AdwCleaner[S0].txt - [3578 octets] - [23/02/2014 17:19:58]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3638 octets] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119534
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Sken AdwCleanerom 2

#13 Příspěvek od Rudy »

Smazáno. Jak se PC chová?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rastislav123456
Návštěvník
Návštěvník
Příspěvky: 25
Registrován: 30 pro 2012 21:17

Re: Sken AdwCleanerom 2

#14 Příspěvek od rastislav123456 »

Chová se normálne :thumbsup:
Není treba ješte log z FRST?
Zatím nashle a MOC Díky.Nevím kde se bere tá háved.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119534
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Sken AdwCleanerom 2

#15 Příspěvek od Rudy »

Pokud je vše OK, nic dalšího není třeba. Tu havěť sbíráte buď na internetu, nebo při nějaké instalaci nečtete instalační okna a nezrušíte instalaci různých "bonusů", přilepených k některým freewarům. Mějte se a nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno