Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-
2014
Ran by Nefi (administrator) on NEFIK on 22-03-2014 13:19:02
Running from C:\Users\Nefi\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: Czech
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
Download link for 64-Bit Version:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or
outdated.
See tutorial for FRST:
http://www.geekstogo.com/forum/topic/335081-frst-
tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software
\btwdins.exe
(Microsoft Corporation) C:\Windows\System32\lpksetup.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components
\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management
Engine Components\DAL\jhi_service.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared
\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display
\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon
\RegSrvc.exe
(Microsoft Corporation) C:\Windows\System32\tcpsvcs.exe
(SafeNet, Inc.) C:\Program Files\SafeNet\Authentication\SAC\x64\SACSrv.exe
(Aventail Corporation) C:\Windows\system32\ngvpnmgr.exe
(CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
(Juniper Networks, Inc.) C:\Program Files (x86)\Common Files\Juniper
Networks\JUNS\dsAccessService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService
\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv
\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv
\nvstreamsvc.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update
Core\NvBackend.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy
Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management
\Utility.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
() C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0
eXtensible Host Controller Driver\Application\iusb3mon.exe
() C:\Program Files (x86)\Lenovo EasyCamera\monitor.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater
v4\pcee4.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Lenovo MuteSync\MuteSync.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management
Engine Components\LMS\LMS.exe
() C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe
(LENOVO) C:\Program Files (x86)\Lenovo\Lenovo CAPOSD\CAPOSD.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update
\jusched.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\system32\igfxtray.exe
(Intel Corporation) C:\Windows\system32\hkcmd.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
(Intel Corporation) C:\Windows\system32\igfxpers.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock
Controller Service\ICCProxy.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Dropbox, Inc.) C:\Users\Nefi\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office
\Office14\ONENOTEM.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows
Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows
Live\WLIDSvcM.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management
Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Blizzard Entertainment) C:\ProgramData\Battle.net\Agent
\Agent.beta.2753\Agent.exe
(Blizzard Entertainment) C:\Program Files (x86)\Battle.net
\Battle.net.4336\Battle.net.exe
(Blizzard Entertainment) D:\Gamesky\wow\Wow-64.exe
(Blizzard Entertainment) D:\Gamesky\wow\Utils\WowBrowserProxy.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
[2847016 2011-11-10] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
[12446824 2012-01-31] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA
\RAVBg64.exe [1156712 2011-11-15] (Realtek Semiconductor)
HKLM\...\Run: [SynLenovoGestureMgr] - C:\Program Files\Synaptics\SynTP
\SynLenovoGestureMgr.exe [408872 2011-11-10] (Synaptics)
HKLM\...\Run: [OnekeyStudio] - C:\Program Files (x86)\Lenovo\Onekey
Theater\OnekeyStudio.exe [789856 2012-06-15] (Lenovo)
HKLM\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App
\OneKey Recovery\MUITransfer\MUIStartMenu.exe [222504 2009-05-14]
(CyberLink Corp.)
HKLM\...\Run: [Energy Management] - C:\Program Files (x86)\Lenovo\Energy
Management\Energy Management.exe [8079408 2012-06-15] (Lenovo (Beijing)
Limited)
HKLM\...\Run: [EnergyUtility] - C:\Program Files (x86)\Lenovo\Energy
Management\Utility.exe [6202416 2012-06-15] (Lenovo(beijing) Limited)
HKLM\...\Run: [Lenovo EE Boot Optimizer] - C:\Program Files (x86)\Lenovo
\Boot Optimizer\PopWnd.exe [206176 2012-06-15] (Lenovo)
HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation
\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1179576
2014-02-05] (NVIDIA Corporation)
HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB
3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608
2012-03-27] (Intel Corporation)
HKLM-x32\...\Run: [Lenovo EasyCamera_Monitor] - C:\Program Files
(x86)\Lenovo EasyCamera\monitor.exe [258936 2012-02-06] ()
HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Program Files (x86)\Dolby
Home Theater v4\pcee4.exe [506712 2011-06-01] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [MuteSync] - C:\Program Files (x86)\Lenovo\Lenovo
MuteSync\MuteSync.exe [343040 2012-02-04] (Lenovo)
HKLM-x32\...\Run: [Intelligent Touchpad] - C:\Program Files\Lenovo
\Intelligent Touchpad\TouchZone.exe [291272 2011-12-08] ()
HKLM-x32\...\Run: [CAPOSD] - C:\Program Files (x86)\Lenovo\Lenovo CAPOSD
\CAPOSD.exe [1876992 2012-02-09] (LENOVO)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe
\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast
\AvastUI.exe [3767608 2014-03-21] (AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common
Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle
Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel
Corporation)
HKU\.DEFAULT\...\Run: [Copy] - C:\Users\Nefi\AppData\Roaming\Copy
\CopyAgent.exe [15501968 2014-03-01] (Barracuda Networks, Inc.)
HKU\S-1-5-21-2907302272-363145594-1910860209-1002\...\Run:
[ShowBatteryBar] - C:\Program Files\BatteryBar\ShowBatteryBar.exe [89600
2009-05-28] ()
HKU\S-1-5-21-2907302272-363145594-1910860209-1002\...\Run: [Skype] - C:
\Program Files (x86)\Skype\Phone\Skype.exe [20922016 2014-02-10] (Skype
Technologies S.A.)
HKU\S-1-5-21-2907302272-363145594-1910860209-1002\...\MountPoints2:
{76fd4bc9-cc20-11e1-acd0-446d57860a97} - K:\HPLauncher.exe
HKU\S-1-5-21-2907302272-363145594-1910860209-1002\...\MountPoints2:
{f4a84045-8180-11e2-ac46-047d7bf2ec64} - J:\LaunchU3.exe -a
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows
\system32\nvinitx.dll [174296 2014-02-08] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows
\SysWOW64\nvinit.dll [148528 2014-02-08] (NVIDIA Corporation)
Lsa: [Notification Packages] scecli C:\Program Files\Lenovo\Bluetooth
Software\BtwProximityCP.dll
Startup: C:\Users\Nefi\AppData\Roaming\Microsoft\Windows\Start Menu
\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Nefi\AppData\Roaming\Dropbox\bin
\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Nefi\AppData\Roaming\Microsoft\Windows\Start Menu
\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk ->
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft
Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.google.com/ig/redirectdomain ... &bmod=LENN
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.google.com/ie
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.google.com/ie
SearchScopes: HKCU - {07BC09C9-B448-4657-A22D-B7E8E61D52CB} URL =
http://search.yahoo.com/search?fr=chr-g ... ie&ei=utf-
8&ilc=12&type=902615&p={searchTerms}
SearchScopes: HKCU - {1D699CD0-D36A-4D00-990F-0E99EE342D40} URL =
http://websearch.ask.com/redirect?clien ... &src=kw&q=
{searchTerms}&locale=&apn_ptnrs=T8&apn_dtid=YYYYYYYYCZ&apn_uid=f8cae092-
265c-41b1-8fcb-7ebb08b50ee5&apn_sauid=1A41D188-9728-407F-8AB9-B934D6497214
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
http://www.google.com/search?q={sear
SearchScopes: HKCU - {F84A9A5F-4F25-43A4-8C21-E233128C6A76} URL =
http://search.yahoo.com/search?fr=chr-g ... ie&ei=utf-
8&ilc=12&type=541231&p={searchTerms}
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:
\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -
C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft
Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:
\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-
5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows
Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-
42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
(Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-
0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office
\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-
D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle
Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -
C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-
5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared
\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-
42B3008E02FF} - C:\Program Files (x86)\Microsoft Office
\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-
9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle
Corporation)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-
7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
(AVAST Software)
Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-
C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
(AVAST Software)
Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-
C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
(AVAST Software)
DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F}
https://juniper.net/dana-cached/sc/Juni ... Client.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:
\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of
Addition.txt
Tcpip\Parameters: [DhcpNameServer] 213.46.172.36 213.46.172.37
FireFox:
========
FF ProfilePath: C:\Users\Nefi\AppData\Roaming\Mozilla\Firefox\Profiles
\z55u58ki.default
FF Homepage: google.com
FF DefaultSearchEngine: Yahoo!
FF SelectedSearchEngine: Yahoo!
FF Keyword.URL: hxxp://search.yahoo.com/search?fr=greentree_ff1&ei=utf-
8&ilc=12&type=541231&p=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash
\NPSWF64_12_0_0_77.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft
Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:
\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed
\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files
(x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT
\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program
Files (x86)\Intel\Intel(R) Management Engine Components\IPT
\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files
(x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files
(x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files
(x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft
Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:
\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:
\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program
Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program
Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program
Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program
Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.2 - C:\Program Files
(x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader
10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Nefi\AppData\Roaming\Mozilla\Firefox\Profiles
\z55u58ki.default\searchplugins\vyhledvn-vide-ve-slub-youtube.xml
FF SearchPlugin: C:\Users\Nefi\AppData\Roaming\Mozilla\Firefox\Profiles
\z55u58ki.default\searchplugins\yahoo_ff.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser
\searchplugins\heureka-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser
\searchplugins\jyxo-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser
\searchplugins\seznam-cz.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser
\searchplugins\slunecnice-cz.xml
FF Extension: Český slovník pro kontrolu pravopisu - C:\Users\Nefi
\AppData\Roaming\Mozilla\Firefox\Profiles\z55u58ki.default\Extensions
\
cs@dictionaries.addons.mozilla.org [2013-06-01]
FF Extension: Pocket - C:\Users\Nefi\AppData\Roaming\Mozilla\Firefox
\Profiles\z55u58ki.default\Extensions\
isreaditlater@ideashower.com [2013-
09-04]
FF Extension: Slick Savings - C:\Users\Nefi\AppData\Roaming\Mozilla
\Firefox\Profiles\z55u58ki.default\Extensions
\
savingsslider@mybrowserbar.com [2014-02-20]
FF Extension: IE Tab 2 (FF 3.6+) - C:\Users\Nefi\AppData\Roaming\Mozilla
\Firefox\Profiles\z55u58ki.default\Extensions\{1BC9BA34-1EED-42ca-A505-
6D2F1A935BBB} [2012-12-30]
FF Extension: Start Page - C:\Users\Nefi\AppData\Roaming\Mozilla\Firefox
\Profiles\z55u58ki.default\Extensions\{58d2a791-6199-482f-a9aa-
9b725ec61362} [2014-02-20]
FF Extension: Address Bar Search - C:\Users\Nefi\AppData\Roaming\Mozilla
\Firefox\Profiles\z55u58ki.default\Extensions\{badea1ae-72ed-4f6a-8c37-
4db9a4ac7bc9} [2013-09-02]
FF Extension: Plug-in by Integra Software - C:\Users\Nefi\AppData\Roaming
\Mozilla\Firefox\Profiles\z55u58ki.default\Extensions
\
integra@integra.com.pl.xpi [2012-11-16]
FF Extension: Google Translator for Firefox - C:\Users\Nefi\AppData
\Roaming\Mozilla\Firefox\Profiles\z55u58ki.default\Extensions
\
translator@zoli.bod.xpi [2012-07-11]
FF HKLM-x32\...\Firefox\Extensions: [
fmconverter@gmail.com] - C:\Program
Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox\
FF Extension: Freemake Video Converter Plugin - C:\Program Files
(x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox\ []
FF HKLM-x32\...\Firefox\Extensions: [
wrc@avast.com] - C:\Program Files
\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software
\Avast\WebRep\FF [2012-08-13]
Chrome:
=======
CHR HomePage: hxxp://
www.google.com/
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome
\Application\33.0.1750.154\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome
\Application\33.0.1750.154\pdf.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome
\Application\33.0.1750.154\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash
\NPSWF32_11_3_300_262.dll No File
CHR Plugin: (registryAccess) - C:\Users\Nefi\AppData\Local\Google\Chrome
\User Data\Default\Extensions\aaaapoomnboffjcgcebabolakmhbblbk
\7.15.4.0_0\background/registryAccess.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader
10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2010) - C:
\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:
\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Picasa) - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
(Google, Inc.)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update
\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files
(x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
(Intel Corporation)
CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files
(x86)\Intel\Intel(R) Management Engine Components\IPT
\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee
\SiteAdvisor\npmcffplg32.dll No File
CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC
\npvlc.dll (VideoLAN)
CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows
Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft
Silverlight\4.0.50401.0\npctrl.dll No File
CHR Plugin: (McAfee SecurityCenter) - c:\progra~2\mcafee\msc\npmcsn~1.dll
No File
CHR Extension: (Adblock Plus) - C:\Users\Nefi\AppData\Local\Google\Chrome
\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-10-
14]
CHR Extension: (Speed Dial) - C:\Users\Nefi\AppData\Local\Google\Chrome
\User Data\Default\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi [2013-10-
26]
CHR Extension: (Foxtab Speed Dial) - C:\Users\Nefi\AppData\Local\Google
\Chrome\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp
[2013-12-02]
CHR Extension: (Stopky / časovač) - C:\Users\Nefi\AppData\Local\Google
\Chrome\User Data\Default\Extensions\ggnidjbcahhbnleinchgobfnabopeioh
[2013-10-27]
CHR Extension: (avast! Online Security) - C:\Users\Nefi\AppData\Local
\Google\Chrome\User Data\Default\Extensions
\gomekmidlodglbbmalcneegieacbdmki [2013-12-26]
CHR Extension: (CSFD Search) - C:\Users\Nefi\AppData\Local\Google\Chrome
\User Data\Default\Extensions\hendkpmkmhgikkooceahbpbddkmgnlce [2013-05-
08]
CHR Extension: (Lone Tree) - C:\Users\Nefi\AppData\Local\Google\Chrome
\User Data\Default\Extensions\hfmkllfplegemejikoabfpjdaoncphip [2013-05-
08]
CHR Extension: (Wikipedia Search) - C:\Users\Nefi\AppData\Local\Google
\Chrome\User Data\Default\Extensions\lipakennkogpodadpikgipnogamhklmk
[2013-05-08]
CHR Extension: (Vyhledávání na Uložto.cz) - C:\Users\Nefi\AppData\Local
\Google\Chrome\User Data\Default\Extensions
\lmkajlpofgoacniacbaappohkglliini [2013-05-08]
CHR Extension: (Quick Note) - C:\Users\Nefi\AppData\Local\Google\Chrome
\User Data\Default\Extensions\mijlebbfndhelmdpmllgcfadlkankhok [2013-10-
26]
CHR Extension: (My Facebook Colors) - C:\Users\Nefi\AppData\Local\Google
\Chrome\User Data\Default\Extensions\moeajaekjdlphfakimpkagaabjoaohpc
[2013-05-08]
CHR Extension: (Pocket (formerly Read It Later)) - C:\Users\Nefi\AppData
\Local\Google\Chrome\User Data\Default\Extensions
\niloccemoadcdkdjlinkgdfekeahmflj [2012-11-21]
CHR Extension: (Peněženka Google) - C:\Users\Nefi\AppData\Local\Google
\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
[2013-09-10]
==================== Services (Whitelisted) =================
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe
[50344 2014-02-17] (AVAST Software)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [945440
2012-02-02] (Broadcom Corporation.)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management
Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-08] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine
Components\DAL\jhi_service.exe [161560 2012-02-08] (Intel Corporation)
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
[2151200 2013-12-03] (IObit)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912
2013-07-29] ()
R2 NgVpnMgr; C:\Windows\system32\ngvpnmgr.exe [436296 2010-03-17]
(Aventail Corporation)
S2 NSDSvc; C:\Windows\System32\NSDSvc.exe [120160 2011-12-24] (Lenovo)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService
\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv
\nvstreamsvc.exe [16941856 2014-02-05] (NVIDIA Corporation)
R2 SACSrv; C:\Program Files\SafeNet\Authentication\SAC\x64\SACSrv.exe
[8904 2011-01-13] (SafeNet, Inc.)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin
\ZeroConfigService.exe [3668208 2013-07-29] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
R3 AKSIFDH; C:\Windows\System32\DRIVERS\aksifdh.sys [62632 2008-07-30]
(Aladdin Knowledge Systems, Ltd.)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-02-17]
(AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-12-02]
(AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-12-02] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1038072 2014-02-17]
(AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [421704 2014-02-17] (AVAST
Software)
R3 aswStm; C:\Windows\system32\drivers\aswStm.sys [80184 2014-02-17]
(AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-06] ()
S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [310984 2012-07-12] ()
S3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [134696 2012-02-02]
(Broadcom Corporation.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-
05-20] (DT Soft Ltd)
R3 iKeyEnum; C:\Windows\System32\DRIVERS\ikeyenum.sys [16160 2010-03-18]
(SafeNet, Inc.)
R3 iKeyIFD; C:\Windows\System32\DRIVERS\ikeyifd.sys [22304 2010-03-18]
(SafeNet, Inc.)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [42696 2012-07-12] ()
S3 NgFilter; C:\Windows\System32\DRIVERS\ngfilter.sys [25672 2010-03-17]
(Aventail Corporation)
R3 NgLog; C:\Windows\System32\DRIVERS\nglog.sys [31304 2010-03-17]
(Aventail Corporation)
R3 NgVpn; C:\Windows\System32\DRIVERS\ngvpn.sys [102984 2010-03-17]
(Aventail Corporation)
R3 NgWfp; C:\Windows\System32\DRIVERS\ngwfp.sys [28744 2010-03-17]
(Aventail Corporation)
R0 NSD; C:\Windows\System32\drivers\nsd.sys [24160 2011-12-24] (Lenovo
Corporation")
R1 Nsdfltr; C:\Windows\System32\drivers\Nsdfltr.sys [59488 2011-12-22]
(Lenovo Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200
2013-12-27] (NVIDIA Corporation)
U5 RnbToken; C:\Windows\System32\Drivers\RnbToken.sys [24352 2010-03-18]
(SafeNet, Inc.)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys
[21184 2013-12-24] (IObit)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [560184 2012-07-11] (Duplex
Secure Ltd.)
R3 SPUVCbv; C:\Windows\System32\Drivers\usbvideo.sys [185344 2013-07-12]
(Microsoft Corporation)
U3 algd830t; C:\Windows\System32\Drivers\algd830t.sys [0 ] (Microsoft
Corporation)
U3 BcmSqlStartupSvc;
U2 CLKMSVC10_3A60B698;
U2 CLKMSVC10_C3B3B687;
U2 DriverService;
U2 IAStorDataMgrSvc;
U2 iATAgentService;
U2 idealife Update Service;
U3 IGRS;
U2 IviRegMgr;
U2 Oasis2Service;
U2 PCCarerService;
U2 ReadyComm.DirectRouter;
U2 RichVideo;
U2 RtLedService;
U2 SeaPort;
U2 SoftwareService;
U3 SQLWriter;
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-22 13:19 - 2014-03-22 13:19 - 00028087 _____ () C:\Users\Nefi
\Downloads\FRST.txt
2014-03-22 13:18 - 2014-03-22 13:19 - 00000000 ____D () C:\FRST
2014-03-22 12:55 - 2014-03-22 12:55 - 02157056 _____ (Farbar) C:\Users
\Nefi\Downloads\FRST64.exe
2014-03-22 10:38 - 2014-03-22 10:38 - 00000000 ____D () C:\Users\Nefi
\Downloads\Leatrix_Latency_Fix_3.00
2014-03-22 10:35 - 2014-03-22 10:35 - 04956875 _____ () C:\Users\Nefi
\Downloads\Leatrix_Latency_Fix_3.00.zip
2014-03-22 09:34 - 2014-03-22 09:37 - 00000000 ____D () C:\AdwCleaner
2014-03-22 09:33 - 2014-03-22 09:33 - 01950720 _____ () C:\Users\Nefi
\Downloads\adwcleaner.exe
2014-03-22 08:34 - 2014-03-22 08:34 - 00000000 ____D () C:\Users\Nefi
\SystemRequirementsLab
2014-03-22 08:34 - 2014-03-22 08:34 - 00000000 ____D () C:\Program Files
(x86)\SystemRequirementsLab
2014-03-19 21:58 - 2014-03-19 21:58 - 00040935 _____ () C:\Users\Nefi
\Downloads\the.musketeers.s01e08.hdtv.x264-fov.srt
2014-03-17 22:18 - 2014-03-17 22:18 - 00041869 _____ () C:\Users\Nefi
\Downloads\reign.s01e14.hdtv.x264-2hd.srt
2014-03-17 22:09 - 2014-03-17 22:09 - 00052423 _____ () C:\Users\Nefi
\Downloads\the.musketeers.s01e07.hdtv.x264-fov (2).srt
2014-03-17 22:09 - 2014-03-17 22:09 - 00052423 _____ () C:\Users\Nefi
\Downloads\the.musketeers.s01e07.hdtv.x264-fov (1).srt
2014-03-17 19:00 - 2014-03-17 19:00 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\Blizzard
2014-03-17 18:55 - 2014-03-17 19:00 - 00000000 ____D () C:\Program Files
(x86)\Hearthstone
2014-03-13 20:28 - 2014-03-01 07:05 - 23133696 _____ (Microsoft
Corporation) C:\Windows\system32\mshtml.dll
2014-03-13 20:28 - 2014-03-01 06:17 - 02724864 _____ (Microsoft
Corporation) C:\Windows\system32\mshtml.tlb
2014-03-13 20:28 - 2014-03-01 06:16 - 00004096 _____ (Microsoft
Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-03-13 20:28 - 2014-03-01 05:58 - 02765824 _____ (Microsoft
Corporation) C:\Windows\system32\iertutil.dll
2014-03-13 20:28 - 2014-03-01 05:52 - 00066048 _____ (Microsoft
Corporation) C:\Windows\system32\iesetup.dll
2014-03-13 20:28 - 2014-03-01 05:51 - 00048640 _____ (Microsoft
Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-03-13 20:28 - 2014-03-01 05:42 - 00053760 _____ (Microsoft
Corporation) C:\Windows\system32\jsproxy.dll
2014-03-13 20:28 - 2014-03-01 05:40 - 00033792 _____ (Microsoft
Corporation) C:\Windows\system32\iernonce.dll
2014-03-13 20:28 - 2014-03-01 05:37 - 00574976 _____ (Microsoft
Corporation) C:\Windows\system32\ieui.dll
2014-03-13 20:28 - 2014-03-01 05:33 - 00139264 _____ (Microsoft
Corporation) C:\Windows\system32\ieUnatt.exe
2014-03-13 20:28 - 2014-03-01 05:33 - 00111616 _____ (Microsoft
Corporation) C:\Windows\system32\ieetwcollector.exe
2014-03-13 20:28 - 2014-03-01 05:32 - 00708608 _____ (Microsoft
Corporation) C:\Windows\system32\jscript9diag.dll
2014-03-13 20:28 - 2014-03-01 05:30 - 17074688 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-03-13 20:28 - 2014-03-01 05:23 - 00940032 _____ (Microsoft
Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-13 20:28 - 2014-03-01 05:17 - 00218624 _____ (Microsoft
Corporation) C:\Windows\system32\ie4uinit.exe
2014-03-13 20:28 - 2014-03-01 05:11 - 02724864 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-03-13 20:28 - 2014-03-01 05:02 - 00195584 _____ (Microsoft
Corporation) C:\Windows\system32\msrating.dll
2014-03-13 20:28 - 2014-03-01 04:54 - 05768704 _____ (Microsoft
Corporation) C:\Windows\system32\jscript9.dll
2014-03-13 20:28 - 2014-03-01 04:52 - 00061952 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-03-13 20:28 - 2014-03-01 04:51 - 00051200 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-03-13 20:28 - 2014-03-01 04:47 - 02168320 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-03-13 20:28 - 2014-03-01 04:43 - 00043008 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-03-13 20:28 - 2014-03-01 04:43 - 00032768 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-03-13 20:28 - 2014-03-01 04:42 - 00627200 _____ (Microsoft
Corporation) C:\Windows\system32\msfeeds.dll
2014-03-13 20:28 - 2014-03-01 04:40 - 00440832 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\ieui.dll
2014-03-13 20:28 - 2014-03-01 04:38 - 00112128 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-03-13 20:28 - 2014-03-01 04:37 - 00553472 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-03-13 20:28 - 2014-03-01 04:35 - 02041856 _____ (Microsoft
Corporation) C:\Windows\system32\inetcpl.cpl
2014-03-13 20:28 - 2014-03-01 04:18 - 13051904 _____ (Microsoft
Corporation) C:\Windows\system32\ieframe.dll
2014-03-13 20:28 - 2014-03-01 04:16 - 00164864 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\msrating.dll
2014-03-13 20:28 - 2014-03-01 04:14 - 04244480 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-03-13 20:28 - 2014-03-01 04:10 - 02334208 _____ (Microsoft
Corporation) C:\Windows\system32\wininet.dll
2014-03-13 20:28 - 2014-03-01 04:03 - 00524288 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-03-13 20:28 - 2014-03-01 04:00 - 01964032 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-03-13 20:28 - 2014-03-01 03:57 - 11266048 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-03-13 20:28 - 2014-03-01 03:38 - 01393664 _____ (Microsoft
Corporation) C:\Windows\system32\urlmon.dll
2014-03-13 20:28 - 2014-03-01 03:32 - 01820160 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\wininet.dll
2014-03-13 20:28 - 2014-03-01 03:27 - 01156096 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-03-13 20:28 - 2014-03-01 03:25 - 00817664 _____ (Microsoft
Corporation) C:\Windows\system32\ieapfltr.dll
2014-03-13 20:28 - 2014-03-01 03:25 - 00703488 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-03-13 20:28 - 2014-02-04 03:32 - 00624128 _____ (Microsoft
Corporation) C:\Windows\system32\qedit.dll
2014-03-13 20:28 - 2014-02-04 03:04 - 00509440 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\qedit.dll
2014-03-12 21:44 - 2014-03-12 21:44 - 00052423 _____ () C:\Users\Nefi
\Downloads\the.musketeers.s01e07.hdtv.x264-fov.srt
2014-03-06 21:42 - 2014-03-06 21:42 - 00044747 _____ () C:\Users\Nefi
\Downloads\the.musketeers.s01e06.hdtv.xvid-fum.srt
2014-03-06 21:37 - 2014-03-06 21:37 - 00044749 _____ () C:\Users\Nefi
\Downloads\the.musketeers.s01e06.hdtv.x264-river.srt
2014-03-05 20:16 - 2014-03-05 20:16 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\Skype
2014-03-02 16:16 - 2014-03-02 16:16 - 00064741 _____ () C:\Users\Nefi
\Downloads\Beauty and the Beast (2012) - 02x02 -
Kidnapped.480p.HDTV.x264.English.C.updated.Addic7ed.com.srt
2014-03-02 16:16 - 2014-03-02 16:16 - 00051136 _____ () C:\Users\Nefi
\Downloads\Beauty and the Beast (2012) - 02x01 - Who Am
I-.480p.HDTV.x264.English.C.orig.Addic7ed.com.srt
2014-03-02 11:53 - 2014-03-02 12:34 - 733960192 _____ () C:\Users\Nefi
\Downloads\Osvobozeni 3.cz.avi
2014-03-01 20:34 - 2014-03-01 20:34 - 00000000 ____D () C:\ProgramData
\Intel.sav
2014-03-01 20:34 - 2014-03-01 20:34 - 00000000 ____D () C:\Program Files
(x86)\Cisco
2014-03-01 20:33 - 2014-03-01 20:34 - 00006760 _____ () C:\Windows
\DPINST.LOG
2014-03-01 20:31 - 2014-03-01 20:32 - 00000000 ____D () C:\ProgramData
\Package Cache
2014-03-01 20:28 - 2014-03-01 20:29 - 242017184 _____ (Lenovo Group
Limited ) C:\Users\Nefi\Downloads\0mwl01wb.exe
2014-03-01 15:55 - 2014-03-01 15:55 - 00000000 ____D () C:\ProgramData
\Oracle
2014-03-01 15:55 - 2013-12-18 21:09 - 00096168 _____ (Oracle Corporation)
C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-03-01 15:55 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation)
C:\Windows\SysWOW64\javaws.exe
2014-03-01 15:55 - 2013-12-18 21:04 - 00175016 _____ (Oracle Corporation)
C:\Windows\SysWOW64\javaw.exe
2014-03-01 15:55 - 2013-12-18 21:03 - 00174504 _____ (Oracle Corporation)
C:\Windows\SysWOW64\java.exe
2014-03-01 15:54 - 2014-03-01 15:55 - 00005765 _____ () C:\Windows
\SysWOW64\jupdate-1.7.0_51-b13.log
2014-03-01 15:52 - 2014-03-01 15:52 - 00921000 _____ (Oracle Corporation)
C:\Users\Nefi\Downloads\chromeinstall-7u51.exe
2014-03-01 10:40 - 2014-03-01 10:40 - 00000000 ____D () C:\Users\Nefi
\AppData\Roaming\Malwarebytes
2014-03-01 10:40 - 2014-03-01 10:40 - 00000000 ____D () C:\ProgramData
\Malwarebytes
2014-03-01 10:40 - 2014-03-01 10:40 - 00000000 ____D () C:\Program Files
(x86)\Malwarebytes' Anti-Malware
2014-03-01 10:40 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes
Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-03-01 10:39 - 2014-03-01 10:40 - 10285040 _____ (Malwarebytes
Corporation ) C:\Users\Nefi\Downloads\mbam-setup-1.75.0.1300.exe
2014-03-01 09:54 - 2014-03-01 09:54 - 00046080 _____ () C:\Users\Nefi
\Downloads\denzen.xls
2014-03-01 08:52 - 2014-03-01 08:52 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\Intel_Corporation
2014-02-28 23:35 - 2014-02-28 23:35 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\NVIDIA Corporation
2014-02-28 23:34 - 2014-02-28 23:35 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\NVIDIA
2014-02-28 23:34 - 2014-02-05 10:31 - 01048152 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\nvspcap.dll
2014-02-28 23:34 - 2014-02-05 10:30 - 01179576 _____ (NVIDIA Corporation)
C:\Windows\system32\nvspcap64.dll
2014-02-28 23:33 - 2014-02-28 23:33 - 00000000 ____D () C:\Program Files
(x86)\AGEIA Technologies
2014-02-28 23:32 - 2014-02-28 23:32 - 00000000 ____D () C:\Windows
\SysWOW64\NV
2014-02-28 23:32 - 2014-02-28 23:32 - 00000000 ____D () C:\Windows
\system32\NV
2014-02-28 23:28 - 2014-02-08 19:34 - 31432480 _____ (NVIDIA Corporation)
C:\Windows\system32\nvoglv64.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 25256224 _____ (NVIDIA Corporation)
C:\Windows\system32\nvcompiler.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 23683360 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\nvoglv32.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 18257576 _____ (NVIDIA Corporation)
C:\Windows\system32\nvwgf2umx.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 17715784 _____ (NVIDIA Corporation)
C:\Windows\system32\nvd3dumx.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 17560352 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\nvcompiler.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 15740232 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\nvwgf2um.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 14669032 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\nvd3dum.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 12324640 _____ (NVIDIA Corporation)
C:\Windows\system32\Drivers\nvlddmkm.sys
2014-02-28 23:28 - 2014-02-08 19:34 - 11636176 _____ (NVIDIA Corporation)
C:\Windows\system32\nvcuda.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 11589272 _____ (NVIDIA Corporation)
C:\Windows\system32\nvopencl.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 09728064 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\nvcuda.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 09690424 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\nvopencl.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 03142432 _____ (NVIDIA Corporation)
C:\Windows\system32\nvcuvid.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 02956576 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\nvcuvid.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 02782496 _____ (NVIDIA Corporation)
C:\Windows\system32\nvcuvenc.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 02713728 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\nvapi.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 02410784 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\nvcuvenc.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 01885472 _____ (NVIDIA Corporation)
C:\Windows\system32\nvdispco6433489.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 01515296 _____ (NVIDIA Corporation)
C:\Windows\system32\nvdispgenco6433489.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 00892192 _____ (NVIDIA Corporation)
C:\Windows\system32\NvIFR64.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 00875296 _____ (NVIDIA Corporation)
C:\Windows\system32\NvFBC64.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 00863520 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\NvIFR.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 00844576 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\NvFBC.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 00832424 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\nvumdshim.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 00353504 _____ (NVIDIA Corporation)
C:\Windows\system32\nvoglshim64.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 00305600 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\nvoglshim32.dll
2014-02-28 23:28 - 2014-02-08 19:34 - 00032544 _____ (NVIDIA Corporation)
C:\Windows\system32\Drivers\nvpciflt.sys
2014-02-28 23:28 - 2013-12-27 19:42 - 00039200 _____ (NVIDIA Corporation)
C:\Windows\system32\Drivers\nvvad64v.sys
2014-02-28 23:28 - 2013-12-27 19:42 - 00035104 _____ (NVIDIA Corporation)
C:\Windows\system32\nvaudcap64v.dll
2014-02-28 23:28 - 2013-12-27 19:42 - 00033056 _____ (NVIDIA Corporation)
C:\Windows\SysWOW64\nvaudcap32v.dll
2014-02-28 23:16 - 2014-02-28 23:16 - 00000000 ____D () C:\Windows\Tasks
\ImCleanDisabled
2014-02-28 23:11 - 2014-02-28 23:14 - 276927952 _____ (NVIDIA Corporation)
C:\Users\Nefi\Downloads\334.89-notebook-win8-win7-64bit-international-
whql.exe
2014-02-28 23:06 - 2014-02-28 23:08 - 150756160 _____ (Intel Corporation)
C:\Users\Nefi\Downloads\win64_153314.exe
2014-02-28 20:54 - 2014-03-22 13:16 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\Battle.net
2014-02-28 20:54 - 2014-03-21 23:25 - 00000000 ____D () C:\Program Files
(x86)\Battle.net
2014-02-28 20:54 - 2014-02-28 21:44 - 00000000 ____D () C:\Users\Nefi
\AppData\Roaming\Battle.net
2014-02-28 20:52 - 2014-02-28 20:52 - 05748920 _____ (Blizzard
Entertainment) C:\Users\Nefi\Downloads\Battle.net-Beta-Setup-enGB.exe
2014-02-20 19:58 - 2014-02-20 19:58 - 00000000 ____D () C:\Users\Nefi
\AppData\Roaming\Apple Computer
2014-02-20 19:57 - 2014-02-20 19:57 - 00000000 ____D () C:\ProgramData
\ProductData
2014-02-20 19:57 - 2014-02-20 19:57 - 00000000 ____D () C:\ProgramData
\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-02-20 19:54 - 2014-02-20 19:54 - 00003162 _____ () C:\Windows
\System32\Tasks\SmartDefrag3_Update
2014-02-20 19:54 - 2014-02-13 19:01 - 00128320 _____ (IObit) C:\Windows
\system32\IObitSmartDefragExtension.dll
2014-02-20 19:54 - 2013-11-19 16:52 - 00034080 _____ (IObit) C:\Windows
\system32\SmartDefragBootTime.exe
2014-02-20 19:53 - 2013-12-24 10:40 - 00021184 _____ (IObit) C:\Windows
\system32\Drivers\SmartDefragDriver.sys
==================== One Month Modified Files and Folders =======
2014-03-22 13:19 - 2014-03-22 13:19 - 00028087 _____ () C:\Users\Nefi
\Downloads\FRST.txt
2014-03-22 13:19 - 2014-03-22 13:18 - 00000000 ____D () C:\FRST
2014-03-22 13:17 - 2012-07-11 14:18 - 00000000 ____D () C:\Users\Nefi
\AppData\Roaming\Skype
2014-03-22 13:16 - 2014-02-28 20:54 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\Battle.net
2014-03-22 13:04 - 2012-07-11 14:43 - 00000914 _____ () C:\Windows\Tasks
\Adobe Flash Player Updater.job
2014-03-22 12:55 - 2014-03-22 12:55 - 02157056 _____ (Farbar) C:\Users
\Nefi\Downloads\FRST64.exe
2014-03-22 12:27 - 2012-06-15 01:48 - 00000966 _____ () C:\Windows\Tasks
\GoogleUpdateTaskMachineUA.job
2014-03-22 10:38 - 2014-03-22 10:38 - 00000000 ____D () C:\Users\Nefi
\Downloads\Leatrix_Latency_Fix_3.00
2014-03-22 10:35 - 2014-03-22 10:35 - 04956875 _____ () C:\Users\Nefi
\Downloads\Leatrix_Latency_Fix_3.00.zip
2014-03-22 09:49 - 2012-06-15 01:02 - 01059907 _____ () C:\Windows
\WindowsUpdate.log
2014-03-22 09:46 - 2012-07-16 15:44 - 00000000 ____D () C:\Users\Nefi
\AppData\Roaming\Dropbox
2014-03-22 09:46 - 2012-06-15 00:49 - 00688286 _____ () C:\Windows
\system32\perfh005.dat
2014-03-22 09:46 - 2012-06-15 00:49 - 00149974 _____ () C:\Windows
\system32\perfc005.dat
2014-03-22 09:46 - 2009-07-14 06:13 - 01632426 _____ () C:\Windows
\system32\PerfStringBackup.INI
2014-03-22 09:45 - 2012-07-16 15:45 - 00000000 ___RD () C:\Users\Nefi
\Dropbox
2014-03-22 09:45 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows
\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-
8115-601632D005A0
2014-03-22 09:45 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows
\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-
8115-601632D005A0
2014-03-22 09:43 - 2012-08-13 16:05 - 00004182 _____ () C:\Windows
\System32\Tasks\avast! Emergency Update
2014-03-22 09:43 - 2012-07-11 14:02 - 00000000 ___RD () C:\Users\Nefi
\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-03-22 09:43 - 2012-06-15 01:49 - 00240672 _____ () C:\Windows
\system32\fastboot.set
2014-03-22 09:42 - 2013-05-29 14:40 - 00000000 ____D () C:\Users\Nefi
\AppData\Roaming\Copy
2014-03-22 09:41 - 2014-02-08 18:40 - 00003850 _____ () C:\Windows
\setupact.log
2014-03-22 09:41 - 2013-12-24 18:56 - 00002982 _____ () C:\Windows
\System32\Tasks\AutoKMS
2014-03-22 09:41 - 2013-03-09 18:45 - 00151552 _____ () C:\Windows
\KMSEmulator.exe
2014-03-22 09:41 - 2012-07-11 15:41 - 00000292 _____ () C:\Windows\Tasks
\AutoKMS.job
2014-03-22 09:41 - 2012-07-11 13:57 - 01167867 _____ () C:\FaceProv.log
2014-03-22 09:40 - 2012-07-11 13:59 - 00000000 ____D () C:\Users\Nefi
2014-03-22 09:40 - 2012-06-15 01:48 - 00000962 _____ () C:\Windows\Tasks
\GoogleUpdateTaskMachineCore.job
2014-03-22 09:40 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks
\SA.DAT
2014-03-22 09:39 - 2013-03-13 22:33 - 00000000 ____D () C:\Program Files
\Microsoft Silverlight
2014-03-22 09:39 - 2013-03-13 22:33 - 00000000 ____D () C:\Program Files
(x86)\Microsoft Silverlight
2014-03-22 09:37 - 2014-03-22 09:34 - 00000000 ____D () C:\AdwCleaner
2014-03-22 09:36 - 2012-08-19 17:34 - 00000000 ____D () C:\Users\Nefi
\AppData\Roaming\uTorrent
2014-03-22 09:33 - 2014-03-22 09:33 - 01950720 _____ () C:\Users\Nefi
\Downloads\adwcleaner.exe
2014-03-22 09:13 - 2012-07-12 21:24 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\Deployment
2014-03-22 08:34 - 2014-03-22 08:34 - 00000000 ____D () C:\Users\Nefi
\SystemRequirementsLab
2014-03-22 08:34 - 2014-03-22 08:34 - 00000000 ____D () C:\Program Files
(x86)\SystemRequirementsLab
2014-03-21 23:25 - 2014-02-28 20:54 - 00000000 ____D () C:\Program Files
(x86)\Battle.net
2014-03-20 19:53 - 2012-07-11 20:33 - 00000000 ____D () C:\Users\Nefi
\Documents\Soubory aplikace Outlook
2014-03-20 19:28 - 2012-07-11 15:34 - 00000000 ____D () C:\ProgramData
\Microsoft Help
2014-03-20 19:27 - 2013-08-14 06:36 - 00000000 ____D () C:\Windows
\system32\MRT
2014-03-20 19:23 - 2012-08-20 17:15 - 90015360 _____ (Microsoft
Corporation) C:\Windows\system32\MRT.exe
2014-03-20 00:05 - 2012-08-19 14:19 - 00000000 ____D () C:\Users\Nefi
\AppData\Roaming\vlc
2014-03-19 21:58 - 2014-03-19 21:58 - 00040935 _____ () C:\Users\Nefi
\Downloads\the.musketeers.s01e08.hdtv.x264-fov.srt
2014-03-19 21:18 - 2012-07-16 15:44 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\Last.fm
2014-03-17 22:18 - 2014-03-17 22:18 - 00041869 _____ () C:\Users\Nefi
\Downloads\reign.s01e14.hdtv.x264-2hd.srt
2014-03-17 22:09 - 2014-03-17 22:09 - 00052423 _____ () C:\Users\Nefi
\Downloads\the.musketeers.s01e07.hdtv.x264-fov (2).srt
2014-03-17 22:09 - 2014-03-17 22:09 - 00052423 _____ () C:\Users\Nefi
\Downloads\the.musketeers.s01e07.hdtv.x264-fov (1).srt
2014-03-17 20:27 - 2012-07-11 20:31 - 00000000 ___RD () C:\Users\Nefi
\Desktop\Gamesky
2014-03-17 20:27 - 2012-07-11 14:38 - 00000000 ___RD () C:\Users\Nefi
\Desktop\Programy
2014-03-17 19:00 - 2014-03-17 19:00 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\Blizzard
2014-03-17 19:00 - 2014-03-17 18:55 - 00000000 ____D () C:\Program Files
(x86)\Hearthstone
2014-03-14 19:25 - 2013-11-17 14:27 - 00000000 ____D () C:\Users\Nefi
\Documents\ConvertXtoDVD
2014-03-14 19:24 - 2013-04-28 12:57 - 00000000 ____D () C:\Users\Nefi
\Documents\Calibre knihovna
2014-03-12 21:44 - 2014-03-12 21:44 - 00052423 _____ () C:\Users\Nefi
\Downloads\the.musketeers.s01e07.hdtv.x264-fov.srt
2014-03-12 19:10 - 2012-07-11 14:43 - 00692616 _____ (Adobe Systems
Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-03-12 19:10 - 2012-07-11 14:43 - 00071048 _____ (Adobe Systems
Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-12 19:10 - 2012-07-11 14:43 - 00003852 _____ () C:\Windows
\System32\Tasks\Adobe Flash Player Updater
2014-03-06 21:42 - 2014-03-06 21:42 - 00044747 _____ () C:\Users\Nefi
\Downloads\the.musketeers.s01e06.hdtv.xvid-fum.srt
2014-03-06 21:37 - 2014-03-06 21:37 - 00044749 _____ () C:\Users\Nefi
\Downloads\the.musketeers.s01e06.hdtv.x264-river.srt
2014-03-05 20:16 - 2014-03-05 20:16 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\Skype
2014-03-05 20:16 - 2012-07-11 14:18 - 00000000 ____D () C:\ProgramData
\Skype
2014-03-05 20:15 - 2013-02-15 07:20 - 00000000 ___RD () C:\Program Files
(x86)\Skype
2014-03-02 17:15 - 2013-01-15 17:33 - 00000000 ____D () C:\Users\Nefi
\AppData\Roaming\Vso
2014-03-02 16:16 - 2014-03-02 16:16 - 00064741 _____ () C:\Users\Nefi
\Downloads\Beauty and the Beast (2012) - 02x02 -
Kidnapped.480p.HDTV.x264.English.C.updated.Addic7ed.com.srt
2014-03-02 16:16 - 2014-03-02 16:16 - 00051136 _____ () C:\Users\Nefi
\Downloads\Beauty and the Beast (2012) - 02x01 - Who Am
I-.480p.HDTV.x264.English.C.orig.Addic7ed.com.srt
2014-03-02 12:34 - 2014-03-02 11:53 - 733960192 _____ () C:\Users\Nefi
\Downloads\Osvobozeni 3.cz.avi
2014-03-01 20:36 - 2014-02-08 18:40 - 00015414 _____ () C:\Windows
\PFRO.log
2014-03-01 20:35 - 2012-06-15 01:19 - 00000000 ____D () C:\ProgramData
\Intel
2014-03-01 20:34 - 2014-03-01 20:34 - 00000000 ____D () C:\ProgramData
\Intel.sav
2014-03-01 20:34 - 2014-03-01 20:34 - 00000000 ____D () C:\Program Files
(x86)\Cisco
2014-03-01 20:34 - 2014-03-01 20:33 - 00006760 _____ () C:\Windows
\DPINST.LOG
2014-03-01 20:34 - 2012-06-15 01:13 - 00000000 ____D () C:\Program Files
\Common Files\Intel
2014-03-01 20:34 - 2012-06-15 01:08 - 00000000 ____D () C:\Program Files
(x86)\Intel
2014-03-01 20:33 - 2012-06-15 01:19 - 00000000 ____D () C:\Program Files
\Intel
2014-03-01 20:32 - 2014-03-01 20:31 - 00000000 ____D () C:\ProgramData
\Package Cache
2014-03-01 20:29 - 2014-03-01 20:28 - 242017184 _____ (Lenovo Group
Limited ) C:\Users\Nefi\Downloads\0mwl01wb.exe
2014-03-01 15:55 - 2014-03-01 15:55 - 00000000 ____D () C:\ProgramData
\Oracle
2014-03-01 15:55 - 2014-03-01 15:54 - 00005765 _____ () C:\Windows
\SysWOW64\jupdate-1.7.0_51-b13.log
2014-03-01 15:55 - 2013-03-08 13:54 - 00000000 ____D () C:\Program Files
(x86)\Java
2014-03-01 15:53 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows
\system32\NDF
2014-03-01 15:52 - 2014-03-01 15:52 - 00921000 _____ (Oracle Corporation)
C:\Users\Nefi\Downloads\chromeinstall-7u51.exe
2014-03-01 10:40 - 2014-03-01 10:40 - 00000000 ____D () C:\Users\Nefi
\AppData\Roaming\Malwarebytes
2014-03-01 10:40 - 2014-03-01 10:40 - 00000000 ____D () C:\ProgramData
\Malwarebytes
2014-03-01 10:40 - 2014-03-01 10:40 - 00000000 ____D () C:\Program Files
(x86)\Malwarebytes' Anti-Malware
2014-03-01 10:40 - 2014-03-01 10:39 - 10285040 _____ (Malwarebytes
Corporation ) C:\Users\Nefi\Downloads\mbam-setup-1.75.0.1300.exe
2014-03-01 09:54 - 2014-03-01 09:54 - 00046080 _____ () C:\Users\Nefi
\Downloads\denzen.xls
2014-03-01 08:52 - 2014-03-01 08:52 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\Intel_Corporation
2014-03-01 08:46 - 2012-06-15 01:15 - 00016176 _____ () C:\Windows
\system32\results.xml
2014-03-01 07:05 - 2014-03-13 20:28 - 23133696 _____ (Microsoft
Corporation) C:\Windows\system32\mshtml.dll
2014-03-01 06:17 - 2014-03-13 20:28 - 02724864 _____ (Microsoft
Corporation) C:\Windows\system32\mshtml.tlb
2014-03-01 06:16 - 2014-03-13 20:28 - 00004096 _____ (Microsoft
Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-03-01 05:58 - 2014-03-13 20:28 - 02765824 _____ (Microsoft
Corporation) C:\Windows\system32\iertutil.dll
2014-03-01 05:52 - 2014-03-13 20:28 - 00066048 _____ (Microsoft
Corporation) C:\Windows\system32\iesetup.dll
2014-03-01 05:51 - 2014-03-13 20:28 - 00048640 _____ (Microsoft
Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-03-01 05:42 - 2014-03-13 20:28 - 00053760 _____ (Microsoft
Corporation) C:\Windows\system32\jsproxy.dll
2014-03-01 05:40 - 2014-03-13 20:28 - 00033792 _____ (Microsoft
Corporation) C:\Windows\system32\iernonce.dll
2014-03-01 05:37 - 2014-03-13 20:28 - 00574976 _____ (Microsoft
Corporation) C:\Windows\system32\ieui.dll
2014-03-01 05:33 - 2014-03-13 20:28 - 00139264 _____ (Microsoft
Corporation) C:\Windows\system32\ieUnatt.exe
2014-03-01 05:33 - 2014-03-13 20:28 - 00111616 _____ (Microsoft
Corporation) C:\Windows\system32\ieetwcollector.exe
2014-03-01 05:32 - 2014-03-13 20:28 - 00708608 _____ (Microsoft
Corporation) C:\Windows\system32\jscript9diag.dll
2014-03-01 05:30 - 2014-03-13 20:28 - 17074688 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-03-01 05:23 - 2014-03-13 20:28 - 00940032 _____ (Microsoft
Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-01 05:17 - 2014-03-13 20:28 - 00218624 _____ (Microsoft
Corporation) C:\Windows\system32\ie4uinit.exe
2014-03-01 05:11 - 2014-03-13 20:28 - 02724864 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-03-01 05:02 - 2014-03-13 20:28 - 00195584 _____ (Microsoft
Corporation) C:\Windows\system32\msrating.dll
2014-03-01 04:54 - 2014-03-13 20:28 - 05768704 _____ (Microsoft
Corporation) C:\Windows\system32\jscript9.dll
2014-03-01 04:52 - 2014-03-13 20:28 - 00061952 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-03-01 04:51 - 2014-03-13 20:28 - 00051200 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-03-01 04:47 - 2014-03-13 20:28 - 02168320 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-03-01 04:43 - 2014-03-13 20:28 - 00043008 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-03-01 04:43 - 2014-03-13 20:28 - 00032768 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-03-01 04:42 - 2014-03-13 20:28 - 00627200 _____ (Microsoft
Corporation) C:\Windows\system32\msfeeds.dll
2014-03-01 04:40 - 2014-03-13 20:28 - 00440832 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\ieui.dll
2014-03-01 04:38 - 2014-03-13 20:28 - 00112128 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-03-01 04:37 - 2014-03-13 20:28 - 00553472 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-03-01 04:35 - 2014-03-13 20:28 - 02041856 _____ (Microsoft
Corporation) C:\Windows\system32\inetcpl.cpl
2014-03-01 04:18 - 2014-03-13 20:28 - 13051904 _____ (Microsoft
Corporation) C:\Windows\system32\ieframe.dll
2014-03-01 04:16 - 2014-03-13 20:28 - 00164864 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\msrating.dll
2014-03-01 04:14 - 2014-03-13 20:28 - 04244480 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-03-01 04:10 - 2014-03-13 20:28 - 02334208 _____ (Microsoft
Corporation) C:\Windows\system32\wininet.dll
2014-03-01 04:03 - 2014-03-13 20:28 - 00524288 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-03-01 04:00 - 2014-03-13 20:28 - 01964032 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-03-01 03:57 - 2014-03-13 20:28 - 11266048 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-03-01 03:38 - 2014-03-13 20:28 - 01393664 _____ (Microsoft
Corporation) C:\Windows\system32\urlmon.dll
2014-03-01 03:32 - 2014-03-13 20:28 - 01820160 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\wininet.dll
2014-03-01 03:27 - 2014-03-13 20:28 - 01156096 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-03-01 03:25 - 2014-03-13 20:28 - 00817664 _____ (Microsoft
Corporation) C:\Windows\system32\ieapfltr.dll
2014-03-01 03:25 - 2014-03-13 20:28 - 00703488 _____ (Microsoft
Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-28 23:37 - 2013-04-06 10:03 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\TSVNCache
2014-02-28 23:35 - 2014-02-28 23:35 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\NVIDIA Corporation
2014-02-28 23:35 - 2014-02-28 23:34 - 00000000 ____D () C:\Users\Nefi
\AppData\Local\NVIDIA
2014-02-28 23:35 - 2012-06-15 01:16 - 00000000 ____D () C:\ProgramData
\NVIDIA Corporation
2014-02-28 23:34 - 2012-06-15 01:16 - 00000000 ____D () C:\Program Files
(x86)\NVIDIA Corporation
2014-02-28 23:34 - 2012-06-15 01:15 - 00000000 ____D () C:\Program Files
\NVIDIA Corporation
2014-02-28 23:33 - 2014-02-28 23:33 - 00000000 ____D () C:\Program Files
(x86)\AGEIA Technologies
2014-02-28 23:32 - 2014-02-28 23:32 - 00000000 ____D () C:\Windows
\SysWOW64\NV
2014-02-28 23:32 - 2014-02-28 23:32 - 00000000 ____D () C:\Windows
\system32\NV
2014-02-28 23:32 - 2012-06-15 01:16 - 00000000 ____D () C:\ProgramData
\NVIDIA
2014-02-28 23:16 - 2014-02-28 23:16 - 00000000 ____D () C:\Windows\Tasks
\ImCleanDisabled
2014-02-28 23:14 - 2014-02-28 23:11 - 276927952 _____ (NVIDIA Corporation)
C:\Users\Nefi\Downloads\334.89-notebook-win8-win7-64bit-international-
whql.exe
2014-02-28 23:08 - 2014-02-28 23:06 - 150756160 _____ (Intel Corporation)
C:\Users\Nefi\Downloads\win64_153314.exe
2014-02-28 21:44 - 2014-02-28 20:54 - 00000000 ____D () C:\Users\Nefi
\AppData\Roaming\Battle.net
2014-02-28 20:52 - 2014-02-28 20:52 - 05748920 _____ (Blizzard
Entertainment) C:\Users\Nefi\Downloads\Battle.net-Beta-Setup-enGB.exe
2014-02-20 19:58 - 2014-02-20 19:58 - 00000000 ____D () C:\Users\Nefi
\AppData\Roaming\Apple Computer
2014-02-20 19:58 - 2013-05-05 11:11 - 00000000 ____D () C:\Users\Nefi
\AppData\Roaming\IObit
2014-02-20 19:57 - 2014-02-20 19:57 - 00000000 ____D () C:\ProgramData
\ProductData
2014-02-20 19:57 - 2014-02-20 19:57 - 00000000 ____D () C:\ProgramData
\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-02-20 19:57 - 2013-05-05 11:11 - 00000000 ____D () C:\ProgramData
\IObit
2014-02-20 19:57 - 2013-05-05 11:11 - 00000000 ____D () C:\Program Files
(x86)\IObit
2014-02-20 19:54 - 2014-02-20 19:54 - 00003162 _____ () C:\Windows
\System32\Tasks\SmartDefrag3_Update
Files to move or delete:
====================
C:\Users\Public\AlexaNSISPlugin.4648.dll
Some content of TEMP:
====================
C:\Users\Nefi\AppData\Local\Temp\promote-upx.exe
C:\Users\Nefi\AppData\Local\Temp\Quarantine.exe
C:\Users\Nefi\AppData\Local\Temp\Resource_Toolbar.exe
C:\Users\Nefi\AppData\Local\Temp\SkypeSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-03-02 19:17
==================== End Of Log ============================